Endpoint Security Analyst - Elastic Defend
$107.9k - $195.05kLeidos
The C5ISR Center Cyber Security Service Provider (CSSP) is a premier defensive cyber operations organization supporting the Department of War (DoW). Operating 24x7x365, the CSSP provides continuous monitoring, threat detection, incident response, and vulnerability management across cloud and on-premises environments, including AWS, Azure, GCP, Oracle Cloud, and SaaS platforms.Every day, our team protects the networks, systems, and data that enable critical DoW missions.Leidos has an immediate opportunity for an experienced Endpoint Security Analyst to support a highly visible, strategic Cybersecurity Task Order. In this role, you will provide specialized expertise supporting Elastic Agent and Elastic Defend, helping deploy, configure, optimize, and sustain endpoint protection, telemetry collection, threat detection, and automated response capabilities across the enterprise.You will work closely with threat, engineering, and cybersecurity operations teams to strengthen endpoint defenses, improve visibility, and rapidly identify and respond to emerging cyber threats.Location: Hybrid - 3 days on site at Adelphi, MDClearance: U.S. Citizenship with an active TS/SCI with SAP EligibilityPrimary Responsibilities:Deploy, configure, operate, tune, upgrade, and troubleshoot Elastic Agent, Elastic Defend, and other enterprise endpoint security technologies.Optimize endpoint protection and telemetry collection to maximize security visibility and detection effectiveness while minimizing operational and system performance impacts.Partner with Threat and Detection teams to customize detection rules, develop threat signatures, and align endpoint defenses with emerging threat intelligence and MITRE ATT&CK techniques.Conduct host-based defensive cyber operations to identify, investigate, contain, mitigate, and remediate vulnerabilities and intrusions.Support cyber investigations using advanced endpoint queries, forensic data collection, and rapid containment and response capabilities.Build and maintain queries, dashboards, and reports that provide enterprise security visibility and leadership awareness.Coordinate with engineering teams on endpoint security deployments, patches, hot fixes, upgrades, and other critical security updates.Troubleshoot endpoint security tool issues, performance concerns, and outages.Develop and maintain endpoint security policies, configurations, and Standard Operating Procedures (SOPs).Evaluate emerging endpoint security tools, techniques, and technologies and recommend improvements aligned with enterprise cybersecurity strategy.Basic Qualifications:Bachelor's degree in Science, Technology, Engineering, Mathematics (STEM), cybersecurity, or a related field and 4+ years of relevant cybersecurity experience.Hands-on experience deploying, configuring, operating, or supporting enterprise endpoint security or EDR solutions.Strong understanding of endpoint protection, security telemetry, threat detection, incident investigation, and response.Experience investigating and responding to endpoint security alerts and potential compromises.Knowledge of current cyber threats, attacker techniques, and defensive strategies, including familiarity with the MITRE ATT&CK framework.Strong analytical, troubleshooting, and problem-solving skills.Ability to work effectively across cybersecurity, threat, and engineering teams.Strong written and verbal communication skills.U.S. citizenship and an active TS/SCI with SAP eligibility.At least one of the following certifications:GIAC/SANS: GCIA, GCIH, GCFA, GCFE, GREM, GISF, GXPN, GWEB, GNFA, or GMONOffensive Security: OSCP, OSCE, OSWP, or OSEEISC2: CCFP or CISSPEC-Council: CEH, CHFI, LPT, ECSA, or ECIPreferred Qualifications:Hands-on experience with Elastic Agent and Elastic Defend, including deployment, configuration, policy management, tuning, and troubleshooting.Experience optimizing endpoint telemetry and security controls in large-scale enterprise environments.Experience developing or tuning endpoint detection rules, threat signatures, IOCs, and behavioral detections.Experience using Elastic capabilities for endpoint investigation, advanced querying, forensic data collection, and response actions.Experience with CrowdStrike Falcon, McAfee/Trellix ePO, Tanium, or similar enterprise endpoint security platforms.Experience deploying and configuring CrowdStrike Falcon sensors and creating custom Indicators of Compromise (IOCs) and Indicators of Attack (IOAs).Experience supporting endpoint security operations within large, complex, or mission-critical environments.Relevant endpoint security certifications, such as Elastic, CrowdStrike, or Tanium certifications.If you're looking for comfort, keep scrolling. At Leidos, we outthink, outbuild, and outpace the status quo — because the mission demands it. We're not hiring followers. We're recruiting the ones who disrupt, provoke, and refuse to fail. Step 10 is ancient history. We're already at step 30 — and moving faster than anyone else dares.Original Posting:August 25, 2026For U.S. Positions: While subject to change based on business needs, Leidos reasonably anticipates that this job requisition will remain open for at least 3 days with an anticipated close date of no earlier than 3 days after the original posting date as listed above.Pay Range:Pay Range $107,900.00 - $195,050.00The Leidos pay range for this job level is a general guideline only and not a guarantee of compensation or salary. Additional factors considered in extending an offer include (but are not limited to) responsibilities of the job, education, experience, knowledge, skills, and abilities, as well as internal equity, alignment with market data, applicable bargaining agreement (if any), or other law.SummaryLocation: Adelphi, MDType: Full time
- ...Leidos is seeking an experienced Endpoint Security Analyst to support a DoW cyber security task order. You will deploy Elastic Agent and Elastic Defend across the enterprise to enhance threat detection, telemetry collection, and automated response capabilities. You...Suggested
$104k - $166k
...currently seeking to hire an experienced Forensics / Malware Security Analyst for its Federal Strategic Cyber Group.Location: Chandler, AZ... ...Conduct advanced network and digital media forensics, including endpoint, memory, and log analysis.Support incident response handling,...SuggestedContract workCurrently hiringShift work$129k - $171k
...TEAMAnduril's Detection and Response team is looking for a Security Operations Analyst to be the watchtower for Anduril's critical defense... ...multiple disciplines including, but not limited to, phishing, endpoints, cloud infrastructure and services, and SaaS applicationsBuild...SuggestedFull timeWork experience placementImmediate start- ...Seeking experienced security operations professionals to join a leading... ...as a Security Operations Analyst, supporting organization-wide... ...Posture Management (CSPM), and Endpoint Detection and Response (EDR).... ...: CrowdStrike, Carbon Black, Defender ATP Security Frameworks &...SuggestedFull timeShift workNight shift
- ...About the job Security Operations Center (SOC) Analyst Job Description: We are seeking a skilled and detail-oriented Security Operations Center... ..., and response (SOAR) platforms. Familiarity with endpoint detection and response (EDR) tools and technologies....Suggested
$3,000 per month
...cybersecurity team supporting the U.S. Department of State. As a Security Analyst, you will support day-to-day cybersecurity operations by... ...or other federal civilian agencies. Experience with Microsoft Defender, Microsoft Sentinel, Splunk, ServiceNow, Tenable Nessus, Qualys...Contract workWork from home- Job Summary: The Tier 3 SOC Analyst acts as a senior escalation point within the Security Operations Center, providing expert technical analysis, threat detection... ...in incident response, SIEM, IDS/IPS, firewalls, endpoint protection, and vulnerability management. ~...
- ...and grow professionally? We can help! We are seeking a IT Security Operations Analyst for the IT Technology Services contract. This project... ...Enterprise Lifecycle Management Services (ELMS) and Microsoft Endpoint Configuration Manager (MECM). Monitor patching...Full timeContract workPart timeWork at officeRemote workMonday to Friday
- ...qualified applicants to apply. We are currently seeking a Senior Security Operations Analyst to support cybersecurity operations within a federal... ...and alerting systems Log analysis across network, endpoint, and cloud environments Threat detection and monitoring tools...Full timeLocal areaShift work
- ...Job Title: Information Security Analyst Location: Bellevue, WA Type: Contract Contractor Work Model: Onsite Responsibilities... ...suspicious activity and email. Assist in developing and enforcing endpoint security policies for device hardening, removable media...Permanent employmentContract workFor contractorsWork experience placementLocal area
- ...Complete Description: The SOC Analyst - Tier 3 is cybersecurity technical resource... ...identify undetected threats. · Support security tool/application tuning engagements with... ..., vulnerability scanning tools, endpoint protection, secure coding, etc. ·...Full timeContract workWorldwide
- ...given the means and mentorship needed to succeed, and your creativity will be rewarded.About the PositionDexis is seeking a Security Assistance Analyst to support anticipated programming with the Department of State. This opportunity will provide program analysis,...Contract work
- ...State Government Agencies. Learn More About ProSidian Consulting at DescriptionProSidian seeks a Mid-Level InfoSec Mobile Device Security Analyst Consultant focusing on Cyber-Security/Information Security (INFOSEC) and IT Effectiveness Solution related issues, to support...Full timeFor contractorsWork experience placementInternshipWork at officeMonday to FridayShift work
- ...objectives. The ProSidian Federal Govt. Client’s Mortgage Backed Securities (MBS) programs help to channel funds from the nation's capital... ...economic and industry trends, and customer demand. Financial analysts provide this information by gathering and analyzing data. They...Full timeFor contractorsBank staffInternshipWork at office
- ...solutions, tested leadership, and trusted results to enable national security missions worldwide.Job Description*** This position is contingent upon contract award ***OverviewSOSi is seeking a Security Analyst - Forensics/Malware Analysis to support cyber defense and...Contract workWork at officeWorldwideMonday to FridayWeekend workAfternoon shift
$145k - $200k
Washington, D.C.Information Security /Full-time /On-siteA World-Changing CompanyPalantir builds the world’s leading software for data-driven... ...missing children, and more.The RoleAs a Defensive Security Analyst, you are responsible for the security of Palantir’s people and...Full timeWork experience placementWork at officeRemote workWork from homeRelocation package$102.5k - $188.9k
...confidence, and proactively manage to secure success. Cyber threats... .... As a Cyber Exploitation Analyst, you will support cyber... ...offering assists clients in defending against advanced threats by transforming... ...prevention systems (IPS), or endpoint detection and response (EDR)...Work at office$69.4k - $158k
Security Cooperation Logistics AnalystThe Opportunity: As a product support analyst, you know the importance of delivering practical, data-driven logistics solutions that support system readiness and long-term sustainability. On our team, you will play an essential role...Full timeContract workPart timeFor contractorsWork at officeLocal areaRemote work$120k - $145k
...defense. As an Alaska Native owned corporation, our work helps secure an enduring future for our shareholders. Join our team and discover... ...to Work™ ASRC NetCentric is seeking an Application Security Analyst to support a DHS program.Work location: RemoteClearance: Public...For contractorsWork at office$100k - $170k
...Veteran Firm Seeking a Network and Security Analyst for an Onsite Assignment in Washington, DC My name is Stephen Hrutka. I lead a Veteran-Owned management consulting firm in Washington, DC. We specialize in Technical and Cleared Recruiting for the Department of Defense...$89.49k - $95.88k
...Veteran Firm Seeking a Senior Security Operations Center (SOC) Analyst - Tier 3 for an Onsite Assignment in Washington, DC My name is Stephen Hrutka, and I lead a Veteran-owned consulting firm in Washington, DC, focused on strategic sourcing, supply chain, and IT Staffing...Full timeWork at office- ...Description **This position requires Secret Security Clearance** COMPANY OVERVIEW... ...Business Training. Senior Security Analyst LNO is seeking an Information Cloud Security... ...within Microsoft Azure using Microsoft Defender for Cloud and Azure Policy to ensure...Work at officeLocal areaWorldwide
- ...Opportunity Details Employee Oracle Security Analyst 102353 Washington DC Oracle Security Analyst Location: Washington, DC Required Clearance: Public Trust Since 1999, ITEC has delivered mission-critical support to the DoD and...
- ...experience with a premiere Azure client. Understanding and experience with:• Azure Active Directory Sync (AAD-Sync) • Office-365 security implementations with ADFS proxy, and Multi-factor Authentication (MFA)• Microsoft’s Enterprise Mobility Suite (EMS) and includes Intune...Work at officeWorldwide
$129k - $171k
...months, not years.ABOUT THE TEAMThe Counterintelligence (CI) and Security Investigations Team’s safeguards Anduril’s workforce and supply... ...and mitigate threats. The Counterintelligence & Security Risk Analyst Lead is responsible for analyzing threats from nation state...Full timeContract workFor contractorsWork experience placementImmediate start- ...Position Overview: As a SOC Analyst, you will play a pivotal role in supporting the... ...for establishing an interim vSOC (Virtual Security Operations Center) and subsequently, a... ...EnCase/OpenText Digital, BigFix, Symantec Endpoint Protection (SEP), MaaS-360 (IBM MaaS-360...Permanent employmentFull timeContract workFor contractorsInterim roleImmediate startRelocation
$117.2k - $176.7k
...emerging technologies to enhance delivery of your work product. Additionally, accountable for advising business partners on adopting new security requirements.This candidate must be a U.S. citizen (U.S. born or naturalized) operating on U.S. Soil who does not hold dual...Full time$117.2k - $176.7k
...Salesforce leadership has the information needed to make strategic, risk-based decisions. The GCC team is a division within the Product Security Organization, and you'll play a pivotal role in partnering with engineering to translate complex mandates into actionable controls...Full time- DescriptionSAIC is looking for a Senior Information Systems Security Analyst to join our team supporting an important US government agency in the National Capital Region. This is an exciting opportunity to work with a team responsible for IT Security Risk and Compliance...Work at office2 days per week
$110k - $122k
...Title: Research Security Analyst Location: USDA Headquarters, 1400 Independence Ave., S.W., Washington, DC Job Type: Full-time Onsite Salary: $110,000-$122,000/ year Experience: Minimum of Five (5) years’ experience Education: Master’s Degree in biotechnology...Full timeContract workTemporary workWork at officeLocal areaFlexible hours
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Endpoint Security Analyst - Elastic Defend. Be the first to apply!





