Senior Lead Engineer, Cybersecurity, Endpoint Security
Stryker Careers · Costa Rica, Heredia San Antonio Business Park
Job description
Work Flexibility: Hybrid Position Summary Designs, engineers, integrates, and continuously improves enterprise endpoint security capabilities protecting workstations, servers, mobile devices, and virtual desktop environments. Develops secure endpoint engineering patterns, hardening standards, reference configurations, security telemetry, and technical controls across Windows, macOS, Linux, and mobile platforms. Partners with Security Architecture, Enterprise Architecture, Endpoint and Infrastructure teams, Security Operations, Vulnerability Management, and technology owners to translate cybersecurity requirements into secure, scalable, and operationally supportable endpoint solutions. This role maintains deep hands-on technical expertise and supports engineering, implementation, verification, and complex troubleshooting of security capabilities, while partnering with appropriate technology and operations teams for routine production administration and lifecycle operations. What will you do: Design, engineer, integrate, and continuously improve enterprise endpoint security capabilities including EDR/XDR, endpoint protection, encryption, application and device control, attack-surface reduction, and device security compliance. Develop and maintain secure endpoint engineering standards, hardening baselines, reference configurations, technical documentation, and implementation guidance for Windows, macOS, Linux, servers, virtual desktops, mobile devices, and applicable systems supporting manufacturing environments. Partner with Security Architecture and Enterprise Architecture to translate cybersecurity requirements, Zero Trust principles, standards, and risk requirements into implementable endpoint security designs and controls. Lead endpoint security engineering for new capabilities, platform changes, migrations, major upgrades, and complex technology initiatives, including development of reference implementations and proofs of concept. Perform endpoint security assessments, technical risk analyses, architecture and configuration reviews, and control-effectiveness testing to identify security gaps and recommend scalable improvements. Engineer and verify endpoint security telemetry, logging, and integrations supporting Security Operations, Incident Response, and Vulnerability Management. Participate in complex cybersecurity investigations and incidents, providing advanced endpoint security and forensic expertise including telemetry analysis, containment design, and verification of endpoint response controls. Develop automation using PowerShell, Microsoft Graph APIs, platform APIs, scripting, and enterprise management technologies to improve security consistency, repeatability, verification, and operational efficiency. Partner with endpoint management teams to integrate and verify security requirements throughout the device and system lifecycle. Evaluate emerging endpoint security technologies, AI-enabled security capabilities, vendor capabilities, and industry practices; conduct technical evaluations and provide recommendations regarding enterprise adoption and applicable compliance requirements. What you need: Bachelor's degree in Computer Science, Information Technology, Cybersecurity, Engineering, or a related discipline required; Master's degree preferred. Certifications preferred: CISSP, Microsoft security or endpoint certifications, CrowdStrike, SentinelOne, Tanium, Jamf, cloud security certifications, or equivalent demonstrated expertise. Advanced training or demonstrated expertise in endpoint protection, EDR/XDR, endpoint management technologies, Windows and Linux security, OS hardening, application control, endpoint telemetry, and security automation preferred. Qualifications & experience Minimum 6 years of enterprise endpoint security engineering experience. Deep hands-on experience with one or more enterprise endpoint security ecosystems such as Microsoft Defender for Endpoint/XDR, CrowdStrike Falcon, SentinelOne, or equivalent technologies. Experience with enterprise endpoint management and security platforms such as Microsoft Intune, Tanium, Jamf, or equivalent technologies. Strong knowledge of securing Windows, macOS, Linux, server, virtual desktop, and mobile operating environments. Experience developing and implementing endpoint hardening standards, CIS Benchmarks, Microsoft Security Baselines, encryption, application/device control, attack-surface reduction, and device security compliance. Experience analyzing endpoint vulnerabilities and misconfigurations and developing scalable remediation or compensating-control strategies. Experience with EDR telemetry, endpoint investigation, forensic artifacts, threat hunting, and supporting cybersecurity incident response. Experience scripting and automating endpoint security functions using PowerShell, APIs, Microsoft Graph, or equivalent technologies. Experience supporting cloud and hybrid enterprise environments and modern endpoint/device management architectures. Working knowledge of Zero Trust principles, NIST CSF, CIS Controls, emerging AI security considerations, and applicable cybersecurity and regulatory requirements. Travel Percentage: 10%
Verified and listed by ActiveJobs. Applications are made directly on Stryker Careers's own career page — we never sit in the middle.