Honeywell Aerospace Technologies is seeking an Advanced Endpoint Security Engineer to support the design, deployment, and operational effectiveness of cybersecurity technologies. This role will focus on endpoint security architecture and operational security platforms, working closely with Cyber Security Operations, Infrastructure, and Engineering teams.
Responsibilities:
- Design, deploy, and maintain endpoint security technologies and agent-based protection platforms across enterprise and engineering environments
- Support architecture and implementation of Endpoint Detection and Response (EDR) and Extended Detection and Response (XDR) capabilities
- Work with Security Operations teams to improve threat detection, response workflows, and endpoint telemetry visibility
- Engineer and manage endpoint protection agents, host intrusion prevention systems, and device control technologies
- Integrate endpoint security tools with SIEM platforms, log aggregation systems, and security monitoring tools
- Develop and implement endpoint hardening standards, security baselines, and host security configurations
- Participate in incident response investigations involving compromised endpoints and security events
- Assist with vulnerability remediation and endpoint security posture improvements
- Collaborate with IT infrastructure teams to ensure secure endpoint configurations across servers, laptops, and specialized engineering systems
- Contribute to the evaluation and testing of new endpoint security technologies and security operations tooling
- Document security architecture patterns, operational procedures, and deployment standards for endpoint security platforms
Requirements:
- Bachelor's degree from an accredited institution in a technical discipline such as the sciences, technology, engineering or mathematics
- 5+ years of experience in cybersecurity engineering, endpoint security, or security operations
- Hands-on experience deploying or managing endpoint security solutions or EDR platforms
- Experience with security monitoring, incident response, or threat detection
- Bachelor's degree in Cybersecurity, Computer Science, Information Systems, Engineering, or related field
- Experience with endpoint security platforms such as: CrowdStrike Falcon, Microsoft Defender for Endpoint, Carbon Black, SentinelOne, Tanium
- Understanding of endpoint agent deployment, telemetry, and behavioral detection techniques
- Experience integrating endpoint security tools with SIEM platforms such as Splunk or Sentinel
- Knowledge of host-based security monitoring and endpoint hardening practices
- Experience supporting Security Operations Centers (SOC) or security monitoring teams
- Familiarity with threat hunting techniques and endpoint forensics
- Knowledge of cybersecurity frameworks such as NIST, CIS, or ISO 27001
- Cybersecurity certifications such as Security+, CISSP, or GIAC