Microsoft Defender Security Lead

Essnova Solutions, Inc.

United States

Hybrid

USD 150,000 - 210,000

Full time

4 days ago
Be an early applicant
Application generator

An application made for this job — a tailored resume and cover letter that speak straight to the posting.

Get past ATS filters

Job summary

Essnova Solutions, Inc. seeks a seasoned Microsoft Defender Security Lead to guide enterprise endpoint-security delivery for NIH modernization.

You will lead MDE/MDAV deployment, governance, and reporting across ~55,000 endpoints and 15,000+ servers in a large federal environment. This hybrid, full-time role requires hands-on Defender expertise, Cylance-to-Defender migration experience, and collaboration with NIH SOC and security stakeholders.

Qualifications

  • Bachelor's degree in Cybersecurity, Information Assurance, Computer Science, Engineering, or related field.
  • 8+ years of experience in endpoint security and/or cybersecurity engineering.
  • 5+ years hands-on experience implementing or operating Defender technologies.
  • Experience with Defender for Endpoint, Defender Antivirus, EDR, and policy governance.
  • Experience supporting large enterprise endpoint/server populations in regulated or federal environments.
  • Experience migrating antivirus/EDR solutions, managing exceptions and remediation.

Responsibilities

  • Lead implementation and ongoing governance of Microsoft Defender for Endpoint and Defender Antivirus.
  • Oversee Cylance migration to Microsoft Defender Antivirus and track endpoint populations.
  • Monitor ASR, Tamper Protection, device control, and Defender policy posture.
  • Support TVM activities, telemetry validation, detection tuning, and security reporting.
  • Coordinate with NIH SOC and security stakeholders; develop governance artifacts and docs.

Skills

MDE
MDAV
EDR
Policy governance
Threat & vulnerability management
Security reporting

Education

Bachelor's degree in Cybersecurity/Info Assurance/CS/Engineering

Tools

Microsoft Defender for Endpoint
Microsoft Defender Antivirus
Microsoft Intune
Azure / Azure Arc

Job description

Location: Bethesda/Rockville, MD / Hybrid-Telework Eligible Employment: Full-Time Status: Contingent Upon Proposal Award

About Essnova Essnova Solutions, Inc. is seeking an experienced Microsoft Defender Security Lead to lead enterprise endpoint-security delivery supporting a large-scale Microsoft endpoint management and cybersecurity modernization program for the National Institutes of Health (NIH) . This position is contingent upon Essnova receiving contract award .

Microsoft Defender Security Lead will lead implementation, sustainment, optimization, migration, policy governance, coverage improvement, and remediation activities for Microsoft Defender for Endpoint (MDE) and Microsoft Defender Antivirus (MDAV) across an enterprise environment of approximately 55,000 endpoints and 15,000+ servers .

What You'll Do

Lead enterprise Microsoft Defender for Endpoint (MDE) and Microsoft Defender Antivirus (MDAV) implementation, sustainment, optimization, governance, and operational reporting. Lead remaining Cylance-to-Microsoft Defender Antivirus migration activities and track migrated, excepted, blocked, and unresolved endpoint populations. Implement, maintain, troubleshoot, and govern approved Attack Surface Reduction (ASR), Tamper Protection, device control, endpoint-security, and Microsoft Defender policies . Monitor and report MDE sensor coverage, MDAV active protection, MDAV update currency, policy posture, unhealthy sensors, and approved exceptions . Drive coverage-gap remediation , endpoint and server onboarding, policy issue resolution, and exception remediation. Support Threat and Vulnerability Management (TVM) , vulnerability remediation, telemetry validation, detection tuning, and enterprise security reporting. Support Microsoft Defender governance across in-scope endpoint and server populations and coordinate Microsoft Defender for Cloud alignment. Coordinate with the NIH Security Operations Center (SOC) and Government security stakeholders while maintaining appropriate boundaries between endpoint-security engineering, SOC operations, and server administration. Develop and maintain security governance artifacts, operational documentation, metrics, dashboards, reports, remediation evidence, and knowledge-transfer materials. Support security reviews, authorization/ATO activities, assessments, audits, incident readiness, compliance evidence, and security-control documentation . Support applicable federal cybersecurity and compliance requirements, including NIST, FISMA, HHS security/privacy requirements, and Section 508-compliant deliverables . Support transition of NIH endpoint-security capabilities from modernization and migration activities into steady-state enterprise operations .

Requirements
  • Bachelor's degree in Cybersecurity, Information Assurance, Computer Science, Engineering , or a related technical field.
  • 8+ years of experience in endpoint security and/or cybersecurity engineering.
  • 5+ years of hands-on experience implementing or operating Microsoft Defender technologies.
  • Demonstrated hands-on experience with: Microsoft Defender for Endpoint (MDE) Microsoft Defender Antivirus (MDAV) Endpoint Detection and Response (EDR) Endpoint and server onboarding Endpoint security policies and configuration Attack Surface Reduction (ASR) Security coverage monitoring and remediation Threat and vulnerability management Telemetry validation and detection tuning Exception governance and remediation tracking Enterprise security reporting
  • Experience supporting large-scale enterprise endpoint and server populations in complex, regulated, and/or federal environments.
  • Demonstrated experience executing or supporting antivirus and/or EDR migrations , including management of exceptions, blockers, continuity controls, and remediation.
  • Experience producing technical and security evidence supporting authorization, assessment, audit, vulnerability management, incident readiness, and compliance activities .
Preferred Qualifications
  • Experience supporting NIH, HHS, or another civilian federal health/science agency .
  • Experience with Cylance-to-Microsoft Defender Antivirus migration or comparable third-party antivirus/EDR migration.
  • Experience with Microsoft Defender for Cloud and MDE server governance.
  • Experience with Microsoft Intune, Microsoft Entra, Azure, Azure Arc , or related Microsoft enterprise security and endpoint-management technologies.
  • Knowledge of NIST SP 800-53, NIST SP 800-171, FISMA, HHS security requirements, federal authorization/ATO processes, and audit requirements .
  • Microsoft Certified: Cybersecurity Architect Expert, Security Operations Analyst Associate , or current equivalent Microsoft certification.
  • CISSP, GIAC, Security+, or comparable cybersecurity certification.
  • Demonstrated experience achieving measurable improvements in MDE sensor coverage, MDAV protection status, update currency, vulnerability remediation, security compliance, or exception closure .
Additional Requirements

Selected personnel must be willin

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Microsoft Defender Security Lead
Microsoft Defender Security Lead

Essnova Solutions, Inc. • Bethesda (MD)

Hybrid
USD 120,000 - 150,000
Enterprise Defender Security Lead (MDE/MDAV)
Enterprise Defender Security Lead (MDE/MDAV)

Essnova Solutions, Inc. • United States

Hybrid
USD 150,000 - 210,000
Microsoft Endpoint Platform Lead
Microsoft Endpoint Platform Lead

Essnova Solutions, Inc. • United States

Hybrid
USD 120,000 - 160,000
Senior Microsoft Defender Security Lead — Hybrid (Federal)
Senior Microsoft Defender Security Lead — Hybrid (Federal)

Essnova Solutions, Inc. • Bethesda (MD)

Hybrid
USD 120,000 - 150,000
Microsoft Endpoint Platform Lead
Microsoft Endpoint Platform Lead

Essnova Solutions, Inc. • Bethesda (MD)

Hybrid
USD 140,000 - 190,000
Principal Engineer/Microsoft Endpoint for Defender Enterprise
Principal Engineer/Microsoft Endpoint for Defender Enterprise

Fuse Engineering LLC • Fort Meade (MD)

On-site
USD 180,000 - 240,000
Principal Engineer/Microsoft Endpoint for Defender Enterprise
Principal Engineer/Microsoft Endpoint for Defender Enterprise

Fuse Eng • Fort Meade (MD), Northern (KY)

On-site
USD 120,000 - 180,000
Program Manager - Federal IT & Cybersecurity
Program Manager - Federal IT & Cybersecurity

Essnova Solutions, Inc. • Bethesda (MD)

Hybrid
USD 140,000 - 190,000
Principal Engineer/Microsoft Endpoint for Defender Enterprise
Principal Engineer/Microsoft Endpoint for Defender Enterprise

Fuse Engineering • Fort Meade (MD)

On-site
USD 150,000 - 200,000
Security Endpoint Engineer/Admin
Security Endpoint Engineer/Admin

AHU Technologies Inc • Washington

On-site
USD 85,000 - 110,000