Endpoint Detection & Response Engineer
Listed on 2026-06-27
-
IT/Tech
Cybersecurity, Systems Engineer
Your growth matters to us - explore our career development opportunities.
BE EMPOWERED TO SUCCEEDConnect with others in our people-first culture and enhance our collective ingenuity.
SUPPORT YOUR WELLBEINGLearn how we’ll support you as you pursue a balanced, fulfilling life.
YOUR CANDIDATE JOURNEYDiscover what to expect during your journey as a candidate with us.
Endpoint Detection & Response EngineerAs an Endpoint Detection & Response (EDR) Engineer, you will implement and optimize next-generation security solutions for customers. You’ll work with in-house teams to identify the right mix of tools, techniques, and procedures to translate your customer’s needs and future goals into a plan that will enable secure and effective solutions. In developing the best solutions, you will investigate new techniques, break free from the legacy model, and help customers exceed industry standards.
As a team, we’ll take a critical approach to solution design, identifying gaps, providing alternatives, and customizing solutions to maintain a balance of security and business needs.
- Experience with deployment, configuration, or maintenance of enterprise endpoint detection and response (EDR) solutions in a customer environment, such as Carbon Black EDR, Crowd Strike Falcon, Sentinel One, Fire Eye HX, McAfee MVision, Microsoft Defender for Endpoint (MDE), Tanium, or Elastic Endpoint Protection
- Experience performing systems administration, including basic troubleshooting and installation, monitoring system performance or availability, performing security upgrades, and optimizing solution configurations to meet the needs of operational users
- Knowledge of optimization of EDR solutions, including refinement data produced, development of automated workflows or playbooks, and integration of the EDR data with enterprise solutions, including SIEM, ITSM, and TIP solutions
- Ability to provide content on deliverables, including written reports and technical documents, SOPs and configuration guides, and training and briefing materials
- Secret clearance
- HS diploma or GED
- Experience triaging security events in a SOC environment and leveraging data collected from enterprise security solutions
- Experience providing support in a Tier I or II IT operations and maintenance role, including ticket work information updates, issue responses, and remediation
- Knowledge of federal information security policies, standards, procedures, directives, frameworks, federal security authorizations, assessment, and risk management processes for enterprise systems
- Ability to integrate cybersecurity data using enterprise or custom data aggregation and analysis tools, including Splunk
- Ability to meet DoW 8140 requirements
- Possession of excellent written and verbal communication skills
- Bachelor’s degree
- EDR Vendor Certification
Applicants selected will be subject to a security investigation and may need to meet eligibility requirements for access to classified information;
Secret clearance is required.
Salary at Booz Allen is determined by various factors, including but not limited to location, the individual’s particular combination of education, knowledge, skills, competencies, and experience, as well as contract-specific affordability and organizational requirements. The projected compensation range for this position is $86,800.00 to $ (annualized USD). The estimate displayed represents the typical salary range for this position and is just one component of Booz Allen’s total compensation package for employees.
This posting will close within 90 days from the Posting Date.
All qualified applicants will receive consideration for employment without regard to disability, status as a protected veteran or any other status protected by applicable federal, state, local, or international law.
#J-18808-Ljbffr(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).