GEICO logo
GEICOPosted 3 weeks ago

Endpoint Automation Staff Engineer

$110,000–$230,000 year

On-siteSeattle, Washington, United States or Palo Alto, California, United States

Full TimeSenior LevelBachelors DegreeEnterprise

Job Summary

Administer, maintain, and optimize endpoint security platforms including EDR/XDR, device control, and endpoint management solutions. Develop and maintain security automation workflows to improve detection, response, remediation, and operational efficiency using PowerShell, Python, or Bash. Monitor endpoint security alerts and collaborate with Security Operations teams during investigations and incident response activities. Implement endpoint hardening standards and security baselines for Windows, macOS, Linux, and mobile platforms. Integrate endpoint security tooling with SIEM, ticketing, orchestration, and monitoring platforms. Participate in security assessments, audits, compliance initiatives, and remediation efforts. Troubleshoot and resolve complex endpoint security and automation issues while creating technical documentation and operational procedures. This role supports the Endpoint and Automation Security team at GEICO, one of the largest auto insurers in the United States, focusing on protecting organizational assets through relentless innovation and operational security automation.

Required Qualifications

  • Bachelor's degree in Cybersecurity, Information Technology, Computer Science, or related field, or equivalent work experience
  • 3–5 years of experience in cybersecurity, endpoint engineering, systems administration, or security automation
  • Experience administering endpoint security platforms
  • Experience with scripting or automation using PowerShell, Python, Bash, or similar languages
  • Understanding of endpoint security principles, threat detection, malware defense, and incident response processes
  • Familiarity with Windows and Linux operating systems and enterprise endpoint management
  • Experience working with SIEM or security monitoring platforms
  • Knowledge of vulnerability management tools and remediation processes
  • Strong analytical, troubleshooting, and problem-solving skills
  • Ability to communicate technical concepts effectively to technical and non-technical audiences

Desired Qualifications

  • Familiarity with cloud security technologies in Azure, AWS, or Google Cloud
  • Experience integrating APIs and security tooling
  • Knowledge of Active Directory, Entra ID (Azure AD), and identity security concepts
  • Experience with configuration management tools such as Ansible, SCCM, Intune, Jamf, or Puppet

Hiring someone like this?

Get your role in front of qualified candidates on Sorce.

Get started

Apply to this job in one click with Sorce

Apply on Sorce