Turnberry Solutions is a consulting firm that focuses on data strategy and intelligence. They are seeking a Security Endpoint Engineer to support and maintain endpoint security platforms, optimize security policies, and collaborate with various teams to enhance security operations.
Responsibilities:
- Support and maintain endpoint security platforms, including Carbon Black and Cortex XDR
- Assist with implementation, administration, and optimization of Cortex XSIAM
- Configure, review, and tune security policies and detection rules
- Partner with the Security Operations Center (SOC) to improve threat detection, investigation, and response workflows
- Support endpoint telemetry integration into centralized security platforms
- Utilize APIs and automation to streamline security operations and reduce manual tasks
- Investigate and resolve endpoint or system performance issues related to security agents and tooling
- Assist with security alert analysis, incident triage, and endpoint containment activities
- Collaborate with infrastructure, security, and operations teams to maintain a secure and stable endpoint environment
- Support ongoing initiatives related to security automation, AI-driven detection, and SOC modernization
Requirements:
- Experience supporting endpoint security or EDR/XDR platforms such as Carbon Black, Cortex XDR, CrowdStrike, SentinelOne, or similar technologies
- Experience working within cybersecurity operations, endpoint security engineering, or SOC environments
- Understanding of endpoint detection and response (EDR) and extended detection and response (XDR) concepts
- Familiarity with security automation, APIs, or scripting
- Experience troubleshooting endpoint security agent or performance-related issues
- Strong analytical and problem-solving skills
- Ability to work cross-functionally with infrastructure and security teams
- Experience implementing or supporting Cortex XSIAM or similar next-generation SIEM/XDR platforms
- Experience with SIEM, security analytics, or security automation technologies
- Familiarity with AI-driven SOC or automated incident response platforms
- Experience supporting enterprise cybersecurity modernization initiatives
- Knowledge of endpoint threat detection, incident response, and security operations best practices