Consolidated Precision Products Corp.

Endpoint Security Engineer (Annapolis Junction, MD)

Information Technology
8 - 10 years of experience
Job Overview by Ladders

Qualifications

  • Active TS/SCI clearance with polygraph is mandatory.
  • Bachelor's degree in a technical field required.
  • 8 years of relevant professional experience needed.
  • Proficient in EDR platforms, ideally Trellix HX/EDRF or Microsoft Defender for Endpoint.
  • Experience with cloud security and familiarity with AWS or Azure.
  • Strong background in endpoint security and Windows forensics.
  • Understanding of network protocols and intrusion detection systems.

Responsibilities

  • Deploy, configure, test, and manage endpoint detection and response solutions.
  • Establish comprehensive SOPs for EDR functionalities.
  • Lead training sessions for SOC analysts.
  • Monitor and optimize EDR capabilities in cloud and on-premises environments.
  • Support SOC functions including incident response coordination and process improvement.

Benefits

  • 25 days PTO and 11 paid holidays.
  • 100% employer-paid healthcare for employees and dependents from day one.
  • 8% employer match on 401(k) with immediate vesting.
  • Flexible and dynamic work environment without telework.
Full Job Description
**Active TS/SCI w/Polygraph REQUIRED** Please do not apply if you do not currently possess this level of clearance.

Telework: None

Basic Requirements:
  • Bachelor's degree in a technical field.
  • 8 years of applicable professional experience.

Job Description:
  • Deploy, configure, test, manage, and optimize endpoint detection and response solutions across the NSA enterprise.
  • Establish comprehensive Standard Operating Procedures (SOPs) for EDR functionalities and lead training sessions to empower SOC analysts in maximizing platform efficiency and threat visibility.
Responsibilities:
  • Responsible to the deployment, testing, management, and optimization of endpoint detection and response solutions.
  • This role involves deploying, configuring, testing, and monitoring EDR capabilities to traditional on premises and cloud environments.
  • The ideal candidate should have a strong background in endpoint security, cloud applications, Windows forensics, large enterprise endpoint deployments, and SOC analyst support.

Required Experience:
  • EDR Solutions: Proficient in one or more EDR platforms (Trellix HX/EDRF or Microsoft Defender for Endpoint EDR, preferably both).
  • Cloud Applications: Experience with cloud security and familiarity with cloud service providers (AWS or Azure, preferably both).
  • Cloud Security: Experience securing cloud-hosted workloads using EDR solutions and understanding cloud-native security controls and logging (Microsoft Sentinel, Microsoft Defender, Microsoft Purview, AWS CoudWatch, AWS CloudTrail, AWS GuardDuty, or AWS Security Hub). CCSP Certified Cloud Security Professional certification or equivalent.
  • Security Operations Center (SOC) Support: Experience supporting SOC functions such as assisting in monitoring, training analysts, documenting SOPs, incident response coordination, analysis of security events, and process/procedure improvement. Microsoft Certified: Security Operations Analyst Associate (SOAA) or equivalent.
  • Network Security: Understanding of network protocols, traffic analysis, and intrusion detection systems (CompTIA Security+ is required).
  • Windows Forensics: In-depth knowledge of Windows operation system internals, registry, and file system. Familiarity with forensic tools like EnCase, FTK, or open-source alternatives. SANS Windows Forensic Analysis (FOR500) or equivalent.

Desired Experience:
  • Threat Hunting: Proactive identification and investigation of potential security threats and anomalies.
  • Incident Response: Experience in managing and responding to security incidents, including containment, eradication, and recovery.
  • Security Information and Event Management (SIEM): Familiarity with SIEM systems for log analysis and correlation (e.g. Splunk, Elastic, Microsoft Sentinel).
  • Scripting and Automation: Proficient in scripting languages (e.g., PowerShell, Python) for automating tasks and workflows.
  • Certified Information Systems Security Professional (CISSP)
  • Microsoft 365 Certified: Endpoint Administrator Associate (MD-102)

Salary: $225,000 - $235,000 annually

Excellent benefits package including 25 days PTO, 11 paid holidays, 100% employer-paid healthcare for employees and dependents - available day 1, 8% 401(k) employer match - immediate vesting.

Disclaimer: The salary range provided is an estimate based on current market conditions and may be adjusted based on factors such as experience, skills, and qualifications. The final salary offer will be determined after a thorough review of the candidate's background and alignment with the role. Please note that this range is subject to change and should be considered as a guideline rather than a definitive figure.

This is a full time position

About Consolidated Precision Products Corp.

Consolidated Precision Products Corp. is a manufacturer of complex metal components and products for the aerospace and defense industries. The company was founded in 1991 and is headquartered in Carrollton, Texas. Consolidated Precision Products Corp. operates a network of manufacturing facilities across the United States, as well as in Mexico and Europe. The company's products include castings, forgings, and machined components, as well as assemblies and sub-assemblies. Consolidated Precision Products Corp. is committed to providing high-quality products and services to its customers.
Learn more about Consolidated Precision Products Corp.
Size
3,000 employees
Industry

Similar Jobs

More Jobs at Consolidated Precision Products Corp.

More Information Technology Jobs

Find similar Endpoint Security Engineer (Annapolis Junction, MD) jobs: