# Lead Engineer – Endpoint Security at Dyson

AI Level 1, AI centrality 0 out of 100. Malaysia - Kuala Lumpur Office.

## Details

- Company: [Dyson](https://jobsbylevel.com/companies/dyson)
- AI level: AI Level 1 (score 0 out of 100)
- Location: Malaysia - Kuala Lumpur Office
- Posted: October 7, 2026
- Apply: https://jobsbylevel.com/go/38c8d5dc-6348-4b7c-81b2-a506e48876a0

## Description

Role Purpose As the Endpoint Security Engineer, you are accountable for defining endpoint hardening standards and engineering baseline security controls across all Windows, macOS, and Linux device estates. Operating as a hands-on technical lead, you will drive endpoint risk reduction across the enterprise. By configuring advanced EDR/XDR controls, managing device compliance frameworks, and supporting incident response teams, you will ensure end-user devices are continuously defended against modern compromise techniques. In this role, you will lead and manage the following domains: Endpoint Hardening & Baselines: Defining, implementing, and enforcing security baselines across Windows, macOS, and Linux fleets. EDR/XDR Control Engineering: Managing and tuning Microsoft Defender endpoints and security capabilities. Device Compliance Frameworks: Designing compliance policies that enforce endpoint health prior to granting corporate resource access. Vulnerability & Posture Reduction: Leading targeted initiatives to mitigate system vulnerabilities, OS flaws, and configuration drift. Security Reviews & Incident Support: Conducting technical endpoint security reviews and assisting incident response teams during major investigations. Key Skills & Qualifications - Bachelor's degree in Computer Science, Information Technology, Cybersecurity, or a related field (or equivalent practical experience). - A minimum of 5–7 years' technical experience in endpoint security engineering, OS hardening, and endpoint management at scale. - Deep engineering knowledge of multi-OS security architectures (Windows, macOS, Linux) and cross-platform EDR deployment. - Relevant certifications such as Microsoft Certified: Security Operations Analyst Associate (SC-200), GIAC Endpoint Asset Protection (GCED), or CISSP are highly desirable. Security Expertise & Architecture Deep understanding of OS internal security structures (Windows Defender, macOS Security Frameworks, Linux PAM/AppArmor/SELinux) and local attack mitigation controls. Tooling & Technical Proficiency Proficiency in Microsoft Defender for Endpoint, Intune, JAMF, Microsoft Security Baselines, CIS Benchmarks, and endpoint management systems. Risk Management & Prioritisation Ability to prioritize OS-level misconfigurations and endpoint vulnerabilities based on active exploit availability and local device access rights. Governance, Process & Control Design Experience designing automated device compliance policies, device health attestation checks, and local privilege management controls. Service Delivery & Operational Management Proven ability to manage endpoint security agent coverage, maintain health telemetry across global device estates, and minimize agent conflicts. Data Analysis, Reporting & Insight Skilled in analyzing endpoint telemetry, KQL querying, and generating clear health dashboards for device compliance and security posture. Stakeholder Management & Influence Ability to partner with workplace platform engineering teams to push security updates and baseline policy changes without disrupting end-user productivity. Threat Intelligence Integration Ability to translate threat intelligence indicators (IoCs) and adversary techniques (MITRE ATT&CK) into tailored endpoint detection and block rules. Leadership & Collaboration Proven ability to lead technical endpoint security workstreams, provide clear remediation directions, and mentor junior operational staff. Continuous Improvement & Automation Experience driving security automation through script-based remediation (PowerShell, Bash, Python) and unified endpoint management integrations. Key Accountabilities & Success Measures Endpoint Hardening & Security Baselines Accountability: Architect, deploy, and maintain standardized security baselines for all Windows, macOS, and Linux endpoints. Success Measures: Greater than 98% compliance rate with established OS security baselines across the entire enterprise estate; 100% of managed devices bound

The description is cut here. Read the full offer: https://jobsbylevel.com/jobs/lead-engineer-endpoint-security-at-dyson-91dc6f

Source: https://jobsbylevel.com/jobs/lead-engineer-endpoint-security-at-dyson-91dc6f

## Cite this page

Level. https://jobsbylevel.com/jobs/lead-engineer-endpoint-security-at-dyson-91dc6f.

Get job alerts: https://jobsbylevel.com/newsletter
