Posted on: 06/10/2026
Note : Hyderabad Location & 4 days work from office
Role Overview :
The Senior Endpoint Security Engineer is a hands-on engineering role responsible for designing, building, automating, and operationalizing enterprise endpoint security controls and configuration standards across Inmar's global environment.
The role focuses on endpoint hardening, secure configuration standards, automation, endpoint inventory and control coverage, and global implementation of enterprise endpoint security standards across Windows, macOS, Linux, and supported mobile platforms.
This engineer will translate security requirements into scalable technical solutions using endpoint management platforms, configuration management, scripting, APIs, and automation. The position partners closely with Endpoint Engineering, IT Operations, Infrastructure, Identity, and regional technology teams to ensure security standards are consistently implemented across the enterprise.
Key Responsibilities :
1. Endpoint Hardening & Configuration Engineering :
- Design and maintain enterprise hardening standards for Windows, macOS, Linux, and supported mobile platforms.
- Develop secure configuration baselines aligned with CIS, NIST, and enterprise security requirements.
- Translate security requirements into deployable configurations using Group Policy, MDM, endpoint-management platforms, scripting, and automation.
- Engineer controls to identify and correct configuration drift.
- Test security configurations for effectiveness, compatibility, and scalability before enterprise deployment.
- Integrate security standards into endpoint provisioning and lifecycle-management processes.
2. Automation & Control Engineering :
- Build automation for endpoint configuration, deployment, validation, inventory, and remediation using PowerShell, Python, Bash, APIs, or similar technologies.
- Automate detection and correction of configuration drift and security-control failures.
- Develop reusable tooling and deployment methods that allow endpoint-security standards to scale globally.
- Integrate security controls and validation into endpoint provisioning and management workflows.
- Engineer solutions that replace recurring manual security processes with reliable automation.
3. Endpoint Inventory & Control Coverage :
- Engineer reliable methods for identifying enterprise endpoints and determining their security-management status.
- Automate reconciliation across endpoint-management, security, identity, and asset-management systems.
- Identify unmanaged, incorrectly managed, stale, or improperly configured endpoints and develop scalable methods to correct coverage gaps.
- Build automated validation of required endpoint controls, including management enrollment, security agents, encryption, configuration baselines, and telemetry.
- Improve the accuracy and reliability of endpoint inventory and security-control coverage.
4. Global Endpoint Security Standards & Enablement :
- Establish technical endpoint-security standards that can be consistently implemented across global locations.
- Develop scalable deployment, configuration, upgrade, and lifecycle-management approaches for endpoint-security controls and agents.
- Evaluate and implement endpoint-security technologies based on security effectiveness, scalability, and manageability.
- Develop repeatable deployment patterns, configurations, automation, and validation tooling for new offices, acquisitions, migrations, and existing environments.
- Partner with regional IT and endpoint teams to address technical or operational constraints affecting implementation.
- Provide technical guidance to teams implementing enterprise endpoint-security standards.
- Ensure new endpoint technologies have defined security configurations and implementation standards before broad adoption.
Required Qualifications :
- 7 - 10+ years of experience in security engineering, endpoint engineering, systems engineering, or infrastructure security.
- Strong hands-on experience designing and implementing enterprise endpoint hardening and secure configuration standards.
- Deep knowledge of Windows, macOS, and Linux security and hardening.
- Strong experience with Group Policy, MDM, endpoint-management platforms, EDR/XDR technologies, encryption, and host-based security controls.
- Working knowledge of CIS Benchmarks, NIST guidance, and enterprise hardening practices.
- Strong scripting and automation experience using PowerShell, Python, Bash, APIs, or similar technologies.
- Experience engineering solutions for configuration management, configuration drift, endpoint inventory, and security-control coverage.
- Experience deploying endpoint-security controls across large, distributed environments.
- Strong troubleshooting and problem-solving skills.
- Ability to translate security requirements into scalable technical solutions.
Preferred Qualifications :
The following qualifications are preferred but are not required unless specifically identified as essential for the position.
- Advanced experience with enterprise endpoint-management, MDM, EDR/XDR, or configuration-management platforms.
- Experience automating configuration deployment, validation, drift detection, inventory reconciliation, and remediation.
- Experience integrating security controls into automated endpoint provisioning.
- Experience with version-controlled configuration or infrastructure-as-code practices.
- Experience supporting globally distributed endpoint environments, acquisitions, integrations, or large-scale endpoint migrations.
- Relevant certifications such as CISSP, GIAC, Microsoft security certifications, or comparable technical certifications.
Success Profile :
The successful candidate will be :
- A highly technical, hands-on security engineer who can move comfortably between architecture and implementation.
- Capable of independently assessing endpoint environments and driving remediation.
- Comfortable operating across traditional enterprise infrastructure and modern cloud platforms.
- Skilled at translating enterprise security requirements into practical, scalable engineering controls.
- Strong in automation and interested in replacing repetitive operational processes with engineered solutions.
- Effective at collaborating with Security, IT, Network, Cloud, and application engineering teams.
- Comfortable working in fast-paced, evolving, globally distributed environments.
Why This Role Is Exciting :
- Direct influence over enterprise endpoint security architecture.
- Broad technical exposure spanning enterprise endpoints, security architecture, automation, and monitoring.
- Design and implement endpoint hardening standards and controls that directly improve the security of Inmar's global endpoint environment.
- Own solutions from technical design through automation, deployment, and validation.
- Build tooling that replaces manual processes, prevents configuration drift, and improves endpoint inventory and control coverage.
Did you find something suspicious?
Posted by
Posted in
CyberSecurity
Functional Area
IT Security
Job Code
1676879