Job Summary
The IT Security Specialist is responsible for administering, monitoring and supporting enterprise endpoint-protection platforms across a large and complex IT environment.
The role focuses on endpoint agent health, malware-definition updates, security-policy implementation, incident troubleshooting and maintaining endpoint-security compliance. The successful candidate should have strong hands-on experience supporting enterprise endpoint-protection solutions in a controlled or security-sensitive environment.
Key Responsibilities
- Administer and support enterprise endpoint-protection management servers and client agents.
- Monitor the security status, connectivity, definition updates and overall health of managed endpoints.
- Investigate and resolve endpoint-protection agent, policy, communication and update-related issues.
- Configure and maintain endpoint-security policies, exclusions, device controls and application controls.
- Monitor endpoints that are operating within restricted, segregated or controlled network environments.
- Ensure endpoint agents and security definitions remain current and compliant.
- Perform agent installation, upgrades, repair and reinstallation activities.
- Investigate malware alerts, suspicious endpoint activities and recurring security issues.
- Work with infrastructure, network, server and security teams to resolve complex incidents.
- Support vulnerability remediation and endpoint-security improvement initiatives.
- Maintain accurate incident, change and problem records in the service-management system.
- Prepare endpoint-compliance, agent-health and security-status reports.
- Support scheduled maintenance, product upgrades and security-platform migration activities.
- Develop and maintain technical documentation, operational procedures and troubleshooting guides.
- Coordinate with product vendors for technical escalations and issue resolution.
- Ensure all activities comply with organisational security, change-management and governance requirements.
Requirements
- Diploma or Degree in Information Technology, Computer Engineering, Cybersecurity or a related discipline.
- Minimum five years of relevant IT infrastructure or security experience, including at least three years of hands-on endpoint-security support.
- Strong experience administering an enterprise endpoint-protection platform such as Symantec Endpoint Protection, Trend Micro, Microsoft Defender for Endpoint, McAfee or an equivalent solution.
- Experience supporting endpoint-security agents across a large enterprise environment.
- Good knowledge of Windows desktops, Windows Server and endpoint-agent troubleshooting.
- Working knowledge of Active Directory, Group Policy, DNS, DHCP and enterprise networks.
- Understanding of malware protection, endpoint hardening, encryption, device control and security-policy management.
- Experience working with incident, problem and change-management processes.
- Ability to analyse logs, identify root causes and resolve complex technical issues.
- Good documentation, communication and stakeholder-management skills.
- Able to work independently and coordinate effectively with infrastructure, security and vendor teams.
- Willing to support maintenance or security activities outside normal working hours when required.
Preferred Qualifications
- ITIL Foundation certification.
- Microsoft, Cisco or cybersecurity-related certifications.
- Experience with Symantec Endpoint Protection Manager or the Trend Micro security suite.
- Experience supporting security systems in a healthcare, government, regulated or restricted-network environment.
- Familiarity with endpoint encryption, vulnerability protection, mobile-device security or endpoint application control.