Dyson

Lead Engineer – Endpoint Security

Dyson
Apply
1 day ago
Kuala Lumpur, MalaysiaStaff+

Responsibilities

  • Define, implement, and enforce endpoint hardening standards and security baselines across Windows, macOS, and Linux fleets.
  • Engineer and tune Microsoft Defender endpoint capabilities, EDR/XDR controls, detection rules, and agent health monitoring.
  • Design device compliance policies, health attestation checks, and local privilege management controls.
  • Lead vulnerability and posture reduction initiatives addressing OS flaws, unpatched software, configuration drift, and risky local permissions.
  • Conduct endpoint security reviews and support incident response teams during major investigations.
  • Analyze endpoint telemetry with KQL and produce device compliance and security posture dashboards.
  • Translate threat intelligence indicators and MITRE ATT&CK techniques into endpoint detection and blocking rules.
  • Lead endpoint security workstreams, direct remediation, mentor junior operational staff, and collaborate with workplace platform engineering teams.
  • Drive script-based security remediation and unified endpoint management integrations.

Requirements

  • Bachelor's degree in Computer Science, Information Technology, Cybersecurity, or a related field, or equivalent practical experience.
  • Minimum 5–7 years of technical experience in endpoint security engineering, OS hardening, and endpoint management at scale.
  • Deep knowledge of Windows, macOS, and Linux security architectures and cross-platform EDR deployment.
  • Experience with Microsoft Defender for Endpoint, Intune, JAMF, Microsoft Security Baselines, CIS Benchmarks, and endpoint management systems.
  • Understanding of Windows Defender, macOS Security Frameworks, Linux PAM, AppArmor, and SELinux.
  • Experience designing automated device compliance policies, health attestation checks, local privilege controls, endpoint telemetry, and security automation.
  • Proficiency with KQL and scripting in PowerShell, Bash, and Python.
  • Ability to prioritize endpoint vulnerabilities and misconfigurations based on exploit availability and device access rights.
  • Relevant certifications such as Microsoft Certified: Security Operations Analyst Associate (SC-200), GIAC Endpoint Asset Protection (GCED), or CISSP are highly desirable.
  • Ability to lead technical workstreams, provide remediation direction, mentor junior staff, and influence platform engineering stakeholders.

Tech Stack

BashLinuxmacOSPowerShellPythonWindows

Categories

Dyson

About Dyson

10,000+ employees

Dyson designs and sells consumer appliances and electronics, including bagless vacuum cleaners, air treatment products, haircare tools, hand dryers, lighting, and home robots, for households and commercial settings. The family-owned company was founded in 1993 by Sir James Dyson and has its global headquarters in Singapore, selling through its own stores, online, and major retailers in more than 80 markets.

Contact me