Senior Endpoint Security Engineer (13+ years, CrowdStrike Falcon, Microsoft Defender, SentinelOne)
Triangle, Inc
Raleigh, NC, United States
4 days ago
- Discuss this with your agent
- Open in Claude
- Open in ChatGPT
Apply on www.techcareers.com
Prepare application
- Draft this with your agent
- Open in Claude
- Open in ChatGPT
Role details
Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Working hours
Regular working hours
Job source
Tech stack
Artificial Intelligence
Antivirus Softwares
Microsoft Antivirus
Bash Shell
Cyber Security
Information Systems
Computer Programming
Computer Networks
Query Languages
Python (Programming Language)
Machine Learning
Windows PowerShell
+9 more
Kusto Query Language
Security Information and Event Management
SQL Databases
EndPointSecurity
Cyber Threat Analysis
Information Technology
Cybercrime
Splunk
SentinelOne Expertise
Job description
- Engineer, deploy, and maintain Next-Gen Antivirus (NGAV) and Endpoint Detection & Response (EDR/XDR) agents across a diverse range of endpoints.
- Implement behavioral protections against zero-day malware and advanced persistent threats.
- Collaborate with application owners and business units to establish baseline behavior profiles.
- Manage allowlisting, exception workflows, and phased ring deployments to ensure seamless protection.
- Support SOC investigations and collaborate with system owners for enterprise security.
Requirements
- U.S. Citizenship required.
- 13+ years of relevant experience in cybersecurity engineering or infrastructure security roles.
- Experience with enterprise-grade EDR/XDR platforms (CrowdStrike Falcon, Microsoft Defender, and/or SentinelOne SIEM) across extensive endpoint environments
- Bachelor’s degree in Computer Science, Cybersecurity, Information Systems, or equivalent experience (17 years total).
- Proficiency in administering endpoint platforms across various operating systems.
- Expertise in behavioral analysis, threat hunting, and using query languages like SQL, KQL, and YARA.
- Strong programming skills in PowerShell, Python, or Bash for automation.
- Fluency in using AI/ML technologies to automate security activities.
- Ability to balance security controls with business operations, ensuring minimal disruption.
- Experience in crisis leadership, operational scale management, and policy automation.
Preferred:
- GIAC Certified Enterprise Defender (GCED), GCIH, or GCFA certification.
- CISSP certification.
- Vendor-specific credentials, such as CrowdStrike Certified Falcon Administrator or Microsoft Certified: Security Operations Analyst Associate.
Apply for this position
This job is hosted externally. Click below to view the full posting and apply.
Apply on www.techcareers.com
Prepare application
- Draft this with your agent
- Open in Claude
- Open in ChatGPT
Good distractions
Talks and stories from around this role — technically off-topic, practically not.
Moments
Explore playlistsVideos
See allRelated articles
See all
LM
Luis Minvielle
over 2 years ago
DC
Daniel Cranney
Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.
7 months ago
CH
Chris Heilmann
Dev Digest 134 - Where pixels sing?
almost 2 years ago
LM
Luis Minvielle
Is Software Engineering Over-Saturated?
over 2 years ago
LM
Luis Minvielle
Fully Remote Software Engineer Jobs
over 2 years ago
BB
Benedikt Bischof
Building Security Champions
over 4 years ago