Senior Endpoint Detection & Response Engineer

Booz Allen Hamilton

Confirmed live yesterday High trust

Quick summary

Work type
On-site
Location
Scott AFB, IL
Employment
Full-time
Posted
98 days ago
Freshness
Confirmed live yesterday

Market check

Salary context

How this pay compares to similar roles

Similar $172k
$114k most similar roles pay here $220k

This listing doesn't post a salary. Most similar roles pay $142,000–$202,800.

Based on 240 similar postings.

Employer

About Booz Allen Hamilton

Booz Allen Hamilton is a management and technology consulting firm that provides analytics, digital, engineering, and cybersecurity solutions primarily to U.S. government agencies and commercial clients. Industry: Management & Technology Consulting

Booz Allen Hamilton currently has 1156 open roles on FindRole.

Listed pay typically runs $86,800–$198,000 across 802 roles with salary data.

Most-posted roles

View all roles at Booz Allen Hamilton

At a glance

TL;DR · Senior Endpoint Detection & Response Engineer

The Endpoint Detection & Response, Senior role involves implementing and optimizing next-generation security solutions while collaborating with in-house teams to translate customer needs into actionable plans. You will be responsible for identifying solution gaps, developing automated workflows or playbooks, and integrating EDR data with enterprise systems like SIEM, ITSM, and TIP solutions. The position requires hands-on experience with tools such as Carbon Black EDR, CrowdStrike Falcon, SentinelOne, FireEye HX, McAfee MVision, Microsoft Defender for Endpoint, Tanium, or Elastic Endpoint Protection. You will also produce technical documentation, SOPs, and training materials while performing systems administration tasks like troubleshooting and performance monitoring. Candidates must possess a Secret clearance and demonstrate proficiency in federal information security policies and data aggregation tools like Splunk to solve complex security challenges within the enterprise environment.

What you'll do

  • Implement and optimize next-generation endpoint detection and response (EDR) solutions for customers.
  • Deploy, configure, and maintain enterprise EDR platforms such as CrowdStrike, SentinelOne, or Microsoft Defender.
  • Perform systems administration including troubleshooting, installation, and monitoring of system performance and availability.
  • Refine EDR data output and develop automated workflows or playbooks to improve security operations.
  • Integrate EDR data with enterprise solutions including SIEM, ITSM, and Threat Intelligence Platforms (TIP).
  • Create technical documentation, standard operating procedures (SOPs), configuration guides, and training materials.
  • Triage security events and leverage data from enterprise security tools to identify threats.

What we're looking for

  • Experience with deployment, configuration, or maintenance of enterprise EDR solutions like CrowdStrike, SentinelOne, or Microsoft Defender for Endpoint.
  • Experience performing systems administration, including troubleshooting, installation, monitoring performance, and optimizing configurations.
  • Experience optimizing EDR solutions through data refinement, automated workflow development, and integration with SIEM, ITSM, and TIP solutions.
  • Ability to provide content for deliverables, including technical documents, SOPs, configuration guides, and training materials.
  • HS diploma or GED.
  • Experience triaging security events in a SOC environment (preferred).
  • Experience in Tier I or II IT operations, knowledge of federal information security policies, or EDR Vendor Certification (preferred).
  • Secret clearance.

More like this

Similar roles

Endpoint Detection & Response Engineer

Booz Allen Hamilton

Scott AFB, IL 98 days ago
EDR Carbon Black CrowdStrike Falcon SentinelOne FireEye HX McAfee MVision Microsoft Defender for Endpoint Tanium Elastic Endpoint Protection SIEM ITSM TIP Splunk SOC Systems Administration Playbooks

Senior Endpoint Protection Engineer

Pacific Life

Charlotte, NC +2 67 days ago $125,100–$152,900
CrowdStrike Falcon EDR Windows Linux macOS SIEM ITSM PowerShell Python Bash RBAC SSO Incident Response Automation Endpoint Security
8+ yrs exp

Senior Unified Endpoint Management Engineer

Booz Allen Hamilton

Scott AFB, IL 97 days ago
Microsoft Intune Microsoft Defender MECM SCCM Active Directory Azure AD EDR Trellix EDR HBSS Nessus FirePower FireEye Palo Alto FW Microsoft 365 Conditional Access Automation

Endpoint Security Analyst

Leidos

Adelphi, MD 39 days ago $107,900–$195,050
Elastic Agent Elastic Defend CrowdStrike Falcon Tanium McAfee Trellix ePO AWS Azure GCP Oracle Cloud MITRE ATT&CK EDR SaaS Incident Response Telemetry Collection
4+ yrs exp Hybrid

Detection Engineer Manager

Capital One Financial

McLean, VA +3 23 days ago
EDR Python SQL GitHub CI/CD YAML CrowdStrike Falcon SentinelOne Microsoft Defender Databricks Apache Spark Machine Learning GenAI Windows Event Logs Sysmon Linux macOS
4+ yrs exp