SonicJobs Logo
Left arrow iconBack to search

Principal Engineer/Microsoft Endpoint for Defender Enterprise

Fuse Engineering LLC
Posted 5 days ago, valid for a month
Location

Fort Meade, MD, US

Salary

Competitive

Contract type

Full Time

By applying, a Sonicjobs account will be created for you. Sonicjobs's Privacy Policy and Terms & Conditions will apply.

SonicJobs' Terms & Conditions and Privacy Policy also apply.

Sonic Summary

info
  • The Senior Systems Engineer (Level 3) at the National Security Agency will lead the architectural design and deployment of endpoint security platforms, specifically Microsoft Defender for Endpoint and Trellix HX.
  • Candidates must possess a Top Secret SCI security clearance with a Maryland Polygraph and have extensive experience with MDE and Trellix HX architectures.
  • The role requires in-depth knowledge of operating systems and forensic analysis, along with compliance to DoD 8570/8140 IAM Level II or III certifications.
  • Desired qualifications include vendor certifications such as Microsoft Certified Security Operations Analyst Associate and familiarity with methodologies like Model-Based Systems Engineering.
  • The position offers a salary range of $130,000 to $150,000 and requires a minimum of 5 years of relevant experience.

Description

•The Senior Systems Engineer (Level 3) serves as a principal technical leader and subject matter expert within the National Security Agency’s Enterprise Endpoint Detection and Response (EDR) Program. Operating in a highly classified, multi-domain infrastructure, the successful candidate will drive the strategic architectural design, end-to-end integration, deployment, and optimization of premier endpoint security platforms, specifically Microsoft Defender for Endpoint (MDE) and Trellix HX. This critical role bridges high-level systems architecture with operational defense capabilities, ensuring total endpoint visibility, robust threat containment, and resilient configuration management across all enterprise and mission-critical assets to defend national security infrastructure against sophisticated cyber threats. 

Essential Duties and Responsibilities: 

 •The Systems Engineer 3 is responsible for leading the lifecycle engineering and scale-out architecture of MDE and Trellix HX across hybrid environments, including on-premises, cloud, and virtual desktop infrastructures (VDI). This includes authoring  complex system engineering and implementation plans, tuning agent configurations and exclusion policies to eliminate mission friction, and monitoring overall endpoint health at scale. The engineer will collaborate closely with threat hunting and  intelligence analysts to translate actionable threat intelligence into custom technical indicators of compromise (IOCs), utilizing Kusto Query Language (KQL) and YARA rules. Additionally, the individual will act as a primary technical advisor to Government  stakeholders on system risks and engineering considerations, provide advanced forensic support to the SOC during critical high-priority incidents, and actively mentor junior and mid-level engineering personnel within the program. 

Requirements

Top Secret SCI w/ Maryland Polygraph Security Clearance Required

 •Microsoft Defender for Endpoint (MDE) Expertise: Proven engineering experience with MDE architecture, deployment strategies via MECM/SCCM or Intune, policy ring management, and advanced hunting using Kusto Query Language (KQL). 

•Trellix HX Expertise: Demonstrated experience engineering, deploying, and managing Trellix HX (formerly FireEye) controllers and agents within air-gapped or highly restricted networks, including the creation of OpenIOC and YARA rules. 

•Operating System & Forensic Knowledge: In-depth technical understanding of Windows, Linux, and macOS internals, including file systems, registry structures, and process execution mechanics. 

•Professional Standards: Compliance with DoD 8570/8140 IAM Level II or III baseline certifications. 

Desired: 

•Vendor Certifications: Microsoft Certified: Security Operations Analyst Associate (SC-200), Azure Security Engineer Associate (AZ-500), or Trellix Certified Engineering credentials. 

•Methodologies & Toolsets: Experience with Model-Based Systems Engineering (MBSE), Cameo, and workflow management within the Atlassian Suite (Jira, Confluence). 

•Technical Frameworks: Familiarity with NSA Technical Manual Standards (e.g., NSA DS-89) and defense-in-depth engineering principles. 

•Core Competencies: Strong record of team collaboration, exceptional transparency in managing high-consequence infrastructure, and an aptitude for developing technical leadership pipelines 




Learn more about this Employer on their Career Site

Apply now in a few quick clicks

By applying, a Sonicjobs account will be created for you. Sonicjobs's Privacy Policy and Terms & Conditions will apply.

SonicJobs' Terms & Conditions and Privacy Policy also apply.