1

Endpoint Security Engineer Jobs (NOW HIRING)

GDIT is seeking an experienced Endpoint Security Engineer (Hybrid Multi-Cloud) to join our dynamic team. MEANINGFUL WORK AND PERSONAL IMPACT As an Endpoint Security Engineer, you will design, deploy ...

As an Endpoint Security Systems Administrator within our organization, you will be instrumental in securing our employees and teams. Your responsibilities will include ensuring the seamless systems ...

As an Endpoint Security Systems Administrator within our organization, you will be instrumental in securing our employees and teams. Your responsibilities will include ensuring the seamless systems ...

Senior Endpoint Security Engineer

San Francisco, CA · On-site

$134K - $185K/yr

Crusoe is seeking a Security Engineer to join the Security Engineering team as the primary driver for implementing security defaults and endpoint visibility. This is a strategic, architectural ...

Senior Endpoint Security Engineer

San Francisco, CA · On-site

$134K - $185K/yr

Crusoe is seeking a Security Engineer to join the Security Engineering team as the primary driver for implementing security defaults and endpoint visibility. This is a strategic, architectural ...

Showing results 41-60

Endpoint Security Engineer information

See salary details

$61.5K

$152.8K

$205.5K

How much do endpoint security engineer jobs pay per year?

As of Sep 6, 2026, the average yearly pay for endpoint security engineer in the United States is $152,773.00, according to ZipRecruiter salary data. Most workers in this role earn between $143,000.00 and $158,500.00 per year, depending on experience, location, and employer.

What does an endpoint security engineer do?

An Endpoint Security Engineer is responsible for securing an organization's endpoints, including desktops, laptops, mobile devices, and servers. They implement, monitor, and manage security solutions such as antivirus software, endpoint detection and response (EDR) tools, and access controls. Their primary goal is to protect endpoints from cyber threats, malware, and unauthorized access. They also collaborate with IT and security teams to develop policies, respond to incidents, and ensure compliance with security frameworks.

What are the key skills and qualifications needed to thrive as an endpoint security engineer?

Success as an Endpoint Security Engineer requires a solid understanding of cybersecurity principles, endpoint protection, and threat detection, often backed by a degree in computer science, cybersecurity, or a related field. Familiarity with industry-standard tools such as antivirus/EDR solutions (e.g., CrowdStrike, Carbon Black), SIEM platforms, scripting languages, and certifications like CompTIA Security+ or CISSP are frequently expected. Strong analytical thinking, communication skills, and a proactive attitude help engineers collaborate across IT teams and respond swiftly to security incidents. These competencies are vital for staying ahead of evolving threats and ensuring robust protection of organizational endpoints.

What are some common challenges faced by endpoint security engineers in their day-to-day work?

Endpoint Security Engineers often encounter challenges such as staying updated with rapidly evolving threat landscapes, ensuring consistent security policy enforcement across various device types, and balancing robust protection with user productivity. They may need to troubleshoot endpoint agents, respond to incident alerts, and work closely with IT and helpdesk teams to remediate vulnerabilities or outbreaks. Additionally, they often manage deployment of security patches and educate users on best practices. Addressing these challenges requires a combination of technical expertise, adaptability, and strong communication to keep endpoints and sensitive data secure.

More about Endpoint Security Engineer jobs

What cities are hiring for Endpoint Security Engineer jobs?

Cities with the most Endpoint Security Engineer job openings:

What are the most commonly searched types of Endpoint Security Engineer jobs?

The most popular types of Endpoint Security Engineer jobs are:

Who are the top companies hiring for Endpoint Security Engineer jobs?

The top employers for Endpoint Security Engineer jobs are:

What states have the most Endpoint Security Engineer jobs?

States with the most job openings for Endpoint Security Engineer jobs include:

What job categories do people searching Endpoint Security Engineer jobs look for?

The top searched job categories for Endpoint Security Engineer jobs are:

Infographic showing various Endpoint Security Engineer job openings in the United States as of August 2026, with employment types broken down into 86% Full Time, 12% Part Time, and 2% Contract. Highlights an 91% Physical, 2% Hybrid, and 7% Remote job distribution, with an average salary of $152,773 per year, or $73.4 per hour.

Sr. Endpoint Security Engineer SME (6701)

MetroStar

Washington, DC • On-site

$138K - $166K/yr

Full-time

Posted 26 days ago


Key responsibilities

  • Monitor and manage enterprise Trellix security platforms, including ePO, ENS, EDR, DLP, and encryption technologies.

  • Support SOC analysts by tuning alerts, improving detection capabilities, and investigating endpoint security events.

  • Remediate JCIP and compliance findings through application whitelisting, FIM, DLP enhancements, and security control implementations.


Job description

As a Sr. Endpoint Security Engineer (Trellix SME), you'll serve as the technical lead for the organization's endpoint security and data protection ecosystem, balancing day-to-day operational support with strategic cybersecurity engineering initiatives. You will work closely with security operations, infrastructure, application teams, and leadership to strengthen the organization's overall security posture.

We know that you can't have great technology services without amazing people. At MetroStar, we are obsessed with our people and have led a two-decade legacy of building the best and brightest teams. Because we know our future relies on our deep understanding and relentless focus on our people, we live by our mission: A passion for our people. Value for our customers.

What you'll do:

  • Monitoring and managing enterprise Trellix security platforms, including ePO, ENS, EDR, DLP, and encryption technologies.
  • Supporting SOC analysts by tuning alerts, improving detection capabilities, and investigating endpoint security events.
  • Remediating JCIP and compliance findings through application whitelisting, File Integrity Monitoring (FIM), DLP enhancements, and security control implementations; designing and deploying endpoint hardening and application control solutions using Trellix Application and Change Control (Solidcore).
  • Developing and maintaining DLP policies, encryption controls, removable media protections, and data classification safeguards; integrating endpoint security telemetry into SIEM and SOAR platforms to improve visibility, detection, and automated response capabilities.
  • Performing root-cause analysis of security incidents, policy conflicts, and endpoint management issues; developing automation workflows and operational efficiencies using scripts, APIs, and orchestration tools.
  • Creating and maintaining dashboards, reports, and metrics to support cybersecurity operations and executive reporting; collaborating with security assessors and compliance teams to implement and validate technical controls.
  • Documenting security architectures, SOPs, playbooks, and engineering standards; researching emerging threats, evaluating new security capabilities, and recommending improvements to strengthen enterprise cyber defenses.

What you'll need to succeed:

  • Active TS/SCI security clearance.
  • 7 Years Engineering experience with 5 years of experience administering Trellix security solutions in a large enterprise environment.
  • Hands-on experience with Trellix ePolicy Orchestrator (ePO), Endpoint Security (ENS), Endpoint Detection and Response (EDR), Data Loss Prevention (DLP), Drive Encryption (FRP/FRMP), Threat Intelligence Exchange (TIE), Data Exchange Layer (DXL), Policy Auditor, Rogue System Detection, Trellix Security for Microsoft Exchange (TSME), Application and Change Control (Solidcore), and File Integrity Monitoring (FIM).
  • Experience implementing and managing application whitelisting, endpoint hardening, encryption, and data protection technologies; integrating endpoint security platforms with SIEM, SOAR, threat intelligence, and identity management solutions.
  • Strong understanding of endpoint security architecture, cyber threat detection, incident response, and risk management principles; experience developing and maintaining DLP policies, device control mechanisms, and data exfiltration prevention controls.
  • Experience supporting SOCs and enhancing 24x7 threat monitoring and response capabilities; ability to develop security engineering standards, SOPs, playbooks, and operational procedures.
  • Experience supporting compliance initiatives and implementing security controls aligned with federal cybersecurity frameworks and regulations; strong analytical, troubleshooting, and root-cause analysis skills.

SALARY RANGE: $138,000 - $166,000

The salary range for this position is determined based on qualifications, skills, and relevant experience. The final salary offered will be determined based on several factors including: 

  • The candidate's professional background and relevant work experience
  • The specific responsibilities of the role and organizational needs
  • Internal equity and alignment with current team compensation
  • This role is also eligible for additional compensation, subject to the terms and policies of MetroStar, which may include:
    • Performance-based bonuses
    • Company-paid training and/or certifications
    • Referral bonuses