Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

Information Security Engineer - Endpoint

$145k - $200k

Palantir Technologies

Information Security Engineer Focused on Windows and Active Directory

Palantir builds the world's leading software for data-driven decisions and operations. By bringing the right data to the people who need it, our platforms empower our partners to develop lifesaving drugs, forecast supply chain disruptions, locate missing children, and more.

The Role

We're looking for someone who has spent years thinking adversarially about Windows and Active Directory — not just operating them, but understanding every layer of how they can be abused, detected, and hardened. If you've written detections for DCSync, built hunting pipelines around Kerberos ticket anomalies, or reverse-engineered a novel persistence mechanism in a Windows kernel driver, this is the team you want to be on. As an Information Security Engineer focused on Windows and Active Directory, you'll own the security of Palantir's global Windows infrastructure. Your team runs 24/7 prevention, detection, and investigation of security events across our entire environment. The adversaries we face are sophisticated. We need someone who is more so.

Core Responsibilities

  • Own the security posture of Palantir's Windows and Active Directory estate — hardening, configuration standards, and ongoing validation that those standards hold.
  • Reduce attack surface across AD: audit and remediate misconfigurations, legacy protocol exposure, excessive privilege, Kerberos delegation abuse, and tier model violations.
  • Evaluate, deploy, and own the configuration of defensive tooling across the Windows environment: EDR, PAM, identity threat detection, and endpoint hardening controls.
  • Build and maintain automation for security operations across Windows infrastructure — patching pipelines, configuration drift monitoring, access reviews, and credential hygiene.
  • Partner with Identity and Infrastructure teams to drive architectural improvements: tiered administration, Protected Users, LAPS, Credential Guard, and authentication policy silos.
  • Translate findings from assessments and red team exercises into durable fixes — configuration changes, architectural improvements, and policy updates that reduce recurrence.

What We're Looking For

Active Directory
  • Deep, working knowledge of AD architecture: sites and services, replication, trust relationships, delegation models, and the LDAP schema.
  • Hands-on experience investigating and detecting AD attacks across the full kill chain — from initial enumeration through domain dominance.
  • Familiarity with attack tooling (BloodHound, Impacket, Rubeus, Mimikatz, CrackMapExec) and, critically, what they leave behind.
  • Experience hardening AD environments: tiered administration, Protected Users, LAPS, Credential Guard, PAM trusts, and authentication policy silos.
Windows Internals
  • Thorough understanding of Windows security architecture: access tokens, privilege model, integrity levels, LSASS and credential storage, SAM, and the Security Reference Monitor.
  • Ability to read and interpret Windows kernel structures, driver behavior, and undocumented APIs when necessary.
  • Proficiency with low-level analysis tools: WinDbg, Process Monitor, Process Hacker, Volatility, and x64dbg.
  • Experience with ETW-based telemetry pipelines and building detections on top of raw Windows event data.
Detection & Response
  • Proven track record writing high-fidelity detection logic, not just tuning vendor signatures.
  • Experience leading complex incident response investigations, including those involving nation-state or sophisticated criminal actors.
  • Strong forensic fundamentals across disk, memory, and network artifacts on Windows systems.

What We Value

  • Experience with Entra ID (Azure AD), hybrid identity architectures, and cloud-based attack paths that pivot through on-prem AD.
  • Prior work in adversary simulation, red teaming, or offensive security research — especially against AD targets.
  • Public contributions: conference talks (BlueHat, BSides, SANS, etc.), blog posts, or open-source tooling.

What We Require

  • 5+ years of hands-on security experience, with the majority focused on Windows environments and Active Directory.
  • Proficiency in Python or PowerShell for detection development, automation, and forensic tooling.
  • Active TS/SCI security clearance, or eligibility and willingness to obtain one.
  • A portfolio of real work: detections you've written, research you've published, tools you've built, or incidents you've led.
Salary

The estimated salary range for this position is estimated to be $145,000 - $200,000/year. Total compensation for this position may also include Restricted Stock units, sign-on bonus and other potential future incentives. Further note that total compensation for this position will be determined by each individual's relevant qualifications, work experience, skills, and other factors. This estimate excludes the value of any potential sign-on bonus; the value of any benefits offered; and the potential future value of any long-term incentives.

Our benefits aim to promote health and wellbeing across all areas of Palantirians' lives. We work to continuously improve our offerings and listen to our community as we design and update them. The list below details our available benefits and some of the perks that can be enjoyed as an employee of Palantir Technologies.

Benefits

• Employees (and their eligible dependents) can enroll in medical, dental, and vision insurance as well as voluntary life insurance

• Employees are automatically covered by Palantir's basic life, AD&D and disability insurance

• Commuter benefits

• Take what you need paid time off, not accrual based

• 2 weeks paid time off built into the end of each year (subject to team and business needs)

• 10 paid holidays throughout the calendar year

• Supportive leave of absence program including time off for military service and medical events

• Paid leave for new parents and subsidized back-up care for all parents

• Fertility and family building benefits including but not limited to adoption, surrogacy, and preservation

• Stipend to help with expenses that come with a new child

• Employees can enroll in Palantir's 401k plan

Life at Palantir

We want every Palantirian to achieve their best outcomes, that's why we celebrate individuals' strengths, skills, and interests, from your first interview to your longterm growth, rather than rely on traditional career ladders. Paying attention to the needs of our community enables us to optimize our opportunities to grow and helps ensure many pathways to success at Palantir. Promoting health and well-being across all areas of Palantirians' lives is just one of the ways we're investing in our community. Learn more at Life at Palantir and note that our offerings may vary by region.

In keeping consistent with Palantir's values and culture, we believe employees are "better together" and in-person work affords the opportunity for more creative outcomes. Therefore, we encourage employees to work from our offices to foster connectivity and innovation. Many teams do offer hybrid options (WFH a day or two a week), allowing our employees to strike the right trade-off for their personal productivity. Based on business need, there are a few roles that allow for "Remote" work on an exceptional basis. If you are applying for one of these roles, you must work from the state in which you are employed. If the posting is specified as Onsite, you are required to work from an office.

If you want to empower the world's most important institutions, you belong here. Palantir values excellence regardless of background. We are proud to be an Equal Opportunity Employer for all, including but not limited to Veterans and those with disabilities. Palantir is committed to making the application and hiring process accessible to everyone and will provide a reasonable accommodation for those living with a disability. If you need an accommodation for the application or hiring process, please reach out and let us know how we can help.

Please note that you will never be asked to submit a payment or share financial information to participate in our interview process. If you suspect that you've been contacted by a scammer, we recommend you cease all communication with the individual and consider reporting them to the relevant authorities, such as the US FBI Internet Crime Complaint Center (IC3). If you would like to understand more about how your personal data will be processed by Palantir, please see our

Vacancy posted 1 day ago
Similar jobs that could be interesting for youBased on the Information Security Engineer - Endpoint in Washington DC vacancy
  •  ...Information Security Engineer IV The Information Security Engineer IV is a key member of the cyber security team that is responsible for designing...  ...infrastructure, cloud and on-premise applications, user endpoints, and other Technology Resources. The ideal candidate is... 
    Suggested
    Full time

    Dechert

    Washington DC
    1 day ago
  •  ...Description We are seeking an experienced Information Security Engineer to help strengthen our enterprise security program. This role is responsible...  ...Support enterprise security initiatives across networks, endpoints, identity platforms, and office environments Lead... 
    Suggested
    Work at office

    Municipal Securities Rulemaking Board

    Washington DC
    8 hours ago
  • $145k - $200k

     ...an Insider Threat Detection Engineer, you are responsible for protecting...  ...and genuine passion for security. You work well on a team, are...  ...insider risk Influence and inform security controls designed to...  ...similar Familiarity with endpoint telemetry and log sources from... 
    Suggested
    Work experience placement
    Work at office
    Remote work
    Work from home
    Relocation package

    Palantir Technologies

    Washington DC
    1 day ago
  • $52 - $58 per hour

     ...Description: Short Description: The Endpoint Engineer/Administrator shall assist with implementing and operating Endpoint Security infrastructure to protect the DCGOV IT...  ...and macOS. • Provide up to date information on SW updates and alerts. • Support team... 
    Suggested
    Hourly pay
    Permanent employment

    AHU Technologies, Inc.

    Washington DC
    8 hours ago
  •  ...Information Security Engineer (DevOps/Containerization Focus) Anywhere Type: Contract Category: DevOps Industry: Financial Services Workplace Type: Remote Reference ID: JN -062026-107274 Date Posted: 06/04/2026 Shortcut: Description Recommended... 
    Suggested
    Hourly pay
    Contract work
    Local area
    Remote work

    Eliassen Group

    Washington DC
    5 days ago
  •  ...Information Security Engineer Nightwing provides technically advanced full-spectrum cyber, data operations, systems integration and intelligence mission support services to meet our customers' most demanding challenges. Our capabilities include cyber space operations... 
    Contract work
    Local area

    Nightwing

    Arlington, VA
    2 days ago
  • A leading defense contractor in Bethesda, Maryland seeks an experienced Information Systems Security Engineer (ISSE) SME. You will design and implement secure information systems that protect mission operations. This role requires collaboration with multidisciplinary teams... 
    For contractors

    Leidos

    Bethesda, MD
    1 day ago
  • Leidos is seeking a Senior Information Security Systems Engineer (ISSE) to join a skilled team in Bethesda, MD. In this role, you will conduct cybersecurity risk assessments, support the design of threat detection capabilities, and engage with stakeholders to define security... 

    Leidos

    Bethesda, MD
    4 days ago
  • $114.6k - $192.5k

     ...A leading cybersecurity firm is seeking an Information Systems Security Engineer to support a Law Enforcement organization in Washington, DC. The role requires an active Top-Secret security clearance and involves identifying security needs, defining requirements, and designing... 

    Smxtech

    Washington DC
    2 hours ago
  • $114.08k - $152.11k

     ...growth by connecting people, data and applications – quickly, securely, and effortlessly. Together, we are building a culture...  ...and issue posture and assessment reports This Lead Information Security Engineer position operates in a supportive role implementing security... 
    Temporary work
    Worldwide

    Lumen Inc

    Washington DC
    2 days ago
  • $161k - $266k

     ...digital payments choices, making transactions secure, simple, smart and accessible. Our...  ...and Summary Lead Data & AI Security Engineer Who is Mastercard? Mastercard is a...  ...initiatives. The BSE team is a worldwide group of information security experts focused on helping... 
    Full time
    Part time
    Worldwide
    Flexible hours

    MasterCard

    Arlington, VA
    a month ago
  • $86.8k - $198k

    Data Security Engineer The Opportunity: Architect, deploy, and configure data security solutions across various clients for DoD, IC, and civilian...  ...with DSPMs such as Varonis and BigID Knowledge of federal information security policies, standards, procedures, directives,... 
    Full time
    Contract work
    Part time
    Work at office
    Local area
    Remote work

    Booz Allen Hamilton

    Arlington, VA
    1 day ago
  •  ...Senior Security Engineer Job Locations US-MD-Bethesda Job ID 2026-37...  ...security impact analysis. Optimize endpoint security using tools like HCL BigFix for...  ...standards and guidelines. Implement Information Security Continuous Monitoring (ISCM)... 
    Full time
    Local area
    Immediate start

    NetImpact Strategies

    Bethesda, MD
    8 hours ago
  •  ...services. Your Role ~ As the IT Security Engineer, you will work collaboratively with the...  ...Certification, active CISSP (Certified Information Systems Security Professional)...  ...application coding, firewall rule management, endpoint detection and response tools, Anti-... 
    Flexible hours
    Weekend work

    IntraFi

    Arlington, VA
    4 days ago
  •  ...Sr. Endpoint Security Engineer Category: Analytics and Emerging Digital Technologies Main location: United States, District of Columbia...  ...be successful in this role: • Bachelor's degree in information technology, Cybersecurity, Computer Science, Information... 
    Full time
    Local area

    CGI

    Washington DC
    4 days ago
  • $149k - $248k

     ...regulated commercial clients to design, engineer, and operate modern security capabilities that enable mission...  .... Design and implement endpoint and device security controls, integrating...  ...Bachelor's degree in Cybersecurity, Information Systems, Computer Science, or a related... 
    Temporary work
    Remote work
    Flexible hours

    Guidehouse

    Washington DC
    1 day ago
  •  ...Everforth ECS Federal is seeking a Senior Endpoint Security Enginee r to support a mission-focused federal cybersecurity program in Washington...  ...Join Everforth ECS Federal as a senior endpoint security engineer protecting mission-critical federal environments. You will... 
    Contract work

    ECS Limited

    Washington DC
    8 hours ago
  •  ...Everforth ECS Federal is seeking a Mid-Level Endpoint Security Engineer to support a mission-focused federal cybersecurity program in Washington DC. Please Note: This position is contingent upon contract award. Join Everforth ECS Federal to grow your endpoint... 
    Contract work

    ECS Limited

    Washington DC
    8 hours ago
  •  ...IT Security Engineer Washington DC Job ID: 19864 Looking for an IT Security Engineer who wants...  ...sensitive data, including client and firm information, legal documents, and communications....  ...firewalls, VPNs, SIEMs, IDS/IPS, and endpoint protection. Strong understanding of... 

    Friedman Williams

    Washington DC
    4 days ago
  • $107.9k - $195.05k

     ...is seeking an experienced M365 Security and Compliance Administrator to join our Information Technology team. This role requires...  ...agency context. This senior engineering role sits at the center of the...  ...enterprise Windows, macOS, iOS/iPadOS endpoints; ensuring compliant, reliable... 
    Night shift
    Day shift

    Koitecc Solutions

    Washington DC
    3 days ago
  •  ...Information Systems Solutions (ISS) is looking for a mid-level ISSE supporting the Office...  ...Intelligence. The Information Systems Security Engineer (ISSE) is responsible for engineering,...  ...enterprise security solutions (SIEM, endpoint protection, IAM tools). • Prior work... 
    Work at office

    Information Systems Solutions

    Suitland, MD
    8 hours ago
  • $135k - $165k

     ...GovCIO is currently hiring for a Senior Information Systems Security Engineer to support cybersecurity, compliance, and risk management activities...  ...experience performing continuous scanning, risk analysis, and endpoint patching workflows. Working knowledge of risk... 
    Currently hiring

    Govcio LLC

    Alexandria, VA
    4 days ago
  • $131.3k - $237.35k

     ...Principal Endpoint Security Systems Engineer Leidos has an exciting opportunity for a Principal Endpoint Security Systems Engineer in our Intel...  ...physical or mental disability, medical condition, genetic information, pregnancy, family structure, marital status, ancestry,... 
    Immediate start
    Flexible hours

    Koitecc Solutions

    Bethesda, MD
    3 days ago
  •  ...CONTRACT AWARD**Overview: Job Title: Security Operations Engineer – Senior Location : Washington,...  ...tools (e.g., SIEM, IDS/IPS, endpoint protection). Collaborate with engineering...  ...of experience in cybersecurity, information security, or a related field. ~ Experience... 
    Contract work

    C3EL

    Washington DC
    24 days ago
  • $60 - $70 per hour

     ...Replies within 24 hours TITLE: Security Endpoint Engineer/Admin LOCATION: Washington DC MINIMUM EDUCATION: Bachelor'...  ...deployment of apps on Windows and macOS. • Provide up to date information on SW updates and alerts. • Support team in the... 
    Hourly pay
    Long term contract
    Permanent employment

    AHU Technologies, Inc.

    Washington DC
    8 hours ago
  • $110k - $140k

     ...responsible for executing hands‑on security operations to protect the...  ...closely with detection engineering, cloud, and platform teams to...  ...security alerts across cloud, endpoint, network, and identity...  ...Requirements: Bachelor’s degree in information security, Computer Science,... 
    Remote job
    Full time
    Local area

    SitusAMC

    Washington DC
    1 day ago
  • Security Operations Engineer (Senior) - NIGC Technology Automation & Management (TeAM), Inc. We are...  ...Responsibilities Apply knowledge and skills of information systems security principles, NIST...  ...Detection and Response (NDR), Endpoint Detection and Response (EDR),... 
    Full time
    Contract work
    Part time
    Remote work

    Technology,-Automation,-and-Management,-Inc.

    Washington DC
    5 days ago
  •  ...IT Network Engineer Requires US Citizenship Employment Term and Type: Regular, Full Time Required Security Clearance: Secret Required Education: High school diploma or equivalent...  ...technical services to include Secure Information Systems, Security and Engineering and... 
    Full time
    For contractors
    Casual work
    Work at office
    Local area
    Worldwide
    Monday to Friday

    FGS

    Suitland, MD
    1 day ago
  • $71.2k - $158.2k

     ...Job Description The Senior Federal Information Systems Security Engineer (ISSE) serves as a technical integrator responsible for ensuring that system-to-system connections across federal boundaries are properly documented, approved, and compliant with all required cybersecurity... 
    Contract work
    Temporary work
    Work experience placement
    Relocation
    Flexible hours

    Oracle

    Washington DC
    6 days ago
  •  ...established industry player is seeking a Data Center Operation Engineer III to provide top-tier support for network and communication link...  ...managing data center operations, and ensuring compliance with security protocols using AWS tools. You will work in a dynamic... 

    TechDigital Group

    Washington DC
    4 days ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to Information Security Engineer - Endpoint. Be the first to apply!