05 Aug
|
HCL Technologies
|
Noida
05 Aug
HCL Technologies
Noida
Track Manager - Symantec Email Security, Endpoint Security
Experience: 3 to 6 years
Location: Gautam Buddha Nagar, India
Skills: Trend Micro solutions, Apex One, Deep Security, Endpoint protection, Workload security, Intrusion detection/prevention systems (IDS/IPS), Incident response, Threat analysis, MITRE ATT&CK; framework, Windows environments, Linux environments, Networking fundamentals (TCP/IP, DNS, HTTP/S), SIEM tools, Splunk, Sentinel, QRadar, Basic scripting, PowerShell, Python, Email Security Technologies, Security Operations, Incident Management, Process Optimization, Security Event Analysis, Threat Detection, Remediation Techniques, Mentoring, Team Leadership
Job Summary
This role provides expert leadership in managing and optimizing endpoint protection and email security operations for complex environments. The individual ensures operational excellence, drives continuous process improvements, and empowers support teams to achieve and exceed client service objectives. They are accountable for translating client requirements into actionable solutions while fostering innovation and high performance within the team.
Endpoint Security Engineer Job Summary:
We are seeking an experienced Endpoint Security Engineer to operate, maintain, and optimize our endpoint and workload security platforms based on Trend Micro solutions. This role focuses on incident investigation, platform tuning, and improving detection capabilities across endpoint and server environments.
Key Responsibilities:
• Operate and support Trend Micro solutions, including:
• Apex One (endpoint protection)
• Deep Security (workload/server security)
• Monitor, analyze, and respond to endpoint and server security alerts
• Perform incident triage, investigation, and root cause analysis
• Tune and optimize:
• Security policies
• Intrusion prevention (IPS) rules
• Anti-malware and integrity monitoring settings
• Support threat hunting activities using endpoint and server telemetry
• Manage agent deployment, upgrades, and health monitoring
• Administer and maintain Deep Security components (agents, managers, policies)
• Collaborate with SOC and infrastructure teams on escalations
• Support SIEM integrations and log analysis
• Maintain documentation, runbooks, and operational procedures
• Contribute to continuous improvement of detection and response capabilities
Required Skills & Qualifications:
• 3–6 years in cybersecurity or endpoint/workload security operations
• Hands-on experience with Trend Micro solutions: Apex One, Deep Security
• Valuable understanding of:
• Endpoint protection and workload security concepts
• Intrusion detection/prevention systems (IDS/IPS)
• Incident response and threat analysis
• Familiarity with:
• MITRE ATT&CK; framework
• Windows and Linux environments
• Networking fundamentals (TCP/IP, DNS, HTTP/S)
• Experience with SIEM tools (Splunk, Sentinel, QRadar, etc.)
• Basic scripting (PowerShell/Python) is a plus
Key Deliverables / KPIs:
• Timely and accurate incident triage and resolution
• Improved policy effectiveness and reduced false positives
• Endpoint and server agent health and coverage
• Contribution to security posture improvements
• Quality of documentation and operational support
Role Expectations:
• Works independently on day-to-day operational activities
• Handles moderately complex endpoint and workload security incidents
• Contributes to policy tuning and platform optimization
• Escalates advanced or highly complex investigations when required
• Collaborates effectively with cross-functional security and IT teams.
Key Responsibilities
1. Manage Symantec Endpoint Protection and EDR operations by monitoring security events, analyzing incidents, and ensuring timely remediation to maintain robust endpoint security across client environments.
2. Lead implementation and optimization of Email Security solutions, identifying emerging threats and deploying advanced protection measures to safeguard organizational communications.
3. Oversee and improve operational processes using Symantec management tools, ensuring effective incident response, system health monitoring, and compliance with security policies.
4. Mentor support teams on the use of Symantec Endpoint Protection and EDR platforms, fostering best practices for threat detection, response, and reporting.
5. Collaborate within the team to assess client security requirements, customize Symantec and EDR solutions, and ensure consistent delivery of agreed service levels.
6. Drive process innovation by evaluating new Symantec features and EDR capabilities, recommending enhancements to improve efficiency, security posture, and incident management workflows.
7. Provide expert guidance in troubleshooting complex security incidents, leveraging advanced Symantec and EDR functionalities to resolve issues and mitigate risks.
Other Requirements
• Symantec Certified Specialist (SCS) – Symantec Endpoint Protection (optional but valuable)
• Certified Information Systems Security Professional (CISSP) (optional but valuable)
📌 Track Manager Symantec Email Security, Endpoint Security (Noida)
🏢 HCL Technologies
📍 Noida