Full-Time Senior Endpoint Security Engineer
Clover Health is hiring a remote Full-Time Senior Endpoint Security Engineer. The career level for this job opening is Senior Manager and is accepting USA based applicants remotely. Read complete job description before applying.
Clover Health
Job Title
Posted
Career Level
Career Level
Locations Accepted
Salary
Share
Job Details
We are seeking a highly skilled Senior Endpoint Security Engineer to join our Information Security team.
This role will be primarily responsible for managing and enhancing the protection of our endpoint and perimeter defenses through platforms including SentinelOne EDR/XDR, Cloudflare WAF, and our enterprise SIEM solution.
You will work closely with IT Systems Engineering, Compliance, and Application Owners across the enterprise to ensure robust and adaptive security controls, policy enforcement, and real-time threat response in a regulated healthcare environment.
As a Senior Endpoint Security Engineer, you will:
- Own and maintain the configuration and lifecycle management of SentinelOne EDR/XDR platform across all endpoints.
- Administer and tune policies in Cloudflare WAF to protect external-facing applications from OWASP Top 10 threats and targeted attacks.
- Manage and optimize SIEM platform integrations, log sources, parsing rules, alert logic, and storage.
- Design and implement custom detection rules, behavioral policies, and threat intelligence feeds for SentinelOne and SIEM.
- Monitor and triage real-time alerts from EDR/XDR, WAF, and SIEM.
- Coordinate with IT and application owners to validate findings, assess impact, and drive containment or mitigation activities.
- Conduct detailed investigations of valid security events and incidents using forensic and log analysis techniques.
- Draft and deliver post-incident reports, including timeline of events, root cause analysis, containment/remediation steps, and lessons learned.
- Work closely with IT Systems Engineering on endpoint hardening, policy enforcement (GPO/MDM), and software deployment strategy.
- Partner with GRC to support audit readiness and maintain alignment with HIPAA, HITRUST, and NIST CSF requirements.
- Support DevOps and business teams in secure application delivery and infrastructure security reviews.
- Proactively enhance detection logic and reduce false positives through continuous tuning.
- Develop automated workflows and playbooks to streamline response using SOAR or scripting where applicable.
- Assist in the development of security standards, SOPs, and hardening guides within the Endpoint Security area of ownership.