L2 - Security Engineer (EDR Solutions)
3 semanas atrás
www.hcltech.com
We are HCLTech, one of the world’s largest and fastest growing technology and DSA companies with over 227,000 professionals across 60 countries, driving progress through industry-leading capabilities focused on Digital, Engineering and Cloud.
The driving force behind this work, our people, is a diverse, creative and passionate audience that enables us to continually raise the bar for excellence in our services. We strive to empower each of our professionals to achieve their best, while also striving to help them find their daily inspiration and become the best version of themselves.
Job Title: L2 Security Engineer - EDR Solutions (CrowdStrike, Palo Alto XDR, Microsoft Defender for Endpoint, SentinelOne)
Location: Hybrid, 24x7 Shifts
Job Type: Full-Time (Rotational Shift Model, including weekends and holidays)
Job Summary:
As an L2 Security Engineer, you will be responsible for ensuring the smooth operation of EDR solutions by monitoring platform health, enforcing security policies, and troubleshooting endpoint issues across multiple EDR platforms including CrowdStrike, Palo Alto XDR, Microsoft Defender for Endpoint, and SentinelOne. Your role includes onboarding devices, validating security rules, handling basic policy enforcement issues, and ensuring that all endpoints remain compliant with security baselines. You will assist in resolving connectivity issues, missing telemetry cases, and agent health checks while escalating complex platform-related problems to L3.
Key Responsibilities:
· Ensure endpoints are successfully onboarded to EDR solutions across all platforms (Windows, macOS, Linux, iOS, Android).
· Monitor endpoint connectivity and health status within the EDR portals.
· Validate that security rules, EDR, and antivirus policies are applied correctly.
· Assist in troubleshooting policy conflicts and enforcement issues.
· Investigate and validate EDR alerts, classify threats, and escalate incidents if required.
· Apply basic remediation steps like isolating devices, initiating scans, or triggering automated investigations.
· Identify endpoints not reporting telemetry or experiencing EDR agent failures.
· Perform basic troubleshooting (e.g., restarting services, re-onboarding devices, checking connectivity).
· Escalate complex security incidents and persistent issues to L3.
· Assist in preparing incident summaries and compliance reports for management.
· Ensure endpoints are running the latest security patches and EDR updates.
· Validate compliance with security baselines and recommend corrective actions.
· Collaborate with global SOC, Threat Hunting, and Incident Response teams for critical security incidents.
Required Skills & Knowledge:
· Hands-on expertise in CrowdStrike, Palo Alto XDR, Microsoft Defender for Endpoint, and SentinelOne.
· Ability to analyze malware behaviors, execute incident containment strategies, and escalate threats appropriately.
· Scripting knowledge in PowerShell or Python (preferred).
· Strong analytical, documentation, and communication skills.
Work Environment & Shift Requirements:
· 24x7 support model with rotational shifts (including nights, weekends, and holidays).
· Ability to work in a fast-paced, high-pressure SOC environment.
· Excellent collaboration and coordination with global cybersecurity teams.
Preferred Certifications:
· CrowdStrike Certified Falcon Administrator (CCFA)
· Palo Alto Networks Certified Cybersecurity Associate (PCCSA)
· Microsoft Certified: Security Operations Analyst Associate (SC-200)
· SentinelOne Certified Administrator
💼 At HCLTech, we don’t just offer jobs — we offer journeys. Join a global team where your work drives innovation, your ideas matter, and your growth is supported every step of the way.
🌟 Why Choose HCLTech?
- Be part of a purpose-led organization with a global footprint
- Collaborate with diverse teams across borders
- Work on cutting-edge technologies in enterprise integration
- Enjoy career mobility, continuous learning, and a culture of inclusion
🚀 Ready to #FindYourSpark and be part of a team that’s #SuperchargingProgress?
📢 Apply now or reach out to learn more about this exciting opportunity
-
IT Security Engineer
3 semanas atrás
Região Geográfica Intermediária do Recife, Brasil Rocket.Chat Tempo inteiroOverview You will report to our Head of Security and join the Security team. On TheOrg you can view the complete structure of our organisation, including information about every team member, hiring managers and the size of each department. The IT Security Engineer plays a key role at the intersection of cybersecurity and IT operations. This position supports...
-
Security Specialist
3 semanas atrás
Recife, Brasil beBeeDataProtection Tempo inteiroJob Overview This role focuses on Data Loss Prevention (DLP) , ensuring sensitive data remains secure. A strong background in cybersecurity and security operations with experience investigating and responding to security events is essential. Familiarity with common data classification categories, including PII, PCI, PHI, and their security implications, is...
-
Security Software Engineer
4 semanas atrás
Recife, Brasil Tecla Tempo inteiro*Native/Bilingual English is required for this role (read/written/spoken)Please upload your CV Resume in English.Monthly salary: $6,000 USDAlong with our partner, we are seeking a security-conscious contract Senior level Software Engineer to help enhance the security posture of their applications. The primary focus of this role is to systematically reduce...
-
Security Specialist
3 semanas atrás
Recife, PE, Brasil beBeeDataProtection Tempo inteiroJob Overview This role focuses on Data Loss Prevention (DLP) , ensuring sensitive data remains secure. A strong background in cybersecurity and security operations with experience investigating and responding to security events is essential. Familiarity with common data classification categories, including PII, PCI, PHI, and their security implications, is...
-
Protective Data Engineer
4 semanas atrás
Recife, Brasil beBeeCybersecurity Tempo inteiroSenior Information Security Engineer This role is responsible for developing and implementing solutions to protect the organization's data and systems from cyber threats. Key Responsibilities: Design and implement Microsoft Purview policies to prevent insider risk management incidents Analyze DLP alerts to identify opportunities for improvement in email...
-
Devops Engineer
Há 6 dias
Recife, Brasil Encora Inc. Tempo inteiroImportant Information Location: Brazil Job Mode: Full-time Work Mode: Work from home Job Summary As a DevOps Engineer, you will make a significant contribution to infrastructure automation, continuous delivery, observability, and security by collaborating closely with cross-functional teams. The DevOps engineer evaluates emerging technologies, promotes...
-
DevOps Engineer
Há 6 dias
Recife, Brasil Encora Inc. Tempo inteiroImportant Information Location: BrazilJob Mode: Full-timeWork Mode: Work from homeJob SummaryAs a DevOps Engineer, you will make a significant contribution to infrastructure automation, continuous delivery, observability, and security by collaborating closely with cross-functional teams. The DevOps engineer evaluates emerging technologies, promotes process...
-
Senior Cloud Solutions Professional
Há 5 dias
Recife, Brasil beBeeCloudEngineer Tempo inteiroJob Opportunity: Cloud Engineer We are seeking a highly skilled Cloud Engineer to join our team. The ideal candidate will have experience in designing and implementing cloud-native solutions, as well as managing and optimizing Azure infrastructure, integrations, and application environments. Main Responsibilities: Develop and manage CI/CD pipelines for...
-
Gcp Cloud Data Engineer
1 semana atrás
Recife, Brasil Bebeedataengineer Tempo inteiroCloud Data Engineering OpportunityWe are seeking a skilled Data Engineer to design and implement data architectures on GCP using services such as BigQuery, Dataflow, Dataproc, Pub/Sub, Cloud Storage, Composer, and others.The ideal candidate will have expertise in building and optimizing scalable, high-performance ETL/ELT pipelines, ensuring data quality,...
-
Protective Data Engineer
3 semanas atrás
Recife, PE, Brasil beBeeCybersecurity Tempo inteiroSenior Information Security Engineer This role is responsible for developing and implementing solutions to protect the organization's data and systems from cyber threats. Key Responsibilities: Design and implement Microsoft Purview policies to prevent insider risk management incidents Analyze DLP alerts to identify opportunities for improvement in email...