> Markdown version of [/jobs/ext/289915-applications-engineer-iv-edr](https://www.wearedevelopers.com/jobs/ext/289915-applications-engineer-iv-edr). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Applications Engineer IV (EDR) - **Company:** Quevera LLC - **Location:** Hanover, MD, United States - **Contract:** Permanent contract - **Skills:** Microsoft Windows, Amazon Web Services, Microsoft Azure, Cloud Computing, Cloud Computing Security, CompTIA Security+, Cyber Security, System Configuration, File Systems, Intrusion Detection Systems, Python (Programming Language), Network Security, Log Analysis, Network Protocols, Open Source Technology, Windows PowerShell, Cloud Services, Security Information and Event Management, Traffic Analysis, Forensic Toolkit, Data Logging, Cloud Platform System, Cybercrime, Microsoft Sentinel, Encase, Splunk - **Published:** May 31, 2026 - **Apply:** https://www.indeed.com/viewjob?jk=1c2478a40376d774 ## About the Role Do you have experience in Windows?, * EDR Solutions: Proficient in one or more EDR platforms (Trellix HX/EDRF or Microsoft Defender for Endpoint EDR, preferably both). * Cloud Applications: Experience with cloud security and familiarity with cloud service providers (AWS or Azure, preferably both). * Cloud Security: Experience securing cloud-hosted workloads using EDR solutions and understanding cloud-native security controls and logging (Microsoft Sentinel, Microsoft Defender, Microsoft Purview, AWS CoudWatch, AWS CloudTrail, AWS GuardDuty, or AWS Security Hub). CCSP Certified Cloud Security Professional certification or equivalent. * Security Operations Center (SOC) Support: Experience supporting SOC functions such as assisting in monitoring, training analysts, documenting SOPs, incident response coordination, analysis of security events, and process/procedure improvement. Microsoft Certified: Security Operations Analyst Associate (SOAA) or equivalent. * Network Security: Understanding of network protocols, traffic analysis, and intrusion detection systems (CompTIA Security+ is required). * Windows Forensics: In-depth knowledge of Windows operation system internals, registry, and file system. Familiarity with forensic tools like EnCase, FTK, or open-source alternatives. SANS Windows Forensic Analysis (FOR500) or equivalent. Desired Experience: * Threat Hunting: Proactive identification and investigation of potential security threats and anomalies. * Incident Response: Experience in managing and responding to security incidents, including containment, eradication, and recovery. * Security Information and Event Management (SIEM): Familiarity with SIEM systems for log analysis and correlation (e.g. Splunk, Elastic, Microsoft Sentinel). * Scripting and Automation: Proficient in scripting languages (e.g., PowerShell, Python) for automating tasks and workflows. ## Description * Deploy, configure, test, manage, and optimize endpoint detection and response solutions across the NSA enterprise. Establish comprehensive Standard Operating Procedures (SOPs) for EDR functionalities and lead training sessions to empower SOC analysts in maximizing platform efficiency and threat visibility. Essential Duties and Responsibilities: * Responsible to the deployment, testing, management, and optimization of endpoint detection and response solutions. This role involves deploying, configuring, testing, and monitoring EDR capabilities to traditional on premises and cloud environments. The ideal candidate should have a strong background in endpoint security, cloud applications, Windows forensics, large enterprise endpoint deployments, and SOC analyst support. ## Related Videos - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [Fighting the Next Wave of Cybercrime](https://www.wearedevelopers.com/videos/100331-fighting-the-next-wave-of-cybercrime) - [Our journey with Spring Boot in a microservice architecture](https://www.wearedevelopers.com/videos/511-our-journey-with-spring-boot-in-a-microservice-architecture) - [Deep Fakes: The Lies We Can’t See](https://www.wearedevelopers.com/videos/1187-deep-fakes-the-lies-we-can-t-see) - [You can’t hack what you can’t see](https://www.wearedevelopers.com/videos/41-you-can-t-hack-what-you-can-t-see) - [Checkmate: 5 Real Incidents That Can End a Software Company](https://www.wearedevelopers.com/videos/100126-checkmate-5-real-incidents-that-can-end-a-software-company) ## Related Articles - [What Are The Top Skills Required For Azure Developers?](https://www.wearedevelopers.com/magazine/77-what-are-the-top-skills-required-for-azure-developers) - [Where To Find Software Engineering Jobs](https://www.wearedevelopers.com/magazine/396-where-to-find-software-engineering-jobs) - [Fully Remote Software Engineer Jobs](https://www.wearedevelopers.com/magazine/447-fully-remote-software-engineer-jobs) - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Where to Find Entry-Level Software Engineering Jobs](https://www.wearedevelopers.com/magazine/397-where-to-find-entry-level-software-engineering-jobs) - [Is Software Engineering Over-Saturated?](https://www.wearedevelopers.com/magazine/418-is-software-engineering-over-saturated)