Zelis

Endpoint Security Engineer

Zelis · Hyderabad, Telangana, India

Professional Services · 1,001-5,000 employees

18 h ago
Senior (5-10 yrs) Full-time India
Log in to apply, save this posting, or score it against your profile with AI.

About the role

The Endpoint Security Engineer will design, implement, and optimize security technologies to protect enterprise endpoint and email environments. This role involves tuning detection capabilities, managing XDR platforms, and collaborating with security operations to improve threat response.

What they look for

Endpoint Security CrowdStrike Falcon Microsoft Defender for Endpoint EDR XDR PowerShell Cloud Security Vulnerability Management Zero Trust Intune JAMF SCCM Phishing Protection Email Security Security Architecture Incident Remediation

Requirements

Candidates must have a bachelor's degree in a relevant field and 7–10 years of cybersecurity experience. Proficiency in Microsoft Defender for Endpoint, EDR/XDR platforms, and endpoint management tools like Intune or SCCM is required.

Benefits

Hybrid work flexibility Comprehensive healthcare benefits Financial wellness programs

Full description

About Us 

Zelis is modernizing the healthcare financial experience in the United States (U.S.) across payers, providers, and healthcare consumers. We serve more than 750 payers, including the top five national health plans, regional health plans, TPAs and millions of healthcare providers and consumers across our platform of solutions. Zelis sees across the system to identify, optimize, and solve problems holistically with technology built by healthcare experts – driving real, measurable results for clients.

At Zelis, AI is woven into the fabric of how we work. Every associate is expected - and empowered - to partner with AI to challenge the status quo, accelerate innovation, and amplify their impact. This is a place for builders with a growth mindset who act with agility, embrace change, and use modern technology to shape smarter solutions, exceptional experiences, and the future of our industry for our clients, customers, and our culture.

Why We Do What We Do 

In the U.S., consumers, payers, and providers face significant challenges throughout the healthcare financial journey. Zelis helps streamline the process by offering solutions that improve transparency, efficiency, and communication among all parties involved. By addressing the obstacles that patients face in accessing care, navigating the intricacies of insurance claims, and the logistical challenges healthcare providers encounter with processing payments, Zelis aims to create a more seamless and effective healthcare financial system.

Zelis India plays a crucial role in this mission by supporting various initiatives that enhance the healthcare financial experience. The local team contributes to the development and implementation of innovative solutions, ensuring that technology and processes are optimized for efficiency and effectiveness. Beyond operational expertise, Zelis India cultivates a collaborative work culture, leadership development, and global exposure, creating a dynamic environment for professional growth. With hybrid work flexibility, comprehensive healthcare benefits, financial wellness programs, and cultural celebrations, we foster a holistic workplace experience. Additionally, the team plays a vital role in maintaining high standards of service delivery and contributes to Zelis’ award-winning culture. 

Position Overview

We are seeking an Endpoint Security Engineer to support the design, implementation, and optimization of Cloudstrike or Palo alto or Microsoft security technologies that protect enterprise endpoint and email environments. This role focuses on engineering, configuration, and continuous improvement of Microsoft Defender or any EDR/XDR for Endpoint to strengthen the organization’s cybersecurity posture. The ideal candidate will have hands-on experience implementing security controls, tuning detection capabilities, and partnering with security operations teams to improve threat detection and response

Key Responsibilities

Cloud-First Endpoint Security Expertise

  • Hands-on experience deploying and managing CrowdStrike Falcon, SentinelOne, or comparable XDR platforms within cloud environments.
  • End-to-End Platform Ownership: Proven responsibility for architecture, implementation, integration, daily operations, troubleshooting, upgrades, and ongoing lifecycle support.
  • Engineer and tune policies to detect and prevent phishing, business email compromise (BEC), and malicious attachments.
  • Cloud and Endpoint Ecosystem: Strong experience with AWS, GCP and Azure endpoint-management technologies such as Microsoft Intune, JAMF, SCCM/MECM, or equivalent platforms. 
  • Platform Engineering: Hands-on expertise with agent deployment, policy configuration, version upgrades, performance tuning, exclusion management, troubleshooting, health monitoring, and platform migrations.
  • Configure and optimize email authentication and protection controls such as SPF, DKIM, and DMARC.
  • Partner with Security Operations teams to improve detection rules and remediation workflows.
  • Support attack simulation training campaigns and security awareness initiatives.

Microsoft Defender for Endpoint (Endpoint Security Engineering)

  • Deploy and configure Microsoft Defender for Endpoint capabilities across enterprise endpoints.
  • Implement and manage endpoint security features including:• Endpoint Detection & Response (EDR)
  • Attack Surface Reduction (ASR) rules
  • Web and network protection
  • Device control policies
  • Endpoint vulnerability management
  • Engineer and maintain endpoint security baselines and hardening standards.
  • Tune detection rules and alerts to reduce noise while maintaining strong threat coverage.
  • Assist with investigation and remediation of endpoint security incidents when needed.

Platform Engineering & Security Integration

  • Support automation and response workflows using PowerShell and Microsoft security APIs.
  • Maintain documentation for configurations, engineering standards, and operational procedures.
  • Collaborate with infrastructure, cloud, and identity teams to implement Zero Trust security controls.

Required Qualifications

  • Bachelor’s degree in Cybersecurity, Computer Science, Information Systems, or related field (or equivalent experience).
  • 7–10 years of cybersecurity or security engineering experience.
  • Hands-on experience with:• Microsoft Defender for Endpoint
  • Microsoft 365 Security & Compliance Center
  • Holding an end-to-end implementation experience with endpoint security and EDR/XDR platforms.
  • Experience with endpoint management tools such as Intune, JAMF or SCCM.

Preferred Qualifications

  • Microsoft security certifications (CH, SC-200, SC-300, MS-500, or similar).
  • CrowdStrike Certified Falcon Administrator (CCFA).
  • Experience integrating Cloudstrike, EDR/XDR tools, Microsoft Defender and SentinelOne.
  • Experience with security automation using PowerShell/any other scripting languages.
  • Knowledge of Zero Trust security architecture.
  • Familiarity with vulnerability management tools and processes.

Key Competencies

  • Strong technical problem-solving skills with security mindset
  • Ability to design and improve security configurations to strengthen the endpoint security.
  • Detail-oriented with strong documentation practices
  • Effective collaboration with security operations and infrastructure teams
  • Ability to balance security with operational usability

Commitment to Diversity, Equity, Inclusion, and Belonging

At Zelis, we champion diversity, equity, inclusion, and belonging in all aspects of our operations. We embrace the power of diversity and create an environment where people can bring their authentic and best selves to work. We know that a sense of belonging is key not only to your success at Zelis, but also to your ability to bring your best each day.

Equal Employment Opportunity

Zelis is proud to be an equal opportunity employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, age, sex, national origin, disability status, genetics, protected veteran status, sexual orientation, gender identity or expression, or any other characteristic protected by federal, state or local laws.

Accessibility Support

We are dedicated to ensuring our application process is accessible to all candidates. If you are a qualified individual with a disability and require reasonable accommodation with any part of the application and/or interview process, please email talentacquisition@zelis.com.