At CVS Health, we're building a world of health around every consumer and surrounding ourselves with dedicated colleagues who are passionate about transforming health care.
As the nation's leading health solutions company, we reach millions of Americans through our local presence, digital channels and more than 300,000 purpose-driven colleagues - caring for people where, when and how they choose in a way that is uniquely more connected, more convenient and more compassionate. And we do it all with heart, each and every day.
Position Summary The Staff Endpoint Security Engineer will design, implement, and manage advanced security solutions to protect endpoint devices and ensure organizational security posture. This role involves leading efforts to prevent, detect, and respond to security threats targeting endpoint infrastructure, as well as collaborating with cross-functional teams to protect enterprise systems, devices, and data from cyber threats.
Key Responsibilities:
Endpoint Security Engineering: - Design, deploy, and maintain enterprise-level endpoint security tools (e.g., EDR, antivirus, antimalware, etc.).
- Monitor and manage endpoint protection systems to ensure compliance and effectiveness.
- Analyze and respond to endpoint security incidents, providing technical support during investigations.
- Stay current with emerging threats, technologies, and industry trends to continuously improve endpoint security posture.
Endpoint Security Operations - Oversee the design, deployment, and management of endpoint protection platform.
- Lead the deployment, configuration and management of endpoint protection tools and solutions to continuously monitor and enforce preventative policies to protect the security posture of endpoints.
- Monitor security tool agent health to detect reduced functionality mode and remediate root cause to continue protecting against risks and threats.
- Develop, test and deploy preventative policies and strategies for malware detection, remediation, and prevention.
Collaboration and Cross-Functional Partnership - Partner closely with IT, infrastructure, business units, and other stakeholders to ensure endpoint security solutions are effectively integrated and aligned with enterprise architecture.
- Partner with compliance and risk management teams to ensure endpoint security practices meet regulatory requirements.
- Collaborate with Security Operations Center (SOC) and Incident Response teams to investigate alerts and resolve security incidents affecting endpoints.
- Ensure proper logging, alerting, and reporting mechanisms are in place for timely detection and response.
Policy and Governance - Enforce endpoint security policies, standards, and guidelines.
- Conduct regular security assessments and audits to identify and mitigate risks.
- Work closely with compliance, audit, and risk management teams to meet regulatory and policy requirements (e.g., PCI DSS, HIPAA, SOX).
- Generate detailed reports on endpoint security performance, vulnerabilities, and remediation efforts.
Innovation and Continuous Improvement - Drive the adoption of next-generation endpoint security technologies, automation and machine learning capabilities to enhance risk detection and reduce manual efforts.
- Lead initiatives to automate and streamline endpoint security processes for improved efficiency.
- Promote a culture of security awareness, accountability and advocate for a security-first culture across the organization.
Required Qualifications: - 7+ years of experience in cybersecurity, with a focus on endpoint security.
Preferred Qualifications: - Strong understanding of operating systems (Windows, macOS, Linux) and endpoint management platforms (e.g., Microsoft Intune, Jamf).
- Expert proficiency with endpoint security tools (e.g., CrowdStrike, Microsoft Defender, Tanium, Zscaler, Qualys, etc.).
- Proficiency in scripting languages (e.g., Python, PowerShell) for automation and process improvement.
- Familiarity with cybersecurity frameworks and compliance requirements (e.g., PCI, SOX, HIPAA, ISO 27001, GDPR).
- Strong analytical and problem-solving skills.
- Ability to communicate complex technical information to non-technical stakeholders.
- Ability to manage and prioritize multiple projects in a fast-paced environment.
- CISSP (Certified Information Systems Security Professional)
- CISM (Certified Information Security Manager)
- GIAC (Global Information Assurance Certification)
- CCFA (CrowdStrike Certified Falcon Administrator)
Education Bachelor's degree or equivalent experience (High School Diploma and 4 years relevant experience)
Business Overview Bring your heart to CVS Health Every one of us at CVS Health shares a single, clear purpose: Bringing our heart to every moment of your health. This purpose guides our commitment to deliver enhanced human-centric health care for a rapidly changing world. Anchored in our brand - with heart at its center - our purpose sends a personal message that how we deliver our services is just as important as what we deliver. Our Heart At Work Behaviors support this purpose. We want everyone who works at CVS Health to feel empowered by the role they play in transforming our culture and accelerating our ability to innovate and deliver solutions to make health care more personal, convenient and affordable. We strive to promote and sustain a culture of diversity, inclusion and belonging every day. CVS Health is an affirmative action employer, and is an equal opportunity employer, as are the physician-owned businesses for which CVS Health provides management services. We do not discriminate in recruiting, hiring, promotion, or any other personnel action based on race, ethnicity, color, national origin, sex/gender, sexual orientation, gender identity or expression, religion, age, disability, protected veteran status, or any other characteristic protected by applicable federal, state, or local law. We proudly support and encourage people with military experience (active, veterans, reservists and National Guard) as well as military spouses to apply for CVS Health job opportunities.
Pay Range The typical pay range for this role is:
$130,295.00 - $260,590.00
This pay range represents the base hourly rate or base annual full-time salary for all positions in the job grade within which this position falls. The actual base salary offer will depend on a variety of factors including experience, education, geography and other relevant factors. This position is eligible for a CVS Health bonus, commission or short-term incentive program in addition to the base pay range listed above. This position also includes an award target in the company's equity award program.
Our people fuel our future. Our teams reflect the customers, patients, members and communities we serve and we are committed to fostering a workplace where every colleague feels valued and that they belong.
Great benefits for great people We take pride in our comprehensive and competitive mix of pay and benefits - investing in the physical, emotional and financial wellness of our colleagues and their families to help them be the healthiest they can be. In addition to our competitive wages, our great benefits include:
- Affordable medical plan options, a 401(k) plan (including matching company contributions), and an employee stock purchase plan .
- No-cost programs for all colleagues including wellness screenings, tobacco cessation and weight management programs, confidential counseling and financial coaching.
- Benefit solutions that address the different needs and preferences of our colleagues including paid time off, flexible work schedules, family leave, dependent care resources, colleague assistance programs, tuition assistance, retiree medical access and many other benefits depending on eligibility.
For more information, visit
We anticipate the application window for this opening will close on: 05/07/2025
Qualified applicants with arrest or conviction records will be considered for employment in accordance with all federal, state and local laws.
We are an equal opportunity and affirmative action employer. We do not discriminate in recruiting, hiring, promotion, or any other personnel action based on race, ethnicity, color, national origin, sex/gender, sexual orientation, gender identity or expression, religion, age, disability, protected veteran status, or any other characteristic protected by applicable federal, state, or local law.