Endpoint Security Systems Engineer – Cyber Se

Special-Aerospace-Security-Services-Inc

Fort Meade (MD)

Hybrid

USD 125,000 - 160,000

Full time

2 days ago
Be an early applicant
Application generator

Get a reply from this employer — a resume and cover letter tailored to exactly what they’re hiring for.

Get past ATS filters

Job summary

Special-Aerospace-Security-Services-Inc in Adelphi/Fort Meade area seeks a Senior Endpoint Security Systems Engineer to lead Trellix ePO deployment and host-based defense across Windows, Linux, and macOS. The role focuses on on-prem and IaaS environments, with Hybrid work pattern.

You will work with mission owners and cyber teams to design, deploy, and optimize endpoint protection, implement policy tuning, and maintain compliance with DISA STIGs.

Qualifications

  • 8+ years of systems engineering/endpoint security experience.
  • Active TS/SCI clearance; U.S. citizenship required.
  • Experience administering Trellix ePolicy Orchestrator (ePO) and Trellix Endpoint Security suite.

Responsibilities

  • Maintain and harden Trellix ePO consoles across multi-tier networks and cloud-connected management VPCs.
  • Engineer, deploy, and sustain Trellix suite with Elastic Agent and Elastic Defend.
  • Integrate endpoint agents across on-prem and cloud IaaS for Windows, Linux, and macOS.
  • Design, benchmark, and deploy policies, exclusions, and DLP rules to protect hosts without hurting performance.
  • Diagnose and remediate connectivity, registration, and deployment issues in hybrid networks.

Skills

Trellix ePO
Endpoint Security
Cross‑platform support
DoD 8140 compliance
PowerShell/Bash/Python
Cloud IaaS security
Policy & Compliance

Education

Bachelor’s degree in Cybersecurity/CS/STEM/IT
Master’s degree in Cybersecurity/related field
CSSP-Infrastructure Support / CSSP-Analyst / IAT Level II/III certs (CEH/CySA+/GCIH/GCFA/CISM/Spe)

Tools

Trellix ePO
Trellix Endpoint Security (ENS)
Elastic Defend for Endpoint
Elastic Agent
JAMF Pro (macOS management)
DISA COAMS/CMRS

Job description

If you are unable to complete this application due to a disability, contact this employer to ask for an accommodation or an alternative application process.

Endpoint Security Systems Engineer – Cyber Se

Fort Meade, MD, US

2 days ago Requisition ID: 1120

Location: Adelphi, MD (Hybrid – 3 days on site)
Security Clearance: Active Top Secret / SCI (TS/SCI)
Schedule: Full Time / Day Shift

We are seeking a Senior Endpoint Security Systems Engineer to serve as an endpoint protection and architecture specialist. In this role, the candidate will lead the engineering, deployment, configuration, optimization, and sustainment of enterprise host-based defense capabilities across mission assets. Focus will center on managing and advancing our enterprise Trellix environment (ePolicy Orchestrator and Endpoint Security suite), while engineering and operationalizing Elastic Defend for Endpoint as a complementary host-based telemetry and detection capability within our multi-tiered defense architecture. Will partner closely with mission system owners, infrastructure architects, and defensive cyber operations teams to protect mission-critical Windows, Linux, and macOS platforms. While the CSSP defends a hybrid landscape of SaaS and PaaS offerings, specific endpoint agent engineering, deployment, and management focus will target systems residing in on-premises environments and cloud Infrastructure-as-a-Service (IaaS).

Key Responsibilities

Maintain, upgrade, and harden central endpoint management consoles (primarily Trellix ePO) across multi-tier networks, isolated enclaves, and cloud-connected management VPCs.

Multi-Tiered Endpoint Architecture

Engineer, deploy, and sustain the Trellix suite alongside Elastic Agent / Elastic Defend, establishing cohesive agent lifecycle management, mutual compatibility, and synchronized host-level protection.

Endpoint Environment Integration

Direct the integration, configuration, and agent lifecycle management for endpoints and servers specifically residing within on-premises environments and cloud IaaS instances covering Windows, Linux, and macOS.

Policy & Performance Tuning

Design, benchmark, and deploy scan exclusion policies, behavioral rules, DLP rules, and content updates to ensure host protection without degrading OS stability, server throughput, or cloud compute performance.

Resolve complex system-level issues, including:

Diagnosing and remediating agent connectivity, registration, and communication failures across hybrid network boundaries.

Debugging product installation and deployment failures on mission hosts.

Partnering with mission owners to engineer precise performance exclusions and resolve mission-critical application blocks caused by security policies.

Investigating and rectifying ePO console misconfigurations, policy inheritance errors, or corrupt database events impacting the wider enterprise.

Compliance & Risk Alignment

Maintain compliance with DISA STIGs, OPORD, and endpoint security requirements across all supported host deployments (on-premises and IaaS), leveraging host reporting to support continuous monitoring frameworks.

Collaborate with CSSP threat detection and hunt teams to implement custom endpoint signatures, indicators of compromise (IOCs), and automated containment policies.

Basic Qualifications

Clearance: Active Top Secret / SCI (U.S. Citizenship required). Secret active to start.

Education & Experience:

Bachelor’s degree in Cybersecurity, Computer Science, STEM, or an IT-related field with 8+ years of relevant systems engineering/endpoint security experience.

Master’s degree with 6+ years of relevant systems engineering/endpoint security experience

DoD 8140 compliance upon start: Active certification meeting CSSP-Infrastructure Support, CSSP-Analyst, or IAT Level II/III requirements (e.g., CEH, CySA+, GCIH, GCFA, GMON, CISSP, CASP+, or CISM).

Primary Technology Expertise:

Demonstrated hands‑on engineering experience administering and upgrading Trellix ePolicy Orchestrator (ePO), Trellix Agent, and the following core modules:

Trellix Endpoint Security (ENS) suite (specifically Threat Prevention and Firewall)

Trellix Policy Auditor

Proven experience deploying and maintaining endpoint security agents across enterprise Linux (RHEL/CentOS/Rocky), Windows (Server & Desktop), and macOS environments.

Target Environment Engineering:

Practical experience managing and troubleshooting host‑based security capabilities specifically across on‑premises environments and cloud‑based IaaS (VM) instances.

Strong troubleshooting capability in analyzing OS performance impacts, resource contention, and agent‑server communication issues across complex network routing topologies.

Preferred Qualifications

Application Whitelisting & Integrity: Experience implementing and managing Trellix Solidcore (Application Control) for application whitelisting and file integrity monitoring (FIM).

Complementary Detection Technologies: Practical experience deploying, configuring, and policy‑tuning Elastic Agent and Elastic Defend for Endpoint within an enterprise environment.

macOS Enterprise Management: Familiarity with macOS‑specific security configurations, payload profiles, and enterprise deployment mechanisms (e.g., Apple MDM, JAMF Pro) for security agents.

DISA Enterprise Systems: Experience integrating, validating, or reporting endpoint security posture data into DISA COAMS (Cybersecurity Operational Attribute Management System) and CMRS (Continuous Monitoring and Risk Scoring).

Cloud Infrastructure: Familiarity with cloud networking, auto‑scaling groups, and security group behaviors within AWS, Microsoft Azure, or Google Cloud Platform (GCP) as they apply to IaaS host security.

Automation & Scripting: Practical scripting ability (PowerShell, Bash, or Python) to automate agent installation, verification, policy audits, and health monitoring.

Framework Familiarity: Working understanding of the MITRE ATT&CK enterprise framework and its application to host‑based behavioral detections.

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Senior Endpoint Security Systems Engineer
Senior Endpoint Security Systems Engineer

DirectViz Solutions, LLC • Adelphi (MD)

Hybrid
USD 130,000 - 170,000
Competitive compensation
401(k) match
Medical benefits
+2
Windows Systems Engineer
Windows Systems Engineer

VT Group (VTG) • Herndon (VA)

On-site
USD 140,000 - 190,000
Windows Systems Engineer
Windows Systems Engineer

VTG Defense • Herndon (VA)

On-site
USD 120,000 - 180,000
Cybersecurity Tools Administrator
Cybersecurity Tools Administrator

Saic • Newington (VA)

On-site
USD 80,000 - 120,000
Endpoint Security Administration – Senior/SME
Endpoint Security Administration – Senior/SME

NS4 Inc • Virginia (IL), Northern (KY)

On-site
USD 120,000 - 160,000
Senior Endpoint Security Architect (Trellix & Elastic Defend)
Senior Endpoint Security Architect (Trellix & Elastic Defend)

Special-Aerospace-Security-Services-Inc • Fort Meade (MD)

Hybrid
USD 125,000 - 160,000
Endpoint Security Engineer
Endpoint Security Engineer

PlanIT Group • Reston (VA), Northern (KY)

On-site
USD 120,000 - 160,000
Endpoint Security Engineer
Endpoint Security Engineer

Abile Group, Inc • Springfield (VA)

On-site
USD 90,000 - 120,000
Info Assurance Eng 2
Info Assurance Eng 2

General Dynamics Mission Systems, Inc • Manassas (VA)

On-site
USD 95,000 - 130,000
Principal Engineer/Microsoft Endpoint for Defender Enterprise
Principal Engineer/Microsoft Endpoint for Defender Enterprise

Fuse Eng • Fort Meade (MD), Northern (KY)

On-site
USD 120,000 - 180,000