Endpoint Security Engineer (EDR/XDR) (Hybrid)
A.C.Coy Company
Endpoint Security Engineer Tier One Technologies has an immediate need for an Endpoint Security Engineer for our US Government client. This hybrid Contract-to-Hire position will be available to start in Falls Church, VA, Morrisville, NC or Eagan, MN. SELECTED CANDIDATES WITHOUT REQUIRED CLEARANCE WILL BE SUBJECT TO A FEDERAL GOVERNMENT BACKGROUND INVESTIGATION TO RECEIVE IT. Responsibilities Design, deploy, and operationalize active, behavior-based endpoint detection and response (EDR/XDR) capabilities across the client's network. Balance proactive protection with business continuity - partnering directly with end-users and application owners to tune policies and eliminate operational friction, while providing tier-3/tier-4 technical escalations to Security Operations Center (SOC) analysts and IT Operations staff during active investigations. Fleet-Wide Behavioral Defense & Control Engineering: Engineer, deploy, and maintain Next-Gen Antivirus (NGAV) and Endpoint Detection & Response (EDR/XDR) agents (e.g., CrowdStrike Falcon, Microsoft Defender for Endpoint, SentinelOne) across hundreds of thousands of heterogeneous endpoints. Implement active behavioral protections against zero-day malware, living-off-the-land binaries (LotLBs), fileless execution, and credential dumping. Application Owner & End-User Engagement (Business Impact Management): Serve as the primary technical partner to application owners and business units, establishing baseline behavior profiles to minimize false positives, performance degradation, or operational downtime across critical retail, logistics, and supply chain applications. Manage allowlisting, exception workflows, and phased ring deployments (canary/pilot/production) to ensure silent, high-efficacy protection without disrupting day-to-day warehouse or logistics operations. SOC & IT Operations Event Investigation Support: Act as endpoint security escalation lead for SOC analysts during high-severity threat detection and response events. Act as endpoint operations escalation lead for IT administrators during high-impact event investigation and remediation efforts. Perform advanced host forensics, process-tree reconstruction, memory analysis, and script-based live remediation (e.g., host isolation, automated artifact collection, registry rollbacks). Hybrid & Multi-Cloud Workload Protection: Extend endpoint security standards across private data center virtualization layers (VMware/Nutanix) and ephemeral multi-cloud infrastructure (EC2, Azure VMs, Compute Engine, containerized hosts). Control Efficacy & Continuous Validation: Continuously measure and test security control efficacy using automated attack simulation (BAS) tools and Purple Team exercises. Track and report on agent health, tamper-resistance, telemetry pipeline integrity, and coverage metrics aligned with enterprise asset management systems. Qualifications Bachelor's or Master's degree in Computer Science, Information Security or related field. If an individual's degree is not in the applicable field, then 4 additional years of related experience is required. 7+ years of progressive experience in technical Cybersecurity engineering or infrastructure security roles. 3+ years of directly engineering and administering enterprise-grade EDR/XDR platforms across 50,000+ endpoints in a distributed hybrid environment. Expert-level proficiency administering enterprise-scale endpoint platforms across Windows, macOS, Linux distributions, and container runtime environments. Deep mastery of process lineage, behavioral IOAs (Indicators of Attack), Sysmon telemetry, and detection authoring using query languages such as SQL, KQL (Kusto Query Language), Splunk SPL, or YARA. Demonstrated track record supporting active SOC investigations and collaborating cross-functionally with system owners in large-scale enterprise environments. Deep understanding of Windows/Linux kernel architectures, API hooking, hypervisor isolation, and multi-cloud workload identity integrations. Strong programming/scripting abilities in PowerShell, Python, or Bash to orchestrate fleet-wide remediations and automate policy compliance at scale. Fluency applying appropriate AI/ML technologies and analytics platforms (Splunk, Databricks, Elastic) to streamline and/or automate activities including but not limited to research, developing documentation, and supporting development of executive communications. Fluency applying appropriate AI/ML technologies to automate security activities to improve timeliness or full automation of event response activities. Proven ability to balance stringent security controls with business operational velocity, ensuring minimal disruption to end-user productivity and mission-critical COTS/proprietary software. Capability of methodically triaging active enterprise threats under pressure and articulating complex host-based attacks to executive leadership. To have a mindset geared toward "Infrastructure-as-Code" and policy automation rather than manual device-by-device intervention. Preferred Certifications: GIAC Certified Enterprise Defender (GCED) or GIAC Certified Incident Handler (GCIH), or GCFA (Forensic Analyst) or CISSP (Certified Information Systems Security Professional). Specialized Vendor Engineering Credentials (e.g., CrowdStrike Certified Falcon Administrator/Hunter, Microsoft Certified: Security Operations Analyst Associate / SC-200) a PLUS. Excellent communication skills. Must be a US Citizen or Permanent US Resident (Green Card Holder). Must be able to obtain Public Trust Clearance. Be able to pass a drug screening, criminal history, and credit checks. Must have lived in the United States for the past 5 years. Cannot have more than 6 months travel outside the United States within the last five years. Military Service excluded. (Exception does not include military family members.) A.C.Coy Company
$75.2k - $158.1k
Job Title: Endpoint Security Engineer IIIJob Category: Information TechnologyTime Type: Full timeMinimum Clearance Required to Start: TS/SCIEmployee... ...support for Carbon Black Endpoint Detection and Response (EDR).• Establish computing environment by designing system...SuggestedLong term contractContract workWork experience placementLocal areaFlexible hours$218.4k - $365.2k
...ExperienceThe Enterprise Security Technology team... ...are in Endpoint Security along with... ...Detection and Response (EDR) and Extended Detection... ...and Response (XDR), and Application... ...across on-premises, hybrid, and multi-cloud... ...product management and engineering leads to drive...SuggestedFull time- Senior Security Engineer UltraViolet Cyber is a leading platform-enabled unified security... ...CrowdStrike expertise to lead endpoint detection and response (EDR) operations within federal government... ...implementation Work Environment: Hybrid work model with 2 day/week on-site...SuggestedTemporary work2 days per week
- ...across the globe to create, secure, and run applications that enhance... ...Cloud is seeking a Security Engineer III to advance our monitoring... ...across cloud-native and hybrid environments. Integrate and optimize... ...such as SIEM, SOAR, EDR/XDR, APM, cloud-native security tools...SuggestedFull timeLocal areaShift workWeekend work
- ...About the Role An employer is seeking a Security Engineer III to advance our monitoring,... ...monitoring requirements across cloud-native and hybrid environments. • Design, implement,... ...platforms such as SIEM, SOAR, EDR/XDR, APM, cloud-native security tools, and...SuggestedShift workWeekend work
$107.9k - $195.05k
Leidos has an exciting opportunity for a Sr. Endpoint Security Systems Engineer in our Intel Security Sector's Analysis Solutions Business Area. Our... ...cross training on our other security tools. Working in a hybrid cloud/on-prem mission environment the engineer will support...Full timeImmediate startFlexible hours$138k - $166k
As a Sr. Security Engineer (Trellix) I, you’ll serve as the technical lead for the organization's endpoint security and data protection ecosystem, balancing day-to-day operational support... ...security platforms, including ePO, ENS, EDR, DLP, and encryption technologies....Full timeLocal area- ...SteerBridge is seeking experienced Security Engineers to ensure the security of... ...solutions across cloud and hybrid infrastructures in support... ...and tools: SIEM, XDR, SAST/DAST, STIG, SCAP ~Experience... ...CrowdStrike, Microsoft Defender Endpoint ~ Proficiency with...
- ...Description Job Description Job Summary: The Security Engineer is responsible for identifying, analyzing, and... ...gaps. Configure, deploy, and manage EDR/XDR solutions to detect and respond to threats on endpoints across the organization. Investigate and analyze...Contract workWork at officeRemote work
- ...highly experienced Principal Security Engineer to serve as a senior technical... ...cloud, network, server, endpoint, application, DevSecOps, and... ...Google Cloud, Microsoft Azure, hybrid, and multi-cloud environments... ...endpoint controls including EDR, anti-malware, host firewalls...Full timeWork at officeRemote work
$131.3k - $237.35k
...Leidos is seeking a highly qualified Hybrid Multi-Cloud Engineer SME to support mission-critical... ...engineering, implementing, and sustaining secure hybrid cloud solutions across... ...deploying modern cloud infrastructure, endpoint management, and security solutions within...Local areaImmediate startRemote work$148.5k - $223.9k
...The ExperienceThe Enterprise Security Technology team builds and operates... ...of our key investments is in Endpoint Security, where we build a... ...Endpoint Integration Engineer, you develop, deploy, and operate... ...Extended Detection and Response (XDR), Vulnerability Management,...Full time- ..., is seeking an experienced Security Engineer to support enterprise cybersecurity... ...IT environment-from endpoint and network through application... ...across on-premises, cloud, and hybrid IT environments, ensuring... ...Endpoint Detection and Response (EDR) platforms, Data Loss...Local areaRemote workFlexible hours
$125.8k - $209.7k
...for robust, scalable security architecture has never... ...principles, securing hybrid and multi-cloud environments... ..., data, identity, and endpoint security domains.... ...concepts effectively to both engineering teams and executive... ...including SIEM, SOAR, EDR/XDR, PAM, IAM, CNAPP, and...Immediate start$62k - $141k
Systems Security EngineerThe Opportunity:As a cyber mission specialist, you... ...experience with network and endpoint security, incident response, systems engineering, and AI-enabled cyber defense.In... ...Booz Allen or customer facility.Hybrid: If this position is listed as hybrid...Full timeContract workPart timeWork at officeLocal areaRemote workWorldwide$149k - $198k
...seeking a motivated and experienced Security Sales Engineer to join our dynamic enterprise sales... ...brings to the table. We operate as a hybrid workplace to ensure our Datadogs can... ...triage, investigation, response), endpoint security (EDR/MDR), and the deployment and tuning...Work at office- ...Intelligence/Machine Learning, Cyber Security and Cutting-Edge Technology across the... ...Position Overview The SentinelOne Endpoint Security Engineer is responsible for the administration... ...and Endpoint Detection and Response (EDR) . This role works closely with Cybersecurity...Monday to FridayFlexible hours
- ...seeking a skilled Cortex XSIAM Security Engineer to deploy, configure, and... ...their SOC by consolidating SIEM, XDR, SOAR, UEBA, ASM, and TIP... ...ecosystem tools including firewalls, endpoints, cloud platforms, identity... .... ~ Understanding of EDR, NDR, and UEBA technologies and...Remote workWork from homeFlexible hours
$80k - $95k
...is seeking a Cyber Ops Engineer I to join our growing Cybersecurity... .... As a trusted Managed Security Services Provider (MSSP... .... ~ Support endpoint, identity, email, cloud... ...and response (EDR), email security, cloud... ...generous PTO. Flexible hybrid work schedule. Opportunities...Flexible hours$180k - $220k
...Cyber Operations Engineer III (NOC/SOC), you... ...the reliability and security of complex... ...cloud environments, endpoints, applications, and... ...detection and response (EDR), network... ...monitoring, SIEM, EDR/XDR, vulnerability management... ...Microsoft Azure, hybrid cloud, on-premises...Full timeLocal areaNight shift- Description Security Engineer Endpoint Security Tool Monitoring - Secret Xcelerate Solutions is seeking a Security Engineer - Endpoint Security Tool Monitoring to support Cyber Primes cybersecurity, privacy, records and information management, and related enterprise...
$62k - $141k
...Systems Security Engineer The Opportunity: As a cyber mission specialist, you understand... ...apply your experience with network and endpoint security, incident response, systems engineering... ...a Booz Allen or customer facility. Hybrid: If this position is listed as hybrid,...Full timeContract workPart timeWork at officeLocal areaRemote workWorldwide$145k - $200k
Washington, D.C.Information Security /Full-time /HybridA... ...ticket anomalies, or reverse-engineered a novel persistence... ...the Windows environment: EDR, PAM, identity threat detection, and endpoint hardening controls.Build... ...with Entra ID (Azure AD), hybrid identity architectures,...Full timeWork experience placementWork at officeRemote workWork from homeRelocation package$99k - $225k
Network Security Automation EngineerThe Opportunity:Secure cyber training... ...Network Security Automation Engineer who can combine network... ...firewalls, AWS Network Firewall, VPC endpoints, and centralized logging.... ...Allen or customer facility.Hybrid: If this position is listed...Full timeContract workPart timeWork at officeLocal areaRemote work- Sarela Technology Solutions is seeking a Hybrid Multi-Cloud Engineer SME to support critical DoD programs... ...NM. You will architect and implement secure cloud solutions across Azure and AWS,... ..., IaC automation, and secure endpoint management in a demanding, mission-focused...
- ...Job Description Job Description OT Cybersecurity Engineer Location: Bethesda, MD (Hybrid – 3 days onsite) Employment Type: Long-term contract... ...opening for an OT Cybersecurity Engineer to support the security of Operational Technology (OT) environments, including...Long term contractCasual workLive inImmediate startRemote workFlexible hours3 days per week
- ...platform-enabled unified security operations company... ...Senior Security Tools Engineer to support the security... ...Tools program. This is a hybrid role based in Oxon Hill... ...someone who can work across endpoint, SIEM, and adjacent... ...tool category (endpoint/EDR, SIEM, vulnerability management...Temporary work3 days per week
- ...Job Title: Senior Network Security Microsegmentation Engineer Compensation: Open to Both C2C and W2 options... ...support across on-premises, hybrid, and potentially cloud environments.... ...with security tools including SIEM, EDR, vulnerability management, and network...Temporary workLive inLocal areaRemote work
$130k - $155k
...of hours, safeguard national security, and strengthen health and humanitarian... ...for a Network Security Engineer to join our internal IT team.... ...; design and maintain hybrid connectivity patterns across... ...VoIP, secure mail flow, and endpoint management integration. Experience...Temporary workFor contractorsWork experience placementImmediate startWorldwide- ...Responsibilities Monitor and manage Trellix endpoint security platforms, including ePO, ENS, EDR, DLP, encryption, and related controls. Tune SOC alerts... ..., security architectures, SOPs, playbooks, and engineering standards. Research emerging threats and recommend...Full timeFlexible hours
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Endpoint Security Engineer (EDR/XDR) (Hybrid). Be the first to apply!
- aws cloud security engineer Falls Church, VA
- security engineering manager
- cyber research engineer
- security commissioning engineer
- security engineer intern
- physical security engineer
- senior security operations engineer
- electronic security engineer
- sr. network security engineer
- information system security engineer


