Procter & Gamble Logo

Procter & Gamble

Senior Endpoint Security Engineer

Posted 26 Days Ago
Be an Early Applicant
Remote
Hiring Remotely in Office, Machaze, Manica
Senior level
Remote
Hiring Remotely in Office, Machaze, Manica
Senior level
Lead endpoint threat modeling, detection engineering, and security automation across Windows, macOS, Linux, and Cloud/OT environments. Build behavioral detection rules, virtual patching workflows, configuration drift remediation, and SOAR containment playbooks. Integrate endpoint telemetry, asset graphs, generative AI threat intelligence, and APIs to prioritize vulnerabilities, reduce alert fatigue, accelerate response, and improve SOC efficiency. Collaborate with DevOps, infrastructure, business technology, system administration, and security teams.
The summary above was generated by AI

Job Location

MANILA NET PARK OFFICE

Job Description

At P&G, your career is built to scale with our iconic brands like Ariel®, Safeguard ®, Tide ®, Head & Shoulders®, Old Spice®, and Vicks®.
 

Ready to join the team that powers our iconic brands? Here’s what you’ll be doing:

Senior Endpoint Security Engineer to lead our next-generation endpoint threat modeling and endpoint security automation program. In this role, you will be the primary technical engineer responsible for shifting our security posture from reactive vulnerability patching to proactive, data-driven threat modeling and machine-speed defense.
 

You will bridge the gap between deep endpoint telemetry, generative AI threat intelligence, and automated orchestration. By mapping complex multi-stage attack chains across Windows, macOS, Linux, and Cloud/OT host environments, you will design automated SOAR playbooks, virtual patching workflows, and behavioral detection rules that neutralize advanced AI-driven exploits before they materialize. You will also be the key automation engineer that will eliminate operational toil, drive endpoint security and SOC team efficiency, and build a cyber-resilient organization.

Key Responsibilities:

  • Proactive & Continuous Threat Modeling & Detection Engineering: Architect living, data-driven threat models and dynamic attack path diagrams by integrating live asset graphs, identity trust boundaries, deep endpoint telemetry (EDR/XDR), and Generative AI threat intelligence across Windows, macOS, Linux, and Cloud/OT fleets; use these models alongside frameworks like MITRE ATT&CK to author high-fidelity behavioral detection rules (CrowdStrike Query Language (CQL), Sigma, and YARA to block multi-stage exploit), automated virtual patching workflows, and machine-speed mitigation controls that neutralize zero-days and advanced AI-driven exploits before physical patches are deployed.
  • AI & Predictive Threat Intelligence Integration: Operationalize cutting-edge AI threat intelligence (e.g., Claude/Glasswing research, ExPRT.ai, LLM-generated exploit models) to anticipate emergent adversary playbooks and automatically prioritize reachable, weaponized vulnerabilities.
  • Configuration Drift & Attack Surface Reduction (ASR): Maintain proactive posture control across cross-platform endpoints by enforcing CIS benchmarks, host-based isolation, device control policies, and automated OS security drift remediation.
  • Cross-Functional Collaboration and Continuous Improvement: Partner closely with Business Technical teams, DevOps, Infrastructure, and Security Engineering to integrate endpoint threat models into IT and OT operations without disrupting business productivity.GenAI & Tool Integration: Continually evaluate and integrate emerging GenAI security capabilities and modern APIs to keep the endpoint automation platform ahead of evolving threats
  • Machine-Speed Response & SOAR Automation: Design, test, and deploy automated containment playbooks using SOAR platforms (e.g., Falcon Fusion, Torq, XSOAR) to improve Mean Time to Containment (TTC) for critical systems.
  • Streamline Operations, SOC & Endpoint Efficiency: Architect and implement end-to-end endpoint SecOps automation to eliminate repetitive, high-volume manual tasks, drastically reducing alert fatigue and operational toil and build automated enrichment, triage, and context-gathering pipelines to empower SOC analysts to make faster decisions and focus on high-value threat hunting.

Job Qualifications

1. Hands-On Automation & SecOps Engineering

  • SOAR & Orchestration: Proven technical experience building, testing, and maintaining automated playbooks and containment workflows using SOAR platforms (e.g., Falcon Fusion, Torq, Palo Alto XSOAR).
  • Scripting & API Integration: Strong hands-on proficiency with Python, PowerShell, or Bash to interact with RESTful APIs, automate endpoint pipelines, and eliminate manual SecOps toil.
  • SecOps Optimization: Practical ability to build automated triage, context-gathering, and enrichment tools that lower MTTR/MTTD and reduce alert fatigue for SOC analysts.

2. Endpoint Telemetry & Detection Engineering

  • Multi-OS Internals: Deep engineering familiarity with OS security mechanisms and telemetry parsing across Windows, macOS, Linux, and Cloud/OT host environments.
  • Virtual Patching & Host Defense: Direct experience implementing automated virtual patching, host-based isolation, and policy controls to block zero-day exploits ahead of vendor patches.
  • Rule Authoring & Query Languages: Expert-level skills authoring, testing, and tuning behavioral detection rules using query languages such as CQL (CrowdStrike Query Language), Sigma, YARA, or SPL.

3. Applied Threat Modeling, Posture Control, AI and Predictive TI Integration

  • Technical Threat Modeling: Practical skill in mapping multi-stage attack chains (using MITRE ATT&CK) and building data-driven attack path maps from live asset graphs and EDR/XDR telemetry.
  • Hardening & Drift Remediation: Direct experience implementing CIS Benchmarks, Attack Surface Reduction (ASR) policies, and automated configuration drift fixes across host fleets.
  • AI and Predictive TI Integration: Operationalize cutting-edge AI threat intelligence (e.g., Claude/Glasswing research, ExPRT.ai, LLM-generated exploit models) to anticipate emergent adversary playbooks and automatically prioritize reachable, weaponized vulnerabilities.

4. Technical Cross-Collaboration

  • Cross-Functional Partnership: Strong collaborative working style with hands-on experience pairing directly with Business Technical teams, DevOps, System Administrators, and SOC analysts to roll out endpoint automation without breaking operational workflows.

5. Technical Experience

  • Professional Background: 3+ years of hands-on experience in Endpoint Security, Detection Engineering, SOC Automation, or Systems Operations across multiple OS domains.
  • AI Use: Proficient in leveraging Generative AI tools to enhance cyber defense capabilities and overall endpoint security posture
  • Education & Certifications (Preferred): Bachelor’s degree in Computer Science, Cybersecurity, or equivalent technical experience; practical certifications like SANS/GIAC (GCIH, GCED), CrowdStrike (CCFR/CCFA), or Python/Automation credentials.

Scale your career with P&G

We provide avenues to scale your expertise and technological proficiency.
 

As an experienced hire, you are empowered to scale your impact and go beyond being a developer with opportunities to lead, guide, and collaborate on transformative projects that power our brands.

We are committed to scale your personal growth alongside the company’s success. Here’s what’s on the table:

  • Performance bonus (STAR program) that rewards managers in light with business results achieved.
  • Thrive at work and your personal life through our flexible work schedule with available work from home arrangements.
  • Your well-being is non-negotiable and supported by health insurance, fitness support, and an Employee Assistance Program.
     

Learn more about what’s in store for you at https://www.pgcareers.com/ph/en/benefits.

About us

We produce globally recognized brands and we grow the best business leaders in the industry. With a portfolio of trusted brands as diverse as ours, it is paramount our leaders are able to lead with courage the vast array of brands, categories and functions. We serve consumers around the world with one of the strongest portfolios of trusted, quality, leadership brands, including Always®, Ariel®, Gillette®, Head & Shoulders®, Herbal Essences®, Oral-B®, Pampers®, Pantene®, Tampax® and more. Our community includes operations in approximately 70 countries worldwide.

Visit http://www.pg.com to know more.

We are an equal opportunity employer and value diversity at our company. We do not discriminate against individuals on the basis of race, color, gender, age, national origin, religion, sexual orientation, gender identity or expression, marital status, citizenship, disability, HIV/AIDS status, or any other legally protected factor.

Job Schedule

Full time

Job Number

R000156399

Job Segmentation

Experienced Professionals

Similar Jobs

Yesterday
Remote or Hybrid
Senior level
Senior level
Big Data • Food • Hardware • Machine Learning • Retail • Automation • Manufacturing
Own the vision, roadmap, architecture, and lifecycle of an AI-powered insights platform using autonomous agents to analyze CPG business data and generate recommendations. Translate commercial needs into agent capabilities, manage backlogs and delivery, define evaluation metrics, drive adoption, and ensure responsible AI, security, privacy, vendor, and budget management.
Top Skills: Agent-To-Agent WorkflowsAgentic AiAi/MlAutogenAWSAzureCrewaiData PipelinesDatabricksGCPGenieLanggraphLlmsModel OrchestrationMulti-Agent OrchestrationUnity Catalog
2 Days Ago
Remote or Hybrid
Entry level
Entry level
Big Data • Food • Hardware • Machine Learning • Retail • Automation • Manufacturing
Lead the o9 data enablement program across AMEA and MEU, including roadmap delivery, data migration, governance, quality, integrations, reporting, vendor management, and cutover execution. Coordinate business, technical, and external stakeholders; resolve dependencies and blockers; manage testing, reconciliation, go-live command centers, hypercare, and downstream data validation. Translate technical issues into executive recommendations while building reliable analytics practices and teams.
Top Skills: APIsAtaccamaAWSDatabricksETLGCPGenie BiJupyterMySQLO9OraclePower BIPythonQuickRRstudioSnowflakeSQLTableau
5 Days Ago
Remote or Hybrid
200K-225K Annually
Senior level
200K-225K Annually
Senior level
Artificial Intelligence • HR Tech • Software • Business Intelligence
Own the full enterprise sales cycle, including self-generated pipeline development, multi-channel prospecting, discovery, qualification, product demonstrations, forecasting, and deal closure. Build trusted relationships with compensation and total rewards leaders, quantify business pain, and collaborate with Marketing, Partnerships, and Insights. The role requires selling technology to large mid-market and enterprise accounts in a lean startup environment.
Top Skills: AIClayHubspotNotionSybill

What you need to know about the San Francisco Tech Scene

San Francisco and the surrounding Bay Area attracts more startup funding than any other region in the world. Home to Stanford University and UC Berkeley, leading VC firms and several of the world’s most valuable companies, the Bay Area is the place to go for anyone looking to make it big in the tech industry. That said, San Francisco has a lot to offer beyond technology thanks to a thriving art and music scene, excellent food and a short drive to several of the country’s most beautiful recreational areas.

Key Facts About San Francisco Tech

  • Number of Tech Workers: 365,500; 13.9% of overall workforce (2024 CompTIA survey)
  • Major Tech Employers: Google, Apple, Salesforce, Meta
  • Key Industries: Artificial intelligence, cloud computing, fintech, consumer technology, software
  • Funding Landscape: $50.5 billion in venture capital funding in 2024 (Pitchbook)
  • Notable Investors: Sequoia Capital, Andreessen Horowitz, Bessemer Venture Partners, Greylock Partners, Khosla Ventures, Kleiner Perkins
  • Research Centers and Universities: Stanford University; University of California, Berkeley; University of San Francisco; Santa Clara University; Ames Research Center; Center for AI Safety; California Institute for Regenerative Medicine

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account