L3 - Security Engineer (EDR Solutions)

3 semanas atrás


Índio do Brasil HCLTech Tempo inteiro

www.hcltech.com

We are HCLTech, one of the world's largest and fastest growing technology and DSA companies with over 227,000 professionals across 60 countries, driving progress through industry-leading capabilities focused on Digital, Engineering and Cloud.

The driving force behind this work, our people, is a diverse, creative and passionate audience that enables us to continually raise the bar for excellence in our services. We strive to empower each of our professionals to achieve their best, while also striving to help them find their daily inspiration and become the best version of themselves.

Job Title: L3 Security Engineer - EDR Solutions (CrowdStrike, Palo Alto XDR, Microsoft Defender for Endpoint, SentinelOne)

Location: Hybrid, 24x7 Shifts

Job Type: Full-Time (Rotational Shift Model, including weekends and holidays)

Job Summary:

As an L2 Security Engineer, you will be responsible for ensuring the smooth operation of EDR solutions by monitoring platform health, enforcing security policies, and troubleshooting endpoint issues across multiple EDR platforms including CrowdStrike, Palo Alto XDR, Microsoft Defender for Endpoint, and SentinelOne. Your role includes onboarding devices, validating security rules, handling basic policy enforcement issues, and ensuring that all endpoints remain compliant with security baselines. You will assist in resolving connectivity issues, missing telemetry cases, and agent health checks while escalating complex platform-related problems to L3.

Key Responsibilities:

· Ensure endpoints are successfully onboarded to EDR solutions across all platforms (Windows, macOS, Linux, iOS, Android).

· Monitor endpoint connectivity and health status within the EDR portals.

· Validate that security rules, EDR, and antivirus policies are applied correctly.

· Assist in troubleshooting policy conflicts and enforcement issues.

· Investigate and validate EDR alerts, classify threats, and escalate incidents if required.

· Apply basic remediation steps like isolating devices, initiating scans, or triggering automated investigations.

· Identify endpoints not reporting telemetry or experiencing EDR agent failures.

· Perform basic troubleshooting (e.g., restarting services, re-onboarding devices, checking connectivity).

· Escalate complex security incidents and persistent issues.

· Assist in preparing incident summaries and compliance reports for management.

· Ensure endpoints are running the latest security patches and EDR updates.

· Validate compliance with security baselines and recommend corrective actions.

· Collaborate with global SOC, Threat Hunting, and Incident Response teams for critical security incidents.

Required Skills & Knowledge:

· Hands-on expertise in CrowdStrike, Palo Alto XDR, Microsoft Defender for Endpoint, and SentinelOne.

· Ability to analyze malware behaviors, execute incident containment strategies, and escalate threats appropriately.

· Scripting knowledge in PowerShell or Python (preferred).

· Strong analytical, documentation, and communication skills.

Work Environment & Shift Requirements:

· 24x7 support model with rotational shifts (including nights, weekends, and holidays).

· Ability to work in a fast-paced, high-pressure SOC environment.

· Excellent collaboration and coordination with global cybersecurity teams.

Preferred Certifications:

· CrowdStrike Certified Falcon Administrator (CCFA)

· Palo Alto Networks Certified Cybersecurity Associate (PCCSA)

· Microsoft Certified: Security Operations Analyst Associate (SC-200)

· SentinelOne Certified Administrator

Equality & Opportunity for All

Representing 165 nationalities worldwide, we are proud to be an equal opportunity employer committed to providing equal employment opportunities to all applicants and employees without regard to race, religion, sex, color, age, national origin, pregnancy, sexual orientation, disability or genetic information, or any other protected classification, in accordance with federal, state and/or local laws

At HCLTech, we don't just offer jobs — we offer journeys. Join a global team where your work drives innovation, your ideas matter, and your growth is supported every step of the way.

Why Choose HCLTech?

- Be part of a purpose-led organization with a global footprint
- Collaborate with diverse teams across borders
- Work on cutting-edge technologies in enterprise integration
- Enjoy career mobility, continuous learning, and a culture of inclusion

Ready to #FindYourSpark and be part of a team that's #SuperchargingProgress?

Apply now or reach out to learn more about this exciting opportunity



  • Brasil HCLTech Tempo inteiro

    We are HCLTech, one of the world's largest and fastest growing technology and DSA companies with over 227,000 professionals across 60 countries, driving progress through industry-leading capabilities focused on Digital, Engineering and Cloud. The driving force behind this work, our people, is a diverse, creative and passionate audience that enables us to...

  • Sr. Solutions Engineer

    1 semana atrás


    Brasil SentinelOne Tempo inteiro

    What are we looking for?As an Enterprise Solution Engineer (Sales Engineer) you will work with prospects and customers aligning their goals and requirements with the SentinelOne offerings. SentinelOne is seeking a security pre-sales engineer with expertise in the "endpoint" space focused on prevention, EDR and Threat Hunting. We need a self-starter who...


  • Brasil L3 Tempo inteiro

    Sobre a vaga:Estamos em busca de um Analytics Engineer Sênior para integrar nossa equipe e atuar de forma estratégica na construção e evolução do Single Source of Truth (SSOT) da empresa.Esse profissional será responsável pelo desenvolvimento, manutenção e otimização de cubos tabulares e modelos semânticos em ambiente Power BI, garantindo dados...


  • Índio do Brasil LanceSoft, Inc. Tempo inteiro

    We're Hiring | Mobile Test Automation Engineer (Remote)Role: Mobile Test Automation Engineer Work Mode: Remote Level: L3 (10+ years of experience) Key Skills Required:Native mobile application automation (iOS & Android)Strong hands-on experience with AppiumCloud device farm testing (LambdaTest, BrowserStack)API testing expertiseExperience using Charles Proxy...


  • Índio do Brasil AllianceIT Inc Tempo inteiro

    This is a remote position to work from LATAM collaborating with US clients. We offer:100% Remote Work$21 USD per hourTitle: Customer Success EngineerAs a Customer Success Engineer within the LATAM SASE team, you will be part of a business-critical capability to enable our customers' secure environments across the LATAM region. You act as their day-to-day...

  • Reverse Engineer

    2 semanas atrás


    Índio do Brasil MrScraper Tempo inteiro

    We're Hiring: Reverse Engineer at MrScraper Full-time | Brazil / LATAM Based Brazil, Mexico, Colombia, Argentina Send your CV, portofolio (optional) and expected salary to: hr@penateam.com Subject: [Reverse Engineer (Brazil)] - [Name] Are you passionate about dissecting obfuscated code, uncovering hidden logic, and building clever solutions to tough security...

  • Solutions Engineer

    Há 7 dias


    Brasil Netskope Tempo inteiro

    About NetskopeToday, there's more data and users outside the enterprise than inside, causing the network perimeter as we know it to dissolve. We realized a new perimeter was needed, one that is built in the cloud and follows and protects data wherever it goes, so we started Netskope to redefine Cloud, Network and Data Security.  Since 2012, we have built...

  • Solutions Engineer

    Há 5 dias


    Brasil Netskope Tempo inteiro

    About NetskopeToday, there's more data and users outside the enterprise than inside, causing the network perimeter as we know it to dissolve. We realized a new perimeter was needed, one that is built in the cloud and follows and protects data wherever it goes, so we started Netskope to redefine Cloud, Network and Data Security.  Since 2012, we have built...

  • Sailpoint Developer

    Há 3 dias


    Índio do Brasil Servsys Corporation Tempo inteiro

    Job Title: SailPoint DeveloperJob LocationRemote / Hybrid / Onsite (as applicable)Experience6–10+ years overall IAM experience4–8+ years hands-on SailPoint developmentJob Description SummaryWe are seeking a SailPoint Developer with strong hands-on experience in designing, developing, and implementing Identity and Access Management (IAM) solutions using...

  • IT Security Engineer

    3 semanas atrás


    Região Geográfica Intermediária do Recife, Brasil Rocket.Chat Tempo inteiro

    Overview You will report to our Head of Security and join the Security team. On TheOrg you can view the complete structure of our organisation, including information about every team member, hiring managers and the size of each department. The IT Security Engineer plays a key role at the intersection of cybersecurity and IT operations. This position supports...