> Markdown version of [/jobs/ext/1367559-sitec-endpoint-security-administrator-macdill-afb](https://www.wearedevelopers.com/jobs/ext/1367559-sitec-endpoint-security-administrator-macdill-afb). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # SITEC - Endpoint Security Administrator - MacDill AFB - **Company:** Peraton Inc - **Location:** Tampa, FL, United States - **Salary:** $80,000.0 - $128,000.0 - **Contract:** Permanent contract - **Skills:** Adobe Analytics, Microsoft Windows, Amazon Web Services, Microsoft Azure, Cloud Computing, Cloud Computing Security, System Configuration, Linux, Infrastructure as a Service (IaaS), Platform as a Service (PAAS), Azure Active Directory, Zero Trust Network Access, Virtual Machines, EndPointSecurity, Software Security, Multi-Cloud, Cyber Threat Analysis, CIS Benchmarks, Cyber Warfare, Vulnerability Analysis - **Published:** July 21, 2026 - **Apply:** https://www.clearancejobs.com/jobs/9042513/sitec-endpoint-security-administrator-macdill-afb ## About the Role * Min 9 years with HS Diploma, 7 years AS/AA degree, 5 years with BS/BA degree, 3 years with MS/MA * A DoD TS/SCI clearance is required * DoDD 8570.01-M IAT II * Experience Managing the complete lifecycle of endpoint security tools * Must be DoW 8140 compliant under the Work Role Code 521- Cyber Defense Infrastructure Support Specialist - Intermediate level or higher by 1 Oct 26. * Strong written and communication skills. * Ability to thrive in a dynamic, fast-paced environment. ## Description Endpoint and Application Security Administrators are responsible for the overall security posture and policy enforcement across all enterprise devices. This role owns the administration, configuration, and maintenance of the endpoint and application security infrastructure. Key responsibilities include deploying and managing security baselines, configuring device security policies such as antivirus and disk encryption, and administering application control policies. The administrator will proactively monitor for security threats, vulnerabilities, and compliance discrepancies, and will support incident response operations by implementing countermeasures and security controls as directed. Duties Include: * Deploy, manage, and enforce security baselines and configuration policies across all on-premises and cloud-based Windows and Linux endpoints. * Administer and configure device security settings, including antivirus/antimalware, host firewall, and full-disk encryption for both physical and virtual machines. * Manage and secure cloud workloads (e.g., VMs, containers) in IaaS/PaaS environments using Cloud Workload Protection Platforms (CWPP). * Develop and manage application control policies (whitelisting/blacklisting) to prevent unauthorized software execution across the hybrid environment. * Ensure consistent security policy enforcement and visibility across both on-premises and multi-cloud (e.g., Azure, AWS) infrastructures. * Continuously monitor the entire hybrid environment for anomalous activity, emerging threats, vulnerabilities, and configuration discrepancies. * Integrate endpoint security with cloud-native security services and identity providers (e.g., Azure AD/Entra ID) to enforce conditional access and zero-trust principles. * Act as a point of escalation for the Security Operations Center (SOC) to investigate and respond to security incidents, regardless of where the endpoint resides. * Support threat-hunting operations by implementing security controls and countermeasures across both on-premises and cloud assets. * Manage the complete lifecycle of endpoint security tools, ensuring seamless operation and integration within a hybrid architecture. * Remove or manage local administrative rights on endpoints to reduce the attack surface. * Ensure the health and compliance of all managed devices, remediating any that are out of compliance. * Collaborate with IT, Cloud, and other security teams to streamline endpoint management and improve automation across the hybrid estate. * Assist with end-user troubleshooting efforts related to endpoint security controls. * Use endpoint security tools to remediate vulnerabilities and misconfigurations identified by security scans. ## Related Videos - [The Open-source Java SDK for Multi-Cloud Development - Sandeep Pal](https://www.wearedevelopers.com/videos/2113-the-open-source-java-sdk-for-multi-cloud-development-sandeep-pal) - [Docker network without Docker](https://www.wearedevelopers.com/videos/1418-docker-network-without-docker) - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [Leverage Cloud Computing Benefits with Serverless Multi-Cloud ML ](https://www.wearedevelopers.com/videos/78-leverage-cloud-computing-benefits-with-serverless-multi-cloud-ml) - [Docker exec without Docker](https://www.wearedevelopers.com/videos/1094-docker-exec-without-docker) - [Maturity assessment for technicians or how I learned to love OWASP SAMM](https://www.wearedevelopers.com/videos/351-maturity-assessment-for-technicians-or-how-i-learned-to-love-owasp-samm) ## Related Articles - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [The Overflow: Security and Privacy](https://www.wearedevelopers.com/magazine/715-the-overflow-security-and-privacy) - [Understanding and Mitigating Common Web Vulnerabilities](https://www.wearedevelopers.com/magazine/565-understanding-and-mitigating-common-web-vulnerabilities) - [Walking Into The Era of Supply Chain Risks](https://www.wearedevelopers.com/magazine/106-walking-into-the-era-of-supply-chain-risks) - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking)