Applications Engineer IV (EDR)

Quevera LLC
Hanover, MD, United States
2 months ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Working hours
Regular working hours
Job source

Tech stack

Microsoft Windows Amazon Web Services Microsoft Azure Cloud Computing Cloud Computing Security CompTIA Security+ Cyber Security System Configuration File Systems Intrusion Detection Systems Python (Programming Language) Network Security
+14 more
Log Analysis Network Protocols Open Source Technology Windows PowerShell Cloud Services Security Information and Event Management Traffic Analysis Forensic Toolkit Data Logging Cloud Platform System Cybercrime Microsoft Sentinel Encase Splunk

Job description

  • Deploy, configure, test, manage, and optimize endpoint detection and response solutions across the NSA enterprise.

Establish comprehensive Standard Operating Procedures (SOPs) for EDR functionalities and lead training sessions to

empower SOC analysts in maximizing platform efficiency and threat visibility.

Essential Duties and Responsibilities:

  • Responsible to the deployment, testing, management, and optimization of endpoint detection and response solutions. This

role involves deploying, configuring, testing, and monitoring EDR capabilities to traditional on premises and cloud

environments. The ideal candidate should have a strong background in endpoint security, cloud applications, Windows

forensics, large enterprise endpoint deployments, and SOC analyst support.

Requirements

Do you have experience in Windows?, * EDR Solutions: Proficient in one or more EDR platforms (Trellix HX/EDRF or Microsoft Defender for Endpoint EDR, preferably both).

  • Cloud Applications: Experience with cloud security and familiarity with cloud service providers (AWS or Azure, preferably both).
  • Cloud Security: Experience securing cloud-hosted workloads using EDR solutions and understanding cloud-native security controls and logging (Microsoft

Sentinel, Microsoft Defender, Microsoft Purview, AWS CoudWatch, AWS CloudTrail, AWS GuardDuty, or AWS Security Hub). CCSP Certified Cloud Security

Professional certification or equivalent.

  • Security Operations Center (SOC) Support: Experience supporting SOC functions such as assisting in monitoring, training analysts, documenting SOPs,

incident response coordination, analysis of security events, and process/procedure improvement. Microsoft Certified: Security Operations Analyst

Associate (SOAA) or equivalent.

  • Network Security: Understanding of network protocols, traffic analysis, and intrusion detection systems (CompTIA Security+ is required).
  • Windows Forensics: In-depth knowledge of Windows operation system internals, registry, and file system. Familiarity with forensic tools like EnCase, FTK,

or open-source alternatives. SANS Windows Forensic Analysis (FOR500) or equivalent.

Desired Experience:

  • Threat Hunting: Proactive identification and investigation of potential security threats and anomalies.
  • Incident Response: Experience in managing and responding to security incidents, including containment, eradication, and recovery.
  • Security Information and Event Management (SIEM): Familiarity with SIEM systems for log analysis and correlation (e.g. Splunk, Elastic, Microsoft Sentinel).
  • Scripting and Automation: Proficient in scripting languages (e.g., PowerShell, Python) for automating tasks and workflows.

Benefits & conditions

Pulled from the full job description

  • 401(k) 4% Match
  • 401(k) matching
  • Vision insurance
  • Dental insurance
  • Life insurance
  • Disability insurance
  • Profit sharing, Quevera employees voted Quevera as a TOP EMPLOYER in the Baltimore /DC area by the Washington for 2025 for the 5th consecutive year!

Excellent Quevera’s Benefits:

Medical/Dental/Vision (100% Employer Paid Medical Plan)

Short/Long Term Disability (Employer Paid)

Life Insurance (Employer Paid)

Yearly $5,000 towards education/training/certification.

Employees are in control of their career path through our Career Pathway Program.

Employer paid Company Vacation Package for you and a guest!

Retirement

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on indeed.com

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

2:38 min

Establishing comprehensive monitoring and log management

Michael Eder +1 · LIVE

4:34 min

Motivational categories behind modern cybercriminal activities

Mauro Verderosa · LIVE

3:22 min

Transitioning from software engineering to security roles

Anna Oliveira · Coffee With Developers

3:10 min

Correlating dispersed logs using structured request tracing

Michael Eder +1 · LIVE

1:20 min

Identifying multi-disciplinary talent for developer experience engineering roles

Hazal Mestci +1 · Coffee With Developers

2:11 min

Securing heterogeneous legacy payment infrastructure against AI

Michele Zuccala Michele Zuccala +4 · WWC Europe 2026

Videos

See all

Related articles

See all