> Markdown version of [/jobs/ext/2240674-endpoint-engineer](https://www.wearedevelopers.com/jobs/ext/2240674-endpoint-engineer). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Endpoint Engineer - **Company:** Eliassen Group - **Location:** Reston, VA, United States - **Experience:** Expert - **Salary:** $140,000.0 - $170,000.0 - **Contract:** Permanent contract - **Skills:** Cyber Security, Microsoft Exchange Server, Executive Information Systems, Identity and Access Management, Intrusion Detection and Prevention, Python (Programming Language), Windows PowerShell, Security Information and Event Management, Systems Integration, System Availability, Cyber Threat Analysis, Restful APIs, Security Orchestration, Automation & Response - **Published:** August 26, 2026 - **Apply:** https://www.clearancejobs.com/jobs/9119512/endpoint-engineer ## About the Role 5+ years administering and engineering Trellix solutions in a large enterprise. Hands-on expertise with Trellix ePO, ENS, EDR, DLP, Drive Encryption (FRP/FRMP), TIE, DXL, Policy Auditor, Rogue System Detection, TSME, Solidcore, and FIM. Experience with application whitelisting, endpoint hardening, encryption, and data protection. Integration experience with SIEM, SOAR, threat intelligence, and identity platforms. Strong understanding of endpoint security architecture, threat detection, incident response, and risk management. Experience developing DLP policies, device control, and data exfiltration prevention. Experience supporting SOCs and enhancing 24x7 monitoring and response. Ability to develop standards, SOPs, playbooks, and operational procedures. Experience supporting compliance initiatives aligned with federal frameworks; strong analytical and troubleshooting skills. Nice to Haves: Insider Risk, Data Protection, or UAM program support; knowledge of CNSSD 504, NIST 800-53, NIST 800-207, and NIST CSF; automation with PowerShell, Python, and REST APIs; integrating Trellix telemetry with SIEM and SOAR; executive dashboards and metrics; FIM implementation for compliance and forensics; JCIP, FISMA, or federal assessment support; familiarity with threat-informed defense and automation frameworks; relevant Trellix, cybersecurity, or cloud certifications. ## Description As a Sr. Security Engineer (Trellix), you will serve as the technical lead for our client's endpoint security and data protection ecosystem. You will balance day-to-day operational support with strategic cybersecurity engineering initiatives while partnering with security operations, infrastructure, application teams, and leadership to strengthen the overall security posture., Lead engineering and administration of Trellix security platforms, including ePO, ENS, EDR, DLP, Drive Encryption (FRP/FRMP), TIE, DXL, Policy Auditor, Rogue System Detection, Trellix Security for Microsoft Exchange (TSME), Application and Change Control (Solidcore), and File Integrity Monitoring (FIM). Implement and manage application whitelisting, endpoint hardening, encryption, and data protection technologies. Integrate endpoint security with SIEM, SOAR, threat intelligence, and identity management solutions. Develop and maintain DLP policies, device control mechanisms, and data exfiltration prevention controls. Support SOC operations and enhance 24x7 monitoring and incident response capabilities. Create and maintain security engineering standards, SOPs, playbooks, and operational procedures. Support compliance initiatives aligned to federal cybersecurity frameworks and regulations. Perform analytical troubleshooting and root-cause analysis to improve platform reliability and security outcomes. ## Related Videos - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [Rest API Antipatterns](https://www.wearedevelopers.com/videos/100208-rest-api-antipatterns) - [Thinking Differently - How to Make Money from Cyber Attacks & Cheats](https://www.wearedevelopers.com/videos/745-thinking-differently-how-to-make-money-from-cyber-attacks-cheats) - [Enabling automated 1-click customer deployments with built-in quality and security](https://www.wearedevelopers.com/videos/83-enabling-automated-1-click-customer-deployments-with-built-in-quality-and-security) - [You can’t hack what you can’t see](https://www.wearedevelopers.com/videos/41-you-can-t-hack-what-you-can-t-see) - [REST In Peace: Why LLMs Can't CRUD](https://www.wearedevelopers.com/videos/100272-rest-in-peace-why-llms-can-t-crud) ## Related Articles - [How We Built a Worry-Free System That Runs for 10+ Years – And What We’d Do Again](https://www.wearedevelopers.com/magazine/751-how-we-built-a-worry-free-system-that-runs-for-10-years-and-what-we-d-do-again) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [The Overflow: Security and Privacy](https://www.wearedevelopers.com/magazine/715-the-overflow-security-and-privacy) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [Why Upskilling And Reskilling is Important For Developers](https://www.wearedevelopers.com/magazine/428-why-upskilling-and-reskilling-is-important-for-developers) - [Fully Remote Software Engineer Jobs](https://www.wearedevelopers.com/magazine/447-fully-remote-software-engineer-jobs)