Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

Systems Engineer - Microsoft 365 Security & Compliance / Endpoint Security Engineer (GCC)

$107.9k - $195.05k

Koitecc Solutions

Leidos is seeking an experienced M365 Security and Compliance Administrator to join our Information Technology team. This role requires a seasoned professional who can strategically manage and enhance the security and compliance posture of the M365 environment within a GCC (Government Community Cloud) tenant, particularly in a federal agency context. This senior engineering role sits at the center of the organization’s device, identity, and M365 security ecosystem. The engineer is responsible for protecting enterprise Windows, macOS, iOS/iPadOS endpoints; ensuring compliant, reliable access to M365 services, and driving rapid engineering responses to vulnerabilities, outages, and operational risks. The successful candidate will apply with deep technical expertise, cross-platform engineering capability, and high operational security judgment. Role Summary Responsible for securing and maintaining compliance of the Microsoft 365 (M365) ecosystem and enterprise endpoints. Leads security governance, implements and enforces controls across M365, email, identity, devices, and telemetry, and provides incident response and audit/ATO support to ensure alignment with federal and organizational security requirements. Primary Responsibilities Strategic security oversight & governance Lead the development, implementation, and ongoing management of M365 security policies, standards, and technical guardrails aligned to federal requirements and organizational controls. Own governance for data protection capabilities including document classification, labeling, retention, and Data Loss Prevention (DLP) using Microsoft Purview. Email security & compliance management (Exchange Online) Define and enforce email security policies such as encryption, sensitivity labeling, and secure mail flow to reduce unauthorized disclosure. Implement and maintain email encryption solutions (S/MIME and/or Microsoft Information Protection) to protect confidentiality of email communications. Administer and monitor anti-spam, anti-phishing, and anti-malware protections to defend against evolving threats. Identity, access, and conditional access (Entra ID) Engineer and validate device‑compliance‑based Conditional Access policies across Windows, macOS, and mobile platforms. Investigate and remediate Conditional Access failures, identity anomalies, and external/guest access issues, including M365 B2B trust and secure partner collaboration requirements. Endpoint & device security engineering (Intune) Design, test, and deploy Intune configuration and compliance policies for Windows, macOS, and iOS/iPadOS, including Enrollment Status Pages (ESPs) and OOBE workflows. Develop remediation scripts (PowerShell/platform scripts/configuration profiles) to close compliance gaps and enforce security baselines. Coordinate enterprise rollout of urgent vulnerability mitigations and validated vendor fixes; support vulnerability reviews and baseline rebuilds. Risk management & compliance assurance (ATO / controls) Establish and operate a risk management approach to identify, assess, and mitigate security risks across the M365 ecosystem. Support ATO/control assessment activities by drafting implementation statements, collecting artifacts, and providing evidence aligned to audit/logging requirements. Security monitoring, SIEM, and telemetry engineering (Defender / Sentinel) Lead integration and operational management of Microsoft Defender and Microsoft Sentinel for threat detection, alerting, and response across M365. Build and maintain SIEM integrations/connectors (e.g., M365, collaboration and identity systems) and develop ingestion pipelines (e.g., Azure Function Apps) for third‑party logs. Tune audit retention, analytic rules, and alert logic to improve signal quality and investigation readiness. Incident response & operational support / collaboration Provide Tier 3 troubleshooting for device compliance failures, identity/access incidents, telemetry gaps, and OS/app protection issues. Partner with cross‑functional teams to align security solutions with business objectives, deliver technical leadership, and support enterprise syncs and operational reviews. Continuous improvement & innovation Stay current on M365 security/compliance updates, industry trends, and emerging capabilities; drive improvements to security posture and operational efficiency (including use of GCC Copilot where appropriate). Platform Scope / Tooling Microsoft 365 (GCC), Microsoft Purview (DLP/labels/classification/retention), Exchange Online, Entra ID & Conditional Access, Microsoft Intune, Microsoft Defender, Microsoft Sentinel, Azure (Function Apps / Log Analytics), plus integrations with collaboration/IT systems (e.g., ticketing and SaaS log sources). Day in the Life Morning Review Sentinel incidents, Defender telemetry gaps, and compliance drift. Respond to overnight CAP failures, Slack EMM issues, or OS update regressions. Join device/enterprise standups. Midday Build/test remediation scripts (CVE fixes, NTLM disablement, compliance corrections). Deploy or test Intune configuration profiles, ESP changes, or app protection updates. Troubleshoot support cases with Microsoft (Purview DSPM, Copilot logs, Okta connector). Afternoon Conduct cross-team investigations (external-user access anomalies, Teams meeting forensics). Validate CAP behaviors across platforms using test devices. Work on ATO evidence packages and documentation. End of Day Update Jira tasks, Confluence documentation, and CR submissions. Send status updates on active investigations, mitigations, and test results. Required Qualifications Technical Skills Expert‑level Intune engineering across Windows/macOS/iOS/iPadOS. Advanced PowerShell for remediation, automation, and OS image manipulation. Deep experience with Microsoft Defender (XDR, Endpoint, Cloud Apps). Hands‑on with Sentinel SIEM, Function Apps, and cross‑platform telemetry pipelines. Strong understanding of CAP architecture and identity risk enforcement. Experience with ATO control evidence, compliance mapping, and audit support. Soft Skills Growth mindset and willingness to learn emerging security domains. Strong cross-team collaboration (Cyber, Ops, EA, ICAM, Comms). Excellent communication‑clear summaries, user-impact translation, and documentation. High reliability, ownership, and situational awareness during high‑severity events. Preferred Qualifications Prior experience in federal security, high-compliance, or high-assurance environments. Experience with Jamf, Okta connectors, Copilot audit logging, Graph API operations. Experience with mSCP baseline engineering and macOS security hardening. Prior involvement in enterprise‑wide Conditional Access enforcement. Pay Range Pay Range $107,900.00 - $195,050.00 Pay and Benefits Employment benefits include competitive compensation, health and wellness programs, income protection, paid leave and retirement. Commitment to Non-Discrimination All qualified applicants will receive consideration for employment without regard to sex, race, ethnicity, age, national origin, citizenship, religion, physical or mental disability, medical condition, genetic information, pregnancy, family structure, marital status, ancestry, domestic partner status, sexual orientation, gender identity or expression, veteran or military status, or any other basis prohibited by law. Leidos will also consider for employment qualified applicants with criminal histories consistent with relevant laws. #J-18808-Ljbffr Koitecc Solutions

Vacancy posted 2 days ago
Similar jobs that could be interesting for youBased on the Systems Engineer - Microsoft 365 Security & Compliance / Endpoint Security Engineer (GCC) in Washington DC vacancy
  • $140k - $170k

     ...Security & Compliance Engineer Join to apply for the Security & Compliance...  ...advanced hardware systems—from spacecraft and...  ...s network, ensuring endpoint security,...  ...such as AWS GovCloud, Microsoft Azure, Microsoft Government...  ...Community Cloud (GCC). Experience implementing... 
    Microsoft
    Permanent employment
    H1b
    Visa sponsorship
    Work visa

    Nominal

    Washington DC
    2 days ago
  • $52 - $58 per hour

     ...Short Description: The Endpoint Engineer/Administrator shall assist with...  ...and operating Endpoint Security infrastructure to protect the...  ...including but not limited to Microsoft Intune, Tanium, and SCCM provisioning...  .... • Ensures that system hardware, operating systems,... 
    Microsoft
    Hourly pay
    Permanent employment

    AHU Technologies, Inc.

    Washington DC
    4 days ago
  • $131.3k - $237.35k

    Principal Endpoint Security Systems Engineer Leidos has an exciting opportunity for a Principal Endpoint Security Systems Engineer in our Intel Security Sector's Analysis Solutions Business Area . This role involves designing, deploying, maintaining, and upgrading endpoint... 
    Suggested
    Immediate start
    Flexible hours

    Koitecc Solutions

    Bethesda, MD
    14 hours ago
  • $120k

    RIVA Solutions Inc. is looking for a dedicated Endpoint Security Engineer to work remotely and support the Department of Health and Human Services...  ...skills, experience in federal environments, and compliance with standards like NIST and FISMA. The position offers a... 
    Suggested
    Remote job
    Flexible hours

    RIVA Solutions Inc.

    Washington DC
    3 days ago
  • $125k - $145k

     ...recognized skills in engineering, science,...  ...Senior Azure Systems Engineer with...  ...Azure and Office 365. This role...  ...operating within GCC High...  ...meet rigorous security, compliance, and operational...  ..., and private endpoints in Azure Create...  ...principles Managing Microsoft identity... 
    Microsoft
    Hourly pay
    Part time
    Work at office
    Remote work
    Flexible hours

    ERG

    Washington DC
    3 hours ago
  •  ...A technology firm in Washington, DC is looking for an Endpoint Engineer/Administrator to oversee and manage endpoint security and device configuration. The role requires expertise in Microsoft Intune, Tanium, and strong troubleshooting skills for both Windows and macOS... 
    Microsoft

    AHU Technologies Inc

    Washington DC
    2 days ago
  • Koitecc Solutions is seeking a seasoned M365 Security and Compliance Administrator to enhance the security posture of the Microsoft 365 environment in a federal agency setting. This role includes duties such as leading security governance, implementing email security policies... 
    Microsoft

    Koitecc Solutions

    Washington DC
    2 days ago
  •  ...Overview Job Description: The Endpoint Engineer/Administrator shall assist...  ...and operating Endpoint Security infrastructure to protect the...  ...including but not limited to Microsoft Intune, Tanium provisioning...  ...maintain endpoint operating system infrastructure and perform day... 
    Microsoft

    AHU Technologies Inc

    Washington DC
    2 days ago
  • $104.24k - $156.36k

     ...-critical facilities, secure environments, complex...  ..., audiovisual, and IT systems. Headquarters in Tysons...  ...technology solutions through engineering expertise and smart...  ...support, and ensure compliance with ICD 705 and other...  ...ESXi and vSphere. Microsoft Windows Server 2016-20... 
    Microsoft
    Work at office
    Local area

    M.C. Dean, Inc.

    Washington DC
    3 days ago
  • $60 - $70 per hour

     ...Replies within 24 hours TITLE: Security Endpoint Engineer/Admin LOCATION: Washington DC...  ...platforms including but not limited to Microsoft Intune, Tanium, and SCCM provisioning...  ...and maintain endpoint operating system infrastructure and perform day to day... 
    Microsoft
    Hourly pay
    Long term contract
    Permanent employment

    AHU Technologies, Inc.

    Washington DC
    4 days ago
  •  ...Lead Security Engineer Job Description Overview CoStar...  ...improve network and endpoint security...  ...members Experience with Microsoft Security tooling (Defender...  ...associated applications/systems to expediently...  ...is also committed to compliance with all fair employment... 
    Microsoft
    Full time
    Work at office
    Work from home
    Monday to Thursday

    CoStar Realty Information, Inc.

    Arlington, VA
    5 days ago
  • $90k - $100k

     ...Mid Level Systems Security Engineer At Dobbs Defense, we deliver mission-centric IT, cyber, and data analytics solutions for our government...  ...cybersecurity operations, vulnerability management, and RMF compliance activities for U.S. Coast Guard enterprise systems and... 
    Local area

    Dobbs Defense Solutions, LLC

    Washington DC
    14 hours ago
  •  ...Senior NOC Systems Engineer Seeking a Senior NOC Systems Engineer to...  ...operational continuity and security compliance. Responsibilities:...  ...foundational alignment) Microsoft Certified: Azure Administrator...  ...Familiarity with Microsoft 365 / Exchange Online Experience... 
    Microsoft
    Night shift

    Marathon TS

    Arlington, VA
    14 hours ago
  • Leidos has an exciting opportunity for a Principal Endpoint Security Systems Engineer in Bethesda, Maryland. This role involves designing, deploying, and maintaining endpoint security capabilities in a hybrid cloud/on-prem mission environment. The ideal candidate will... 

    Koitecc Solutions

    Bethesda, MD
    14 hours ago
  •  ...Threat Detection Security Engineer Job Description Overview CoStar...  ...of enterprise systems and attacker techniques, and...  ...efficacy. ~ Experience with Microsoft/Azure security tooling ~...  ...Group is also committed to compliance with all fair employment practices... 
    Microsoft
    Full time
    Work at office
    Work from home
    Monday to Thursday

    CoStar Realty Information, Inc.

    Arlington, VA
    14 hours ago
  •  ...affordability, energy security, and turn-key...  ...& Security Engineer to support and develop...  ...including Microsoft 365, Azure, endpoint management, virtual...  ..., improving systems, and helping build...  ...Maintain endpoint compliance, device...  ...including exposure to GCC High environments... 
    Microsoft
    Remote work

    blueEnergy Group

    Chevy Chase, MD
    7 hours ago
  • $90k - $100k

    Dobbs Defense Solutions, LLC in Washington, DC, is seeking a Mid Level Systems Security Engineer. This role supports cybersecurity operations, vulnerability management, and RMF compliance activities for U.S. Coast Guard systems. Candidates should possess a Bachelor's degree... 

    Dobbs Defense Solutions, LLC

    Washington DC
    1 day ago
  •  ...Field Systems Engineer (Windows / Endpoint Support) We are looking for a Field Systems Engineer (Windows...  ...Manage and maintain endpoints using Microsoft Intune and SCCM Create, update, and...  ...locations Ensure systems are updated, secure, and operating efficiently... 
    Microsoft

    Lumen Solutions Group Inc.

    Washington DC
    14 hours ago
  •  ...Supporting medium to large system deployments, including...  ...leading to advanced engineering studies designed to...  ...selecting and implementing security tools, policies, and...  ...various DoD-standard endpoint toolsets for OCO and...  ...Professional desired Have a Microsoft Certified Solutions or... 
    Microsoft
    Temporary work
    For contractors
    Local area

    Scientific Research

    Washington DC
    4 days ago
  • International Information Systems Security Certification Consortium is seeking an Endpoint Support Specialist to provide advanced end-user support and manage the...  ...environments and serves as a key technical resource for Microsoft 365. The ideal candidate will have 3 to 5 years of... 
    Microsoft
    Work at office

    International Information Systems Security Certification Con...

    Alexandria, VA
    1 day ago
  • $134.6k - $184.5k

     ...This role requires approximately 10-15 years of experience, and expertise in technical architecture, especially with security solutions like Microsoft Defender and CrowdStrike. Candidates must possess strong interpersonal and communication skills, and be capable of handling... 
    Microsoft
    Remote work

    Optiv

    Arlington, VA
    3 days ago
  • ZERMOUNT POSITION DESCRIPTION (PD) SECURITY & COMPLIANCE ENGINEERING (SCE) POSITION OVERVIEW Zermount Inc. is seeking System Compliance Engineering (SCE) to support system risk...  ...Log analysis platforms such as: Splunk, Microsoft Sentinel, IBM QRadar, etc. Configuration... 
    Microsoft
    Remote work

    Zermount, Inc.

    Arlington, VA
    4 days ago
  •  ...cybersecurity and compliance requirements, including...  ...NIST 800-171, and GCC High. Backed by...  ...Information Security, C3 is in an exciting...  ...scaling a marketing engine that not only...  ...candidate has 5+ years of systems administration experience in Microsoft 365 and/or Azure,... 
    Microsoft
    For contractors
    Work at office
    Remote work

    C3 Integrated Solutions

    Arlington, VA
    3 days ago
  • $95k - $150k

     ...The Role As a Systems Engineer in Palantir’s Technical...  ...working with Information Security to harden critical...  ...both commercial and GCC High M365 and Azure environments...  ...Act as Microsoft 365 SME and point of escalation...  ...with Palantir’s Compliance teams to maintain compliance... 
    Microsoft
    Work experience placement
    Work at office
    Remote work
    Work from home
    Relocation package

    Palantir Technologies

    Washington DC
    more than 2 months ago
  • $100k - $110k

     ...Description The Sr. Cloud Security Engineer plays a key role in...  ...environment by enhancing visibility, compliance, and threat detection...  ...scalable, resilient, and secure systems. Note that visa...  ...Proficiency in CSPM tools such as Microsoft Defender for Cloud, Wiz,... 
    Microsoft
    Temporary work
    Local area
    Visa sponsorship
    Work visa
    Flexible hours

    WTW inc.

    Arlington, VA
    1 day ago
  •  ...Senior Azure Cloud Security Engineer Location: Arlington...  ...experience in the Microsoft security ecosystem...  ...device compliance, location, and risk-...  ...Manage the full suite (Endpoint, Office 365, Identity, and Cloud...  ...Science, or Information Systems. ~ Microsoft Certified... 
    Microsoft
    For contractors
    Work at office

    Anveta

    Arlington, VA
    2 days ago
  •  ...skilled Cortex XSIAM Security Engineer to deploy, configure,...  ...including firewalls, endpoints, cloud platforms, identity...  ..., and ticketing systems. Configure data pipelines...  ...coverage and compliance reporting. Detection...  ...platforms (Splunk, Microsoft Sentinel, IBM QRadar,... 
    Microsoft
    Work from home
    Flexible hours

    CELESTIAL INNOVATIONS GROUP LLC

    Washington DC
    4 days ago
  • $134.6k - $184.5k

     ...requirements translate into security features and...  ...administration, and maturation of Endpoint Detection and Response...  ...Expertise with Microsoft Defender and Intune (...  ...OSI model), operating system fundamentals (Windows,...  ...regulatory requirements and compliance issues affecting... 
    Microsoft
    Work experience placement
    Local area
    Remote work
    Work from home

    Optiv

    Arlington, VA
    3 days ago
  •  ...Job Title: Systems Engineer Client: National Defense...  ...Certification: CompTIA Security+ CE & Computing Environment...  ...troubleshoot Office 365 (O365) services,...  ...security best practices and compliance standards. Stay...  ...technologies, and Microsoft/Azure/VMware product... 
    Microsoft
    Work at office
    Remote work
    1 day per week

    E-talentnetwork

    Washington DC
    1 day ago
  •  ...Sr. Endpoint Security Engineer Category: Analytics and Emerging Digital Technologies Main location...  ...critical role in monitoring security systems, responding to incidents, and conducting security assessments to ensure compliance with best practices. Your expertise... 
    Full time
    Local area

    CGI Technologies and Solutions, Inc.

    Washington DC
    4 days ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to Systems Engineer - Microsoft 365 Security & Compliance / Endpoint Security Engineer (GCC). Be the first to apply!