5 months ago
Hyderābād, IndiaMid Level / Senior
Responsibilities
- Define, implement, and maintain endpoint hardening baselines for Windows, macOS, and Linux using MDM platforms such as Microsoft Intune and JAMF
- Develop and enforce endpoint security policies, standards, procedures, and hardening configurations
- Implement, configure, and maintain EDR, XDR, antivirus, anti-malware, and host-based firewall solutions
- Triage, remediate, contain, and investigate endpoint security incidents, including forensic analysis when needed
- Manage endpoint vulnerability discovery, assessment, remediation, scanning, and patch management
- Design and oversee operating system and application update and security patch deployments
- Develop Python and PowerShell scripts and automation to streamline security operations
- Secure endpoints used for AI development, including access to model weights, training data, and production inference systems
- Implement guardrails for AI tool usage, including prompt injection prevention in local LLM development tools and restricted plugins or add-ons
- Enforce DLP and encryption policies for devices handling sensitive AI training datasets, PHI/PII, and proprietary company data
- Collaborate with IT and Security teams on endpoint-related incidents and security operations
- Interact with compliance teams to remediate gaps identified during compliance findings and controls
Requirements
- 3-5+ years of hands-on experience in endpoint security, cybersecurity engineering, or a similar role
- Deep understanding of Windows and macOS operating systems and enterprise configuration and deployment
- Hands-on experience with Azure Cloud PC, virtual machines, Azure Firewall, and Azure Networking
- Strong Microsoft Intune and JAMF administration experience, including enrollment, upgrades, patches, configurations, and profiles
- Experience defining and assigning endpoint compliance and security policies
- Hands-on experience managing application control, deployment, patching, and upgrades
- Experience with privileged access and threat protection platforms such as CyberArk and BeyondTrust
- Understanding of TCP/IP, IPv4/IPv6, office networking, routing, switching, WAN, Wi-Fi, and network security
- Knowledge of cybersecurity frameworks such as NIST and MITRE, threat intelligence, and incident response methodologies
- Experience with SOC 2 Type 2, HITRUST, and ISO compliance frameworks
- Strong verbal, written, and presentation communication skills, including explaining technical concepts to technical and non-technical audiences
- Ability to participate in an on-call rotation
Benefits
- Comprehensive medical, dental, and vision insurance plans
- 401K plan
- Professional development and continuous learning opportunities
- Flexible work hours and flexible paid time off
- Generous parental leave
- Regular virtual and in-person team activities
- Daily on-site work required at the Truveta office in Hyderabad
About Truveta
Truveta builds a health provider–led data platform that aggregates and de-identifies EHR data from U.S. health systems for research and clinical insights. It sells subscriptions and evidence-generation tools to life sciences companies, health systems, and researchers to support real-world data and regulatory-grade studies. Founded in 2020 and headquartered in the Seattle area, the company is privately held and backed by participating health systems.
