HBSS/ENS Engineer

CARSON SOLUTIONS LLC

Maryland

On-site

USD 100,000 - 130,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

CARSON SOLUTIONS LLC is seeking a skilled Senior HBSS/ENS Administrator in Annapolis Junction, MD. The role requires expertise in Endpoint Security and compliance with DoD cybersecurity standards. Candidates should have prior experience with TRELLIX and Microsoft Defender, along with strong skills in system hardening and incident response.

The ideal applicant will possess a bachelor's degree along with 12+ years of Information Assurance experience, and must hold an active DoD TS/SCI clearance.

Qualifications

  • 12+ years of Information Assurance experience preferred.
  • Active DoD TS/SCI/FS Poly clearance required.
  • Understanding of Risk Management Framework (RMF) and NIST standards.

Responsibilities

  • Provide monitoring, analysis, and response to security events.
  • Implement Security Technical Implementation Guides (STIGs).
  • Manage and deploy operating system patches.

Skills

Information Assurance experience
System Hardening
STIG compliance
Problem-solving
Collaboration
Endpoint Security skills

Education

BS bachelor’s degree
DoD 8570 baseline certification
Security+ or CISSP

Tools

TRELLIX ePO
Microsoft Defender
SCAP Compliance Checker

Job description

Position requires an active TS/SCI with polygraph level clearance. US citizenship is required.

We are seeking a skilled Senior HBSS/ENS Administrator in Annapolis Junction, MD to join the Carson Solutions (CS) team supporting DOD-IC. The program provides enterprise-wide IT support to enable Information Management & Technology Directorate (ITD) to consolidate, modernize, and continuously innovate the delivery of IT services and mission capabilities to internal and external mission partners operating in CONUS and OCONUS locations. The candidate will be responsible for ensuring the security and integrity of IT systems by running their Endpoint Security with experience in TRELLIX and Microsoft Defender. Administrators will also be responsible in applying Security Technical Implementation Guides (STIGs), managing system patches, and overseeing vulnerability management processes. This role supports federal clients in maintaining compliance with the (DOD-IC) and other federal cybersecurity standards.

The ideal candidate will be responsible for identifying points of vulnerability, non-compliance with established Information Assurance (IA) guidelines and regulations and recommend mitigation strategies, along with assisting users as needed in a classified computing environment. The selected candidate must be able to work independently as well as with a team of IT analysts, administrators, and engineers. The position requires excellent communications skills, both verbal and written. The candidate must be able to work in a high-energy environment and adapt to shifting priorities.

Responsibilities

This role will provide continuous upkeep, monitoring, analysis, and response to Information System, network and security events using Endpoint Security tools such as TRELLIX ePO and Microsoft Defender.

STIG Application And Compliance
  • Implement and maintain Security Technical Implementation Guides (STIGs) on Endpoint Security Tools.
  • Conduct regular STIG compliance checks using tools like SCAP Compliance Checker and STIG Viewer.
  • Document STIG configurations and remediation actions to ensure audit readiness.
Patching And System Updates
  • Manage and deploy operating systems and application patches in accordance with federal patch management policies.
  • Coordinate patch schedules to minimize operational impact while meeting compliance deadlines.
  • Verify patch deployment success and troubleshoot any issues arising from updates.
System Hardening
  • Harden systems by applying best practices and federal security guidelines to reduce attack surfaces.
  • Maintain configuration baselines and ensure systems adhere to DoD and NIST standards.
Incident Response Support
  • Participates in internal/external security audits/inspections; performs risk assessments and Continuous Monitoring.
  • Assist in identifying and responding to security incidents related to vulnerabilities or misconfigurations.
  • Document incidents and contribute to after-action reports for continuous improvement.
Collaboration And Reporting
  • Work closely with system administrators, engineering staff, and compliance teams to ensure cohesive security operations.
  • Prepare detailed reports and briefings for federal clients on STIG compliance, patching status, and vulnerability management efforts.
  • Develop, implement and enforce Information Security Policies and Procedures.
Tool Utilization

TRELLIX ePO and Microsoft Defender.

Qualifications
  • BS bachelor’s degree with 12+ years’ of Information Assurance experience. Specific experience, education and training may be considered in lieu of degree.
  • A Current DoD 8570 baseline certification
  • Active HBSS 301 Certification
  • Active DoD TS/SCI/FS Poly clearance
  • Understanding of the Risk Management Framework (RMF), NIST, ICD, and CNSS standards.
  • Familiarity with network technologies (LAN & WAN) and best practices within a classified environment to include crypto and key management
  • STIG compliance, SCC and STIG Viewer experience, and ACAS expertise.
  • Advanced knowledge with Microsoft Windows, Linux, and system virtualization in a secure network environment.
  • Must be able to work in a constantly changing regulatory environment with short-, mid-, and long-term timelines for remediating any non-compliance
  • Must be able to work well within a team environment and able to adapt quickly to change
  • Good writing and verbal presentation skills
Mandatory Certifications
  • Security+ or CISSP or equivalent
Preferred Skills
  • Ansible Automation Platform and/or Microsoft Endpoint Configuration Manager experience
  • Linux certification (RHCSA, CompTIA Linux, LCFS/LCFE, etc.)
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Senior HBSS/ENS Security Engineer (TS/SCI)
Senior HBSS/ENS Security Engineer (TS/SCI)

CARSON SOLUTIONS LLC • Maryland

On-site
USD 100,000 - 130,000
Systems Administrator (HBSS/MDE Admin)
Systems Administrator (HBSS/MDE Admin)

Sarela Technology Solutions LLC • Fort Belvoir (VA)

On-site
USD 90,000 - 120,000
Opportunities for technical growth
Collaborative work environment
Information System Security Engineer (ISSE)
Information System Security Engineer (ISSE)

Peraton • Maryland

On-site
USD 120,000 - 180,000
Systems Engineer SME
Systems Engineer SME

Cornerstone Defense LLC • Herndon (VA)

On-site
USD 110,000 - 140,000
Medical, Dental and Vision Plans
Generous PTO Policy
401(k)
+1
Windows Systems Engineer
Windows Systems Engineer

VTG • Herndon (VA)

On-site
USD 120,000 - 150,000
Windows Systems Engineer
Windows Systems Engineer

VTG Defense • Herndon (VA)

On-site
USD 120,000 - 180,000
Windows Systems Engineer
Windows Systems Engineer

Vosper Thornycroft Group • Herndon (VA)

On-site
USD 120,000 - 150,000
Windows Systems Engineer
Windows Systems Engineer

VT Group (VTG) • Herndon (VA)

On-site
USD 120,000 - 150,000
Endpoint Security Solutions (ESS) Engineer
Endpoint Security Solutions (ESS) Engineer

StratasCorp Technologies • Pensacola (FL)

On-site
USD 105,000 - 110,000
Endpoint Security Engineer
Endpoint Security Engineer

Abile Group, Inc • Springfield (VA)

On-site
USD 90,000 - 120,000