SME - Symantec Email Security, Endpoint Security
HCLTech
Responsible for defining, implementing, and continuously improving endpoint security strategy, standards, and controls across enterprise endpoints. The role requires hands-on expertise in endpoint hardening, security policy development, EDR management, vulnerability mitigation, and security governance using Microsoft Intune, SCCM, Microsoft Defender for Endpoint, SentinelOne, and Microsoft security technologies.
Job Responsibilities :
Define and maintain endpoint security standards, hardening baselines, and device protection policies aligned with industry best practices and security frameworks. Design and implement endpoint and browser hardening controls across Windows environments. Lead endpoint security initiatives using Microsoft Intune, SCCM, Defender for Endpoint, and SentinelOne. Evaluate security risks and recommend appropriate controls to improve endpoint posture and reduce attack surface. Develop and enforce security policies covering encryption, privilege management, device compliance, patching, and endpoint protection. Drive vulnerability management programs, including risk assessment, remediation planning, and compliance tracking. Provide technical leadership for endpoint security architecture, security tool optimization, and operational best practices. Support incident response activities, threat investigations, malware containment, and post-incident remediation. Create security metrics, compliance dashboards, standards documentation, and operational runbooks. Automate security controls, monitoring, and reporting using PowerShell and Microsoft Graph. Skill Requirements
Skill Requirement :
Endpoint Security Strategy, Policy Development & Governance Microsoft Intune Security & Compliance Management Microsoft Configuration Manager (SCCM) Microsoft Defender for Endpoint (MDE) SentinelOne or equivalent EDR platform Windows Endpoint & Browser Hardening Security Baselines, CIS Benchmarks, and Best Practices BitLocker, Windows Firewall, Attack Surface Reduction (ASR) Vulnerability Management & Risk Remediation Microsoft Entra ID, Conditional Access, Autopilot PowerShell Automation and Microsoft Graph Threat Detection, Incident Response, and Endpoint Forensics
Other Requirement :
8+ years of experience in Endpoint Security Engineering or Endpoint Security Architecture. Demonstrated experience designing and implementing endpoint security policies, hardening standards, and security controls. Strong background in enterprise endpoint protection, vulnerability management, and security governance. Experience working closely with Security Operations, Infrastructure, Risk, and Compliance teams.
Don't want to miss the next one?
Subscribe to daily email alerts for roles matching your interests.

