Endpoint Detection & Response Engineer

Booz Allen Hamilton

Confirmed live yesterday High trust

Quick summary

Work type
On-site
Location
Scott AFB, IL
Employment
Full-time
Posted
98 days ago
Freshness
Confirmed live yesterday

Market check

Salary context

How this pay compares to similar roles

Similar $184k
$130k most similar roles pay here $235k

This listing doesn't post a salary. Most similar roles pay $147,150–$220,000.

Based on 240 similar postings.

Employer

About Booz Allen Hamilton

Booz Allen Hamilton is a management and technology consulting firm that provides analytics, digital, engineering, and cybersecurity solutions primarily to U.S. government agencies and commercial clients. Industry: Management & Technology Consulting

Booz Allen Hamilton currently has 1159 open roles on FindRole.

Listed pay typically runs $86,800–$198,000 across 804 roles with salary data.

Most-posted roles

View all roles at Booz Allen Hamilton

At a glance

TL;DR · Endpoint Detection & Response Engineer

As an Endpoint Detection & Response Engineer, you will join the team to implement and optimize next-generation security solutions for customers. You will work with in-house teams to identify the right mix of tools, techniques, and procedures to translate customer needs into secure plans while identifying gaps and customizing solutions to balance security and business requirements. Your daily responsibilities include performing systems administration, troubleshooting, monitoring performance, and developing automated workflows or playbooks. You will also create technical documents, SOPs, and training materials. The role requires experience with platforms like Carbon Black EDR, CrowdStrike Falcon, SentinelOne, FireEye HX, McAfee MVision, Microsoft Defender for Endpoint, Tanium, or Elastic Endpoint Protection. Additionally, you will utilize tools such as Splunk to integrate cybersecurity data while navigating federal information security policies and standards within a secure environment.

What you'll do

  • Deploy, configure, and maintain enterprise EDR solutions such as CrowdStrike, SentinelOne, or Microsoft Defender.
  • Perform systems administration including troubleshooting, installation, and monitoring of system performance and availability.
  • Optimize EDR configurations to refine data output and meet specific operational user needs.
  • Develop automated workflows, playbooks, and integrations with SIEM, ITSM, and TIP solutions.
  • Create technical documentation, including SOPs, configuration guides, and training materials for customers.
  • Triage security events and leverage data from enterprise security tools to identify threats.
  • Integrate cybersecurity data using custom or enterprise aggregation tools like Splunk.

What we're looking for

  • Experience with deployment, configuration, or maintenance of enterprise EDR solutions like Carbon Black, CrowdStrike, SentinelOne, or Microsoft Defender for Endpoint.
  • Experience performing systems administration, including troubleshooting, installation, monitoring performance, and optimizing configurations.
  • Knowledge of EDR optimization, automated workflows, and integration with SIEM, ITSM, and TIP solutions.
  • Ability to provide content for deliverables such as technical documents, SOPs, configuration guides, and training materials.
  • HS diploma or GED.
  • Experience triaging security events in a SOC environment (preferred).
  • Experience in Tier I or II IT operations and maintenance roles (preferred).
  • Secret clearance.

More like this

Similar roles

Senior Endpoint Detection & Response Engineer

Booz Allen Hamilton

Scott AFB, IL 98 days ago
EDR Carbon Black EDR CrowdStrike Falcon SentinelOne FireEye HX McAfee MVision Microsoft Defender for Endpoint Tanium Elastic Endpoint Protection SIEM ITSM TIP Splunk SOC Playbooks Systems Administration

Principal Endpoint Security Systems Engineer

Leidos

Bethesda, MD 8 days ago $131,300–$237,350
Trellix ePolicy Orchestrator Trellix Endpoint Threat Protection Linux Windows Splunk AppDynamics AWS Cisco Secure Endpoint Rapid7 SolarWinds Cisco IDS/IPS VPN WebInspect AppDetective Incident Response Forensics Cloud Computing Hybrid Cloud
10+ yrs exp

Endpoint Security Analyst

Leidos

Adelphi, MD 38 days ago $107,900–$195,050
Elastic Agent Elastic Defend CrowdStrike Falcon Tanium McAfee Trellix ePO AWS Azure GCP Oracle Cloud MITRE ATT&CK EDR SaaS Incident Response Telemetry Collection
4+ yrs exp Hybrid

Detection Engineer Manager

Capital One Financial

McLean, VA +3 22 days ago
EDR Python SQL GitHub CI/CD YAML CrowdStrike Falcon SentinelOne Microsoft Defender Databricks Apache Spark Machine Learning GenAI Windows Event Logs Sysmon Linux macOS
4+ yrs exp

Endpoint Detection Engineer

State Street

Atlanta, GA 23 days ago
FQL SPL Splunk Python SQL PowerShell Perl RegEx R Jira Confluence PowerBI PowerPoint Cybersecurity Detection Engineering Threat Intelligence Data Analytics Cyber Defense
2+ yrs exp