Endpoint Security Engineer - Configuration Compliance (INTL LATAM)

Post Date

Dec 04, 2025

Location

Woonsocket,
Rhode Island

ZIP/Postal Code

02895
US
Feb 02, 2026 Insight Global

Job Type

Contract

Category

Security Engineering

Req #

BOS-39b33bac-5c68-4e46-b66d-9ccc51eb76f4

Pay Rate

$16 - $20 (hourly estimate)

Job Description

A large healthcare company is seeking an experienced Endpoint Security Engineer - Configuration Compliance to join its enterprise security team focusing on MSB. The client is over $370Bn in revenue and operates over 9,000 locations. They are dedicated to putting people first from their customers to their employees, engaging with customer feedback to further innovate to provide the best care possible, simplifying processes for care, creating a trusting environment, and to creating the safest and highest quality of care to keep patients protected. The client is dedicated to giving back to those around them. They have stared a Foundation to provide financial support to the communities to help with areas such as maternal health, mental health, scholarships, free health services/screenings, etc.

The Senior Endpoint Security Engineer plays a critical role in defining, implementing, and managing secure policy configuration policies across the organization's IT systems and infrastructure. This role ensures that security policy configurations are aligned with industry best practices and focuses on ensuring compliance with security standards, minimizing security gaps, vulnerabilities, and risk, through configuration management, and supporting organizational goals for a strong security posture. The Senior Endpoint Security Engineer works closely with IT, DevOps, and security teams to enforce secure baselines and automate policy compliance. This role is for process improvement for MSB so going through for the current workflow and each step to ensure proper documentation and solutioning in areas where there are deficiencies. It will be 70% working alongside leadership for improvement and 30% hands-on

Key Responsibilities:
Secure Policy Configuration Management (Hardening)
· Develop, implement, and maintain secure configuration policy framework and baselines for operating systems, databases, applications, and network devices (e.g., firewalls, routers).
· Collaborate with stakeholders to align secure configuration policies with business and compliance requirements.
· Automate configuration scanning, remediation, and validation processes by developing and integrating workflows using tools like Qualys, ServiceNow, and APIs or scripting languages to enhance efficiency and scalability.
· Regularly review and update policies to reflect changes in the threat landscape or regulatory requirements.
· Stay informed of emerging security threats, compliance requirements, and best practices related to secure configurations.
· Implement and maintain tools, processes, and configuration scan templates aligned with policy changes to continuously monitor, detect, and enforce secure configurations (e.g., Minimum Security Baseline scanners, configuration management tools).Conduct security audits and assessments to identify deviations and implement corrective actions.
· Develop and deliver executive-level reports on compliance with configuration policies, including metrics on policy adherence and risk mitigation.
· Lead root cause analysis and remediation efforts for configuration-related security incidents.
Collaboration and Integration
· Work closely with IT, DevOps, and Security Operations teams to ensure secure configuration policies are integrated into system and application lifecycles.
· Partner with compliance and risk teams to ensure configurations meet regulatory standards (e.g., PCI DSS, HIPAA, SOX).
· Provide guidance and support during internal and external audits.
Continuous Improvement and Training
· Promote a culture of security awareness and best practices within the organization.
· Drive automation initiatives to streamline configuration management processes.
· Provide training and resources to ensure teams understand and adhere to secure configuration policies.

Compensation:
$15/hr to $20/hr.
Exact compensation may vary based on several factors, including location, skills, experience, and education.
Employees in this role will enjoy a comprehensive benefits package starting on day one of employment, including options for medical, dental, and vision insurance. Eligibility to enroll in the 401(k) retirement plan begins after 90 days of employment. Additionally, employees in this role will have access to paid sick leave and other paid time off benefits as required under the applicable law of the worksite location.

We are a company committed to creating diverse and inclusive environments where people can bring their full, authentic selves to work every day. We are an equal opportunity/affirmative action employer that believes everyone matters. Qualified candidates will receive consideration for employment regardless of their race, color, ethnicity, religion, sex (including pregnancy), sexual orientation, gender identity and expression, marital status, national origin, ancestry, genetic factors, age, disability, protected veteran status, military or uniformed service member status, or any other status or characteristic protected by applicable laws, regulations, and ordinances. If you need assistance and/or a reasonable accommodation due to a disability during the application or recruiting process, please send a request to HR@insightglobal.com.To learn more about how we collect, keep, and process your private information, please review Insight Global's Workforce Privacy Policy: https://insightglobal.com/workforce-privacy-policy/.

Required Skills & Experience

- 3-5+ years of experience in information security, with a focus on secure configuration management or related areas.
- 5+ years of hands-on experience with Qualys and the Policy Audit module
- background in secure configuration frameworks including CIS Benchmarks and configuration management tools (e.g., Qualys, Rapid7, Tanium).
- 5+ years of strong understanding of operating systems (Windows, Linux, macOS) and network device configurations.
- 5+ years with security architecture awareness.
- Strong grasp of how configuration compliance integrates with vulnerability, asset, and change management systems.
- Strong communication and ability to drive meetings with stakeholders

Nice to Have Skills & Experience

- Proficient knowledge and experience with database query languages (e.g., MySQL, SQL).
- Knowledge of security monitoring and ITSM platforms (e.g., Splunk, ServiceNow, Archer).
- Strong knowledge of compliance standards (e.g., ISO 27001, PCI DSS, HIPAA).
- Experience with system hardening and secure configuration standards/frameworks (e.g., NIST SP 800-53, DISA STIGs).
- Proven ability to diagnose and resolve technical issues within Qualys PC, agent-based systems, and automation framework.
- Qualys Query Language (QQL) for data analysis, validation and reporting.
- Familiarity with scripting languages (e.g., Python, PowerShell, Bash) for automation.
- Certified Information Systems Security Professional (CISSP).
- Certified Information Systems Auditor (CISA).
- CompTIA Security+ or Cybersecurity Analyst (CySA+).
- Qualys Security Configuration Assessment (SCA).

Benefit packages for this role will start on the 31st day of employment and include medical, dental, and vision insurance, as well as HSA, FSA, and DCFSA account options, and 401k retirement account access with employer matching. Employees in this role are also entitled to paid sick leave and/or other paid time off as provided by applicable law.