Position Summary
Designs, engineers, integrates, and continuously improves enterprise endpoint security capabilities protecting workstations, servers, mobile devices, and virtual desktop environments. Develops secure endpoint engineering patterns, hardening standards, reference configurations, security telemetry, and technical controls across Windows, macOS, Linux, and mobile platforms. Partners with Security Architecture, Enterprise Architecture, Endpoint and Infrastructure teams, Security Operations, Vulnerability Management, and technology owners to translate cybersecurity requirements into secure, scalable, and operationally supportable endpoint solutions.
This role maintains deep hands-on technical expertise and supports engineering, implementation, verification, and complex troubleshooting of security capabilities, while partnering with appropriate technology and operations teams for routine production administration and lifecycle operations.
What will you do:
- Design, engineer, integrate, and continuously improve enterprise endpoint security capabilities including EDR/XDR, endpoint protection, encryption, application and device control, attack-surface reduction, and device security compliance.
- Develop and maintain secure endpoint engineering standards, hardening baselines, reference configurations, technical documentation, and implementation guidance for Windows, macOS, Linux, servers, virtual desktops, mobile devices, and applicable systems supporting manufacturing environments.
- Partner with Security Architecture and Enterprise Architecture to translate cybersecurity requirements, Zero Trust principles, standards, and risk requirements into implementable endpoint security designs and controls.
- Lead endpoint security engineering for new capabilities, platform changes, migrations, major upgrades, and complex technology initiatives, including development of reference implementations and proofs of concept.
- Perform endpoint security assessments, technical risk analyses, architecture and configuration reviews, and control-effectiveness testing to identify security gaps and recommend scalable improvements.
- Engineer and verify endpoint security telemetry, logging, and integrations supporting Security Operations, Incident Response, and Vulnerability Management.
- Participate in complex cybersecurity investigations and incidents, providing advanced endpoint security and forensic expertise including telemetry analysis, containment design, and verification of endpoint response controls.
- Develop automation using PowerShell, Microsoft Graph APIs, platform APIs, scripting, and enterprise management technologies to improve security consistency, repeatability, verification, and operational efficiency.
- Partner with endpoint management teams to integrate and verify security requirements throughout the device and system lifecycle.
- Evaluate emerging endpoint security technologies, AI-enabled security capabilities, vendor capabilities, and industry practices; conduct technical evaluations and provide recommendations regarding enterprise adoption and applicable compliance requirements.
What you need:
- Bachelor's degree in Computer Science, Information Technology, Cybersecurity, Engineering, or a related discipline required; Master's degree preferred.
- Certifications preferred: CISSP, Microsoft security or endpoint certifications, CrowdStrike, SentinelOne, Tanium, Jamf, cloud security certifications, or equivalent demonstrated expertise.
- Advanced training or demonstrated expertise in endpoint protection, EDR/XDR, endpoint management technologies, Windows and Linux security, OS hardening, application control, endpoint telemetry, and security automation preferred.
Qualifications & experience
- Minimum 6 years of enterprise endpoint security engineering experience.
- Deep hands-on experience with one or more enterprise endpoint security ecosystems such as Microsoft Defender for Endpoint/XDR, CrowdStrike Falcon, SentinelOne, or equivalent technologies.
- Experience with enterprise endpoint management and security platforms such as Microsoft Intune, Tanium, Jamf, or equivalent technologies.
- Strong knowledge of securing Windows, macOS, Linux, server, virtual desktop, and mobile operating environments.
- Experience developing and implementing endpoint hardening standards, CIS Benchmarks, Microsoft Security Baselines, encryption, application/device control, attack-surface reduction, and device security compliance.
- Experience analyzing endpoint vulnerabilities and misconfigurations and developing scalable remediation or compensating-control strategies.
- Experience with EDR telemetry, endpoint investigation, forensic artifacts, threat hunting, and supporting cybersecurity incident response.
- Experience scripting and automating endpoint security functions using PowerShell, APIs, Microsoft Graph, or equivalent technologies.
- Experience supporting cloud and hybrid enterprise environments and modern endpoint/device management architectures.
- Working knowledge of Zero Trust principles, NIST CSF, CIS Controls, emerging AI security considerations, and applicable cybersecurity and regulatory requirements.
Skills Required
- Bachelor's degree in Computer Science, Information Technology, Cybersecurity, Engineering, or a related discipline
- Minimum 6 years of enterprise endpoint security engineering experience
- Hands-on experience with enterprise endpoint security ecosystems such as Microsoft Defender for Endpoint/XDR, CrowdStrike Falcon, SentinelOne, or equivalent
- Experience with enterprise endpoint management and security platforms such as Microsoft Intune, Tanium, Jamf, or equivalent
- Strong knowledge of securing Windows, macOS, Linux, server, virtual desktop, and mobile operating environments
- Experience developing and implementing endpoint hardening standards, CIS Benchmarks, Microsoft Security Baselines, encryption, application and device control, attack-surface reduction, and device security compliance
- Experience analyzing endpoint vulnerabilities and misconfigurations and developing remediation or compensating-control strategies
- Experience with EDR telemetry, endpoint investigation, forensic artifacts, threat hunting, and cybersecurity incident response
- Experience scripting and automating endpoint security functions using PowerShell, APIs, Microsoft Graph, or equivalent technologies
- Experience supporting cloud and hybrid enterprise environments and modern endpoint/device management architectures
- Working knowledge of Zero Trust principles, NIST CSF, CIS Controls, AI security considerations, and applicable cybersecurity and regulatory requirements
- Master's degree
- Certifications such as CISSP, Microsoft security or endpoint certifications, CrowdStrike, SentinelOne, Tanium, Jamf, or cloud security certifications
- Advanced training or demonstrated expertise in endpoint protection, EDR/XDR, endpoint management, operating system hardening, endpoint telemetry, and security automation
Stryker Compensation & Benefits Highlights
The following summarizes recurring compensation and benefits themes identified from responses generated by popular LLMs to common candidate questions about Stryker and has not been reviewed or approved by Stryker.
-
Healthcare Strength — Multiple medical plan options with HSA support and global mental‑health access indicate broad, accessible care. These features materially enhance the overall value of the total‑rewards package.
-
Retirement Support — A meaningful 401(k) company match with potential additional company contribution, alongside an ESPP, supports long‑term savings and wealth building. Documented plan specifics help employees understand eligibility, timing, and vesting mechanics.
-
Parental & Family Support — Paid parental and caregiver leave, adoption and surrogacy assistance, and practical supports like breast milk shipping reflect a comprehensive, family‑friendly approach. These offerings address varied family‑building paths and caregiving needs.
Stryker Insights
What We Do
Stryker is a global leader in medical technologies and, together with its customers, is driven to make healthcare better. The company offers innovative products and services in MedSurg, Neurotechnology, Orthopaedics and Spine that help improve patient and healthcare outcomes. Alongside its customers around the world, Stryker impacts more than 130 million patients annually. More information is available at www.stryker.com. Together with our customers, we are driven to make healthcare better.
Gallery
.png)







