1

Edr Engineer Jobs in Raleigh, NC (NOW HIRING)

Develop integrations across SIEM, EDR/XDR, identity, cloud, and ticketing systems using APIs and scripting * Partner with MDR analysts, IR, threat hunters, and engineering teams to translate ...

Develop integrations across SIEM, EDR/XDR, identity, cloud, and ticketing systems using APIs and scripting * Partner with MDR analysts, IR, threat hunters, and engineering teams to translate ...

Jr. Product Engineer Department: 171024 - Product Business Department Reports to: Director of ... Communicate technical issues with Korean vendors and translate EDR's from Korean to English

next page

Showing results 1-20

Edr Engineer information

See Raleigh, NC salary details

$43.3K

$119.8K

$176.4K

How much do edr engineer jobs pay per year?

As of Jul 30, 2026, the average yearly pay for edr engineer in Raleigh, NC is $119,842.00, according to ZipRecruiter salary data. Most workers in this role earn between $98,700.00 and $136,600.00 per year, depending on experience, location, and employer.

What is the difference between Edr Engineer vs Edr Technician?

AspectEdr EngineerEdr Technician
CredentialsBachelor's degree in electrical, electronics, or related engineering fields; certifications like Cisco or CompTIA are commonTechnical diploma or associate degree; relevant certifications may include Cisco or CompTIA
Work EnvironmentDesign, develop, and troubleshoot EDR systems; often involved in project planning and system integrationInstall, maintain, and repair EDR hardware and software; hands-on technical support
Employer & Industry UsageUsed by network security firms, telecom companies, and large enterprises for security and data recoveryEmployed in similar settings for operational support and system maintenance

In summary, Edr Engineers focus on designing and developing EDR systems, requiring higher-level engineering skills and credentials. Edr Technicians handle installation and maintenance, with more hands-on technical tasks. Both roles are essential in the cybersecurity and data recovery industry, but they differ in responsibilities and required qualifications.

What are some common challenges EDR Engineers face when integrating endpoint detection and response solutions across diverse IT environments?

EDR Engineers often encounter challenges when deploying and managing endpoint detection and response solutions in organizations with a mix of legacy systems, various operating systems, and remote or hybrid workforces. Compatibility issues, ensuring consistent policy enforcement, and maintaining real-time visibility across all endpoints can be complex tasks. Collaboration with IT, security teams, and end-users is essential to troubleshoot deployment issues, minimize false positives, and optimize system performance. Staying up-to-date with evolving threats and regularly tuning the EDR solution are also key aspects of the role.

What are EDR Engineers?

EDR Engineers are cybersecurity professionals who specialize in implementing, managing, and optimizing Endpoint Detection and Response (EDR) solutions for organizations. Their main responsibilities include monitoring endpoints for suspicious activities, investigating security incidents, and responding to threats in real-time. EDR Engineers work closely with security teams to ensure robust protection against malware, ransomware, and other cyber threats by leveraging advanced detection and automated response tools. They also contribute to improving security policies and practices based on threat intelligence gathered from endpoints.

What are the key skills and qualifications needed to thrive as an EDR Engineer, and why are they important?

To thrive as an EDR Engineer, you need a solid background in cybersecurity, threat detection, incident response, and typically a degree in computer science or a related field. Familiarity with endpoint detection and response (EDR) tools such as CrowdStrike, SentinelOne, or Carbon Black, along with certifications like CEH or CISSP, is highly valuable. Strong analytical thinking, problem-solving abilities, and effective communication skills help EDR Engineers collaborate across teams and respond swiftly to threats. These skills and qualifications are essential to proactively identify, investigate, and mitigate security incidents, ensuring the organization's digital assets remain protected.
What are popular job titles related to Edr Engineer jobs in Raleigh, NC? For Edr Engineer jobs in Raleigh, NC, the most frequently searched job titles are:
Infographic showing various Edr Engineer job openings in Raleigh, NC as of July 2026, with employment types broken down into 91% Full Time, and 9% Contract. Highlights an 84% In-person, and 16% Remote job distribution, with an average salary of $119,842 per year, or $57.6 per hour.

Associate Security Engineer - CrowdStrike Falcon

Truist

Raleigh, NC • On-site

Full-time

Medical, Dental, Vision, Life, Retirement, PTO

This job post has expired 1 day ago. Applications are no longer accepted.


Truist rating

7.9

Company rating: 7.9 out of 10

Based on 117 frontline employees who took The Breakroom Quiz

78th of 170 rated banks


Job description

The position is described below. If you want to apply, click the Apply Now button at the top or bottom of this page. After you click Apply Now and complete your application, you'll be invited to create a profile, which will let you see your application status and any communications. If you already have a profile with us, you can log in to check status.
Need Help?
If you have a disability and need assistance with the application, you can request a reasonable accommodation. Send an email to Accessibility (accommodation requests only; other inquiries won't receive a response).
Regular or Temporary:
Regular
Language Fluency: English (Required)
Work Shift:
1st shift (United States of America)
Please review the following job description:
The Cybersecurity Engineer provides strategic and hands-on leadership for enterprise Endpoint Detection and Response (EDR), endpoint protection, and cloud workload security capabilities across the organization. This role designs, administers, and optimizes EDR platforms-including CrowdStrike Falcon as a primary solution-to deliver effective threat prevention, detection, investigation, and response across endpoints and workloads. Acting as an EDR platform administrator, the engineer is responsible for sensor deployment, policy configuration, access management, alert tuning, and operational health of endpoint security tooling. The role drives consistent threat hunting and incident response practices, partners with security operations and infrastructure teams to reduce endpoint risk and aligns endpoint security engineering initiatives with organizational risk and business objectives. The position supports teams responsible for endpoint security engineering, detection, content optimization, vulnerability reduction, and cloud workload protection.
For this opportunity, Truist will not sponsor an applicant for work visa status or employment authorization, nor will we offer any immigration-related support for this position (including, but not limited to H-1B, F-1 OPT, F-1 STEM OPT, F-1 CPT, J-1, TN-1 or TN-2, E-3, O-1, or future sponsorship for U.S. lawful permanent residence status.)
ESSENTIAL DUTIES AND RESPONSIBILITIES
The following is a summary of the essential functions for this job. Other duties may be performed, both major and minor, which are not mentioned below. Specific activities may change from time to time.
CrowdStrike Falcon
  • Administer, deploy, and maintain CrowdStrike Falcon sensors across enterprise endpoints, servers, virtual machines, and cloud workloads.
  • Engineer and optimize Falcon policies, including Prevention, EDR/XDR, Device Control, Firewall, USB, Identity Protection, and Zero Trust profiles.
  • Monitor sensor health, agent versioning, coverage gaps, and deployment failures; coordinate remediation with platform and endpoint teams.
  • Configure and tune custom IOAs, detection policies, and rule exceptions to reduce false positives and strengthen detection fidelity.
  • Integrate CrowdStrike with SIEM/XDR platforms to ensure complete telemetry ingestion and correlation.
  • Administer role-based access control (RBAC), API keys, integrations, and logging pipelines for CrowdStrike Falcon.
  • Perform platform health checks, configuration audits, and periodic policy reviews to align with evolving threat landscapes.

Qualifications
Required Qualifications
The requirements listed below are representative of the knowledge, skill and/or ability required. Reasonable accommodations may be made to enable individuals with disabilities to perform the essential functions.
  • Bachelor's degree or equivalent education, training, and work-related experience.
  • Minimum of 3 years of experience in security engineering or related cybersecurity roles.
  • Developing knowledge in cybersecurity principles, theories, and concepts.
  • Experience in software development lifecycle security practices.
  • Proficiency in implementing and managing information security technologies.

Preferred Qualifications
  • Bachelor's degree and six years of experience or an equivalent combination of education and work experience
  • Banking or financial services experience
  • Demonstrated experience engineering, administering, or supporting Endpoint Detection and Response (EDR) platforms in an enterprise environment
  • Strong working knowledge of endpoint threat detection, investigation, and response techniques across Windows, macOS, and Linux systems
  • Hands-on experience administering EDR tooling, including policy configuration, agent deployment, access control, alert tuning, and platform health monitoring
  • Experience with CrowdStrike Falcon or comparable EDR solutions (e.g., Defender for Endpoint, SentinelOne), including day-to-day operational and administrative functions
  • Solid understanding of endpoint attack techniques and adversary behaviors, aligned with frameworks such as MITRE ATT&CK
  • Proven ability to conduct threat hunting, analyze endpoint telemetry, and support incident response activities
  • Working knowledge of endpoint hardening, vulnerability reduction, and security control validation
  • Experience integrating EDR platforms with SOC workflows, SIEM tools, and incident management processes
  • Familiarity with cloud and hybrid environments and how endpoint security controls extend to cloud-hosted workloads
  • Strong scripting or automation skills (e.g., PowerShell, Python, osquery, Logscale, or similar) to support investigation, response, or operational efficiency
  • Ability to collaborate effectively with security operations, infrastructure, and IT teams
  • Strong communication skills with the ability to document procedures, communicate risk, and explain technical concepts to varied audiences
  • For a Build Engineer: Experience creating build definitions. Experience with setting up branching approach, defining merging approach. Experience supporting configuration of automated unit testing. Experience supporting configuration of build package, providing oversight when a build is checked in into the CI server, handling build dependency impediments raised by the team. Experience managing the build process for multiple releases
  • Advanced experience with CrowdStrike Falcon modules, such as:
  • Falcon Identity Protection, Firewall Management, Cloud Security, LogScale
  • Experience configuring cloud security controls and governance at scale across Azure, AWS, and GCP.
  • Experience engineering Zero Trust architectures, including identity centric and workload centric enforcement.

General Description of Available Benefits for Eligible Employees of Truist Financial Corporation: All regular teammates (not temporary or contingent workers) working 20 hours or more per week are eligible for benefits, though eligibility for specific benefits may be determined by the division of Truist offering the position. Truist offers medical, dental, vision, life insurance, disability, accidental death and dismemberment, tax-preferred savings accounts, and a 401k plan to teammates. Teammates also receive no less than 10 days of vacation (prorated based on date of hire and by full-time or part-time status) during their first year of employment, along with 10 sick days (also prorated), and paid holidays. For more details on Truist's generous benefit plans, please visit our Benefits site. Depending on the position and division, this job may also be eligible for Truist's defined benefit pension plan, restricted stock units, and/or a deferred compensation plan. As you advance through the hiring process, you will also learn more about the specific benefits available for any non-temporary position for which you apply, based on full-time or part-time status, position, and division of work.
Truist is an Equal Opportunity Employer that does not discriminate on the basis of race, gender, color, religion, citizenship or national origin, age, sexual orientation, gender identity, disability, veteran status, or other classification protected by law. Truist is a Drug Free Workplace.
EEO is the Law E-Verify IER Right to Work

What Truist employees say

Pay

Benefits

Hours and flexibility

Workplace

Get the full story on Breakroom


Truist logo

About Truist

Sourced by ZipRecruiter

Truist is combining distinctive personal service with investments in innovation to create transformational client experiences. We believe the unique blend of human touch and innovative technology will set us apart, instill confidence, and build deeper levels of trust with our clients

Industry

Finance and insurance

Company size

10,000+ Employees

Headquarters location

Charlotte, NC, US

Year founded

2019