Cyber Security Endpoint Engineer

Place of work Chicago
Contract type All types
Start date -
Salary $100,000 - $120,000 a year

Job details

Job description, work day and responsibilities

Salary $100,000-$120,000

The Cyber Security Endpoint Engineer is responsible for implementing and managing endpoint security solutions across the Chicago Transit Authority, including workstations, laptops, mobile devices, and servers. This role focuses on the deployment, configuration, and ongoing maintenance of endpoint protection technologies—such as antivirus, endpoint detection and response (EDR), and encryption tools—to safeguard devices from cyber threats. The engineer ensures consistent application of security policies, actively monitors endpoint health and threat activity, and works closely with IT and security teams to investigate incidents and support compliance across all endpoint platforms.

PRIMARY RESPONSIBILITIES

Deploy, configure, and manage endpoint protection tools (e.g., EDR, NGAV, encryption, host-based firewalls).
Deploy, configure, and manage endpoint remote access tools.
Test endpoint security software to ensure compatibility and proper functionality across multiple operating systems, including Linux, Windows, and macOS.
Monitor endpoint security alerts and logs to identify, analyze, and respond to threats or anomalies.
Administer and maintain endpoint detection & response (EDR) platforms.
Assist to develop and enforce endpoint security policies, including application control, device control, and encryption.
Automate endpoint security tasks using scripting or centralized management tools.
Integrate third-party tools (e.g., SIEM, SOAR, MDM, vulnerability scanners) with endpoint protection platforms.
Assist in evaluating and onboarding new third-party tools for improved endpoint protection and visibility.
Ensure reliable data flow and compatibility between endpoint security tools and enterprise systems through APIs and connectors.
Troubleshoot integration issues between endpoint systems and third-party platforms.
Maintain documentation of endpoint security architecture, configurations, procedures, and incident response activities.
Perform regular assessments of system and endpoint configurations to ensure compliance with security standards and best practices.
Assist in OS and software patch management initiatives for endpoints.
Assist in vulnerability management efforts related to endpoints.
Collaborate with IT Support and desktop engineering teams to ensure secure deployment and maintenance of cyber security endpoint software.
Collaborate with IT and cyber security teams to investigate and remediate endpoint-related incidents.
Researches and analyzes cybersecurity threat indicators and their behaviors for the prevention, detection, containment, and correction of security breaches, and recommends threat mitigation strategies.
Assesses new security technologies to determine potential value for the enterprise.
Performs related duties as assigned.
MANAGEMENT RESPONSIBILITIES

Reporting to this position are the following jobs:

Job Title

N/A

CHALLENGES

Maintaining knowledge of current cyber technology tools, architectures, and trends in a rapidly changing field.
Completing cyber activities requiring the assistance of other teams with competing priorities.

Qualifications

EDUCATION/EXPERIENCE REQUIREMENTS

Bachelor’s degree in information security/cybersecurity, information technology, computer science or related field; including certifications such as CrowdStrike Certified Falcon Administrator or similar, and three to five years of work experience in cyber security endpoint management or related position for large enterprises, or an equivalent combination of education certifications and experience related to the position.

PHYSICAL REQUIREMENTS

Requires remaining in a stationary position for extended periods of time and constantly operating a computer.
May be required to travel to various field locations.
Must be able to lift, maneuver and carry material weighing up to 50 pounds.
KNOWLEDGE, SKILLS, AND ABILITIES
Strong problem-solver that can work autonomously and with others.
Detailed knowledge of Windows, macOS, and Linux operating systems.
Knowledge of file systems, processes, services/daemons.
Knowledge of registry and system logs (especially Windows Event Viewer).
Knowledge of permissions, file integrity, and OS hardening best practices.
Knowledge of EDR, AV, MDM/UEM platforms.
Understanding of scripting (PowerShell, Bash, Python).
Detailed knowledge of Command Line Interface syntax and use.
Knowledge of patch management tools (e.g., SCCM, Intune, WSUS).
Awareness of endpoint vulnerabilities and hardening techniques.
Familiarity with common vulnerabilities (CVEs, CVSS scores).
Understanding MITRE ATT&CK framework as it applies to endpoints
Awareness of NIST, ISO 27001, PCI-DSS, HIPAA, or similar frameworks.
Knowledge of encryption technology, tools, and techniques.
Understanding of TCP/IP, DNS, HTTP/S, VPNs, and how endpoints interact with networks.
Knowledge of network security tools (e.g., firewalls, proxies) as they relate to endpoint communications
Ability to maintain absolute confidentiality of sensitive files, data and materials accessed, discussed, or observed, and while adhering to security policies and procedures.
WORKING CONDITIONS

General office environment.
May be required to travel to various field locations.
Subject to various weather conditions when traveling to and from work locations.
Subject to normal garage, shop, and terminal hazards such as noise, dust, grease, moving vehicles, etc. when working in bus/rail workshops, garages, and terminals.
EQUIPMENT, TOOLS, AND MATERIALS UTILIZED

Personal computer and related software as needed.



Additional Details
Employees and/or union members will be given priority consideration in the hiring process, per the applicable labor contracts.

Final salary will be determined in part by the qualifications of the selected candidate and may be higher or lower than target.

Applicants, if hired,must comply with CTA's residency ordinance.

CTA IS AN EQUAL OPPORTUNITY EMPLOYER

No employee or applicant for employment will be discriminated against because of race, color, creed, religion, sex, marital status, national origin, ****** orientation, ancestry, age, unfavorable military discharge, disability or any other status protected by federal, state, or local laws; except where a bona fide occupational qualification exists We are committed to providing an inclusive environment for our workforce and supporting the communities we serve. CTA will make reasonable accommodations for the known disabilities of otherwise qualified applicants for employment as well as its employees, unless undue hardship would result. If you require an accommodation in the application or hiring process, please contact arc@transitchicago.com prior to the submission of your application or upon notification of your actual test date. CTA will work with you to determine if an accommodation can be provided.

During the hiring process, CTA's Human Resources department will contact candidates with next steps . Failure to respond to these correspondences in a timely fashion may result in your application being closed out for non-responsiveness.

Please click link below to review the benefits offered at the CTA.

https://www.transitchicago.com/hrbenefits/
Primary Location: USA-Illinois-Chicago
Job: Information Technology
Job Posting: Jul 25, 2025, 2:09:27 PM
Position Type: Full-time Permanent (FTP)

Company address

United States
Illinois
Chicago
Show on map Get directions
Company Name: Chicago Transit Authority
You will be redirected to another website to apply.
Offer ID: #1224205, Published: 2 days ago, Company registered: 6 months ago

Other offers

Part-time Faculty, Master of Arts in Sport and Performance Psychology/ MATE Supervisor
1838login
· San Diego, US
Compensation Range: Hourly: $26.63 - $28.89 National University – San Diego, California Part-time Faculty: Master of Arts in Sport and Performance Psychology/MATE Supervisor Location: Remote, USA National University is a...
Principal Engineer - Microsoft 365
1838login
· Marlborough, US
TJX Companies At TJX Companies, every day brings new opportunities for growth, exploration, and achievement. You’ll be part of our vibrant team that embraces diversity, fosters collaboration, and prioritizes your develop...
Starbucks General Manager
1838login
· Cherry Hill, US
General Manager QSR What We Do At Applegreen, we Refresh Travelers on their Journey…. Applegreen USA operates over 80 travel plazas across the Northeast and Midwest that provide convenience, comfort, retail, and an exten...
Shift Supervisor - Chick Fil A
1838login
· Cranbury, US
Shift Supervisor What We Do At Applegreen, we Refresh Travelers on their Journey…. Applegreen USA operates over 80 travel plazas across the Northeast and Midwest that provide convenience, comfort, retail, and an extensiv...
Commercial Sales
1838login
· Colorado Springs, US
Our History Established in 1986, Royalty Roofing has grown with a solid reputation for our roofing work built on providing quality products, installation and service. Much of Royalty’s roof work is driven by a customer’s...
Packaging Operator- Plant 2 (Evening Shift)
1838login
· Macon, US
PRINCIPLE ACTIVITIES: The following lists the principle activities associated with the position of Packaging Operator. Operate paint line equipment according to work instructions Prepare paint solvent mix Examine product...
Analyst II - Stabilized
1838login
· Boston, US
Purpose and Job Summary: Boston Financial, a subsidiary of ORIX Corporation USA, provides innovative capital solutions for affordable housing developers and offers institutional investors the opportunity to achieve compe...
Thursday - Sunday Warehouse Associate
1838login
· Springfield, US
As a Thursday - Sunday Warehouse Associate in Springfield, Missouri, you’ll earn $15.00/hour by picking, packing, and shipping kitchenware orders to our customers. No experience required. We’ll teach you everything you n...
Assistant Manager (03892) - 14200 SW 8th Street, Suite 106
1838login
· Miami, US
Assistant Managers are responsible for cost controls, inventory control, cash control, and customer relations while they are working a shift. What we offer: A safe, rewarding, and fast paced working environment Competiti...
Delivery Driver (03177) - 18505 S Dixie Hwy 1
1838login
· Miami, US
We are focused on developing an inclusive culture, with dignity and respect for all, where team members can grow, thrive and bring their best selves to work every day. The diversity of our workforce is what helps to make...
Associate Relationship Banker - Santa Clara Valley Fair Branch
1838login
You have a passion for helping customers, building relationships, and delivering extraordinary customer service. You’re energetic and enthusiastic as the face of Chase to our retail branch customers. From a personal stan...
U.S. Private Bank - Private Banker - Vice President OR Executive Director
1838login
· Palo Alto, US
We are actively looking for exceptionally talented individuals who are collaborative, confident and motivated to provide a first-class experience to clients within J.P. Morgan’s U.S. Private Bank. If you have an entrepre...
Investment Banking – M&A Healthcare– Associate
1838login
· San Francisco, US
Job Description: As an Associate in M&A Healthcare you will be a key player in our business strategy and execution. You will participate in the "full cycle" of transactional execution including preparing marketing pi...
Delivery Driver (Full time, Part time)
1838login
· Dublin, US
DELIVERED USA INC, has immediate opening for F/T & P/T Permanent Delivery Driver Positions. We are a Seasoned Independent Amazon Delivery Service Partner operating out of the Amazon facility in the beautiful Livermor...
Assistant Manager/Co-Manager
1838login
· Oakland, US
Rainbow USA is recognized as one of the fastest growing junior, kids, plus, and petite, specialty apparel retail chains and has grown to over 1,000 retail stores! We have multiple retail lines that pride themselves on th...