Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

Information Security Engineer - Endpoint

$145k - $200k

Palantir Technologies

Washington, D.C.Information Security /Full-time /HybridA World-Changing CompanyPalantir builds the world’s leading software for data-driven decisions and operations. By bringing the right data to the people who need it, our platforms empower our partners to develop lifesaving drugs, forecast supply chain disruptions, locate missing children, and more.The RoleWe're looking for someone who has spent years thinking adversarially about Windows and Active Directory — not just operating them, but understanding every layer of how they can be abused, detected, and hardened. If you've written detections for DCSync, built hunting pipelines around Kerberos ticket anomalies, or reverse-engineered a novel persistence mechanism in a Windows kernel driver, this is the team you want to be on.As an Information Security Engineer focused on Windows and Active Directory, you'll own the security of Palantir's global Windows infrastructure. Your team runs 24/7 prevention, detection, and investigation of security events across our entire environment. The adversaries we face are sophisticated. We need someone who is more so.Core ResponsibilitiesOwn the security posture of Palantir's Windows and Active Directory estate — hardening, configuration standards, and ongoing validation that those standards hold.Reduce attack surface across AD: audit and remediate misconfigurations, legacy protocol exposure, excessive privilege, Kerberos delegation abuse, and tier model violations.Evaluate, deploy, and own the configuration of defensive tooling across the Windows environment: EDR, PAM, identity threat detection, and endpoint hardening controls.Build and maintain automation for security operations across Windows infrastructure — patching pipelines, configuration drift monitoring, access reviews, and credential hygiene.Partner with Identity and Infrastructure teams to drive architectural improvements: tiered administration, Protected Users, LAPS, Credential Guard, and authentication policy silos.Translate findings from assessments and red team exercises into durable fixes — configuration changes, architectural improvements, and policy updates that reduce recurrence.What We're Looking ForActive DirectoryDeep, working knowledge of AD architecture: sites and services, replication, trust relationships, delegation models, and the LDAP schema.Hands-on experience investigating and detecting AD attacks across the full kill chain — from initial enumeration through domain dominance.Familiarity with attack tooling (BloodHound, Impacket, Rubeus, Mimikatz, CrackMapExec) and, critically, what they leave behind.Experience hardening AD environments: tiered administration, Protected Users, LAPS, Credential Guard, PAM trusts, and authentication policy silos.Windows InternalsThorough understanding of Windows security architecture: access tokens, privilege model, integrity levels, LSASS and credential storage, SAM, and the Security Reference Monitor.Ability to read and interpret Windows kernel structures, driver behavior, and undocumented APIs when necessary.Proficiency with low-level analysis tools: WinDbg, Process Monitor, Process Hacker, Volatility, and x64dbg.Experience with ETW-based telemetry pipelines and building detections on top of raw Windows event data.Detection & ResponseProven track record writing high-fidelity detection logic, not just tuning vendor signatures.Experience leading complex incident response investigations, including those involving nation-state or sophisticated criminal actors.Strong forensic fundamentals across disk, memory, and network artifacts on Windows systems.What We ValueExperience with Entra ID (Azure AD), hybrid identity architectures, and cloud-based attack paths that pivot through on-prem AD.Prior work in adversary simulation, red teaming, or offensive security research — especially against AD targets.Public contributions: conference talks (BlueHat, BSides, SANS, etc.), blog posts, or open-source tooling.What We Require5+ years of hands-on security experience, with the majority focused on Windows environments and Active Directory.Proficiency in Python or PowerShell for detection development, automation, and forensic tooling.Active TS/SCI security clearance, or eligibility and willingness to obtain one.A portfolio of real work: detections you've written, research you've published, tools you've built, or incidents you've led.SalaryThe estimated salary range for this position is estimated to be $145,000 - $200,000/year. Total compensation for this position may also include Restricted Stock units, sign-on bonus and other potential future incentives. Further note that total compensation for this position will be determined by each individual’s relevant qualifications, work experience, skills, and other factors. This estimate excludes the value of any potential sign-on bonus; the value of any benefits offered; and the potential future value of any long-term incentives.Our benefits aim to promote health and wellbeing across all areas of Palantirians’ lives. We work to continuously improve our offerings and listen to our community as we design and update them. The list below details our available benefits and some of the perks that can be enjoyed as an employee of Palantir Technologies.Benefits• Employees (and their eligible dependents) can enroll in medical, dental, and vision insurance as well as voluntary life insurance• Employees are automatically covered by Palantir’s basic life, AD&D and disability insurance• Commuter benefits• Take what you need paid time off, not accrual based• 2 weeks paid time off built into the end of each year (subject to team and business needs)• 10 paid holidays throughout the calendar year• Supportive leave of absence program including time off for military service and medical events• Paid leave for new parents and subsidized back-up care for all parents• Fertility and family building benefits including but not limited to adoption, surrogacy, and preservation• Stipend to help with expenses that come with a new child• Employees can enroll in Palantir’s 401k planLife at PalantirWe want every Palantirian to achieve their best outcomes, that’s why we celebrate individuals’ strengths, skills, and interests, from your first interview to your longterm growth, rather than rely on traditional career ladders. Paying attention to the needs of our community enables us to optimize our opportunities to grow and helps ensure many pathways to success at Palantir. Promoting health and well-being across all areas of Palantirians’ lives is just one of the ways we’re investing in our community. Learn more at Life at Palantir and note that our offerings may vary by region.In keeping consistent with Palantir’s values and culture, we believe employees are “better together” and in-person work affords the opportunity for more creative outcomes. Therefore, we encourage employees to work from our offices to foster connectivity and innovation. Many teams do offer hybrid options (WFH a day or two a week), allowing our employees to strike the right trade-off for their personal productivity. Based on business need, there are a few roles that allow for “Remote” work on an exceptional basis. If you are applying for one of these roles, you must work from the state in which you are employed. If the posting is specified as Onsite, you are required to work from an office.If you want to empower the world's most important institutions, you belong here. Palantir values excellence regardless of background. We are proud to be an Equal Opportunity Employer for all, including but not limited to Veterans and those with disabilities. Palantir is committed to making the application and hiring process accessible to everyone and will provide a reasonable accommodation for those living with a disability. If you need an accommodation for the application or hiring process, please reach out and let us know how we can help.Please note that you will never be asked to submit a payment or share financial information to participate in our interview process. If you suspect that you've been contacted by a scammer, we recommend you cease all communication with the individual and consider reporting them to the relevant authorities, such as the US FBI Internet Crime Complaint Center (IC3).If you would like to understand more about how your personal data will be processed by Palantir, please see our Privacy Policy.

Vacancy posted 4 days ago
Similar jobs that could be interesting for youBased on the Information Security Engineer - Endpoint in Washington DC vacancy
  •  ...administrative policies, internal controls, and security procedures. The successful candidate...  ...with enterprise risk management and information systems audit functions. Must be on-...  ...logging across network infrastructure and endpoints to ensure the rapid detection and... 
    Suggested
    Work at office

    ASRC Federal Holding Company

    Alexandria, VA
    1 day ago
  • $135k - $200k

    Washington, D.C.Information Security /Full-time /HybridA World-Changing CompanyPalantir builds the world’s leading software for data-driven decisions...  ...children, and more.The RoleAs an Information Security Engineer, you are responsible for the security of Palantir’s people... 
    Suggested
    Full time
    Work experience placement
    Work at office
    Remote work
    Work from home
    Relocation package

    Palantir Technologies

    Washington DC
    4 days ago
  •  ...interface and collaborate with other Cybersecurity/Information Assurance (IA) professionals (ISSMs, ISSOs), Security professionals (CPSOs, FSOs), and System...  ...experience related to Information Assurance/Cyber Engineering requirements, development, and implementation.... 
    Suggested

    MRINetwork

    Arlington, VA
    3 days ago
  •  ...is building the next generation of identity infrastructure to secure access across enterprise systems. The role focuses on designing...  ...and security teams to translate complex concepts into actionable guidance for engineers and non‑technical stakeholders. #J-18808-Ljbffr... 
    Suggested

    Scale AI

    Washington DC
    4 days ago
  • About this role:Wells Fargo is seeking a Lead Information Security Engineer in Technology as part of Cybersecurity. Learn more about the career...  ...correlating data from multiple security tools, such as SIEM, endpoint, network, cloud, identity, vulnerability management, or... 
    Suggested
    Full time
    Work experience placement

    Wells Fargo

    McLean, VA
    1 day ago
  • $104k - $156k

     ...Remote/Hybrid Job Overview The Advanced Security Engineer is a technically deep, hands-on...  ...redundancy through all security layers. Endpoint Security & Hardening Deploy, integrate...  ...: Bachelor's in Computer Science, Information Security, or equivalent experience. 5+... 
    Remote work

    Relativity

    Washington DC
    1 day ago
  • $115k - $118k

     ...hard things, together. The Appian Information Security department continuously evaluates the...  ...security products, logging devices, and endpoint monitors. Design and implement...  ...mitigation. Execute dedicated security engineering projects that directly improve Appian'... 
    Work experience placement
    Internship
    Work at office
    Local area
    Flexible hours

    Appian Corporation

    McLean, VA
    16 days ago
  • $138k - $166k

    As a Sr. Endpoint Security Engineer (Trellix) I, you’ll serve as the technical lead for the organization's endpoint security and data protection...  ...or mental disability, medical condition, genetic information, pregnancy, family structure, marital status, ancestry, domestic... 
    Full time
    Local area

    MetroStar Systems

    Washington DC
    3 days ago
  • $142k - $158k

    Job DescriptionEverforth ECS Federal is seeking a Senior Endpoint Security Engineer to support a mission-focused federal cybersecurity program in Washington DC.Please Note: This position is contingent upon contract award.Salary Range: $142,000 - $158,000Join Everforth... 
    Contract work

    ECS Federal

    Washington DC
    2 days ago
  • $107.9k - $195.05k

     ...is seeking an experienced M365 Security and Compliance Administrator to join our Information Technology team. This role requires...  ...agency context. This senior engineering role sits at the center of the...  ...enterprise Windows, macOS, iOS/iPadOS endpoints; ensuring compliant, reliable... 
    Full time
    Night shift

    Leidos

    Washington DC
    1 day ago
  • $50 per hour

     ...dedicated to accomplishing hard things, together. Appian's Information Security team operates at the heart of our Enterprise-Grade...  ...Master's degree in Cybersecurity, Computer Science, Computer Engineering, Information Technology, Information Systems, or a related... 
    Hourly pay
    Full time
    Summer work
    Internship
    Summer internship
    Work at office
    Local area

    Appian

    McLean, VA
    12 hours ago
  • $159.3k - $202.4k

    Amazon is seeking qualified Security Engineers to join our innovative, high energy Information Security team. In this role you will work within the Amazon Security Incident Response Team (SIRT). SIRT Security Engineers respond to security events, conduct analysis of threats... 
    Internship
    Flexible hours

    Amazon

    Arlington, VA
    2 days ago
  • $100k - $110k

     ...implementation of in-house and cloud-based information systems, and enterprise software...  ...architectures that support the bank’s information security operations functions. This role...  ...serves as a technical resource for security engineering initiatives, applying advanced... 
    Temporary work
    Remote work
    Flexible hours

    WesBanco

    Bowie, MD
    4 days ago
  • $140k - $170k

     ...Security & Compliance Engineer Join to apply for the Security & Compliance Engineer role at Nominal. About...  ...As an early team hire dedicated to information security (Security) and governance,...  ...Nominal’s network, ensuring endpoint security, establishing baseline device... 
    Permanent employment
    H1b
    Visa sponsorship
    Work visa

    Nominal

    Washington DC
    5 days ago
  •  ...IT Security Engineer We are seeking an IT Security Engineer to join our growing technology...  ...systems and networks 24/7 using security information and event management (SIEM) tools;...  ...hardening of servers, workstations, and endpoints; manage patch management and system updates... 
    Full time
    Flexible hours

    Twenty Inc.

    Arlington, VA
    1 day ago
  •  ...Join to apply for the Security Engineer role at HireCapital Join to apply for the Security Engineer...  ...to security events, deploy modern endpoint and detection solutions, and help...  ...Bachelor’s degree in Computer Science, Information Security, or related field (or equivalent... 
    Permanent employment
    Full time
    Work at office
    Remote work

    HireCapital

    Washington DC
    5 days ago
  • $108.8k - $163.2k

    Title:Information System Security Engineer (ISSE)Belong. Connect. Grow. with KBR!KBR’s National Security Solutions team provides high-end engineering...  ...analyzing security logs, SIEM alerts, network traffic, and endpoint telemetry using Splunk EnterpriseDevelop automation... 
    Full time
    Temporary work
    Local area
    Relocation package

    KBR

    Lanham, MD
    3 days ago
  • $170k - $210k

    GovCIO is currently hiring for a SME Information Systems Security Engineer to lead cybersecurity, compliance, and risk management activities supporting...  ...maintaining compliance frameworks for enterprise-scale endpoint infrastructure.Demonstrated technical mastery... 
    Currently hiring

    Govcio

    Alexandria, VA
    8 hours ago
  • $104k - $166k

    ResponsibilitiesPeraton is seeking an Information Systems Security Engineer (ISSE) to support our customer onsite in Washington D.C. Responsibilities...  ...security logs, SIEM alerts, network traffic, and endpoint telemetry using Splunk Enterprise.Develop automation scripts... 
    Contract work
    Shift work

    Peraton Corporation

    Washington DC
    2 days ago
  • $135k - $165k

    GovCIO is currently hiring for a Senior Information Systems Security Engineer to support cybersecurity, compliance, and risk management activities supporting...  ...performing continuous scanning, risk analysis, and endpoint patching workflows.Working knowledge of risk reduction... 
    Currently hiring

    Govcio

    Alexandria, VA
    3 days ago
  • $131.3k - $237.35k

    Leidos has an exciting opportunity a Principal Endpoint Security Systems Engineer in our Intel Security Sector's Analysis Solutions Business Area. Our talented team is at the forefront in Security Engineering, Computer Network Operations (CNO), Mission Software, Analytical... 
    Full time
    Immediate start
    Flexible hours

    Leidos

    Bethesda, MD
    4 days ago
  • $118.1k - $200.76k

     ...Description BAE Systems is seeking an Information Assurance / Cybersecurity Analyst to...  ...IT networks, systems, applications, and security tools to ensure they adhere to Navy and...  ...in more than 40 countries. We develop, engineer, manufacture, and support products and systems... 
    Full time
    For contractors
    Work experience placement
    Local area

    BAE Systems USA

    Washington DC
    1 day ago
  • $60 - $70 per hour

     ...TITLE: Security Endpoint Engineer/Admin LOCATION: Washington DC MINIMUM EDUCATION: Bachelor’s degree in IT or related field...  ...deployment of apps on Windows and macOS. · Provide up to date information on SW updates and alerts.  · Support team in the design... 
    Hourly pay
    Long term contract
    Permanent employment
    Full time

    Ahu Technologies

    Washington DC
    12 hours ago
  •  ...the fields of Software Development, Software Consultancy and Information Technology Enabled Services.Job DescriptionThe essential functions...  ...-on configuration, operation and monitoring of all IT network security devices to include firewalls, remote access appliances, and... 
    Temporary work
    Remote work

    Sonsoft

    Washington DC
    1 day ago
  • GuidePoint Security provides trusted cybersecurity expertise, solutions and services that...  .... We are growing our federal presales engineering team and looking for technically...  ...added reseller that focuses exclusively on Information Security. Since its inception in 2011,... 
    Contract work
    For contractors
    Remote work
    Flexible hours

    GuidePoint Security

    Washington DC
    2 days ago
  • $75.2k - $158.1k

    Job Title: Endpoint Security Engineer IIIJob Category: Information TechnologyTime Type: Full timeMinimum Clearance Required to Start: TS/SCIEmployee Type: RegularPercentage of Travel Required: Up to 10%Type of Travel: Local* * *The Opportunity:CACI has an exciting opportunity... 
    Long term contract
    Contract work
    Work experience placement
    Local area
    Flexible hours

    CACI International

    Springfield, VA
    2 days ago
  • $208.3k - $281.8k

    AWS Security is seeking an experienced and technical Security Engineering Manager to lead the Foundational & Hardware Security team. In this role, you will own the...  ...audiencePreferred qualification - Knowledge of information security risk-based prioritization- Knowledge of... 
    Flexible hours

    Amazon

    Arlington, VA
    3 days ago
  •  ...Job Title Cybersecurity Engineer – Senior Location Washington, DC...  ...Cybersecurity Engineer to support security initiatives in Washington,...  ...tools (e.g., SIEM, IDS/IPS, endpoint protection). Collaborate...  ...experience in cybersecurity, information security, or a related field... 
    Contract work

    C3EL

    Washington DC
    3 days ago
  • $160k - $205k

     ...about cybersecurity and looking to work with some of the best information security professionals in the world in challenging environments?...  ...projects, share your knowledge and experience by mentoring junior engineers, and assist with monitoring and response functions, so... 
    Full time
    Work at office
    Remote work
    Shift work
    Day shift

    Bank of America

    Washington DC
    4 days ago
  • $293k - $385k

     ...benefits all of humanity. The Security team protects OpenAI’s...  ...a Forward Deployed Security Engineer (FDSecE) you will be responsible...  ...threat monitoring, network/endpoint detection and response, or red...  ...status, disability, genetic information, or other applicable legally... 
    Work at office
    Local area
    Remote work
    Relocation package
    Flexible hours

    OpenAI

    Washington DC
    3 days ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to Information Security Engineer - Endpoint. Be the first to apply!