{"id":1992693,"url":"https://alion.io/job/dyson-lead-engineer-endpoint-security","title":"Lead Engineer – Endpoint Security","company":{"id":160,"name":"Dyson","domain":"dyson.com","url":"https://alion.io/company/dyson","size_band":"1001-5000","is_staffing_agency":false,"employer_type":"direct","is_intermediary":false,"listed_via":null,"ats_vendor":"Workday","truth_index":{"grade":"A","score":91,"open_postings":44,"ghost_share":0,"stale_share":0.341,"repost_share":0,"time_to_fill_p50_days":29,"computed_at":"2026-10-08T05:49:30Z"}},"role":"Security","role_family":"Security","seniority":"lead","employment_type":null,"work_mode":"on_site","remote_scope":null,"remote_scope_basis":null,"remote_working_hours":null,"hiring_geo_confidence":"structured","locations":["Kuala Lumpur, Malaysia"],"countries":["MY"],"hiring_countries":[],"hiring_countries_total":0,"salary":null,"salary_estimate":{"min_usd":22000,"max_usd":56000,"period":"year","method":"global_role_cell_scaled_by_country","sample_n":504},"experience_years_min":5,"visa_sponsorship":false,"relocation_package":false,"has_equity":false,"technologies":[{"name":"Linux","optional":false},{"name":"Microsoft Defender","optional":false},{"name":"Windows","optional":false},{"name":"Bash","optional":true},{"name":"CIS Benchmarks","optional":true},{"name":"MITRE ATT&CK","optional":true},{"name":"Platform Engineering","optional":true},{"name":"PowerShell","optional":true},{"name":"Python","optional":true},{"name":"SLI/SLO/SLA","optional":true}],"status":"live","first_seen_at":"2026-10-07T07:24:15Z","employer_posted_date":"2026-10-07","last_verified_at":"2026-10-08T20:55:43Z","board_verified":true,"closed_at":null,"days_open":1,"trust":{"level":"ok","repost_count":null,"flags":[],"days_open":1},"description":"Role Purpose \n As the Endpoint Security Engineer, you are accountable for defining endpoint hardening standards and engineering baseline security controls across all Windows, macOS, and Linux device estates. \nOperating as a hands-on technical lead, you will drive endpoint risk reduction across the enterprise. By configuring advanced EDR/XDR controls, managing device compliance frameworks, and supporting incident response teams, you will ensure end-user devices are continuously defended against modern compromise techniques. \nIn this role, you will lead and manage the following domains: \nEndpoint Hardening & Baselines: Defining, implementing, and enforcing security baselines across Windows, macOS, and Linux fleets. \nEDR/XDR Control Engineering: Managing and tuning Microsoft Defender endpoints and security capabilities. \nDevice Compliance Frameworks: Designing compliance policies that enforce endpoint health prior to granting corporate resource access. \nVulnerability & Posture Reduction: Leading targeted initiatives to mitigate system vulnerabilities, OS flaws, and configuration drift. \nSecurity Reviews & Incident Support: Conducting technical endpoint security reviews and assisting incident response teams during major investigations. \n\nKey Skills & Qualifications\n- Bachelor's degree in Computer Science, Information Technology, Cybersecurity, or a related field (or equivalent practical experience).\n- A minimum of 5-7 years' technical experience in endpoint security engineering, OS hardening, and endpoint management at scale.\n- Deep engineering knowledge of multi-OS security architectures (Windows, macOS, Linux) and cross-platform EDR deployment.\n- Relevant certifications such as Microsoft Certified: Security Operations Analyst Associate (SC-200), GIAC Endpoint Asset Protection (GCED), or CISSP are highly desirable. \nSecurity Expertise & Architecture \nDeep understanding of OS internal security structures (Windows Defender, macOS Security Frameworks, Linux PAM/AppArmor/SELinux) and local attack mitigation controls. \nTooling & Technical Proficiency \nProficiency in Microsoft Defender for Endpoint, Intune, JAMF, Microsoft Security Baselines, CIS Benchmarks, and endpoint management systems. \nRisk Management & Prioritisation \nAbility to prioritize OS-level misconfigurations and endpoint vulnerabilities based on active exploit availability and local device access rights. \nGovernance, Process & Control Design \nExperience designing automated device compliance policies, device health attestation checks, and local privilege management controls. \nService Delivery & Operational Management \nProven ability to manage endpoint security agent coverage, maintain health telemetry across global device estates, and minimize agent conflicts. \nData Analysis, Reporting & Insight \nSkilled in analyzing endpoint telemetry, KQL querying, and generating clear health dashboards for device compliance and security posture. \nStakeholder Management & Influence \nAbility to partner with workplace platform engineering teams to push security updates and baseline policy changes without disrupting end-user productivity. \nThreat Intelligence Integration \nAbility to translate threat intelligence indicators (IoCs) and adversary techniques (MITRE ATT&CK) into tailored endpoint detection and block rules. \nLeadership & Collaboration \nProven ability to lead technical endpoint security workstreams, provide clear remediation directions, and mentor junior operational staff. \nContinuous Improvement & Automation \nExperience driving security automation through script-based remediation (PowerShell, Bash, Python) and unified endpoint management integrations. \nKey Accountabilities & Success Measures\nEndpoint Hardening & Security Baselines \nAccountability: Architect, deploy, and maintain standardized security baselines for all Windows, macOS, and Linux endpoints. \nSuccess Measures: Greater than 98% compliance rate with established OS security baselines across the entire enterprise estate; 100% of managed devices bound by strict compliance and attestation requirements. \nDefender Suite Engineering & Telemetry \nAccountability: Engineer Microsoft Defender capabilities, optimize detection engine rules, and ensure full agent health across all OS platforms. \nSuccess Measures: >99% agent deployment health and active reporting across all connected devices; Dynamic detection policy coverage mapped directly against top MITRE ATT&CK techniques. \nVulnerability & Risk Reduction Initiatives \nAccountability: Drive endpoint risk reduction programs aimed at mitigating configuration flaws, unpatched software, and high-risk local permissions. \nSuccess Measures: Measurable structural reduction in high and critical endpoint security posture gaps; MTTR for critical endpoint configuration drift kept within defined SLA targets.\nDyson is an equal opportunity employer. We know that great minds don’t think alike, and it takes all kinds of minds to make our technology so unique. We welcome applications from all backgrounds and employment decisions are made without regard to race, colour, religion, national or ethnic origin, sex, sexual orientation, gender identity or expression, age, disability, protected veteran status or other any other dimension of diversity.","description_format":"text","description_chars":5271,"description_truncated":false,"requirements":{"experience_years_min":5,"management_years_min":null,"team_size_min":null,"manages_managers":false,"education":{"level":"bachelor","optional":false},"security_clearance":false,"languages":[]},"benefits":[],"hiring_locations":[],"hiring_excludes":[],"relocation_offered":false,"industries":["Endpoint Security","Vulnerability Management","Home Appliances"],"lifecycle":[{"event":"open","at":"2026-10-07T07:24:15Z"}],"visa":[],"liveness":{"score":90,"band":"hot","label":"Hiring now","p_open":1,"p_active":0.903,"p_room":1,"age_days":0,"expected_fill_days":29,"reasons":["conf:1","velocity","win:early","comp:brand"],"computed_at":"2026-10-08T05:49:30Z"},"pay":null,"html_url":"https://alion.io/job/dyson-lead-engineer-endpoint-security","json_url":"https://alion.io/job/dyson-lead-engineer-endpoint-security.json","meta":{"generated_at":"2026-10-09T00:35:24Z","cache_seconds":300,"methodology":"https://alion.io/methodology","terms":"https://alion.io/terms","contact":"https://alion.io/contact","api":"https://alion.io/developers","about":"Alion is a live layer of people, companies and AI agents: who they are, whether they are real and active right now, what they do and how to work with them, readable by people and by agents and paid per call.","catalog":"https://alion.io/catalog.json","usage":{"tier":"crawler","counted_by":"address","units_charged":1,"used_today":807,"day_limit":5000,"remaining_today":4193,"minute_limit":60,"resets_at":"2026-10-10T00:00:00Z"}},"offers":[{"id":"company.slices","title":"One company in depth, by slice","status":"live","price":{"credits":0.02,"usd":0.002,"plus_per_slice":{"credits":0.05,"usd":0.005}},"unit":"per company, plus each slice with data","note":"the employer in depth","call":{"mcp_tool":"get_company","arguments":{"id":160},"rest":"https://alion.io/mcp/rest/get_company?id=160"},"human":"https://alion.io/catalog?offer=company.slices&for=job%2Fdyson-lead-engineer-endpoint-security"},{"id":"market.stats","title":"A market slice: pay, demand and time to fill","status":"live","price":{"credits":1,"usd":0.1},"unit":"per slice","note":"pay, demand and time to fill for this role and place","call":{"mcp_tool":"market_stats"},"human":"https://alion.io/catalog?offer=market.stats&for=job%2Fdyson-lead-engineer-endpoint-security"},{"id":"job.search","title":"Open jobs by role, technology, place, pay and visa","status":"live","price":{"credits":0.02,"usd":0.002},"unit":"per posting in a list","note":"similar open postings","call":{"mcp_tool":"search_jobs"},"human":"https://alion.io/catalog?offer=job.search&for=job%2Fdyson-lead-engineer-endpoint-security"},{"id":"company.verify","title":"Is this company real and active right now","status":"pilot","price":null,"unit":"per company","request":{"url":"https://alion.io/catalog/request","method":"POST","body":"{\"offer\": \"company.verify\", \"for\": \"job/dyson-lead-engineer-endpoint-security\", \"note\": \"what you need it for\"}"},"human":"https://alion.io/catalog?offer=company.verify&for=job%2Fdyson-lead-engineer-endpoint-security"}]}