Amach logo

Device Security Engineer

AmachDublin, IrelandToday
Security
Dublin

Description

About us:

Amach is an industry-leading technology driven company with headquarters located in Dublin and remote teams in UK and Europe.

Our blended teams of local and nearshore talent are optimised to deliver high quality and collaborative solutions.

Established in 2013, we specialise in cloud migration and development, digital transformation including agile software development, DevOps, automation, data and machine learning…

As a Device Security Engineer within the Cyber Engineering & Architecture function, you will own the definition, governance and continuous improvement of our customer’s device security posture across devices including endpoints, mobile devices, servers and IoT. This is a hands‑on technical SME role responsible for delivering device security standards, secure‑by‑design architectures, and the engineering and governance of protective and compliance control baselines, in close partnership with IT Infrastructure, Cloud and End User Computing teams. Cross-functional cyber collaboration is also key, managing privileged access and data protection on devices, and supporting incident remediation and root‑cause improvements when needed.

This is a hybrid role, so the successful candidate will be expected to attend the office in Dublin at least once a week.

Required Experience:

  • Minimum of 10 years’ industry experience with at least 5 years in endpoint / device security engineering roles.
  • Hands‑on experience implementing endpoint and mobile device management and security controls e.g., Intune, JAMF, Tanium
  • Hands‑on experience with device security platforms e.g., CrowdStrike, Microsoft Defender
  • Experience partnering with infrastructure, cloud, endpoint operations teams for compliance governance, device lifecycle and support processes.
  • Experience working with managed service providers for shared responsibilities of security management and operations
  • Device security certifications e.g., CISSP, OS or vendor specific certifications
  • Strong understanding of endpoint security architecture, hardening, device compliance and secure configuration management.
  • Ability to translate security requirements into enforceable technical controls and baselines.
  • Strong troubleshooting skills for device security issues and control gaps.
  • Strong communication and stakeholder management skills across IT and business teams.

Key responsibilities & duties include:

  • Own device security policies, standards, and best practices for servers, endpoints and mobile devices, including shared device scenarios.
  • Define, engineer and govern device hardening baselines, compliance requirements, and configuration standards.
  • Management of device security platforms, for engineering and support of security policies, controls and operations, in partnership with managed service providers.
  • Govern device protection and response controls (EDR/AV posture) in partnership with operations teams, ensuring effective coverage and configuration.
  • Define and govern device identity and access requirements (e.g., conditional access readiness, local admin access, endpoint elevated access, device compliance gates) in collaboration with Identity Security.
  • Drive remediation of device security non‑compliances, control gaps and high‑risk configurations, prioritised by business criticality.
  • Act as device security SME during incidents, supporting containment and longer‑term control improvements.
  • Maintain device security blueprints and documentation (baseline builds, exception patterns, shared device secure patterns) to support consistent delivery and audit readiness.
  • Partner with Cyber Defence to ensure endpoint telemetry and detections are aligned to monitoring coverage and response playbooks.
  • Provide guidance to technology teams on secure-by-design device standards for new endpoint builds, images, virtual desktops, and shared device use cases.
  • Support continuous improvement initiatives including automation of compliance enforcement and reporting where feasible.

Desirable skills

  • Experience designing secure patterns for shared devices and frontline/operational device use cases.
  • Knowledge of ransomware protection best practices and endpoint attack techniques.
  • Relevant industry security certifications.
  • Proven engineering and/or architecture experience in at least one other Cyber domain e.g. infrastructure security, network security, identity security 

What’s in it for you: 

  • An opportunity to join a fast-growing company  
  • Options for career advancement 
  • Learning and development opportunities 
  • Flexible working environment
  • Competitive salaries based on experience 

Equal Opportunity Employer:

Amach is an equal opportunity employer and makes employment decisions on the basis of merit. We celebrate diversity and are committed to creating an inclusive environment for all employees. This job description is intended to convey essential responsibilities and qualifications for this role, but it is not an exhaustive list of tasks that an employee may be required to perform.

If you are passionate about driving customer success, advising on strategic solutions, and contributing to product innovation, we would love to hear from you!

Not for you?

Check out all of our open positions in our careers page and follow us on LinkedIn for future opportunities.

P.S. Share this with friends and co-workers! Don't be afraid they'll steal it from you, if you're amazing and smart we'll find a role for you. We are growing fast and we are always looking for talented people.

At Amach, we strive to be an inclusive community of open-minded individuals with different backgrounds and we are committed to fostering, cultivating and preserving a culture of diversity, equity and inclusion. We strongly believe that a diversity of experience and background is essential to create a fulfilling environment and better solutions for our people and our customers. All Amach employees and contractors are expected to honour this policy and act to ensure that every individual is respected in the workplace. 

Your personal data

Amach will process your personal information in accordance with the EU's General Data Protection Regulation (GDPR). We will comply with data protection law and principles, which means that your data will be:

  • Used lawfully, fairly and in a transparent way
  • Collected only for valid purposes and not used in any way that is incompatible with those purposes
  • Relevant to the purposes we have told you about and limited only to those purposes
  • Accurate and kept up to date
  • Kept only as long as necessary for the purposes we have told you about
  • Kept securely

If you would like to contact us about your data, please use the following address: info@amach.com