Application Engineer 4 (EDR)

Vetegrity LLC
Annapolis, MD, United States
about 2 months ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Working hours
Regular working hours

Tech stack

Microsoft Windows Amazon Web Services Microsoft Azure Cloud Computing Cloud Computing Security CompTIA Security+ Cyber Security System Configuration File Systems Intrusion Detection Systems Information Systems Security Architecture Professional Python (Programming Language)
+14 more
Network Security Log Analysis Network Protocols Open Source Technology Windows PowerShell Cloud Services Security Information and Event Management Traffic Analysis Forensic Toolkit Data Logging Cloud Platform System Microsoft Sentinel Encase Splunk

Job description

Deploy, configure, test, manage, and optimize endpoint detection and response solutions across the NSA enterprise. Establish comprehensive Standard Operating Procedures (SOPs) for EDR functionalities and lead training sessions to empower SOC analysts in maximizing platform efficiency and threat visibility., Responsible to the deployment, testing, management, and optimization of endpoint detection and response solutions. This role involves deploying, configuring, testing, and monitoring EDR capabilities to traditional on premises and cloud environments. The ideal candidate should have a strong background in endpoint security, cloud applications, Windows forensics, large enterprise endpoint deployments, and SOC analyst support.

Requirements

EDR Solutions: Proficient in one or more EDR platforms (Trellix HX/EDRF or Microsoft Defender for Endpoint EDR, preferably both).

  • Cloud Applications: Experience with cloud security and familiarity with cloud service providers (AWS or Azure, preferably both).

  • Cloud Security: Experience securing cloud-hosted workloads using EDR solutions and understanding cloud-native security controls and logging (Microsoft Sentinel, Microsoft Defender, Microsoft Purview, AWS CoudWatch, AWS CloudTrail, AWS GuardDuty, or AWS Security Hub). CCSP Certified Cloud Security Professional certification or equivalent.

  • Security Operations Center (SOC) Support: Experience supporting SOC functions such as assisting in monitoring, training analysts, documenting SOPs, incident response coordination, analysis of security events, and process/procedure improvement. Microsoft Certified: Security Operations Analyst Associate (SOAA) or equivalent.

  • Network Security: Understanding of network protocols, traffic analysis, and intrusion detection systems (CompTIA Security+ is required).

  • Windows Forensics: In-depth knowledge of Windows operation system internals, registry, and file system. Familiarity with forensic tools like EnCase, FTK, or open-source alternatives. SANS Windows Forensic Analysis (FOR500) or equivalent.

Desired Skills

  • Threat Hunting: Proactive identification and investigation of potential security threats and anomalies.

  • Incident Response: Experience in managing and responding to security incidents, including containment, eradication, and recovery.

  • Security Information and Event Management (SIEM): Familiarity with SIEM systems for log analysis and correlation (e.g. Splunk, Elastic, Microsoft Sentinel).

  • Scripting and Automation: Proficient in scripting languages (e.g., PowerShell, Python) for automating tasks and workflows.

  • Certified Information Systems Security Professional (CISSP)

Benefits & conditions

We offer competitive compensation and benefits to include:

  • Medical/Dental/Vision

  • 20 Days of Paid Time Off (PTO) + Federal Holidays

  • 401k with Employer Match

  • Profit Sharing

  • Tuition Reimbursement

  • Flex Spending Account

  • Life Insurance, Long & Short-Term Disability

  • Pet Adoption Reimbursement

  • Annual Physical Fitness/Wellness Allowance

  • Supplemental Insurance

  • Employee Referral Program

  • Performance Incentives

  • On-The-Spot Rewards

  • Other company-sponsored perks include after-hours events, logo apparel, holiday parties, and more!

About the company

Vetegrity is an employee-focused small business, founded in 2008. We are passionate about supporting the missions of the Intelligence Community and the Department of Defense. As a Service-Disabled, Veteran-Owned Small Business, we pride ourselves on our commitment to excellence and integrity in everything we do.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on clearancejobs.com

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

3:22 min

Transitioning from software engineering to security roles

Anna Oliveira · Coffee With Developers

2:38 min

Establishing comprehensive monitoring and log management

Michael Eder +1 · LIVE

1:10 min

Exposing sensitive information through partial search logs

Dennis Schulz Dennis Schulz +1 · WWC Europe 2026

3:10 min

Correlating dispersed logs using structured request tracing

Michael Eder +1 · LIVE

1:56 min

Discovering incidents using logs, metrics, and traces

Nele Uhlemann · WWC 2023

1:20 min

Identifying multi-disciplinary talent for developer experience engineering roles

Hazal Mestci +1 · Coffee With Developers

Videos

See all

Related articles

See all