More jobs:
Endpoint Security Engineer Security Clearance
Job in
Reston, Fairfax County, Virginia, 20190, USA
Listed on 2025-12-31
Listing for:
Booz Allen Hamilton
Full Time, Part Time
position Listed on 2025-12-31
Job specializations:
-
IT/Tech
Cybersecurity, Systems Engineer, Data Security
Job Description & How to Apply Below
Job Number: R0230010 Endpoint Security Engineer Key Role:
Design, deploy, manage, and operationalize enterprise endpoint data protection controls as a Trellix Endpoint Data Loss Prevention ( DLP ) Engineer. Serve as the technical owner for Trellix EDR / DLP components, ensuring sensitive data is identified, monitored, and protected across the enterprise. Use your analytical, engineering, and stakeholder e nga gement capabilities to assist with information protection strategy. Play a core role in safeguarding the organization's most critical asset-its data.
Build an enterprise-grade data protection program with visibility across security leadership, risk, and operational teams. Lead enterprise deployment, configuration, tuning, and maintenance of Trellix Endpoint DLP, including policy automation, agent health, and performance optimization. Assist with building, testing, and operationalizing DLP policies , rulesets, classification logic, and incident workflows aligned to data governance requirements. Integrate the Trellix DLP platform with SIEM, SOAR, CASB, CMDB, and identity security tools for end-to-end visibility and automated response.
Analyze DLP tele met ry, alerts, and incidents to identify data exfiltration patterns, risk signals, and false positives. Partner with legal, compliance, data governance, and HR to define rulesets, thresholds, and exception workflows. Develop engineering playbooks, standard operating procedures, and runbooks for policy lifecycle management. Manage endpoint agent health, upgrades, change control, and enterprise-wide platform stability. C ond uct root-cause analysis for user-impact, policy misfires, broken workflows, and endpoint inventory issues.
Provide guidance to application and business teams on data classification, tagging, and secure data-handling practices. Align DLP implementations with Zero T rus t, privacy, and enterprise data protection strategies.
Basic Qualifications:
* 4+ years of experience in cybersecurity engineering, data protection, or endpoint security
* 2+ years of experience with endpoint security tools such as Trellix Endpoint DLP, Trellix ePO, Micro sof t purview, Symantec, Forcepoint, or Netwrix, or asso cia ted modules, agent-based controls, and Windows and Linux endpoint management and troubleshooting
* 2+ years of experience developing and deploying solutions for highly regulated industries such as healthcare, finance, federal, defense, and energy
* Experience with integration patterns across SIEM, SOAR, and identity security platforms, and broader Trellix or McAfee security stack such as ENS, DLP Monitor, DLP Discover, and ePO
* Experience with scripting in Power Shell, Python, or Bash for automation and workflow optimization, creating classification taxonomies, and integrating DLP with enterprise data catalogs
* Ability to interpret data movement patterns and policy outcomes
* Active TS/SCI clearance; willingness to take a polygraph exam
* Asso cia te's degree and 5+ years of experience supporting IT projects and activities, Bachelor's degree and 3+ years of experience supporting IT projects and activities, or Master's degree and 1+ years of experience supporting IT projects and activities
* DoD 8570.01-M Information Assurance Techni cia n ( IAT ) Level II Certification such as Security+ CE, CCNA-Security, GSEC, SSCP, CySA+, GICSP, or CND Certification
* Ability to obtain a DoD 8570.01-M Cybersecurity Service Provider - Infrastructure Support Certification such as CEH, CHFI, CFR, Cloud+, or CND Certification, within 30 days of start date
Additional Qualifications:
* Knowledge of data loss prevention concepts, endpoint security controls, and data classification models
* Possession of strong analytical skills Clearance:
Applicants selected will be subject to a security investigation and may need to meet eligibility requirements for access to classified information ; TS/SCI clearance is required. Compensation At Booz Allen, we celebrate your contributions, provide you with opportunities and choices, and support your total well-being. Our offerings include health, life, disability, financial, and retirement benefits, as well as paid leave, professional development, tuition assistance, work-life programs, and dependent care.
Our recognition awards program acknowledges employees for exceptional performance and superior demonstration of our values. Full-time and part-time employees working at least 20 hours a week on a regular basis are eligible to participate in Booz Allen's benefit programs. Individuals that do not meet the threshold are only eligible for select offerings, not inclusive of health benefits. We encourage you to learn more about our total benefits by visiting the Resource page on our Careers site and reviewing Our Employee Benefits page.
Salary at Booz Allen is determined by various factors, including but not limited to location, the individual's particular combination of education, knowledge, skills, competencies, and experience, as well as…
To View & Apply for jobs on this site that accept applications from your location or country, tap the button below to make a Search.
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).
Search for further Jobs Here:
×