Operations Engineer

CyberMaxx

United States

On-site

USD 90,000 - 140,000

Full time

42 hours ago
Be an early applicant
Application generator

Turn this role into an interview — a resume and cover letter built around what this employer wants.

Get past ATS filters

Benefits offered by this job

Flexible Paid Time Off
401k with a company match
Medical, Dental and Vision Coverage
Voluntary Short Term Disability
Mental Health Support via EAP
Life insurance benefits
Health Savings Account Contribution
10 paid holidays per year

Job summary

CyberMaxx is seeking an Operations Engineer to join our Operations Engineering team with a primary focus on EDR platform operations. You will administer and troubleshoot EDR/XDR platforms across multi-tenant customer environments, collaborating with SOC and engineering teams.

The role emphasizes incident responsiveness, change control, and hands-on support for CrowdStrike Falcon, SentinelOne, and Defender for Endpoint, with training provided to broaden portfolio expertise and automation skills.

Qualifications

  • Experience in endpoint security and EDR operations.
  • Hands-on with CrowdStrike or similar platforms.
  • Strong troubleshooting and change-control skills.
  • Proficient scripting in PowerShell or Python.

Responsibilities

  • Administer and troubleshoot EDR/XDR platforms across multi-tenant environments.
  • Execute changes, upgrades, and policy transitions with approval controls.
  • Monitor platform health and coordinate remediation with teams.
  • Support agent deployments and console configurations.
  • Develop automation and operational dashboards.

Skills

EDR operations
PowerShell
Python
Communication

Education

Bachelor's degree in Computer Science

Tools

CrowdStrike Falcon
SentinelOne
Microsoft Defender for Endpoint

Job description

At CyberMaxx, we believe it is our duty to defend against those committed to wide-scale societal disruption through cyberattacks.

We help our customers reduce risk by tightly integrating MDR with offensive security, threat hunting, security research, and digital forensics and incident response (DFIR) to continually adapt to new and evolving threats. Our modern MDR (Managed Detection & Response) approach is tailored to the unique characteristics and risk factors of each customer, enabling us to take full ownership of the response process and, optionally, manage key security controls. By thinking like an adversary and defending like a guardian, we help our customers stay a step ahead of threat actors.

At CyberMaxx, we value humility, transparency, intellectual curiosity, and a customer first approach.

CyberMaxx is seeking an Operations Engineer to join our Operations Engineering team with a primary focus on Endpoint Detection and Response (EDR) platform operations. This individual contributor role supports the day-to-day delivery of CyberMaxx's managed EDR service across a diverse customer base.

In this role, you will administer and troubleshoot EDR and XDR security platforms in multi-tenant customer environments. The role calls for a team-oriented, client-facing mindset and the ability to work effectively with both technical and non-technical stakeholders. You will follow established engineering standards, execute service requests, investigate platform health and agent issues, and document work clearly. You will work cross-functionally with our Security Operations Center, Detection Engineering, Platform Engineering, and Customer Success teams.

You will primarily support the EDR consoles behind our MDR service, including CrowdStrike Falcon, SentinelOne, and Microsoft Defender for Endpoint; prior hands-on experience with at least one of these platforms is expected. You will also help support our other managed technologies, including SIEM, email security, vulnerability scanners, and deception technologies. Structured cross-training will be provided to build working proficiency across the supported portfolio. Success in this role requires sound troubleshooting, careful change execution, clear communication, and the ability to manage repeatable work across multiple customer environments.

What You Will Do:
EDR Platform Operations:
  • Administer CyberMaxx-managed EDR platforms across customer environments, including routine configuration, policy maintenance and tuning, agent lifecycle activities, operational controls, and platform health checks.
  • Execute approved routine and large-scale platform changes including agent upgrades, bulk actions, policy transitions, and recovery activities using established change controls, validation procedures, and documentation requirements; escale unexpected behavior or risk.
  • Monitor platform health, agent coverage, version status, policy alignment, and operational exceptions; investigate discrepancies and coordinate remediation.
  • Support agent deployment, console configuration, integrations, and platform migrations under the direction of senior engineering staff.
  • Monitor vendor roadmaps, emerging capabilities, and industry developments across supported EDR platforms, and contribute findings and recommendations regarding potential changes to internal standards for senior engineering review.
Technical Support & Troubleshooting
  • Investigate endpoint security issues involving agent connectivity, performance, interoperability, policy behavior, detections, exclusions, upgrades, and deployment failures.
  • Collect and analyze endpoint, console, and application evidence to isolate likely causes and determine whether an issue is related to the EDR platform, endpoint conditions, or another security control.
  • Resolve requests within defined procedures and escalte complex, high-risk, or vendor-dependent issues with complete technical findings and a clear record of actions taken.
  • Work with vendors and internal teams to progress support cases, validate proposed remediations, and communicate status to customer-facing stakeholders.
  • Participate in peer review of configuration changes, exclusions, and technical recommendations to reduce operational and customer risk.
Automation & Service Improvement
  • Use PowerShell, Python, vendor APIs, or approved automation tooling to perform repeatable operational tasks, collect evidence, and reduce manual effort.
  • Contribute to scripts, workflows, and platform integrations developed by the Operations Engineering team, including testing, documentation, and controlled rollout.
  • Identify recurring requests, failure patterns, and manual processes that are candidates for standardization or automation.
  • Validate automation output and maintain appropriate safeguards for changes executed across multiple customer environments.
  • Develop and maintain operational dashboards, reports, and health metrics that provide visibility into agent coverage, platform status, policy compliance, and recurring service issues.
  • Contribute to internal engineering repositories, runbooks, operational checklists, and tooling documentation.
Customer & Operational Support
  • Coordinate assigned operational requests and technical investigations from intake through completion, managing dependencies, status updates, documentation, and handoffs while meeting documented service expectations.
  • Provide practical recommendations on EDR configuration, deployment, platform health, and endpoint security operations within the scope of the managed service.
  • Support customer meetings when technical context is required and communicate findings, risk, dependencies, and next steps in clear business language.
  • Develop and maintain customer-facing procedures, configuration guidance, and implementation documentation.
  • Support customer training and provide guidance on routine EDR platform administration, operational practices, and supported service workflows.
  • Recognize recurring issues or misconfigurations across environments and raise them to senior engineers for broader corrective action.
  • Build working proficiency across CrowdStrike Falcon, SentinelOne, and Microsoft Defender for Endpoint through hands-on operations, vendor training, and team knowledge sharing.
  • Share troubleshooting findings, technical notes, and reusable procedures with Operations Engineering team members and SOC analysts.
  • Collaborate effectively with SOC, Detection Engineering, Professional Services, Customer Success, and other operational teams.
Required Qualifications
  • 4+ of experience in endpoint security, EDR operations, security engineering, systems administration, SOC operations, or a closely related technical role.
  • Hands-on experience administering or supporting at least one of the following: CrowdStrike Falcon, SentinelOne Singularity, or Microsoft Defender for Endpoint.
  • Practical experience troubleshooting Windows endpoints; familiarity with macOS or Linux endpoint administration is beneficial.
  • Working knowledge of EDR concepts, endpoint security policies, agent deployment, exclusions, detection triage, and basic response actions.
  • Ability to use PowerShell, Python, command-line tools, or vendor APIs for troubleshooting and repeatable operational tasks.
  • Ability to analyze technical evidence, document findings, follow change controls, and elevate issues with appropriate context for efficient resolution.
  • Clear written and verbal communication skills for working with internal engineering teams and customer stakeholders.
Preferred Qualifications
  • Experience working in an MSSP, MDR, SOC, or other multi-customer security operations environment.
  • Familiarity with Linux systems, the ITIL framework, and availability monitoring.
  • Experience using agentic or AI-assisted tooling to automate routine, recurring tasks.
  • Relevant vendor certification or training, such as CrowdStrike CCFA, SentinelOne Certified Administrator or Engineer, Microsoft SC-200, or equivalent practical coursework.
  • Experience with SOAR platforms, SIEM integrations, or security automation tooling in the context of endpoint security operations.
  • Understanding of MITRE ATT&CK, common endpoint attack techniques, and how EDR telemetry supports detection and investigation.
  • Experience using EDR-native remote response, query, hunting, bulk-management, or detection validation capabilities to investigate and manage endpoints at scale.
Some Of What We Offer
  • Flexible Paid Time Off
  • 401k with a company match
  • Medical, Dental and Vision Coverage
  • Voluntary Short Term and Long-Term Disability
  • Employee Assistance Program with Mental Health Supplement
  • Voluntary Basic, Accidental, and other ancillary life insurance
  • Health Savings Account Contribution (with selection of a HDHP)
  • 10 annual, paid holidays

CyberMaxx will consider all qualified applicants without regard to race, color, religion, sex, pregnancy, sexual orientation, gender identity, national origin, disability, veteran or military status, age, genetic information, or other characteristics protected by federal, state, or local applicable law.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Operations Engineer
Operations Engineer

CyberMaxx, Inc. • Northern (KY)

Hybrid
USD 85,000 - 130,000
Flexible Paid Time Off
401k with company match
Medical, Dental and Vision Coverage
+6
Cybersecurity Specialist
Cybersecurity Specialist

CyberMaxx, Inc. • Northern (KY)

Hybrid
USD 28,000 - 48,000
Flexible Paid Time Off
401k with company match
Medical, Dental and Vision Coverage
+4
Cybersecurity Specialist
Cybersecurity Specialist

CyberMaxx • United States

On-site
USD 65,000 - 95,000
Flexible PTO
401k match
Medical, dental & vision coverage
+4
EDR Platform Operations Engineer
EDR Platform Operations Engineer

CyberMaxx, Inc. • Northern (KY)

Hybrid
USD 85,000 - 130,000
Flexible Paid Time Off
401k with company match
Medical, Dental and Vision Coverage
+6
EDR Operations Engineer – MDR Platform Specialist
EDR Operations Engineer – MDR Platform Specialist

CyberMaxx • United States

On-site
USD 90,000 - 140,000
Flexible Paid Time Off
401k with a company match
Medical, Dental and Vision Coverage
+5
Endpoint Security Engineer
Endpoint Security Engineer

PlanIT Group • Reston (VA), Northern (KY)

Hybrid
USD 120,000 - 160,000
Endpoint Security Engineer
Endpoint Security Engineer

PlanIT Group, LLC • Reston (VA)

On-site
USD 150,000 - 200,000
Customer Success Manager
Customer Success Manager

CyberMaxx • Linthicum (MD)

On-site
USD 90,000 - 120,000
Flexible PTO
401k with company match
Medical coverage
+4
Customer Success Manager
Customer Success Manager

CyberMaxx, Inc. • Linthicum (MD), Northern (KY)

Hybrid
USD 90,000 - 120,000
Flexible PTO
401k match
Medical, Dental, and Vision
MEDR Threat Engineer US work hours
MEDR Threat Engineer US work hours

Proficio Inc • United States

On-site
USD 120,000 - 180,000
Meals reimbursement
Gym access
Internet reimbursement