[Hiring] Windows 11 Security Hardening Remediation Specialist @Randstad
Role Description
Are you a Windows 11 Specialist with 5+ years of experience configuring Hardening Standard review, and developing/implementing robust hardening policies across endpoint layers-bridging the gap between core OS configurations, specialized applications, and database layers? Our Alberta-based Financial client is seeking a Windows 11 Specialist for a 6 month contract.
Responsibilities include:
- Lead and execute critical security hardening and remediation efforts.
- Perform comprehensive gap analyses.
- Collaborate with Cybersecurity Governance on the Configuration Hardening Standard review.
- Develop/implement robust hardening policies across endpoint layers.
Core Responsibilities:
- Gap Analysis & Assessment: Conduct a deep-dive gap analysis of the current Windows fleet against Cybersecurity Governance Hardening Standards.
- Policy Development: Work with subject matter experts, security, and governance teams to derive hardened configuration baseline documentation in alignment with the Configuration Hardening Standard.
- Technical Implementation: Author, refine, and maintain Group Policy Objects (GPOs), configuration profiles, and PowerShell remediation scripts.
- Up-the-Stack Integration: Ensure Windows 11 endpoint security configurations seamlessly align with the hardening requirements of specialized local applications, databases, and refined port/protocol management.
- Remediation Execution: Lead the phased rollout of OS-level hardening configurations across the enterprise, minimizing user disruption while maximizing defensive posture.
- Cross-Functional Collaboration: Partner with the Windows Engineering, Identity & Access Management (IAM), and Cybersecurity Governance teams to ensure compliance.
Qualifications
- Network Fundamentals: Solid understanding of ports, protocols, and services management to support the project's network-layer scope.
- Analytical Mindset: Ability to translate complex compliance documents (like a Governance Standard) into technical, actionable engineering requirements.
- Communication: Strong documentation skills for creating hardening standards, change management plans, and remediation playbooks.
Requirements
- OS Expertise: Deep technical knowledge of Windows enterprise security architecture (e.g., Credential Guard, Virtualization-based Security, BitLocker).
- Unified Endpoint Management (UEM): Advanced experience managing and deploying security policies via unified endpoint management platforms, including Omnissa Workspace One or Active Directory GPOs.
- Automation: Proficiency in PowerShell for writing automated remediation and compliance-checking scripts.
- Security Frameworks: Strong familiarity with CIS Benchmarks, NIST SP 800-53, or DISA STIGs specifically mapped to Microsoft environments.
Benefits
- Advance your career by working with a top financial institution in Alberta.
- Pay Rate: between $63-79/hr INC.