Lead Security Engineer - Platform Engineer - Endpoint Security
On-siteColumbus, Ohio, United States
Job Summary
Design, build, and ship production-quality software across Mac, Windows, Linux, and virtual desktop environments to govern endpoint authentication, binary execution controls, and policy deployment automation. Architect and operate a managed binary allowlisting platform deployed via infrastructure-as-code, generating per-binary rules at application-packaging time. Modernize system policy deployment using GitOps principles to create automated pipelines that scan, grade, and deploy changes in a controlled, auditable manner. Drive technical direction and day-to-day execution for a team managing hundreds of thousands of endpoints, conducting rigorous design and code reviews while mentoring associate engineers. Identify manual, high-overhead processes and architect automation solutions that eliminate operational toil and scale across the firm's endpoint estate. Apply secure development practices throughout the full software development lifecycle to design controls that are tamper-resistant and audit-defensible.
Required Qualifications
- Formal training or certification on security engineering concepts
- 5+ years applied experience
- Advanced proficiency in one or more major programming languages such as Python, Java, JavaScript/TypeScript, Go, Rust, or C++
- demonstrated ability to build and ship production software
- Hands-on enterprise experience managing at least two of the following endpoint platforms: Mac, Windows, virtual desktop infrastructure, or Linux
- Proven experience with containers (Docker, Kubernetes), public cloud platforms, and infrastructure-as-code tooling
- Proficiency across the full software development lifecycle, including CI/CD pipelines, GitOps workflows, and automated testing practices
- Working knowledge of secure development practices with the ability to design, build, and operate controls that are audit-defensible and tamper-resistant
- Demonstrated ability to decompose complex, ambiguous technical problems into clearly scoped, deliverable engineering work
- Experience serving as a technical lead — driving execution, setting technical direction, and mentoring engineers through code reviews — while remaining hands-on in the codebase
Desired Qualifications
- Experience building security-focused or systems-level software on Mac, Windows, or Linux platforms
- Familiarity with endpoint security concepts such as binary allowlisting, proxy and authentication flows, or system policy management
- Experience implementing or evolving security controls within a large, regulated enterprise environment
- Background in banking, financial services, or another highly regulated industry such as insurance or healthcare
- Experience as a full-stack developer in a large enterprise environment, with comfort across both application and infrastructure layers
- Experience responsibly using enterprise-authorized AI capabilities to accelerate development and validation, with strong habits around output validation and data sensitivity
Hiring someone like this?
Get your role in front of qualified candidates on Sorce.