> Markdown version of [/jobs/ext/2271787-security-engineer-trellix](https://www.wearedevelopers.com/jobs/ext/2271787-security-engineer-trellix). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Security Engineer (Trellix) - **Company:** Eliassen Group - **Location:** Washington, DC, United States - **Experience:** Expert - **Salary:** $140,000.0 - $170,000.0 - **Contract:** Permanent contract - **Skills:** Cyber Security, Microsoft Exchange Server, Executive Information Systems, Identity and Access Management, Intrusion Detection and Prevention, Python (Programming Language), Windows PowerShell, Security Information and Event Management, Systems Integration, Cyber Threat Analysis, Restful APIs, Security Orchestration, Automation & Response - **Published:** August 27, 2026 - **Apply:** https://www.dice.com/job-detail/83f93c93-f536-42ec-b21e-c0bcc8543f34 ## About the Role * Active TS/SCI security clearance. * 5+ years administering and engineering Trellix solutions in a large enterprise. * Hands-on expertise with Trellix ePO, ENS, EDR, DLP, Drive Encryption (FRP/FRMP), TIE, DXL, Policy Auditor, Rogue System Detection, TSME, Solidcore, and FIM. * Experience with application listing, endpoint hardening, encryption, and data protection. * Integration experience with SIEM, SOAR, threat intelligence, and identity platforms. * Strong understanding of endpoint security architecture, threat detection, incident response, and risk management. * Experience developing DLP policies, device control, and data exfiltration prevention. * Experience supporting SOCs and enhancing 24x7 monitoring and response. * Ability to develop standards, SOPs, playbooks, and operational procedures. * Experience supporting compliance initiatives aligned with federal frameworks; strong analytical and troubleshooting skills. * Nice to Haves: Insider Risk, Data Protection, or UAM program support; knowledge of CNSSD 504, NIST 800-53, NIST 800-207, and NIST CSF; automation with PowerShell, Python, and REST APIs; integrating Trellix telemetry with SIEM and SOAR; executive dashboards and metrics; FIM implementation for compliance and forensics; JCIP, FISMA, or federal assessment support; familiarity with threat-informed defense and automation frameworks; relevant Trellix, cybersecurity, or cloud certifications. ## Description As a Sr. Security Engineer (Trellix), you will serve as the technical lead for our client's endpoint security and data protection ecosystem. You will balance day-to-day operational support with strategic cybersecurity engineering initiatives while partnering with security operations, infrastructure, application teams, and leadership to strengthen the overall security posture., * Lead engineering and administration of Trellix security platforms, including ePO, ENS, EDR, DLP, Drive Encryption (FRP/FRMP), TIE, DXL, Policy Auditor, Rogue System Detection, Trellix Security for Microsoft Exchange (TSME), Application and Change Control (Solidcore), and File Integrity Monitoring (FIM). * Implement and manage application listing, endpoint hardening, encryption, and data protection technologies. * Integrate endpoint security with SIEM, SOAR, threat intelligence, and identity management solutions. * Develop and maintain DLP policies, device control mechanisms, and data exfiltration prevention controls. * Support SOC operations and enhance 24x7 monitoring and incident response capabilities. * Create and maintain security engineering standards, SOPs, playbooks, and operational procedures. * Support compliance initiatives aligned to federal cybersecurity frameworks and regulations. * Perform analytical troubleshooting and root-cause analysis to improve platform reliability and security outcomes. ## Related Videos - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [Rest API Antipatterns](https://www.wearedevelopers.com/videos/100208-rest-api-antipatterns) - [Thinking Differently - How to Make Money from Cyber Attacks & Cheats](https://www.wearedevelopers.com/videos/745-thinking-differently-how-to-make-money-from-cyber-attacks-cheats) - [Cyber Sleuth: Finding Hidden Connections in Cyber Data](https://www.wearedevelopers.com/videos/893-cyber-sleuth-finding-hidden-connections-in-cyber-data) - [REST In Peace: Why LLMs Can't CRUD](https://www.wearedevelopers.com/videos/100272-rest-in-peace-why-llms-can-t-crud) - [Cyber Security: Small, and Large!](https://www.wearedevelopers.com/videos/259-cyber-security-small-and-large) ## Related Articles - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [The Overflow: Security and Privacy](https://www.wearedevelopers.com/magazine/715-the-overflow-security-and-privacy) - [How We Built a Worry-Free System That Runs for 10+ Years – And What We’d Do Again](https://www.wearedevelopers.com/magazine/751-how-we-built-a-worry-free-system-that-runs-for-10-years-and-what-we-d-do-again) - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Walking Into The Era of Supply Chain Risks](https://www.wearedevelopers.com/magazine/106-walking-into-the-era-of-supply-chain-risks) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed)