Comcast brings together the best in media and technology. We drive innovation to create the world's best entertainment and online experiences. As a Fortune 50 leader, we set the pace in a variety of innovative and fascinating businesses and create career opportunities across a wide range of locations and disciplines. We are at the forefront of change and move at an amazing pace, thanks to our remarkable people, who bring cutting-edge products and services to life for millions of customers every day. If you share in our passion for teamwork, our vision to revolutionize industries and our goal to lead the future in media and technology, we want you to fast-forward your career at Comcast.
Job Summary
The Endpoint Security Engineer Position is responsible for engineering, monitoring, and maintenance of Security Endpoint tools focusing on anti-virus, malware detection that supports endpoint devices in national datacentre and regional locations. The Engineer acts as a key contributor in a complex and crucial environment.
Responsible for the health of Endpoint security systems.
Responsible for the health of mobile security systems.
Responsible to response to tickets relating to Endpoint Security Agents.
Responsible for maintaining and building relationships with stakeholders to minimise the risks to Comcast & Sky.
Job Description
KEY RESPONSIBILITIES
- Deploy, configure, and maintain CrowdStrike Falcon EDR, NGAV, and Threat Intelligence components across enterprise endpoints and servers (Linux)
- Manage CrowdStrike agent lifecycle, including installation, upgrades, health monitoring, and troubleshooting of agent communication or performance issues.
- Perform policy administration like creation, modification, and tuning of prevention, detection, and response policies (HIPS, Firewall, FIM, Device Control, USB control).
- Participate in threat detection and response activities using Falcon Insight, Real-Time Response (RTR), and Threat Graph to investigate and contain suspicious activity.
- Collaborate with SOC and Compliance teams to build and maintain compliance baselines (PCI-DSS, SOX, FedRAMP, CIS) and ensure endpoint configurations adhere to internal policies.
- Use APIs, PowerShell, or Python scripts for automation, reporting, and integration of Falcon data with dashboards and compliance tools.
- Support incident response through IOC hunting, malware analysis, and endpoint containment leveraging Falcon Real-Time Response capabilities.
- Provide technical support and troubleshooting for endpoint protection issues, ensuring timely resolution and minimum downtime.
- Coordinate with CrowdStrike Support and internal engineering teams for escalation, bug fixes, and enhancement requests.
- Maintain up-to-date documentation for endpoint security configurations, standard operating procedures (SOPs), and deployment playbooks.
- Participate in testing and deployment of new CrowdStrike features, ensuring stability and compliance alignment prior to production rollout.
- Generate and review agent health, coverage, and compliance reports, identifying gaps and tracking remediation progress.
- Work closely with infrastructure, compliance, and audit teams to provide necessary reporting and evidence for internal and external audits.
- Collaborate effectively with peers and stakeholders to meet endpoint security objectives and maintain enterprise protection standards.
Skills:
- Strong hands-on experience with CrowdStrike Falcon (EDR/NGAV), including agent deployment, policy configuration, IOC analysis, and troubleshooting.
- Solid Linux administration expertise across RHEL, CentOS, Ubuntu, and Amazon Linux, including package management and system log analysis (syslog, journalctl, audit logs).
- Understanding of file hashes, file reputation analysis, malware behavior, IDS concepts, and endpoint security controls.
- Experience deploying and supporting security agents on Linux servers, including performance monitoring and issue remediation.
- Basic knowledge of containerized environments (Docker/Kubernetes nodes) and associated endpoint security considerations.
- Familiarity with PCI-DSS and SOX compliance requirements, supporting audit reporting and remediation tracking.
- Strong analytical, problem-solving, and communication skills with a proactive and ownership-driven approach.
- Effective Communication, including verbal, report writing & presentations skills in English.
Comcast is an equal opportunity workplace. We will consider all qualified applicants for employment without regard to race, color, religion, age, sex, sexual orientation, gender identity, national origin, disability, veteran status, genetic information, or any other basis protected by applicable law.
Base pay is one part of the Total Rewards that Comcast provides to compensate and recognize employees for their work. Most sales positions are eligible for a Commission under the terms of an applicable plan, while most non-sales positions are eligible for a Bonus. Additionally, Comcast provides best-in-class Benefits to eligible employees. We believe that benefits should connect you to the support you need when it matters most, and should help you care for those who matter most. That?s why we provide an array of options, expert guidance and always-on tools, that are personalized to meet the needs of your reality ? to help support you physically, financially and emotionally through the big milestones and in your everyday life. Please visit the compensation and benefits summary on our careers site for more details.
Education
Bachelor's Degree
While possessing the stated degree is preferred, Comcast also may consider applicants who hold some combination of coursework and experience, or who have extensive related professional experience.
Relevant Work Experience
2-5 Years