End-Point Protection Engineer - 4

Leidos

Remote

Quick summary

Work type
Remote
Location
Remote
Salary
$87,100–$157,450 / yr
Posted
3 days ago

Market check

Salary context

Below market

How this pay compares to similar roles

Similar $165k
This role $122k
$73k most similar roles pay here $217k

This role pays less than 88% of similar roles. Most pay $142,400–$188,125 — the shaded band above. At the midpoint, this role pays about $122k versus about $165k for comparable roles.

Based on 240 similar postings.

Employer

About Leidos

Leidos is an industry and technology leader serving government and commercial customers with smarter, more efficient digital and mission innovations.

Leidos currently has 230 open roles on FindRole.

Listed pay typically runs $106,600–$192,700 across 218 roles with salary data.

Most-posted roles

View all roles at Leidos

At a glance

TL;DR · End-Point Protection Engineer - 4

The End-Point Protection Engineer position at the SEC ISS contract environment requires a senior-level engineer to design and implement enterprise endpoint protection strategies for Windows, macOS, iOS workstations, and servers. This role involves enforcing security baselines using Microsoft Defender for Endpoint and Intune, managing antivirus deployments, and ensuring compliance with federal cybersecurity requirements through patching and vulnerability remediation. The engineer will also develop automation scripts for threat monitoring and reporting, collaborate with stakeholders to validate security postures, and support audit readiness efforts under FISMA and NIST controls. Essential skills include expertise in Microsoft Defender for Endpoint, Intune management, endpoint patching, and scripting for compliance-focused reporting. Experience in federal IT operations and large-scale enterprise environments is preferred.

What you'll do

  • Architect and implement enterprise endpoint protection strategies for Windows, macOS, and iOS.
  • Define and enforce security baselines using Microsoft Defender for Endpoint and Intune.
  • Lead deployment of antivirus tools and manage patching across managed environments.
  • Monitor vulnerabilities, assess risks, and coordinate remediation with technical teams.
  • Develop and track POA&Ms to ensure compliance and audit readiness.

What we're looking for

  • 8+ years of experience in enterprise endpoint security engineering in regulated environments.
  • Advanced expertise with Microsoft Defender for Endpoint and Intune for security baseline management.
  • Proven hands-on skills in vulnerability management, patching strategies, and POA&M resolution.
  • Experience in documenting SOPs/runbooks and providing compliance-focused reporting to federal stakeholders.
  • Proficiency in automation scripting for reporting and remediation processes.
  • Strong background in endpoint threat triage, escalation, and response coordination.

More like this

Similar roles

Senior Endpoint Protection Engineer

Pacific Life

Charlotte-128 20 days ago $103,140$126,060
CrowdStrike Python PowerShell Bash SIEM ITSM Windows Linux macOS CI/CD Documentation Change Management Risk Review Compliance Audits

Endpoint Security Engineer

Booz Allen Hamilton

McLean, Virginia 30 days ago $69,400$158,000
Intune SCCM Jamf Pro API CI/CD Windows macOS Linux scripting languages endpoint security application control Antivirus EDR patching privilege management Conditional Access vulnerability mitigation network security Microsoft Entra Active Directory BeyondTrust CrowdStrike Trellix ServiceNow Microsoft Teams

Security Engineer IC-03

Stripe

Remote (South San Francisco, CA) 1 day ago $194,251$268,400
AWS GCP Azure Docker Kubernetes CI/CD Threat Modeling Application Security Infrastructure Security Python Go RADAR Issuing Connect Subscriptions Checkout
Remote Hybrid

Security Engineer, Level 4

Snap Inc.

Santa Monica, CA 1 day ago $157,000$235,000
Python Go Java Vulnerability scanners SIEM EDR Cloud security frameworks Automation platforms CI/CD Kubernetes AWS GCP Azure Docker Terraform PostgreSQL MongoDB Linux Windows Networking Firewall SSL/TLS PKI IAM DevSecOps

Boundary Security Engineer

Booz Allen Hamilton

Fort Meade, MD 35 days ago $99,000$225,000
Palo Alto Cisco Juniper AWS Azure GCP STIGs DoD Cloud SRG CI/CD Secret Clearance DoD 8570 IAT Level II Certification Firewalls SIEM Intrusion Detection Systems Intrusion Prevention Systems Vulnerability Assessment Network Security Best Practices Cloud Technologies Core Networking

Boundary Security Engineer

Booz Allen Hamilton

Colorado Springs, CO 22 days ago $99,000$225,000
Palo Alto Cisco Juniper Wireshark AWS Azure GCP STIGs DoD Cloud SRG CI/CD Kubernetes Terraform Python PostgreSQL Prometheus Grafana