Skip to main content
Back to Jobs

Head of Endpoint Defense

Lead endpoint defense operations across Palo Alto Cortex XDR, Microsoft Defender, and Trend Micro

Lead Kyndryl's endpoint defense function by owning operations, policy, and health of the endpoint detection and response estate across Palo Alto Cortex XDR, Microsoft Defender for Endpoint, Trend Micro, and additional endpoint tooling. Drive agent coverage, deployment, and configuration integrity across the managed fleet, closing gaps in visibility. Tune prevention and detection policy to balance efficacy against operational disruption in part...

Why This Role?

Lead and develop the endpoint defense team with direct impact on global cyber defense operations

Key Responsibilities

  • Own operations, policy, and health for the endpoint defense estate across Cortex XDR, Microsoft Defender for Endpoint, Trend Micro, and othe
  • Drive agent coverage, deployment, and configuration integrity across the managed fleet to close visibility gaps
  • Tune prevention and detection policy to balance efficacy against operational disruption in partnership with Cyber Defense and SIEM/SOAR
  • Rationalize the multi-vendor endpoint stack toward consistent coverage and reduced overlap with a defensible consolidation or coexistence po
  • Ensure endpoint telemetry is complete, timely, and correctly integrated into XSIAM and the detection pipeline
  • Support incident response with endpoint containment, isolation, and forensic data on demand from the Incident Commander

Requirements

  • Experience leading endpoint defense or security operations functions
  • Deep knowledge of Palo Alto Cortex XDR, Microsoft Defender for Endpoint, and Trend Micro endpoint tooling
  • Experience driving agent coverage, deployment, and configuration integrity across managed fleets
  • Background in tuning prevention and detection policies to balance efficacy and operational disruption
  • Experience ensuring endpoint telemetry integration into detection pipelines like XSIAM
  • Background in leading and developing security teams

Required Skills

cybersecurityendpoint-managementteam-leadershipautomationsecurity-opsEndpoint Detection and ResponseSecurity OperationsTeam LeadershipPolicy ManagementTelemetry IntegrationIncident Response

Indonesia Context

Working Hours Overlap:
Flexible — work your own hours
See remote (USD) vs local pay →
View Original Description from The Muse

Original description from The Muse

Who We Are At Kyndryl, we design, build, manage and modernize the mission-critical technology systems that the world depends on every day. So why work at Kyndryl? We are always moving forward - always pushing ourselves to go further in our efforts to build a more equitable, inclusive world for our employees, our customers and our communities. The Role Role Purpose Leads Kyndryl's endpoint defense function, owning the operation, tuning, and coverage of the endpoint detection and response estate across Palo Alto Cortex XDR, Microsoft Defender for Endpoint, Trend Micro, and additional endpoint tooling. Ensures consistent prevention, detection, and telemetry quality across a heterogeneous, multi-vendor fleet, and that endpoint signal feeds the detection pipeline cleanly. Runs the function as a platform service to Cyber Defense, not as an independent detection authority. Key Responsibilities Own operations, policy, and health for the endpoint defense estate: Cortex XDR, Microsoft Defender for Endpoint, Trend Micro, and other endpoint tooling. Drive agent coverage, deployment, and configuration integrity across the managed fleet, closing gaps in visibility. Tune prevention and detection policy to balance efficacy against operational disruption, in partnership with Cyber Defense and SIEM/SOAR. Rationalize the multi-vendor endpoint stack toward consistent coverage and reduced overlap, with a defensible consolidation or coexistence posture. Ensure endpoint telemetry is complete, timely, and correctly integrated into XSIAM and the detection pipeline. Support incident response with endpoint containment, isolation, and forensic data on demand from the Incident Commander. Drive automation for agent deployment, health monitoring, policy management, remediation actions, and telemetry quality to reduce operational overhead and improve response times. Establish and report on endpoint security KPIs, including coverage, agent health, prevention efficacy, telemetry quality, containment performance, and remediation outcomes. Lead and develop the endpoint defense team. Accountabilities Operational effectiveness and health of the endpoint defense estate. Endpoint coverage and telemetry quality across the fleet. Endpoint contribution to detection and to incident containment. Leadership and development of endpoint defense personnel. Continuous improvement of operational processes through automation, standardization, and best practices. Kyndryl currently does not require employees to be fully vaccinated against COVID-19, however, if you are hired to work at a client, customer, or partner location, you may be required to show proof of vaccination to align with their respective COVID-19 vaccination policies. Those who believe they are eligible may apply for a medical or religious accommodation prior to the start of employment. Who You Are Who You Are You're good at what you do and possess the required experience to prove it. However, equally as important - you have a growth mindset; keen to drive your own personal and professional development. You are customer-focused - someone who prioritizes customer success in their work. And finally, you're open and borderless - naturally inclusive in how you work with others. Required Skills and Experience • Mastery of security tools and technologies, such as firewalls, intrusion detection/prevention systems, endpoint security, , and SIEM solutions • Deep understanding of operating systems (e.g., Windows, Linux) and their security mechanisms • Knowledge of security standards and compliance requirements (e.g., ISO 27001, NIST, GDPR) • Experience with key market leading technologies in the relevant area • Ability to assess and follow best practices in technology deployment and configuration • Experience with the design and implementation of security architectures, segmentation and zero trust frameworks Preferred Skills and Experience • Bachelor's degree in Computer Science, Cybersecurity, Information Technology, or ot

Salary Context

Similar Operations roles on LokerDollar pay around $190.2k/yr (range $12k–1000k/yr, n=192 active listings).

Hiring at Kyndryl

Kyndryl has 54 other active roles on LokerDollar and has been hiring here since May 7, 2026 — across Operations, Data & Analytics, Engineering.

View all Kyndryl openings →

Openness not stated by employer — check the listing

Company
Kyndryl
Source
Job Type
full time
Location
Remote · New York, USA
Category
Seniority
lead
PostedNewNew & verified
Sep 12, 2026

Share this job

Help a friend find their next remote role.

Frequently asked questions

Is Head of Endpoint Defense at Kyndryl a remote job?
Yes. Head of Endpoint Defense at Kyndryl is a fully remote role open to candidates worldwide.
What type of employment is Head of Endpoint Defense at Kyndryl?
This is a full time position.
How do I apply?
Click the "Apply" button on this page to go to the official application at Kyndryl.

Explore related

Market data & reports

Salary & skill-demand research built from our own listings data.

From the blog