Qualifications
Key Responsibilities:Oversee and manage endpoint detection and response solutions, including Microsoft Defender for Endpoint, CrowdStrike Falcon, and SentinelOne. Configure security policies, manage exclusions, triage alerts, and conduct proactive threat hunting. Administer next-generation antivirus and exploit protection features, such as Attack Surface Reduction (ASR) and Controlled Folder Access. Configure Windows Defender Firewall, web filtering, and device control policies (e.g., USB restrictions). Implement application control through AppLocker and Windows Defender Application Control (WDAC). Apply Windows security hardening aligned with CIS Benchmarks and Microsoft Security Baselines. Manage Group Policy (GPO) and ADMX configurations, including local admin restrictions and Windows LAPS. Oversee enterprise device lifecycle using platforms such as Microsoft Intune, Microsoft Endpoint Configuration Manager (SCCM/MECM), Jamf (macOS), and Workspace ONE. Support device provisioning, enrollment workflows, and Windows Autopilot deployments. Manage patching through Windows Update for Business, WSUS, and SCCM. Deploy and maintain updates for third-party applications such as Google Chrome, Java, and Adobe Acrobat. Package and deploy applications using formats like MSI, MSIX, and Win32 via scripting or management tools. Collaborate with identity services, including Active Directory and Microsoft Entra ID. Configure Conditional Access and device compliance policies. Manage endpoint security features, including BitLocker disk encryption and recovery processes. Implement credential protection mechanisms such as Credential Guard and LSASS protection. Support certificate-based authentication utilizing PKI fundamentals for device, Wi-Fi, and VPN authentication. Analyze endpoint telemetry from Windows Event Logs, Sysmon, and Microsoft Defender advanced hunting. Assist in incident response activities, including host isolation, artifact collection, scanning, containment, and remediation.
About the job
Join Help AG as a System Security Engineer, where you will play a crucial role in safeguarding our digital landscape. You will oversee advanced endpoint security technologies, including EDR/XDR platforms, endpoint management, OS hardening, and security monitoring. Your responsibilities will include implementing robust security controls, managing device compliance, supporting incident response efforts, and automating security operations leveraging tools such as Microsoft Defender, Intune, and PowerShell.
About Help AG
Help AG is a leading cybersecurity solutions provider committed to delivering innovative and effective security measures. With a strong presence in the Middle East, we empower organizations to protect their digital assets and ensure business continuity.