Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

Endpoint Security Analyst - Elastic Defend

$107.9k - $195.05k

Leidos

The C5ISR Center Cyber Security Service Provider (CSSP) is a premier defensive cyber operations organization supporting the Department of War (DoW). Operating 24x7x365, the CSSP provides continuous monitoring, threat detection, incident response, and vulnerability management across cloud and on-premises environments, including AWS, Azure, GCP, Oracle Cloud, and SaaS platforms.Every day, our team protects the networks, systems, and data that enable critical DoW missions.Leidos has an immediate opportunity for an experienced Endpoint Security Analyst to support a highly visible, strategic Cybersecurity Task Order. In this role, you will provide specialized expertise supporting Elastic Agent and Elastic Defend, helping deploy, configure, optimize, and sustain endpoint protection, telemetry collection, threat detection, and automated response capabilities across the enterprise.You will work closely with threat, engineering, and cybersecurity operations teams to strengthen endpoint defenses, improve visibility, and rapidly identify and respond to emerging cyber threats.Location: Hybrid - 3 days on site at Adelphi, MDClearance: U.S. Citizenship with an active TS/SCI with SAP EligibilityPrimary Responsibilities:Deploy, configure, operate, tune, upgrade, and troubleshoot Elastic Agent, Elastic Defend, and other enterprise endpoint security technologies.Optimize endpoint protection and telemetry collection to maximize security visibility and detection effectiveness while minimizing operational and system performance impacts.Partner with Threat and Detection teams to customize detection rules, develop threat signatures, and align endpoint defenses with emerging threat intelligence and MITRE ATT&CK techniques.Conduct host-based defensive cyber operations to identify, investigate, contain, mitigate, and remediate vulnerabilities and intrusions.Support cyber investigations using advanced endpoint queries, forensic data collection, and rapid containment and response capabilities.Build and maintain queries, dashboards, and reports that provide enterprise security visibility and leadership awareness.Coordinate with engineering teams on endpoint security deployments, patches, hot fixes, upgrades, and other critical security updates.Troubleshoot endpoint security tool issues, performance concerns, and outages.Develop and maintain endpoint security policies, configurations, and Standard Operating Procedures (SOPs).Evaluate emerging endpoint security tools, techniques, and technologies and recommend improvements aligned with enterprise cybersecurity strategy.Basic Qualifications:Bachelor's degree in Science, Technology, Engineering, Mathematics (STEM), cybersecurity, or a related field and 4+ years of relevant cybersecurity experience.Hands-on experience deploying, configuring, operating, or supporting enterprise endpoint security or EDR solutions.Strong understanding of endpoint protection, security telemetry, threat detection, incident investigation, and response.Experience investigating and responding to endpoint security alerts and potential compromises.Knowledge of current cyber threats, attacker techniques, and defensive strategies, including familiarity with the MITRE ATT&CK framework.Strong analytical, troubleshooting, and problem-solving skills.Ability to work effectively across cybersecurity, threat, and engineering teams.Strong written and verbal communication skills.U.S. citizenship and an active TS/SCI with SAP eligibility.At least one of the following certifications:GIAC/SANS: GCIA, GCIH, GCFA, GCFE, GREM, GISF, GXPN, GWEB, GNFA, or GMONOffensive Security: OSCP, OSCE, OSWP, or OSEEISC2: CCFP or CISSPEC-Council: CEH, CHFI, LPT, ECSA, or ECI​Preferred Qualifications:Hands-on experience with Elastic Agent and Elastic Defend, including deployment, configuration, policy management, tuning, and troubleshooting.Experience optimizing endpoint telemetry and security controls in large-scale enterprise environments.Experience developing or tuning endpoint detection rules, threat signatures, IOCs, and behavioral detections.Experience using Elastic capabilities for endpoint investigation, advanced querying, forensic data collection, and response actions.Experience with CrowdStrike Falcon, McAfee/Trellix ePO, Tanium, or similar enterprise endpoint security platforms.Experience deploying and configuring CrowdStrike Falcon sensors and creating custom Indicators of Compromise (IOCs) and Indicators of Attack (IOAs).Experience supporting endpoint security operations within large, complex, or mission-critical environments.Relevant endpoint security certifications, such as Elastic, CrowdStrike, or Tanium certifications.If you're looking for comfort, keep scrolling. At Leidos, we outthink, outbuild, and outpace the status quo — because the mission demands it. We're not hiring followers. We're recruiting the ones who disrupt, provoke, and refuse to fail. Step 10 is ancient history. We're already at step 30 — and moving faster than anyone else dares.Original Posting:August 25, 2026For U.S. Positions: While subject to change based on business needs, Leidos reasonably anticipates that this job requisition will remain open for at least 3 days with an anticipated close date of no earlier than 3 days after the original posting date as listed above.Pay Range:Pay Range $107,900.00 - $195,050.00The Leidos pay range for this job level is a general guideline only and not a guarantee of compensation or salary. Additional factors considered in extending an offer include (but are not limited to) responsibilities of the job, education, experience, knowledge, skills, and abilities, as well as internal equity, alignment with market data, applicable bargaining agreement (if any), or other law.SummaryLocation: Adelphi, MDType: Full time

Vacancy posted 10 hours ago
Similar jobs that could be interesting for youBased on the Endpoint Security Analyst - Elastic Defend in Hyattsville, MD vacancy
  •  ...Leidos is seeking an experienced Endpoint Security Analyst to support a DoW cyber security task order. You will deploy Elastic Agent and Elastic Defend across the enterprise to enhance threat detection, telemetry collection, and automated response capabilities. You... 
    Suggested

    Jobleads-US

    Adelphi, MD
    3 days ago
  • $104k - $166k

     ...currently seeking to hire an experienced Forensics / Malware Security Analyst for its Federal Strategic Cyber Group.Location: Chandler, AZ...  ...Conduct advanced network and digital media forensics, including endpoint, memory, and log analysis.Support incident response handling,... 
    Suggested
    Contract work
    Currently hiring
    Shift work

    Peraton Corporation

    Washington DC
    4 days ago
  • $129k - $171k

     ...TEAMAnduril's Detection and Response team is looking for a Security Operations Analyst to be the watchtower for Anduril's critical defense...  ...multiple disciplines including, but not limited to, phishing, endpoints, cloud infrastructure and services, and SaaS applicationsBuild... 
    Suggested
    Full time
    Work experience placement
    Immediate start

    Anduril Industries

    Washington DC
    10 hours ago
  •  ...Seeking experienced security operations professionals to join a leading...  ...as a Security Operations Analyst, supporting organization-wide...  ...Posture Management (CSPM), and Endpoint Detection and Response (EDR)....  ...: CrowdStrike, Carbon Black, Defender ATP Security Frameworks &... 
    Suggested
    Full time
    Shift work
    Night shift

    The Phoenix Group

    Arlington, VA
    2 days ago
  •  ...About the job Security Operations Center (SOC) Analyst Job Description: We are seeking a skilled and detail-oriented Security Operations Center...  ..., and response (SOAR) platforms. Familiarity with endpoint detection and response (EDR) tools and technologies.... 
    Suggested

    4 Staffing Corp

    Washington DC
    5 days ago
  • $3,000 per month

     ...cybersecurity team supporting the U.S. Department of State. As a Security Analyst, you will support day-to-day cybersecurity operations by...  ...or other federal civilian agencies. Experience with Microsoft Defender, Microsoft Sentinel, Splunk, ServiceNow, Tenable Nessus, Qualys... 
    Contract work
    Work from home

    Acuity

    Washington DC
    3 days ago
  • Job Summary: The Tier 3 SOC Analyst acts as a senior escalation point within the Security Operations Center, providing expert technical analysis, threat detection...  ...in incident response, SIEM, IDS/IPS, firewalls, endpoint protection, and vulnerability management. ~... 

    vTech Solution

    Washington DC
    2 days ago
  •  ...and grow professionally? We can help! We are seeking a IT Security Operations Analyst for the IT Technology Services contract. This project...  ...Enterprise Lifecycle Management Services (ELMS) and Microsoft Endpoint Configuration Manager (MECM). Monitor patching... 
    Full time
    Contract work
    Part time
    Work at office
    Remote work
    Monday to Friday

    Terrestris Global Solutions

    Washington DC
    3 hours ago
  •  ...qualified applicants to apply. We are currently seeking a Senior Security Operations Analyst to support cybersecurity operations within a federal...  ...and alerting systems Log analysis across network, endpoint, and cloud environments Threat detection and monitoring tools... 
    Full time
    Local area
    Shift work

    Otoe Missouria Group

    Washington DC
    3 days ago
  •  ...Job Title: Information Security Analyst Location: Bellevue, WA Type: Contract Contractor Work Model: Onsite Responsibilities...  ...suspicious activity and email. Assist in developing and enforcing endpoint security policies for device hardening, removable media... 
    Permanent employment
    Contract work
    For contractors
    Work experience placement
    Local area

    System One

    Washington DC
    3 hours ago
  •  ...Complete Description:   The SOC Analyst - Tier 3 is cybersecurity technical resource...  ...identify undetected threats. ·       Support security tool/application tuning engagements with...  ..., vulnerability scanning tools, endpoint protection, secure coding, etc. ·... 
    Full time
    Contract work
    Worldwide

    AHU Technologies Inc

    Washington DC
    5 days ago
  •  ...given the means and mentorship needed to succeed, and your creativity will be rewarded.About the PositionDexis is seeking a Security Assistance Analyst to support anticipated programming with the Department of State. This opportunity will provide program analysis,... 
    Contract work

    Dexis Consulting Group

    Washington DC
    2 days ago
  •  ...State Government Agencies. Learn More About ProSidian Consulting at DescriptionProSidian seeks a Mid-Level InfoSec Mobile Device Security Analyst Consultant focusing on Cyber-Security/Information Security (INFOSEC) and IT Effectiveness Solution related issues, to support... 
    Full time
    For contractors
    Work experience placement
    Internship
    Work at office
    Monday to Friday
    Shift work

    Prosidian Consultng

    Washington DC
    4 days ago
  •  ...objectives. The ProSidian Federal Govt. Client’s Mortgage Backed Securities (MBS) programs help to channel funds from the nation's capital...  ...economic and industry trends, and customer demand. Financial analysts provide this information by gathering and analyzing data. They... 
    Full time
    For contractors
    Bank staff
    Internship
    Work at office

    Prosidian Consultng

    Washington DC
    4 days ago
  •  ...solutions, tested leadership, and trusted results to enable national security missions worldwide.Job Description*** This position is contingent upon contract award ***OverviewSOSi is seeking a Security Analyst - Forensics/Malware Analysis to support cyber defense and... 
    Contract work
    Work at office
    Worldwide
    Monday to Friday
    Weekend work
    Afternoon shift

    SOSi

    Washington DC
    4 days ago
  • $145k - $200k

    Washington, D.C.Information Security /Full-time /On-siteA World-Changing CompanyPalantir builds the world’s leading software for data-driven...  ...missing children, and more.The RoleAs a Defensive Security Analyst, you are responsible for the security of Palantir’s people and... 
    Full time
    Work experience placement
    Work at office
    Remote work
    Work from home
    Relocation package

    Palantir Technologies

    Washington DC
    4 days ago
  • $102.5k - $188.9k

     ...confidence, and proactively manage to secure success. Cyber threats...  .... As a Cyber Exploitation Analyst, you will support cyber...  ...offering assists clients in defending against advanced threats by transforming...  ...prevention systems (IPS), or endpoint detection and response (EDR)... 
    Work at office

    Deloitte LLP

    Maryland, MD
    17 days ago
  • $69.4k - $158k

    Security Cooperation Logistics AnalystThe Opportunity: As a product support analyst, you know the importance of delivering practical, data-driven logistics solutions that support system readiness and long-term sustainability. On our team, you will play an essential role... 
    Full time
    Contract work
    Part time
    For contractors
    Work at office
    Local area
    Remote work

    Booz Allen Hamilton

    Washington DC
    4 days ago
  • $120k - $145k

     ...defense. As an Alaska Native owned corporation, our work helps secure an enduring future for our shareholders. Join our team and discover...  ...to Work™ ASRC NetCentric is seeking an Application Security Analyst to support a DHS program.Work location: RemoteClearance: Public... 
    For contractors
    Work at office

    ASRC Federal Holding Company

    Washington DC
    1 day ago
  • $100k - $170k

     ...Veteran Firm Seeking a Network and Security Analyst for an Onsite Assignment in Washington, DC My name is Stephen Hrutka. I lead a Veteran-Owned management consulting firm in Washington, DC. We specialize in Technical and Cleared Recruiting for the Department of Defense... 

    HRUCKUS

    Washington DC
    7 hours ago
  • $89.49k - $95.88k

     ...Veteran Firm Seeking a Senior Security Operations Center (SOC) Analyst - Tier 3 for an Onsite Assignment in Washington, DC My name is Stephen Hrutka, and I lead a Veteran-owned consulting firm in Washington, DC, focused on strategic sourcing, supply chain, and IT Staffing... 
    Full time
    Work at office

    HRUCKUS

    Washington DC
    3 hours ago
  •  ...Description **This position requires Secret Security Clearance** COMPANY OVERVIEW...  ...Business Training. Senior Security Analyst LNO is seeking an Information Cloud Security...  ...within Microsoft Azure using Microsoft Defender for Cloud and Azure Policy to ensure... 
    Work at office
    Local area
    Worldwide

    LNO Inc

    Arlington, VA
    4 days ago
  •  ...Opportunity Details Employee Oracle Security Analyst 102353 Washington DC Oracle Security Analyst Location: Washington, DC Required Clearance: Public Trust Since 1999, ITEC has delivered mission-critical support to the DoD and... 

    Information Technology Engineering Corporation

    Washington DC
    4 days ago
  •  ...experience with a premiere Azure client. Understanding and experience with:• Azure Active Directory Sync (AAD-Sync) • Office-365 security implementations with ADFS proxy, and Multi-factor Authentication (MFA)• Microsoft’s Enterprise Mobility Suite (EMS) and includes Intune... 
    Work at office
    Worldwide

    USM Systems

    Washington DC
    1 day ago
  • $129k - $171k

     ...months, not years.ABOUT THE TEAMThe Counterintelligence (CI) and Security Investigations Team’s safeguards Anduril’s workforce and supply...  ...and mitigate threats. The Counterintelligence & Security Risk Analyst Lead is responsible for analyzing threats from nation state... 
    Full time
    Contract work
    For contractors
    Work experience placement
    Immediate start

    Anduril Industries

    Washington DC
    2 days ago
  •  ...Position Overview: As a SOC Analyst, you will play a pivotal role in supporting the...  ...for establishing an interim vSOC (Virtual Security Operations Center) and subsequently, a...  ...EnCase/OpenText Digital, BigFix, Symantec Endpoint Protection (SEP), MaaS-360 (IBM MaaS-360... 
    Permanent employment
    Full time
    Contract work
    For contractors
    Interim role
    Immediate start
    Relocation

    CRDF Global

    Arlington, VA
    1 day ago
  • $117.2k - $176.7k

     ...emerging technologies to enhance delivery of your work product. Additionally, accountable for advising business partners on adopting new security requirements.This candidate must be a U.S. citizen (U.S. born or naturalized) operating on U.S. Soil who does not hold dual... 
    Full time

    Salesforce

    Washington DC
    4 days ago
  • $117.2k - $176.7k

     ...Salesforce leadership has the information needed to make strategic, risk-based decisions. The GCC team is a division within the Product Security Organization, and you'll play a pivotal role in partnering with engineering to translate complex mandates into actionable controls... 
    Full time

    Salesforce

    Washington DC
    1 day ago
  • DescriptionSAIC is looking for a Senior Information Systems Security Analyst to join our team supporting an important US government agency in the National Capital Region. This is an exciting opportunity to work with a team responsible for IT Security Risk and Compliance... 
    Work at office
    2 days per week

    Science Applications International Corporation

    Washington DC
    4 days ago
  • $110k - $122k

     ...Title: Research Security Analyst Location: USDA Headquarters, 1400 Independence Ave., S.W., Washington, DC Job Type: Full-time Onsite Salary: $110,000-$122,000/ year Experience: Minimum of Five (5) years’ experience Education: Master’s Degree in biotechnology... 
    Full time
    Contract work
    Temporary work
    Work at office
    Local area
    Flexible hours

    Lindahl Reed LLC

    Washington DC
    2 days ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to Endpoint Security Analyst - Elastic Defend. Be the first to apply!