1

Edr Engineer Jobs in Washington (NOW HIRING)

Endpoint Security Engineer

Alexandria, VA · On-site

$100K - $110K/yr

Additionally, the engineer will leverage Microsoft Intune to administer endpoint security ... Lead the strategic implementation and optimization of SentinelOne EPP/EDR capabilities to ...

Cybersecurity Engineer

Washington, DC · On-site

$120 - $160/hr

Support security monitoring through SIEM, EDR, and XDR technologies. * Secure cloud environments ... engineering or security operations experience * Experience with SIEM platforms such as Splunk ...

New

Cybersecurity Engineer

Washington, DC · On-site

$155K - $185K/yr

Required Qualifications: * 6+ years cybersecurity engineering; hands-on IAM, SIEM, EDR/XDR, vulnerability management, cloud security, NIST SP 800-53/800-207, and incident response experience.

New

Info Gain Consulting is currently seeking an exceptional Endpoint Engineer to join our team. You ... Integrate endpoint telemetry and logs with SIEM and EDR platforms. * Develop forensic-artifact ...

Cybersecurity Engineer

Washington, DC · On-site

$120 - $150/hr

Collaborate across engineering, SOC, and architecture teams Requirements * 5+ years' Hands-on experience in security engineering tools (EDR, SIEM, SOAR tools) * 2+ years' AI Application and Agent ...

New

Info Gain Consulting is currently seeking an exceptional Endpoint Engineer to join our team. You ... Integrate endpoint telemetry and logs with SIEM and EDR platforms. * Develop forensic-artifact ...

Electrical Engineer

Arlington, VA · On-site

$150K - $168K/yr

Systems Engineer IV Description: Solutions³ LLC is supporting a U.S. Government customer to ... Support forensic investigations where EDR solutions are absent or insufficient * Document technical ...

... ENS, ePO, EDR, TIE, and DXL • Implement and support Data Loss Prevention (DLP) solutions ... engineering, cybersecurity engineering, or Windows/Linux systems administration • Strong ...

EDR, NDR, SIEM, and SOAR Implementation: * Design, implement, and maintain EDR, NDR, SIEM, and SOAR ... Investigate malware and conduct reverse engineering to understand threat behavior. * Collaboration ...

Showing results 21-40

Edr Engineer information

What is the difference between Edr Engineer vs Edr Technician?

AspectEdr EngineerEdr Technician
CredentialsBachelor's degree in electrical, electronics, or related engineering fields; certifications like Cisco or CompTIA are commonTechnical diploma or associate degree; relevant certifications may include Cisco or CompTIA
Work EnvironmentDesign, develop, and troubleshoot EDR systems; often involved in project planning and system integrationInstall, maintain, and repair EDR hardware and software; hands-on technical support
Employer & Industry UsageUsed by network security firms, telecom companies, and large enterprises for security and data recoveryEmployed in similar settings for operational support and system maintenance

In summary, Edr Engineers focus on designing and developing EDR systems, requiring higher-level engineering skills and credentials. Edr Technicians handle installation and maintenance, with more hands-on technical tasks. Both roles are essential in the cybersecurity and data recovery industry, but they differ in responsibilities and required qualifications.

What are some common challenges EDR engineers face when integrating endpoint detection and response solutions across diverse IT environments?

EDR Engineers often encounter challenges when deploying and managing endpoint detection and response solutions in organizations with a mix of legacy systems, various operating systems, and remote or hybrid workforces. Compatibility issues, ensuring consistent policy enforcement, and maintaining real-time visibility across all endpoints can be complex tasks. Collaboration with IT, security teams, and end-users is essential to troubleshoot deployment issues, minimize false positives, and optimize system performance. Staying up-to-date with evolving threats and regularly tuning the EDR solution are also key aspects of the role.

What is an EDR engineer?

EDR Engineers are cybersecurity professionals who specialize in implementing, managing, and optimizing Endpoint Detection and Response (EDR) solutions for organizations. Their main responsibilities include monitoring endpoints for suspicious activities, investigating security incidents, and responding to threats in real-time. EDR Engineers work closely with security teams to ensure robust protection against malware, ransomware, and other cyber threats by leveraging advanced detection and automated response tools. They also contribute to improving security policies and practices based on threat intelligence gathered from endpoints.

What are the key skills and qualifications needed to thrive as an EDR engineer, and why are they important?

To thrive as an EDR Engineer, you need a solid background in cybersecurity, threat detection, incident response, and typically a degree in computer science or a related field. Familiarity with endpoint detection and response (EDR) tools such as CrowdStrike, SentinelOne, or Carbon Black, along with certifications like CEH or CISSP, is highly valuable. Strong analytical thinking, problem-solving abilities, and effective communication skills help EDR Engineers collaborate across teams and respond swiftly to threats. These skills and qualifications are essential to proactively identify, investigate, and mitigate security incidents, ensuring the organization's digital assets remain protected.
What cities in Washington are hiring for Edr Engineer jobs? Cities in Washington with the most Edr Engineer job openings:
Infographic showing various Edr Engineer job openings in Washington as of August 2026, with employment types broken down into 15% As Needed, and 85% Full Time. Highlights an 100% In-person job distribution.

Endpoint Security Engineer

Halvik

Alexandria, VA • On-site

$100K - $110K/yr

Full-time

Medical, Dental, Vision, Life, Retirement

Posted 15 days ago


Job description

Halvik Corp delivers a wide range of services to 13 executive agencies and 15 independent agencies. Halvik is a highly successful WOB business with more than 50 prime contracts and 500+ professionals delivering Digital Services, Advanced Analytics, Artificial Intelligence/Machine Learning, Cyber Security and Cutting-Edge Technology across the US Government. Be a part of something special!Position OverviewThe SentinelOne Endpoint Security Engineer is responsible for the administration, management, and optimization of the organization's endpoint security environment, with a primary focus on SentinelOne Endpoint Protection Platform (EPP) and Endpoint Detection and Response (EDR). This role works closely with Cybersecurity Operations teams to protect enterprise Windows endpoints from malware, ransomware, and advanced cyber threats while ensuring compliance with organizational security standards.This role is on site Monday through Friday in Alexandria, VA.The position is responsible for deploying and maintaining SentinelOne agents, managing endpoint security policies, investigating security alerts, and supporting incident response activities. Additionally, the engineer will leverage Microsoft Intune to administer endpoint security configurations and support the organization's transition from traditional endpoint management solutions to modern cloud-based management.The ideal candidate possesses strong experience in enterprise endpoint security, Windows administration, PowerShell automation, and security tool integration. This role also requires expertise in developing automated workflows through APIs and integrating endpoint security solutions with SIEM and SOAR platforms such as Microsoft Sentinel, Splunk, IBM QRadar, and Cortex XSOAR.]Core ResponsibilitiesStrategic Execution: Lead the strategic implementation and optimization of SentinelOne EPP/EDR capabilities to strengthen the organization's endpoint security posture and align with cybersecurity objectives. Drive the adoption of modern endpoint management practices through Microsoft Intune, supporting the transition from traditional on-premises management to cloud-based solutions. Develop and execute endpoint security roadmaps, ensuring compliance with security standards, regulatory requirements, and industry best practices. Enhance operational efficiency through PowerShell automation, API integrations, and SIEM/SOAR orchestration to improve threat detection, response, and reporting capabilities. Collaborate with cybersecurity, infrastructure, and operations teams to proactively identify risks, implement security controls, and support continuous security improvement initiatives.Operational Oversight: Oversee daily operations of the SentinelOne EPP/EDR platform, ensuring continuous endpoint protection, policy compliance, and operational effectiveness across the enterprise. Monitor security alerts, investigate threats, and coordinate incident response activities to rapidly detect, contain, and remediate endpoint security risks. Manage endpoint security configurations and deployments through Microsoft Intune, ensuring consistent enforcement of security policies and compliance standards. Collaborate with cybersecurity and IT teams to maintain a secure, resilient, and well-governed endpoint environment while driving continuous operational improvements.Collaboration: Partner with Cybersecurity Operations, Infrastructure, and IT support teams to strengthen endpoint security, streamline incident response, and ensure effective threat mitigation across the enterprise. Collaborate with stakeholders to implement and maintain security policies, compliance standards, and endpoint protection strategies using SentinelOne and Microsoft Intune. Work closely with security analysts, engineers, and administrators to integrate endpoint security solutions with SIEM/SOAR platforms and enhance security automation capabilities. Engage with business and technical teams to support endpoint management initiatives, drive continuous improvement, and promote security best practices throughout the organization.Technical Performance: Demonstrate technical expertise in administering and optimizing the SentinelOne EPP/EDR platform to provide effective threat detection, prevention, and response capabilities across enterprise endpoints. Manage the deployment, configuration, and maintenance of SentinelOne agents and endpoint security policies to ensure consistent protection, compliance, and operational stability. Utilize Microsoft Intune, PowerShell scripting, and automation solutions to enhance endpoint management, streamline security operations, and improve reporting accuracy. Leverage SentinelOne APIs and SIEM/SOAR integrations to automate security workflows, accelerate incident response, and strengthen overall endpoint security posture. Apply advanced troubleshooting and analytical skills to resolve endpoint security, malware, ransomware, and Windows operating system issues while maintaining adherence to security baselines and best practices.Minimum RequirementsEducation: Bachelor's degree in Cybersecurity, Information Technology, Computer Science, or a related field.Experience: Minimum of three (3) years of experience administering enterprise endpoint security solutions.Hands-on experience with SentinelOne EPP and EDR platforms.Experience managing Windows 10/11 enterprise environments.Experience deploying and managing Microsoft Intune policies and configurations.Experience supporting enterprise cybersecurity operations and incident response activities.Experience implementing endpoint hardening and security compliance standards.Technical Proficiency: Strong expertise in SentinelOne administration, monitoring, and policy management.Advanced PowerShell scripting and automation experience.Strong knowledge of Microsoft Intune and modern endpoint management.Experience with Microsoft Entra ID (Azure AD).Knowledge of Windows security architecture and security controls.Understanding of malware analysis, ransomware protections, and endpoint threat detection.Familiarity with enterprise security frameworks such as NIST 800-53, CIS Benchmarks, and Zero Trust principles.Knowledge of endpoint compliance monitoring and vulnerability remediation processes.Compliance: ensuring devices and endpoint management processes meet organizational standards, security requirements, and configuration policies. It includes maintaining patch levels, enforcing device and application policies, supporting conditional access, and monitoring systems to verify that endpoints remain secure and aligned with enterprise requirements.Must be eligible to obtain and maintain Public Trust clearance.Preferred ExpertiseStrong analytical and troubleshooting skills.Excellent written and verbal communication abilities.Ability to manage multiple priorities in a fast-paced environment.Strong problem-solving and decision-making capabilities.Ability to work independently and collaboratively within cross-functional teams.Commitment to continuous learning and cybersecurity best practices.Privacy Policy – Halvik CorpHalvik offers a competitive full benefits package including:Company-supported medical, dental, vision, life, STD, and LTD insuranceBenefits include 11 federal holidays and PTOEligible employees may receive performance-based incentives in recognition of individual and/or team achievements.401(k) with company matchingFlexible Spending Accounts for commuter, medical, and dependent care expensesTuition AssistanceCharitable Contribution matchingHalvik Corp is an equal opportunity employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability or veteran status.Halvik's pay range for this job level is a general guideline only and not a guarantee of compensation or salary. Additional factors considered in extending an offer include (but are not limited to) responsibilities of the job, education, experience, knowledge, skills, and abilities, as well as internal equity, alignment with market data, applicable bargaining agreement (if any), or other law.