Endpoint Vulnerability Engineer
Endpoint Vulnerability Engineer
Gurgaon, India, IN
About Foundever:
We are Foundever. Our 150,000 people across the globe connect many of the world’s best-known brands with their customers – 9 million times every day. As a global leader in customer experience (CX) management, we deliver experiences through voice, chat, social media and for 400+ clients, from Fortune 500 companies to startups. We value creativity, collaboration, and a commitment to excellence. Join our team and be part of a culture that fosters growth and advancement.
Job Summary
We are seeking a detail-oriented and technically skilled Endpoint Vulnerability Engineer to support enterprise vulnerability remediation and endpoint security operations. This role is responsible for identifying, prioritizing, and remediating endpoint vulnerabilities using tools such as Tenable, SCCM (System Center Configuration Manager), Group Policy and Intune.
The ideal candidate will have hands-on experience with patch management, vulnerability remediation workflows, compliance monitoring, and endpoint hardening across Windows environments. This position plays a critical role in maintaining our organization’s endpoint security posture and ensuring client compliance with regulatory and security frameworks.
Key Responsibilities
Vulnerability Remediation & Patch Management
- Review and analyze vulnerability scan results from Tenable.
- Validate vulnerabilities and eliminate false positives through investigation and testing.
- Prioritize remediation efforts based on severity, exploitability, and business impact.
- Deploy patches, configuration changes, and software updates using SCCM and other endpoint management tools.
- Perform operating system and third-party application patching across enterprise environments.
- Troubleshoot patch deployment failures and remediation issues.
- Document remediation activities and maintain accurate records for audit and compliance purposes.
Compliance Monitoring & Reporting
- Monitor endpoint compliance against internal security baselines and client contractual standards.
- Track remediation SLAs and ensure vulnerabilities are addressed within defined timelines.
- Generate vulnerability and compliance reports for internal stakeholders and clients.
- Support audit requests by providing remediation evidence and system documentation, and when necessary present proofs to internal and client stakeholders.
- Escalate high-risk vulnerabilities or systemic issues to the Endpoint Vulnerability Manager.
Endpoint Security Operations
- Assist in maintaining endpoint security baselines and configuration standards.
- Identify trends in vulnerability data and recommend proactive improvements.
- Support hardening initiatives across Windows and macOS platforms.
- Validate that newly deployed systems meet security and compliance requirements.
- Assist with automation of remediation tasks using PowerShell or scripting tools.
Tool Administration & Optimization
- Support day-to-day operation of Tenable scanning and reporting activities.
- Assist in maintaining SCCM collections, deployment packages, and patch baselines.
- Optimize patch deployment workflows to improve remediation timelines and success rates.
- Participate in testing and validation of new patching processes or tool enhancements.
Collaboration & Communication
- Work closely with infrastructure teams, Service Delivery, and Operations teams to coordinate remediation activities.
- Provide technical guidance to desktop engineering and support teams regarding vulnerability remediation.
- Clearly communicate remediation status, blockers, and risk exposure to leadership when required.
- Contribute to process documentation and standard operating procedures.
Education & Experience
- 5+ years of experience in endpoint management, vulnerability remediation, and
patch management.
- Experience working in enterprise environments with structured compliance requirements.
Technical Skills
- Hands-on experience with Tenable (or similar vulnerability management tools such as Qualys or Rapid7).
- Strong experience with SCCM for patch deployment, software updates, and endpoint configuration management.
- Knowledge of Windows operating systems.
- Experience with PowerShell scripting for task automation and remediation support.
- Understanding of vulnerability scoring (CVSS), exploitability, and risk-based prioritization.
- Familiarity with CIS Benchmarks, NIST frameworks, or other compliance standards.
Job Segment:
Testing, Engineer, Technology, Engineering