Information Security Engineer - Endpoint
$145k - $200kPalantir Technologies
Washington, D.C.Information Security /Full-time /HybridA World-Changing CompanyPalantir builds the world’s leading software for data-driven decisions and operations. By bringing the right data to the people who need it, our platforms empower our partners to develop lifesaving drugs, forecast supply chain disruptions, locate missing children, and more.The RoleWe're looking for someone who has spent years thinking adversarially about Windows and Active Directory — not just operating them, but understanding every layer of how they can be abused, detected, and hardened. If you've written detections for DCSync, built hunting pipelines around Kerberos ticket anomalies, or reverse-engineered a novel persistence mechanism in a Windows kernel driver, this is the team you want to be on.As an Information Security Engineer focused on Windows and Active Directory, you'll own the security of Palantir's global Windows infrastructure. Your team runs 24/7 prevention, detection, and investigation of security events across our entire environment. The adversaries we face are sophisticated. We need someone who is more so.Core ResponsibilitiesOwn the security posture of Palantir's Windows and Active Directory estate — hardening, configuration standards, and ongoing validation that those standards hold.Reduce attack surface across AD: audit and remediate misconfigurations, legacy protocol exposure, excessive privilege, Kerberos delegation abuse, and tier model violations.Evaluate, deploy, and own the configuration of defensive tooling across the Windows environment: EDR, PAM, identity threat detection, and endpoint hardening controls.Build and maintain automation for security operations across Windows infrastructure — patching pipelines, configuration drift monitoring, access reviews, and credential hygiene.Partner with Identity and Infrastructure teams to drive architectural improvements: tiered administration, Protected Users, LAPS, Credential Guard, and authentication policy silos.Translate findings from assessments and red team exercises into durable fixes — configuration changes, architectural improvements, and policy updates that reduce recurrence.What We're Looking ForActive DirectoryDeep, working knowledge of AD architecture: sites and services, replication, trust relationships, delegation models, and the LDAP schema.Hands-on experience investigating and detecting AD attacks across the full kill chain — from initial enumeration through domain dominance.Familiarity with attack tooling (BloodHound, Impacket, Rubeus, Mimikatz, CrackMapExec) and, critically, what they leave behind.Experience hardening AD environments: tiered administration, Protected Users, LAPS, Credential Guard, PAM trusts, and authentication policy silos.Windows InternalsThorough understanding of Windows security architecture: access tokens, privilege model, integrity levels, LSASS and credential storage, SAM, and the Security Reference Monitor.Ability to read and interpret Windows kernel structures, driver behavior, and undocumented APIs when necessary.Proficiency with low-level analysis tools: WinDbg, Process Monitor, Process Hacker, Volatility, and x64dbg.Experience with ETW-based telemetry pipelines and building detections on top of raw Windows event data.Detection & ResponseProven track record writing high-fidelity detection logic, not just tuning vendor signatures.Experience leading complex incident response investigations, including those involving nation-state or sophisticated criminal actors.Strong forensic fundamentals across disk, memory, and network artifacts on Windows systems.What We ValueExperience with Entra ID (Azure AD), hybrid identity architectures, and cloud-based attack paths that pivot through on-prem AD.Prior work in adversary simulation, red teaming, or offensive security research — especially against AD targets.Public contributions: conference talks (BlueHat, BSides, SANS, etc.), blog posts, or open-source tooling.What We Require5+ years of hands-on security experience, with the majority focused on Windows environments and Active Directory.Proficiency in Python or PowerShell for detection development, automation, and forensic tooling.Active TS/SCI security clearance, or eligibility and willingness to obtain one.A portfolio of real work: detections you've written, research you've published, tools you've built, or incidents you've led.SalaryThe estimated salary range for this position is estimated to be $145,000 - $200,000/year. Total compensation for this position may also include Restricted Stock units, sign-on bonus and other potential future incentives. Further note that total compensation for this position will be determined by each individual’s relevant qualifications, work experience, skills, and other factors. This estimate excludes the value of any potential sign-on bonus; the value of any benefits offered; and the potential future value of any long-term incentives.Our benefits aim to promote health and wellbeing across all areas of Palantirians’ lives. We work to continuously improve our offerings and listen to our community as we design and update them. The list below details our available benefits and some of the perks that can be enjoyed as an employee of Palantir Technologies.Benefits• Employees (and their eligible dependents) can enroll in medical, dental, and vision insurance as well as voluntary life insurance• Employees are automatically covered by Palantir’s basic life, AD&D and disability insurance• Commuter benefits• Take what you need paid time off, not accrual based• 2 weeks paid time off built into the end of each year (subject to team and business needs)• 10 paid holidays throughout the calendar year• Supportive leave of absence program including time off for military service and medical events• Paid leave for new parents and subsidized back-up care for all parents• Fertility and family building benefits including but not limited to adoption, surrogacy, and preservation• Stipend to help with expenses that come with a new child• Employees can enroll in Palantir’s 401k planLife at PalantirWe want every Palantirian to achieve their best outcomes, that’s why we celebrate individuals’ strengths, skills, and interests, from your first interview to your longterm growth, rather than rely on traditional career ladders. Paying attention to the needs of our community enables us to optimize our opportunities to grow and helps ensure many pathways to success at Palantir. Promoting health and well-being across all areas of Palantirians’ lives is just one of the ways we’re investing in our community. Learn more at Life at Palantir and note that our offerings may vary by region.In keeping consistent with Palantir’s values and culture, we believe employees are “better together” and in-person work affords the opportunity for more creative outcomes. Therefore, we encourage employees to work from our offices to foster connectivity and innovation. Many teams do offer hybrid options (WFH a day or two a week), allowing our employees to strike the right trade-off for their personal productivity. Based on business need, there are a few roles that allow for “Remote” work on an exceptional basis. If you are applying for one of these roles, you must work from the state in which you are employed. If the posting is specified as Onsite, you are required to work from an office.If you want to empower the world's most important institutions, you belong here. Palantir values excellence regardless of background. We are proud to be an Equal Opportunity Employer for all, including but not limited to Veterans and those with disabilities. Palantir is committed to making the application and hiring process accessible to everyone and will provide a reasonable accommodation for those living with a disability. If you need an accommodation for the application or hiring process, please reach out and let us know how we can help.Please note that you will never be asked to submit a payment or share financial information to participate in our interview process. If you suspect that you've been contacted by a scammer, we recommend you cease all communication with the individual and consider reporting them to the relevant authorities, such as the US FBI Internet Crime Complaint Center (IC3).If you would like to understand more about how your personal data will be processed by Palantir, please see our Privacy Policy.
- ...administrative policies, internal controls, and security procedures. The successful candidate... ...with enterprise risk management and information systems audit functions. Must be on-... ...logging across network infrastructure and endpoints to ensure the rapid detection and...SuggestedWork at office
$135k - $200k
Washington, D.C.Information Security /Full-time /HybridA World-Changing CompanyPalantir builds the world’s leading software for data-driven decisions... ...children, and more.The RoleAs an Information Security Engineer, you are responsible for the security of Palantir’s people...SuggestedFull timeWork experience placementWork at officeRemote workWork from homeRelocation package- ...interface and collaborate with other Cybersecurity/Information Assurance (IA) professionals (ISSMs, ISSOs), Security professionals (CPSOs, FSOs), and System... ...experience related to Information Assurance/Cyber Engineering requirements, development, and implementation....Suggested
- ...is building the next generation of identity infrastructure to secure access across enterprise systems. The role focuses on designing... ...and security teams to translate complex concepts into actionable guidance for engineers and non‑technical stakeholders. #J-18808-Ljbffr...Suggested
- About this role:Wells Fargo is seeking a Lead Information Security Engineer in Technology as part of Cybersecurity. Learn more about the career... ...correlating data from multiple security tools, such as SIEM, endpoint, network, cloud, identity, vulnerability management, or...SuggestedFull timeWork experience placement
$104k - $156k
...Remote/Hybrid Job Overview The Advanced Security Engineer is a technically deep, hands-on... ...redundancy through all security layers. Endpoint Security & Hardening Deploy, integrate... ...: Bachelor's in Computer Science, Information Security, or equivalent experience. 5+...Remote work$115k - $118k
...hard things, together. The Appian Information Security department continuously evaluates the... ...security products, logging devices, and endpoint monitors. Design and implement... ...mitigation. Execute dedicated security engineering projects that directly improve Appian'...Work experience placementInternshipWork at officeLocal areaFlexible hours$138k - $166k
As a Sr. Endpoint Security Engineer (Trellix) I, you’ll serve as the technical lead for the organization's endpoint security and data protection... ...or mental disability, medical condition, genetic information, pregnancy, family structure, marital status, ancestry, domestic...Full timeLocal area$142k - $158k
Job DescriptionEverforth ECS Federal is seeking a Senior Endpoint Security Engineer to support a mission-focused federal cybersecurity program in Washington DC.Please Note: This position is contingent upon contract award.Salary Range: $142,000 - $158,000Join Everforth...Contract work$107.9k - $195.05k
...is seeking an experienced M365 Security and Compliance Administrator to join our Information Technology team. This role requires... ...agency context. This senior engineering role sits at the center of the... ...enterprise Windows, macOS, iOS/iPadOS endpoints; ensuring compliant, reliable...Full timeNight shift$50 per hour
...dedicated to accomplishing hard things, together. Appian's Information Security team operates at the heart of our Enterprise-Grade... ...Master's degree in Cybersecurity, Computer Science, Computer Engineering, Information Technology, Information Systems, or a related...Hourly payFull timeSummer workInternshipSummer internshipWork at officeLocal area$159.3k - $202.4k
Amazon is seeking qualified Security Engineers to join our innovative, high energy Information Security team. In this role you will work within the Amazon Security Incident Response Team (SIRT). SIRT Security Engineers respond to security events, conduct analysis of threats...InternshipFlexible hours$100k - $110k
...implementation of in-house and cloud-based information systems, and enterprise software... ...architectures that support the bank’s information security operations functions. This role... ...serves as a technical resource for security engineering initiatives, applying advanced...Temporary workRemote workFlexible hours$140k - $170k
...Security & Compliance Engineer Join to apply for the Security & Compliance Engineer role at Nominal. About... ...As an early team hire dedicated to information security (Security) and governance,... ...Nominal’s network, ensuring endpoint security, establishing baseline device...Permanent employmentH1bVisa sponsorshipWork visa- ...IT Security Engineer We are seeking an IT Security Engineer to join our growing technology... ...systems and networks 24/7 using security information and event management (SIEM) tools;... ...hardening of servers, workstations, and endpoints; manage patch management and system updates...Full timeFlexible hours
- ...Join to apply for the Security Engineer role at HireCapital Join to apply for the Security Engineer... ...to security events, deploy modern endpoint and detection solutions, and help... ...Bachelor’s degree in Computer Science, Information Security, or related field (or equivalent...Permanent employmentFull timeWork at officeRemote work
$108.8k - $163.2k
Title:Information System Security Engineer (ISSE)Belong. Connect. Grow. with KBR!KBR’s National Security Solutions team provides high-end engineering... ...analyzing security logs, SIEM alerts, network traffic, and endpoint telemetry using Splunk EnterpriseDevelop automation...Full timeTemporary workLocal areaRelocation package$170k - $210k
GovCIO is currently hiring for a SME Information Systems Security Engineer to lead cybersecurity, compliance, and risk management activities supporting... ...maintaining compliance frameworks for enterprise-scale endpoint infrastructure.Demonstrated technical mastery...Currently hiring$104k - $166k
ResponsibilitiesPeraton is seeking an Information Systems Security Engineer (ISSE) to support our customer onsite in Washington D.C. Responsibilities... ...security logs, SIEM alerts, network traffic, and endpoint telemetry using Splunk Enterprise.Develop automation scripts...Contract workShift work$135k - $165k
GovCIO is currently hiring for a Senior Information Systems Security Engineer to support cybersecurity, compliance, and risk management activities supporting... ...performing continuous scanning, risk analysis, and endpoint patching workflows.Working knowledge of risk reduction...Currently hiring$131.3k - $237.35k
Leidos has an exciting opportunity a Principal Endpoint Security Systems Engineer in our Intel Security Sector's Analysis Solutions Business Area. Our talented team is at the forefront in Security Engineering, Computer Network Operations (CNO), Mission Software, Analytical...Full timeImmediate startFlexible hours$118.1k - $200.76k
...Description BAE Systems is seeking an Information Assurance / Cybersecurity Analyst to... ...IT networks, systems, applications, and security tools to ensure they adhere to Navy and... ...in more than 40 countries. We develop, engineer, manufacture, and support products and systems...Full timeFor contractorsWork experience placementLocal area$60 - $70 per hour
...TITLE: Security Endpoint Engineer/Admin LOCATION: Washington DC MINIMUM EDUCATION: Bachelor’s degree in IT or related field... ...deployment of apps on Windows and macOS. · Provide up to date information on SW updates and alerts. · Support team in the design...Hourly payLong term contractPermanent employmentFull time- ...the fields of Software Development, Software Consultancy and Information Technology Enabled Services.Job DescriptionThe essential functions... ...-on configuration, operation and monitoring of all IT network security devices to include firewalls, remote access appliances, and...Temporary workRemote work
- GuidePoint Security provides trusted cybersecurity expertise, solutions and services that... .... We are growing our federal presales engineering team and looking for technically... ...added reseller that focuses exclusively on Information Security. Since its inception in 2011,...Contract workFor contractorsRemote workFlexible hours
$75.2k - $158.1k
Job Title: Endpoint Security Engineer IIIJob Category: Information TechnologyTime Type: Full timeMinimum Clearance Required to Start: TS/SCIEmployee Type: RegularPercentage of Travel Required: Up to 10%Type of Travel: Local* * *The Opportunity:CACI has an exciting opportunity...Long term contractContract workWork experience placementLocal areaFlexible hours$208.3k - $281.8k
AWS Security is seeking an experienced and technical Security Engineering Manager to lead the Foundational & Hardware Security team. In this role, you will own the... ...audiencePreferred qualification - Knowledge of information security risk-based prioritization- Knowledge of...Flexible hours- ...Job Title Cybersecurity Engineer – Senior Location Washington, DC... ...Cybersecurity Engineer to support security initiatives in Washington,... ...tools (e.g., SIEM, IDS/IPS, endpoint protection). Collaborate... ...experience in cybersecurity, information security, or a related field...Contract work
$160k - $205k
...about cybersecurity and looking to work with some of the best information security professionals in the world in challenging environments?... ...projects, share your knowledge and experience by mentoring junior engineers, and assist with monitoring and response functions, so...Full timeWork at officeRemote workShift workDay shift$293k - $385k
...benefits all of humanity. The Security team protects OpenAI’s... ...a Forward Deployed Security Engineer (FDSecE) you will be responsible... ...threat monitoring, network/endpoint detection and response, or red... ...status, disability, genetic information, or other applicable legally...Work at officeLocal areaRemote workRelocation packageFlexible hours
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Information Security Engineer - Endpoint. Be the first to apply!
- software data engineer Washington DC
- entry level big data engineer Washington DC
- big data developer Washington DC
- senior data quality engineer Washington DC
- sr data engineer Washington DC
- junior big data engineer Washington DC
- big data cloud engineer Washington DC
- senior cloud data engineer Washington DC
- data developer Washington DC
- data science developer Washington DC



