Endpoint Security Engineer Lead

Leidos

Arlington (VA)

Hybrid

USD 131,300 - 237,350

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Benefits offered by this job

Health and Wellness programs
Paid Leave
Retirement benefits

Job summary

A leading technology solutions provider is seeking a Lead Endpoint Security Engineer in Arlington, Virginia. This role demands strong analytical skills and extensive experience with the CrowdStrike Falcon platform. The ideal candidate will oversee deployment and management of security tools, lead incident response efforts, and mentor junior engineers. With responsibilities that span from threat hunting to ensuring compliance with regulations, you will play a key role in maintaining the security and integrity of systems. Competitive compensation is offered with a salary range of $131,300 to $237,350.

Qualifications

  • 12-15 years of relevant experience focused on cybersecurity.
  • Experience leading cross-functional security initiatives.
  • Extensive hands-on experience with the CrowdStrike Falcon platform.
  • Expertise in endpoint security concepts and incident response processes.
  • Proficiency in scripting languages for automation and response actions.

Responsibilities

  • Serve as the primary technical authority for CrowdStrike.
  • Oversee the deployment and maintenance of CrowdStrike agents.
  • Lead investigations and response to security incidents.
  • Perform threat hunting and malware analysis.
  • Integrate CrowdStrike with security tools using scripting.

Skills

Analytical skills
Problem-solving skills
Flexibility
Good judgment
Technical leadership
Incident response
Scripting languages (Python, PowerShell)
Automation
Attention to detail

Education

BS degree in Science, Technology, Engineering or related field
Masters degree (preferred)

Tools

CrowdStrike Falcon platform
SIEM tools (e.g., Splunk)
AWS
Azure

Job description

Description

Leidos has an immediate need for a lead Endpoint Security Engineer for a customer on a highly visible and strategic Cybersecurity Task Order. The Security Engineer will need to be a self-starter with excellent analytical and problem‑solving skills, flexibility, good judgment, and the ability to coordinate multiple, concurrent tasks in an effective manner. This individual will work with internal team members to ensure that systems are functional, secure, and scalable. The Security Engineer will support the design and development of cybersecurity tools and technology along with integration of new architectural features into existing infrastructures while maintaining the integrity and security of enterprise‑wide systems and networks.

Primary Responsibilities
  • Technical Leadership: Serve as the primary technical authority for CrowdStrike, guiding the team on best practices and technical standards.
  • Deployment and Management: Oversee the deployment and maintenance of CrowdStrike agents to ensure full coverage across all endpoints.
  • Incident Response: Lead and participate in the investigation and response to security incidents detected by CrowdStrike.
  • Threat Hunting: Perform threat hunting, conduct malware analysis, and help refine detection logic in collaboration with the SOC.
  • Integrations: Integrate the CrowdStrike platform with other security tools, such as SIEM/SOAR platforms, using scripting languages like Python and PowerShell.
  • Mentorship: Mentor and guide junior engineers on technical standards, processes, and procedures.
  • Strategy and Compliance: Ensure the endpoint security strategy aligns with enterprise goals and that all solutions meet regulatory and compliance standards.
  • Automation: Identify and implement opportunities for automation to streamline security operations.
  • Documentation: Maintain up-to-date documentation, standard operating procedures (SOPs), and knowledge base articles.
  • Manage multiple assignments, changing priorities, and work independently with little oversight.
  • Work closely with senior engineers, other team members and application owners to solve technical problems at the network, system and application levels.
  • Conduct periodic architectural reviews of installed sensors to assess effectiveness and propose optimal installation alternatives as required.
  • Deploy CrowdStrike Falcon Endpoint Detection and Response (EDR) detection agent up to 4K devices.
  • Reduce risk by ensuring coverage of malware detection for in-scope CrowdStrike EDR Agent capable devices.
  • Optimization of EDR solution, including refinement data produced, development of automated workflows or playbooks, and integration of the EDR data with Enterprise solutions, including SIEM solutions.
  • Configuring CrowdStrike cloud-hosted SaaS Solution, to manage policies, control reporting data, manage, and respond to threats.
  • Experience in backend solution, day-to-day system admin and monitoring, file system management and disk management and creation of shell scripts for the automation of tasks and the extraction of logs.
  • Provide follow-up reports (technical findings, feedback, resolution steps taken) for Root Cause analysis, engineering technical assessment and process improvement initiatives.
Basic Qualifications
  • BS degree in Science, Technology, Engineering or related field and 12-15 years of prior relevant experience with a focus on cybersecurity OR Masters with 10 years of prior relevant experience.
  • Experience leading cross‑functional security initiatives and managing small teams or projects.
  • Extensive, hands‑on experience with the CrowdStrike Falcon platform, including multiple modules (e.g., EDR, FIM, Identity Protection, Data Protection).
  • Expertise in endpoint security concepts and incident response processes.
  • Proficiency in scripting languages like Python, PowerShell, or Bash for automation and custom response actions.
  • Strong knowledge of security frameworks like NIST or MITRE ATT&CK.
  • Experience with SIEM integrations and threat analysis.
  • Solid understanding of operating systems (Windows, Linux, macOS).
  • Superior attention to detail with excellent written and verbal communication skills.
  • Excellent problem solving, research, and follow‑up skills.
  • Self‑motivation and ability to work independently.
  • Ability to obtain an Entry of Duty (EOD) Public Trust.
  • Candidate must, at a minimum, meet one of these certifications: CrowdStrike certifications (e.g., CCFR, CCFP).
Preferred Qualifications
  • Experience automating management tasks with Ansible, Puppet, or Chef.
  • Experience working with SIEM tools such as Splunk to ingest, normalize, store, and maintain data from endpoint, network, and application sourcetypes.
  • Experience working in AWS and Azure.
  • Experience with Wiz, Sepio, TVM and Nucleus is a plus.

If you're looking for comfort, keep scrolling. At Leidos, we outthink, outbuild, and outpace the status quo — because the mission demands it. We're not hiring followers. We're recruiting the ones who disrupt, provoke, and refuse to fail. Step 10 is ancient history. We're already at step 30 — and moving faster than anyone else dares.

Original Posting

February 5, 2026

Pay Range

Pay Range $131,300.00 - $237,350.00

The Leidos pay range for this job level is a general guideline only and not a guarantee of compensation or salary. Additional factors considered in extending an offer include (but are not limited to) responsibilities of the job, education, experience, knowledge, skills, and abilities, as well as internal equity, alignment with market data, applicable bargaining agreement (if any), or other law.

About Leidos

Leidos is an industry and technology leader serving government and commercial customers with smarter, more efficient digital and mission innovations. Headquartered in Reston, Virginia, with 47,000 global employees, Leidos reported annual revenues of approximately $16.7 billion for the fiscal year ended January 3, 2025. For more information, visit www.Leidos.com.

Pay And Benefits

Pay and benefits are fundamental to any career decision. That's why we craft compensation packages that reflect the importance of the work we do for our customers. Employment benefits include competitive compensation, Health and Wellness programs, Income Protection, Paid Leave and Retirement. More details are available at www.leidos.com/careers/pay-benefits.

Securing Your Data

Beware of fake employment opportunities using Leidos’ name. Leidos will never ask you to provide payment‑related information during any part of the employment application process (i.e., ask you for money), nor will Leidos ever advance money as part of the hiring process (i.e., send you a check or money order before doing any work). Further, Leidos will only communicate with you through emails that are generated by the Leidos.com automated system – never from free commercial services (e.g., Gmail, Yahoo, Hotmail) or via WhatsApp, Telegram, etc. If you received an email purporting to be from Leidos that asks for payment‑related information or any other personal information (e.g., about you or your previous employer), and you are concerned about its legitimacy, please make us aware immediately by emailing us at LeidosCareersFraud@leidos.com.

If you believe you are the victim of a scam, contact your local law enforcement and report the incident to the U.S. Federal Trade Commission.

Commitment to Non‑Discrimination

All qualified applicants will receive consideration for employment without regard to sex, race, ethnicity, age, national origin, citizenship, religion, physical or mental disability, medical condition, genetic information, pregnancy, family structure, marital status, ancestry, domestic partner status, sexual orientation, gender identity or expression, veteran or military status, or any other basis prohibited by law. Leidos will also consider for employment qualified applicants with criminal histories consistent with relevant laws.

#Remote

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Endpoint Security Analyst - Elastic Defend
Endpoint Security Analyst - Elastic Defend

Leidos Inc • Adelphi (MD)

Hybrid
USD 108,000 - 195,000
Senior Cyber Defense Analyst
Senior Cyber Defense Analyst

Leidos • United States

On-site
USD 108,000 - 195,000
Sr. Endpoint Security Systems Engineer
Sr. Endpoint Security Systems Engineer

Koitecc Solutions • Bethesda (MD)

Hybrid
USD 108,000 - 195,000
Sr. Endpoint Security Systems Engineer
Sr. Endpoint Security Systems Engineer

Via Logic LLC • Bethesda (MD)

Hybrid
USD 108,000 - 195,000
Competitive benefits
Paid Time Off
11 holidays
+3
Senior Cyber Defense Analyst
Senior Cyber Defense Analyst

Leidos Inc • United States

On-site
USD 108,000 - 195,000
Endpoint Security Analyst - Elastic Defend
Endpoint Security Analyst - Elastic Defend

Koitecc Solutions • Adelphi (MD)

Hybrid
USD 108,000 - 195,000
Endpoint Security Analyst - Elastic Defend
Endpoint Security Analyst - Elastic Defend

Quest Oracle Community • Adelphi (MD)

Hybrid
USD 108,000 - 195,000
Sr. Endpoint Security Systems Engineer
Sr. Endpoint Security Systems Engineer

Leidos Inc • Bethesda (MD)

Hybrid
USD 108,000 - 195,000
Competitive benefits
Paid Time Off
401K with company match
Endpoint Security Analyst - Elastic Defend
Endpoint Security Analyst - Elastic Defend

Via Logic LLC • Adelphi (MD)

Hybrid
USD 108,000 - 195,000
Principal Endpoint Security Systems Engineer
Principal Endpoint Security Systems Engineer

Association of Old Crows • Bethesda (MD)

Hybrid
USD 131,000 - 237,000
Paid Time Off
11 paid Holidays
401K with company match
+5