hirly

JustMarkets

Endpoint & Security Platforms Engineer

Europe

See how you match this job — and similar ones. Free.

Upload your resume and hirly scores it against this role at JustMarkets first, then against similar open jobs, and shows where you fit and why.

PDF or DOCX, up to 12MB. No sign-up to see your matches.

Get past the screening software and onto a recruiter's desk

hirly rewrites your resume for this job — matching the keywords and skills in the posting, moving your most relevant experience to the top, and writing a cover letter to fit. About 30 seconds.

  • Keywords matched to this posting
  • Fit score before you apply
  • Cover letter included

Matched against 2.3M live jobs from 200,000+ employers in 200+ countries.

Tailor my resume for this job →

hirly's read of this role

Seniority
Mid level
Work mode
Remote-friendly
First seen by hirly
28 Sept 2026

Derived automatically from the posting. Upload your resume above to see how the role scores against it.

the posting

We are looking for a hands-on Endpoint & Security Platforms Engineer to build and operate the controls that protect our employee devices and server workloads, working across the full lifecycle from deployment and hardening to troubleshooting, automation, and authorized containment.

This is a chance to influence technical decisions that improve protection without disrupting critical services, and to broaden your engineering skills through hands-on work with security platforms and automation. You will work closely with IT, Infrastructure, Cyber Defense, and data security colleagues to make protection reliable and effective without creating unnecessary friction for users or critical systems.

Responsibilities

Deploy and maintain EDR/XDR agents and endpoint protection policies across Windows, Linux, and macOS workstations and production servers, managing the full agent lifecycle: upgrades, policy tuning, exclusions, and controlled rollback

Resolve agent failures, telemetry gaps, policy conflicts, and performance issues. Coordinate deployments with IT, which provides first-line support, and take ownership of complex security cases

Implement risk-based OS hardening baselines together with application and infrastructure owners: test compatibility, prepare rollback steps, and deploy changes safely across production systems

Operate endpoint DLP controls: maintain agents, implement policies agreed with data security colleagues, and reduce unnecessary blocking without weakening protection

Maintain assigned security platforms (e.g. SIEM), including service health, access configuration, updates, storage, backups, and recovery

Monitor telemetry and control health, investigating stale agents, coverage gaps, and unmanaged systems, and drive fixes through automation and improved runbooks

Support Cyber Defense investigations with endpoint expertise and execute approved containment actions, escalating anything that could disrupt production

Automate recurring administration, validation, and reporting tasks using scripts and APIs, and maintain clear documentation for configurations and procedures

Requirements

4+ years of hands-on experience in endpoint security, infrastructure security, system security, or a related security engineering role

Practical experience deploying and operating an enterprise EDR/XDR or endpoint protection platform across a mixed workstation and server environment

Strong Linux administration skills, plus the ability to support and troubleshoot protection on Windows workstations and servers using logs, services, permissions, network connections, and resource usage

Experience introducing security controls into production, including testing, controlled deployment, and rollback

Experience implementing OS hardening and working with native security controls

Understanding of access-control models, least privilege, endpoint telemetry, file-integrity monitoring, and host-isolation techniques

Ability to automate operational work using at least one scripting language such as Python, Bash, or PowerShell

Clear communication with technical colleagues and system owners, reliable documentation, and the ability to follow issues through to a verified result

Upper-Intermediate English

Fluent Ukrainian

Will be a plus

Experience administering a self-managed Elastic or another SIEM platform

Experience with endpoint DLP solutions or Microsoft Defender

macOS security and device-management tools such as Mosyle, ManageEngine, Ansible, or Puppet

Experience with CIS Benchmarks, DISA STIG, or native OS security controls (SELinux, AppArmor, FileVault, BitLocker, etc.)

Experience supporting a large, distributed fleet of endpoints or servers, ideally in fintech, trading, or another performance-critical environment

Technical education in Information Security, Computer Science, or a related field

We offer

20 paid vacation days per year

10 paid sick leave days per year

Public holidays according to the company’s approved holiday calendar

Medical budget

Remote work

Professional education budget

Language-learning budget

Wellness budget covering gym membership, sports equipment, and related expenses

Original posting on JustMarkets's site ↗

Want this one?

Upload your resume and hirly rewrites it for this job and writes the cover letter — in about thirty seconds, before you sign up.

Tailor my resume for this job