Infrastructure and Endpoint Security Engineer at Devoted Studios. Responsibilities:. . • Design and maintain secure network and infrastructure architecture. • Configure and manage firewalls, VPNs, access controls, and network segmentation. • Secure servers, cloud resources, containers, and virtual machines. • Secure employee workstations and enforce security baselines. • Monitor endpoints and infrastructure for suspicious activity. • Collect, analyze, and correlate security logs. • Detect, investigate, and respond to security incidents. • Perform vulnerability analysis, risk assessment, and remediation. • Conduct system and network hardening. • Develop and deliver internal security trainings and awareness sessions. • Manage and maintain security training platforms and learning content. • Organize phishing simulations and awareness campaigns. • Collaborate with IT, DevOps, Infrastructure, and HR teams. • Complete and review clients security questionnaires and security assessment forms to demonstrate the company’s security posture. • Participate in security and compliance calls with client information security specialists and stakeholders. Monitoring & Incident Response. • Set up and maintain security monitoring and alerting. • Investigate anomalies and security incidents. • Perform root-cause analysis and post-incident reviews. • Improve detection, response, and prevention processes. Security Awareness & Training. • Plan and deliver security awareness programs. • Manage training platforms and user enrollment. • Track training completion and effectiveness. • Continuously improve training materials based on incidents and risks. Nice to have. • Experience with SIEM and SOAR tools. • Experience with MDM solutions. • Knowledge of cloud security (AWS / GCP / Azure). • Experience running phishing simulations. • Familiarity with security frameworks and compliance standards. • Security certifications (optional). Required hard skills. • Strong understanding of network security (LAN, WAN, VPN, firewalls, IDS/IPS, proxies). • Experience securing infrastructure (on-prem, cloud, hybrid environments). • Knowledge of Zero Trust and least-privilege access models. • Experience with endpoint security (EDR, antivirus, disk encryption). • OS security knowledge: Windows, macOS, Linux. • Experience with monitoring and logging systems (endpoints, servers, network traffic). • Understanding of authentication, authorization, IAM. • Experience with security hardening and patch management. • Familiarity with security awareness and training platforms. • Basic scripting skills (Bash, PowerShell, Python). • Understanding of networking protocols (TCP/IP, DNS, HTTP/S). Required soft skills. • Ability to explain security concepts to non-technical users. • Strong communication and presentation skills. • Proactive and security-first mindset. • High attention to detail. • Ability to influence user behavior and promote security culture. Technical Skills. Strong understanding of:. Network security principles. TCP/IP, DNS, HTTP/S, VPNs . Experience with:. Firewalls (hardware or software). Endpoint security / EDR solutions. Monitoring & logging tools. OS security knowledge:. Windows, macOS, Linux. Experience securing:. On-prem infrastructure. Cloud environments (AWS / GCP / Azure — at least one). Security Knowledge. Authentication & authorization mechanisms. Identity and access management (IAM). Security best practices and frameworks. Threat detection and response fundamentals. Knowledge of:. Zero Trust. MDM solutions. Cloud security posture management. Security certifications (e.g., Security+, CEH, CISSP — optional). Company Location: Ukraine.
Infrastructure and Endpoint Security Engineer at Devoted Studios