← all jobs

End-Point Protection Engineer - 4

Work from home Full-time role Hiring

The End-Point Protection Engineer-_4 provides senior engineering support for enterprise endpoint security across the SEC ISS contract environment. This role designs, implements, and sustains endpoint protection capabilities for Windows, macOS, and iOS endpoints, including workstation and server environments, while enforcing SEC security baselines and federal cybersecurity requirements. The engineer leads vulnerability remediation, patch and supersedence execution, and POA&M closure activities to maintain security posture and audit readiness. The position also drives operational visibility through automation, documentation, and transparent reporting to SEC stakeholders. Primary Responsibilities Endpoint Security Engineering & Baseline Management - Architect, implement, and maintain enterprise endpoint protection strategies across Windows, macOS, iOS, workstation, and server platforms. - Define, enforce, and continuously improve endpoint security baselines using Microsoft Defender for Endpoint and Microsoft Intune. - Lead deployment and configuration of antivirus and endpoint protection tooling, including policy tuning, signature/DAT update management, and scheduled scans. - Validate new endpoint security configurations in controlled environments before production rollout. Vulnerability, Patching & POA&M Execution - Own endpoint patching strategy and execution across managed endpoint environments, including supersedence management. - Monitor vulnerability findings, assess risk and severity, and coordinate remediation with technical teams and system owners. - Lead development, tracking, and closure of endpoint POA&Ms with clear milestones and risk-based prioritization. - Ensure remediation and patch activities support ongoing compliance objectives and audit readiness. Threat Monitoring, Incident Response & Reporting - Monitor endpoint security telemetry and respond to endpoint-specific threats, suspicious activity, and policy non-compliance. - Serve as an escalation point for complex endpoint incidents and coordinate with SOC and incident response stakeholders for broader investigations. - Create and maintain automation scripts and reporting workflows for endpoint compliance, vulnerability status, and remediation tracking. - Maintain accurate SOPs, runbooks, and status reporting to support governance, audit response, and service transparency. Stakeholder Coordination & Technical Leadership - Collaborate with federal stakeholders, ISS teams, and partner vendors to validate endpoint security posture and operational readiness. - Provide senior technical guidance to engineering and operations teams on endpoint security architecture and best practices. - Support audit remediation activities (e.g., FISMA, IG, GAO) by preparing evidence and tracking corrective actions. - Drive continuous improvement initiatives that increase automation, resilience, and efficiency of endpoint security operations.

Required Qualifications

Citizenship/Work Authorization: Must meet contract requirements. Clearance: Ability to obtain and maintain SEC Public Trust (or higher if required). Education: Bachelors in a relevant field (e.g., Information Technology, Computer Science, Engineering). Experience: - 8+ years of experience in enterprise endpoint security engineering in large, regulated environments. - Advanced experience designing, implementing, and managing Microsoft Defender for Endpoint and Intune security baselines. - Hands-on experience in vulnerability management, endpoint patching strategies, supersedence processes, and POA&M resolution. - Experience documenting SOPs/runbooks and providing compliance-focused reporting to federal stakeholders. Technical Skills: - Microsoft Defender for Endpoint - Microsoft Intune endpoint and mobile device security baseline management - Endpoint vulnerability assessment, remediation coordination, and POA&M tracking - Enterprise endpoint patching and supersedence management - Antivirus/endpoint protection deployment, signature/DAT update operations, and scheduled scan management - Endpoint threat triage, escalation, and response coordination - Automation scripting for reporting and remediation - Process documentation, status reporting, and compliance evidence support Preferred Qualifications - Experience supporting federal IT operations under FISMA and NIST-aligned controls. - Experience implementing endpoint compliance enforcement at enterprise scale across distributed/remote workforces. - Experience integrating endpoint tooling and metrics into enterprise dashboards and executive reporting. - Demonstrated success leading cross-team remediation efforts for audit findings and complex security incidents. - Prior experience supporting SEC or similarly regulated federal civilian agency environments. - Microsoft SC-200 (Security Operations Analyst) - Microsoft MD-102 (Endpoint Administrator) - CISSP WORK ENVIRONMENT / OTHER Operational Support: May require participation in on-call or surge support activities depending on operational needs. Location: Telework Travel: As required per contract direction. If you're looking for comfort, keep scrolling. At Leidos, we outthink, outbuild, and outpace the status quo — because the mission demands it. We're not hiring followers. We're recruiting the ones who disrupt, provoke, and refuse to fail. Step 10 is ancient history. We're already at step 30 — and moving faster than anyone else dares. Original Posting: June 1, 2026 For U.S. Positions: While subject to change based on business needs, Leidos reasonably anticipates that this job requisition will remain open for at least 3 days with an anticipated close date of no earlier than 3 days after the original posting date as listed above. Pay Range: Pay Range $87,100.00 - $157,450.00 The Leidos pay range for this job level is a general guideline only and not a guarantee of compensation or salary. Additional factors considered in extending an offer include (but are not limited to) responsibilities of the job, education, experience, knowledge, skills, and abilities, as well as internal equity, alignment with market data, applicable bargaining agreement (if any), or other law.

More open positions

Financial Analyst-340B

Work from home Full-time role

Civil 3D Engineer (US Shift)

Work from home Full-time role

Senior PS Consultant

Work from home Full-time role

Strategic Account Executive - School (TX)

Work from home Full-time role

Sr. Team Lead, Clinical Operations

Work from home Full-time role

Remote Licensed Life & Health Insurance Agent | Agency of Valor | Handshake

Work from home Full-time role

Remote Data Entry & Fraud Investigation Specialist – Home‑Based Role – $24‑$34 Hourly Compensation at careerzynith

Work from home Full-time role

Experienced Full Stack Customer Support Specialist – Remote Live Chat Support Opportunities

Work from home Full-time role

Fractional Executive Assistant, Founder Operations

Work from home Full-time role

Customer Experience Agent – Live Commerce & Marketplace Support (Remote, Full‑Time)

Work from home Full-time role

Senior Security Engineer II, Application Security (Remote Eligible)

Work from home Full-time role

SAP Data Analyst- 100% remote

Work from home Full-time role

Tecnico Cogenerazione

Work from home Full-time role

Salesforce Administrator - Revenue Ops (Remote)

Work from home Full-time role

Experienced Part-Time Remote Data Entry Specialist – Flexible Work Schedule at careerzynith

Work from home Full-time role

Alignerr is hiring: Voice Actor - UK English in New York

Work from home Full-time role

Account Executive

Work from home Full-time role

Staff Engineer, R&D AI Tooling

Work from home Full-time role

Customer Care Professional – Remote Virtual Support Specialist – $28‑$35 Hourly – careerzynith

Work from home Full-time role

Senior Software Engineer, Windows/Desktop Applications - Tucson, AZ, USA

Work from home Full-time role

Life Insurance Broker IE Based Remote

Work from home Full-time role