Simply put, we are one of the nation’s largest independent, privately held firms specializing in employee benefits, retirement plans, and all their associated compliance needs. Since 2008, we have grown by acquiring over 60 local and national firms that have been trusted members of their communities for decades. We hold the coveted “Best Places to Work – USA,” certification and serve more than 22,000 employer groups and 3.6 million plan participants nationally.
Daybright Financial also operates a dedicated independent divisional team, Daybright Broker Solutions , to further enhance the services, support, and marketing resources to grow the businesses of benefits brokers and consultants and enable professional employer organizations (PEOs) to bring more to the table for their clients — through the seamless delivery of Fortune 500-level health and financial wellness solutions.
For more information on Daybright Financial, visit daybright.com . Follow Daybright on LinkedIn , Instagram , Facebook , and YouTube .
Daybright is currently seeking a Security Engineer – Network to join our Corporate Office. Be part of a team of thought leaders and seasoned benefits and retirement planning professionals.
Position Summary:
The Security Engineer - Network designs, implements, and operates endpoint security controls to protect Daybright Financial's workforce and server endpoints. This role combines prevention, detection, response, and hardening capabilities across endpoint platforms while partnering closely with Security Operations, IT, IAM, and Infrastructure teams.
The Security Engineer - Network reduces endpoint-driven risk, improves control effectiveness, and enables secure business operations in a regulated environment.
Job Responsibilties:
- Administer and tune endpoint protection platforms, including EPP, EDR, and XDR capabilities, to improve coverage and alert quality.
- Work with Daybright's outside Security Operations Center to identify improvements and reduce false positives.
- Build and maintain endpoint detection content, triage workflows, and investigation playbooks.
- Develop and enforce endpoint hardening baselines aligned to business needs and recognized security standards.
- Partner with IT operations to deploy secure endpoint configurations using enterprise device management tooling.
- Monitor endpoint threats and coordinate containment, eradication, and recovery actions for endpoint security events.
- Drive endpoint vulnerability and patch remediation workflows with clear prioritization and SLA tracking.
- Investigate endpoint incidents and perform root cause analysis, including documented corrective and preventive actions.
- Improve endpoint telemetry quality, asset inventory accuracy, and control coverage reporting.
- Support internal and external audits with endpoint security control evidence, process documentation, and control narratives.
- Contribute to endpoint security roadmap planning, tooling evaluations, and automation initiatives
Required Skills/Experience
- 5-7 years of experience operating enterprise endpoint security controls in production environments.
- Practical understanding of endpoint attack techniques, containment methods, and recovery approaches.
- Working knowledge of endpoint security controls across Windows and macOS environments; Linux exposure is beneficial.
- Experience with endpoint vulnerability remediation and patch governance coordination.
- Familiarity with scripting or automation concepts used in security operations and endpoint administration.
- Ability to communicate technical risk, findings, and recommendations to both technical and non-technical stakeholders.
- Familiarity with security frameworks such as NIST, CIS Controls, or ISO 27001.
- Experience in financial services or another regulated industry preferred.
- Experience with SentinelOne EDR platform preferred.
- Experience with the Microsoft endpoint security stack, including Microsoft Defender preferred.
- Experience integrating endpoint telemetry with SIEM and security operations workflows preferred.
- Experience with threat hunting, detection engineering, or behavior-based detection tuning preferred.
- Experience with device compliance, data protection, and zero-trust endpoint control patterns preferred.
- Relevant certifications or equivalent practical expertise in endpoint security or cybersecurity operations preferred.
Security Engineer - Network in irving at Unknown Company
This position is listed as full time and onsite.