Infrastructure Security Operations Engineer

18 hours ago


ClujNapoca, Cluj, Romania Endava Full time

Technology is our how. And people are our why. For over two decades, we have been harnessing technology to drive meaningful change.

By combining world-class engineering, industry expertise and a people-centric mindset, we consult and partner with leading brands from various industries to create dynamic platforms and intelligent digital experiences that drive innovation and transform businesses.

From prototype to real-world impact - be part of a global shift by doing work that matters.

Job Description

The
Infrastructure Security Operations Engineer – Vulnerability Management SME
will be responsible for maintaining and improving Endava's global security posture, with a primary focus on
vulnerability management, endpoint security, and application control
. This role requires expertise in
Intune for endpoint management and policy enforcement
,
ThreatLocker for application control
, and
patch management strategies
to minimize security risks. The engineer will also act as an escalation point for infrastructure security-related incidents, ensuring compliance with Endava's security policies and industry standards.

Principal Functional Responsibilities

  • Vulnerability Management & Remediation
  • Lead vulnerability remediation efforts across infrastructure and endpoints.
  • Collaborate with other IT functions to ensure vulnerabilities are addressed promptly.
  • Maintain and enhance vulnerability management processes to align with compliance and security frameworks.
  • Endpoint Management & Security (Intune)
  • Configure and enforce security policies using
    Microsoft Intune
    for endpoint compliance.
  • Manage and optimize device security baselines, including endpoint hardening, encryption, and conditional access policies.
  • Provide operational support for
    Microsoft Defender ATP
    and related endpoint protection solutions.
  • Patch Management
  • Design and implement patch management strategies for servers, workstations, and cloud infrastructure.
  • Ensure timely deployment of security patches and updates across all systems.
  • Develop and maintain automated patch deployment workflows to minimize operational impact.
  • Application Management & Control (ThreatLocker)
  • Administer and maintain
    ThreatLocker
    for application control, whitelisting, and execution restrictions.
  • Define and enforce policies to prevent unauthorized application usage and mitigate security threats.
  • Monitor and analyze application security events, responding to potential security incidents.
  • Security Incident Response & Compliance
  • Act as an escalation point for security incidents and vulnerabilities affecting infrastructure.
  • Ensure all security controls comply with regulatory and company security standards.
  • Support security audits, compliance assessments, and reporting.
  • Continuous Improvement & Collaboration
  • Work closely with
    IT Operations, Cloud, and Security teams
    to drive security initiatives.
  • Participate in security infrastructure upgrades and optimizations.
  • Stay up to date with emerging threats, vulnerabilities, and industry best practices.

Qualifications

Education & Certifications

  • Bachelor's degree in
    Computer Science, Cybersecurity, Engineering, or Telecommunications
    (or equivalent experience).
  • Security-related certifications and ITIL are a plus.

Experience & Skills

  • 3+ years of experience
    in
    Security Operations, Vulnerability Management, or Endpoint Security.
  • Expertise in
    Vulnerability Management
    tools and best practices.
  • Strong knowledge of
    Microsoft Intune
    for endpoint policy management.
  • Hands-on experience with
    ThreatLocker
    (or similar) for application control and whitelisting.
  • Proficiency in
    patch management methodologies
    across Windows, macOS, and Linux environments.
  • Familiarity with
    Microsoft Defender ATP
    ,
    Palo Alto Prisma
    , and
    other EDR/XDR solutions
    .
  • Experience working with
    Active Directory, DNS, and Group Policies
    .
  • General knowledge of
    cloud security (Azure, AWS, SaaS environments)
    .
  • Strong understanding of
    incident management, change management, and security compliance
    .
  • Excellent analytical skills, problem-solving abilities, and communication skills.

Preferred Qualifications

  • Experience with
    PowerShell
    for security automation.

Knowledge of
zero-trust security models and modern endpoint security frameworks
.

Additional Information

At Endava, we're committed to creating an open, inclusive, and respectful environment where everyone feels safe, valued, and empowered to be their best. We welcome applications from people of all backgrounds, experiences, and perspectives—because we know that inclusive teams help us deliver smarter, more innovative solutions for our customers. Hiring decisions are based on merit, skills, qualifications, and potential. If you need adjustments or support during the recruitment process, please let us know.



  • Cluj-Napoca, Cluj, Romania Endava Full time

    Company Description Technology is our how. And people are our why. For over two decades, we have been harnessing technology to drive meaningful change.By combining world-class engineering, industry expertise and a people-centric mindset, we consult and partner with leading brands from various industries to create dynamic platforms and intelligent digital...


  • Cluj-Napoca, Cluj, Romania endava Full time

    Full-timeJob DescriptionThe Infrastructure Security Operations Engineer – Vulnerability Management SME will be responsible for maintaining and improving Endava's global security posture, with a primary focus on vulnerability management, endpoint security, and application control. This role requires expertise in Intune for endpoint management and policy...


  • Cluj-Napoca, Cluj, Romania psd group Full time

    Infrastructure EngineerSummaryLocation:Cluj (Hybrid)Day Rate:NegotiableDuration:12 Months (with a potential view to extend further or convert to a permanent role)Availability:ASAPAbout the ClientMy client is the air transport industry's IT provider, delivering solutions for airlines, airports, aircraft, and governments. Their technology powers more seamless,...


  • Cluj-Napoca, Cluj, Romania NTT DATA Romania SA Full time

    What awaits youArchitect and implement infrastructure following best practices and security standardsLog Incidents accurately and establish and record root cause upon resolution of outagesDevelop and maintain backend services, APIs, and database structuresMonitor application performance and optimize cloud resource utilizationEnsure application security and...


  • Cluj-Napoca, Cluj, Romania NTT DATA Europe & Latam Full time

    What Awaits YouArchitect and implement infrastructure following best practices and security standardsLog Incidents accurately and establish and record root cause upon resolution of outagesDevelop and maintain backend services, APIs, and database structuresMonitor application performance and optimize cloud resource utilizationEnsure application security and...


  • Cluj-Napoca, Cluj, Romania AirportLabs Full time

    About the roleAirportLabs provides a complete suite of products that drives efficiency in aviation. Our products and solutions help major airports, airlines, and ground handlers worldwide solve the hardest operational problems, improve efficiency, and develop the value of their services.Our operations team is one of the best in the industry, delivering...


  • Cluj-Napoca, Cluj, Romania Flutter Full time

    Head of Security Operations & Engineering - Flutter Functions, HybridHead of Cyber Security Operations and Engineering teams This position is open across multiple Flutter UK & Ireland office locations. The benefits and package will be in line with the entity in your location. Your Talent Partner will discuss this in further detail. Locations: Cluj-Napoca/...


  • Cluj-Napoca, Cluj, Romania Betfair Romania Development Full time

    Head of Cyber Security Operations and Engineering teamsThis position is open across multiple Flutter UK & Ireland office locations. The benefits and package will be in line with the entity in your location. Your Talent Partner will discuss this in further detail.Locations: Cluj-Napoca/ Leeds/ DublinRole OverviewAs part of the Flutter Tech Global Services...


  • Cluj-Napoca, Cluj, Romania Flutter Entertainment Full time

    This position is open across multiple Flutter UK & Ireland office locations. The benefits and package will be in line with the entity in your location. Your Talent Partner will discuss this in further detail.Locations: Cluj-Napoca/ Leeds/ DublinRole OverviewAs part of the Flutter Tech Global Services function, the Head of Security Operations & Engineering...


  • Cluj-Napoca, Cluj, Romania Emerson Career Site Full time

    As a Senior Computer and Network Infrastructure Engineer, your role involves coordinating projects and improvements, ensuring the successful deployment of Distributed Control Systems' IT Infrastructure (Servers and Workstations, Networks, Virtualization, Software Deployment, and Cybersecurity) for process industries automation (such as Pharmaceutical,...