Lead Infrastructure Engineer managing endpoint vulnerabilities and configuration compliance at Truist. Collaborating with engineering and security teams to drive risk reduction and governance.
Responsibilities
Accountable for enterprise governance, risk reduction, and lifecycle oversight of endpoint vulnerabilities and configuration compliance across physical and virtual environments.
Partner across engineering, operations, and security stakeholders to identify, prioritize, remediate, and prevent endpoint security exposures.
Drive risk-based remediation workflows aligned to business impact, exploitability, and fleet exposure.
Validate remediation efficacy and ensure vulnerability closure is auditable and reproducible.
Own Secure Baseline Configuration compliance outcomes for Windows 11 across physical devices and VDI.
Lead or co-lead root cause analysis for recurring endpoint issues and systemic remediation failures.
Leverage Microsoft Endpoint Configuration Manager (SCCM/MECM) to support remediation delivery at scale.
Create and maintain PowerShell automation to reduce manual effort, accelerate remediation, and improve consistency.
Use SQL and relational database concepts to support remediation tracking, compliance analytics, trend analysis, and operational reporting.
Produce clear, structured documentation suitable for audit and cross-team reuse.
Requirements
Bachelor's degree and five years of experience in development or application support or an equivalent combination of education and work experience.
In-depth knowledge in information systems and ability to identify, apply, and implement best practices.
Understanding of key business processes and competitive strategies related to the IT function.
Ability to plan and manage projects.
Ability to solve complex problems by applying best practices.
Ability to provide direction and mentor less experienced teammates.
Ability to interpret and convey complex, difficult, or sensitive information.
Benefits
Medical
Dental
Vision
Life insurance
Disability
Accidental death and dismemberment
Tax-preferred savings accounts
401k plan
Vacation (10 days annual)
Sick days (10 days annual)
Paid holidays
Defined benefit pension plan
Restricted stock units
Deferred compensation plan
Job title
Lead Vulnerability Remediation Engineer – Infrastructure Engineer
Senior Specialist Infrastructure Architect at Baker Hughes focusing on digital transformation and cybersecurity. Responsible for infrastructure architecture and mentoring team members within the organization.
ML Infrastructure Engineer developing Cloud Data Infrastructure to support Assured AI for Autonomy. Designing and developing infrastructure to enhance Bluespace's APNT capabilities.
Senior Data Infrastructure Engineer responsible for modernizing the data platform while optimizing for cost - efficiency and ensuring scalability. Joining a team focused on user - friendly solutions and data accessibility.
Senior Cloud Infrastructure Engineer at InfoTrack executing cloud strategy. Designing, building, and optimizing secure, scalable infrastructure while collaborating with global teams.
Principal Engineer leading design and implementation of secure architectures for Walmart’s AI Security Team. Responsibilities include risk management, capacity planning, and cross - team collaboration.
Communications Desk Infrastructure Engineer responsible for maintaining and troubleshooting APS communication systems. Supporting critical operational and public safety communication needs across Arizona.
Student Assistant in IT Infrastructure Engineering at Liebherr - Hamburg. Supporting network solutions, system configurations and project management tasks.
Infrastructure Architect required for designing a next - gen hosting platform in Kubernetes at Enova Consulting. Collaborating closely with engineers and partners for a hybrid infrastructure solution.
Cloud Infrastructure Engineer ensuring AWS service reliability and performance at Perlego. Collaborating with teams and managing infrastructure in a hybrid working environment.
Senior Infrastructure Engineer designing and building hybrid networks for ICEYE’s satellite operations. Ensuring high - throughput and reliability between ground stations and cloud environments.