Jobs and Careers
CV

Staff Endpoint Security Engineer

CVS Health
United Statesfull_timeVerifiedPosted 30 Apr 2025
💰 $260,590/yr($130,295/yr$260,590/yr)

About the role

At CVS Health, we’re building a world of health around every consumer and surrounding ourselves with dedicated colleagues who are passionate about transforming health care.

As the nation’s leading health solutions company, we reach millions of Americans through our local presence, digital channels and more than 300,000 purpose-driven colleagues – caring for people where, when and how they choose in a way that is uniquely more connected, more convenient and more compassionate. And we do it all with heart, each and every day.

Position Summary

The Staff Endpoint Security Engineer will design, implement, and manage advanced security solutions to protect endpoint devices and ensure organizational security posture. This role involves leading efforts to prevent, detect, and respond to security threats targeting endpoint infrastructure, as well as collaborating with cross-functional teams to protect enterprise systems, devices, and data from cyber threats.

Key Responsibilities:

Endpoint Security Engineering:

  • Design, deploy, and maintain enterprise-level endpoint security tools (e.g., EDR, antivirus, antimalware, etc.).

  • Monitor and manage endpoint protection systems to ensure compliance and effectiveness.

  • Analyze and respond to endpoint security incidents, providing technical support during investigations.

  • Stay current with emerging threats, technologies, and industry trends to continuously improve endpoint security posture.

Endpoint Security Operations

  • Oversee the design, deployment, and management of endpoint protection platform.

  • Lead the deployment, configuration and management of endpoint protection tools and solutions to continuously monitor and enforce preventative policies to protect the security posture of endpoints. 

  • Monitor security tool agent health to detect reduced functionality mode and remediate root cause to continue protecting against risks and threats.

  • Develop, test and deploy preventative policies and strategies for malware detection, remediation, and prevention.

Collaboration and Cross-Functional Partnership

  • Partner closely with IT, infrastructure, business units, and other stakeholders to ensure endpoint security solutions are effectively integrated and aligned with enterprise architecture.

  • Partner with compliance and risk management teams to ensure endpoint security practices meet regulatory requirements.

  • Collaborate with Security Operations Center (SOC) and Incident Response teams to investigate alerts and resolve security incidents affecting endpoints.

  • Ensure proper logging, alerting, and reporting mechanisms are in place for timely detection and response.

Policy and Governance

  • Enforce endpoint security policies, standards, and guidelines.

  • Conduct regular security assessments and audits to identify and mitigate risks.

  • Work closely with compliance, audit, and risk management teams to meet regulatory and policy requirements (e.g., PCI DSS, HIPAA, SOX).

  • Generate detailed reports on endpoint security performance, vulnerabilities, and remediation efforts.

Innovation and Continuous Improvement

  • Drive the adoption of next-generation endpoint security technologies, automation and machine learning capabilities to enhance risk detection and reduce manual efforts.

  • Lead initiatives to automate and streamline endpoint security processes for improved efficiency.

  • Promote a culture of security awareness, accountability and advocate for a security-first culture across the organization.

Required Qualifications:

  • 7+ years of experience in cybersecurity, with a focus on endpoint security.

Preferred Qualifications:

  • Strong understanding of operating systems (Windows, macOS, Linux) and endpoint management platforms (e.g., Microsoft Intune, Jamf).

  • Expert proficiency with endpoint security tools (e.g., CrowdStrike, Microsoft Defender, Tanium, Zscaler, Qualys, etc.).

  • Proficiency in scripting languages (e.g., Python, PowerShell) for automation and process improvement.

  • Familiarity with cybersecurity frameworks and compliance requirements (e.g., PCI, SOX, HIPAA, ISO 27001, GDPR).

  • Strong analytical and problem-solving skills.

  • Ability to communicate complex technical information to non-technical stakeholders.

  • Ability to manage and prioritize multiple projects in a fast-paced environment.

  • CISSP (Certified Information Systems Security Professional)

  • CISM (Certified

Apply for this role

Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.

Apply Now →Generate Application Kit

Free account required — sign up in 30s

Company

CVS Health

View company profile →