Cybersecurity Tools Administrator

Saic

Newington (VA)

On-site

USD 80,000 - 120,000

Full time

10 days ago
Application generator

An application made for this job — a tailored resume and cover letter that speak straight to the posting.

Get past ATS filters

Job summary

SAIC is seeking a Cybersecurity Tools Administrator to join the MAJESTIC Joint Program Office (JPO) team in support of an on-premises enterprise IT environment.

The role focuses on implementing, administering, and optimizing toolsets centered on Trellix ENS/EDR/NDR with ongoing policy, health, and integration management. On-site in Springfield, VA, with a strong emphasis on RMF/NIST 800-53 compliance.

Qualifications

  • 2-5 years of experience administering enterprise cybersecurity tools (e.g., Trellix ePO/ENS, EDR/NDR).
  • Experience in enterprise IT security operations.
  • Familiarity with RMF/NIST 800-53.

Responsibilities

  • Administer Trellix ePO/ENS; configure policies, deployment, and compliance across Windows/Linux endpoints.
  • Integrate endpoint tools with SIEM/SOAR (Splunk) and vulnerability stacks (Nessus/ACAS).
  • Develop dashboards and KPIs for endpoint coverage and policy compliance.
  • Support incident response with endpoint forensics, IOC sweep, and containment actions.
  • Coordinate with SysAdmins/Network Engineers to enforce security controls.

Skills

Trellix ePO/ENS
Endpoint security
DAC
IOC sweep
Windows/Linux security
Incident response
Log analysis

Education

Bachelor's degree in Cybersecurity/CS/IT
Master's degree in related field
High School diploma with experience

Tools

Trellix ePO
EDR/NDR tools
Splunk
Nessus/ACAS
DAC tooling

Job description

Description

SAICisseekinga motivatedCybersecurity Tools Administratorto join ourMAJESTIC Joint Program Office (JPO) Teamin support ofan on-premises enterprise IT environment. This role focuses on implementing, administering, and optimizing cybersecurity toolsetscentered onTrellixEndpoint Security (ENS) andintegrated capabilities such as Endpoint Detection & Response (EDR), Network Detection & Response (NDR), and malware protection. The administrator will manage policy, deployment, health/compliance, telemetry, and integrations with SIEM/SOAR to strengthen enterprise security posture.

All work is performedon-sitein Springfield, VA.

Key Responsibilities:
  • AdministerTrellixePolicyOrchestrator (ePO): configure policies, tasks, and client assignments; perform agent deployment/updates;monitorhealth and compliance across Windows/Linux endpoints.
  • Implement andmaintaincybersecurity toolsets including ESS/ENS, EDR, NDR, and malware protection; tune detections and containment to reduce false positives while improving fidelity.
  • Integrate endpoint tools with enterprise SIEM/SOAR (e.g., Splunk) and vulnerability management stacks (e.g., Nessus/ACAS) to enable unified visibility, correlation, and automated response.
  • Develop andmaintaindashboards, reports, and KPIs for endpoint coverage, policy compliance, threat activity, and vulnerability remediation progress.
  • Conduct enterprise-wide agent posture checks; remediate orphaned agents, stale policies, connectivity issues, and broken update channels.
  • Author andmaintainstandard operating procedures (SOPs), change records, and implementation plans; follow standardized test, certification, and deployment procedures.
  • Support incident response by providing endpoint forensics, containment actions (e.g., DAC), isolation, and IOC sweep capability;assistwith root-cause analysis and corrective actions.
  • Coordinate with Systems Administrators, Network Engineers, and Cybersecurity personnel to assess risks,validateconfigurations, and enforce security controlsin accordance withRMF/NIST 800-53.
  • Ensure tool and control configuration compliance; review change requests;validateeffectiveness of security controls across virtualized Windows/Linux servers and enterprise networks.
  • Maintain detailed documentation including release notes, configuration baselines, incident investigations, and compliance/authorization artifacts.
Qualifications
Education:
  • Bachelors degree in related field and 2-9+ years of experience OR;
  • Masters degree in related field and 0-7+ years of experience OR;
  • High School diploma or equivalent and 6-13+ years of experience.
Certifications (CWF Requirements):
  • Candidates must satisfyCybersecurity Workforce Framework (CWF) ID 521 (Cyber Defense Infrastructure Support Specialist, IntermediateLevel) requirements, as outlined by Navy COOL. This requirement can be met bypossessingone or more of the following qualifyingcertifications:
  • Certified Ethical Hacker (CEH).
  • CompTIA Cloud+.
  • CompTIA Cybersecurity Analyst (CySA+).
  • CompTIA PenTest+.
  • CompTIA Security+.
  • GIAC Continuous Monitoring Certification (GMON).
  • GIAC Response and Industrial Defense (GRID).
  • GIAC Security Essentials Certification (GSEC).
  • Systems Security Certified Practitioner (SSCP).

ORThis requirement can be met through:

  • A Bachelor’s Degreein Cybersecurity, Computer Science, IT, or a related field.
Experience:
  • 2-5 yearsof experience administering enterprise cybersecurity tools (e.g., Trellix ePO/ENS, EDR/NDR) and performing endpoint/security operations in an enterprise IT environment.
Technical Skills:
  • ProficiencyadministeringTrellixePOand ENS/ESS; familiarity with Dynamic Application Containment (DAC), IOC sweep, and endpoint isolation.
  • Understanding of cybersecurity frameworks and processes (NIST 800-53, RMF, ICD 503).
  • Solid knowledge of Windows/Linux security configurations, AD-integrated deployments, and enterprise network concepts.
  • Familiarity with incident response procedures, log analysis, and database/server hardening.
Clearance Requirement:
  • ActiveTS/SCIclearance with the ability to obtain andmaintainaTS/SCI withCIPoly.
Work Environment and Notes:
  • On-site Work:All work must be conducted on-site in Springfield, VA.
  • Program Scope:Supports on-premises enterprise IT environments, including virtualized Windows/Linux servers, databases, and comprehensive networking layers.
  • Subcontractor Role:Roles and responsibilities are defined per the subcontract agreement, with salary based on competitive market rates and role-specific requirements.

Target salary range: $80,001 - $120,000. The estimate displayed represents the typical salary range for this position based on experience and other factors.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Cybersecurity Tools Administrator
Cybersecurity Tools Administrator

Saic • Springfield (VA)

On-site
USD 80,000 - 120,000
Cybersecurity Tools Administrator — On-Site VA (TS/SCI)
Cybersecurity Tools Administrator — On-Site VA (TS/SCI)

Saic • Newington (VA)

On-site
USD 80,000 - 120,000
Windows Systems Engineer
Windows Systems Engineer

VT Group (VTG) • Herndon (VA)

On-site
USD 120,000 - 150,000
Windows Systems Engineer
Windows Systems Engineer

VTG Defense • Herndon (VA)

On-site
USD 120,000 - 180,000
Endpoint Security Tools Lead (On-Site)
Endpoint Security Tools Lead (On-Site)

Saic • Springfield (VA)

On-site
USD 80,000 - 120,000
Endpoint Engineer - Trellix
Endpoint Engineer - Trellix

CACI International Inc • Springfield (VA)

On-site
USD 86,000 - 182,000
Healthcare
Wellness benefits
Learning and development opportunities
+1
Endpoint Security Solutions (ESS) Systems Engineer – Level 2
Endpoint Security Solutions (ESS) Systems Engineer – Level 2

Rividium Inc • Quantico (VA)

On-site
USD 80,000 - 110,000
Competitive compensation and benefits
Professional development opportunities
Collaborative environment
Systems Engineer SME with Security Clearance
Systems Engineer SME with Security Clearance

Cornerstone Defense • Herndon (VA)

On-site
USD 130,000 - 180,000
Medical, Dental & Vision
PTO
401(k)
+5
Endpoint Security Administration – Senior/SME
Endpoint Security Administration – Senior/SME

NS4 Inc • Virginia (IL), Northern (KY)

Hybrid
USD 120,000 - 160,000
Endpoint Security Solutions (ESS) Engineer
Endpoint Security Solutions (ESS) Engineer

Stratas Corporation, Inc. • Pensacola (FL)

On-site
USD 105,000 - 110,000
Medical, dental, and vision insurance
401K with company match
Paid time off