MetroStar Systems

Sr. Endpoint Security Engineer I (6701)

MetroStar Systems$138K — $166K *
Information Technology
5 - 7 years of experience
Job Overview by Ladders

Qualifications

  • Active TS/SCI security clearance.
  • 5+ years of experience with Trellix security solutions in a large enterprise.
  • Hands-on experience with Trellix ePO, ENS, EDR, DLP, and encryption technologies.
  • Experience with application whitelisting and endpoint hardening.
  • Strong understanding of endpoint security architecture and cyber threat detection.
  • Experience supporting SOCs with 24x7 monitoring capabilities.
  • Experience with compliance initiatives and federal cybersecurity regulations.

Responsibilities

  • Monitor and manage enterprise Trellix security platforms.
  • Support SOC analysts with alert tuning and endpoint security investigations.
  • Remediate compliance findings and implement security controls.
  • Develop and maintain DLP policies and encryption controls.
  • Perform root-cause analysis of security incidents and develop automation workflows.
  • Create dashboards and metrics for cybersecurity operations reporting.
  • Document security architectures and research emerging threats.

Benefits

  • Health, dental, and vision insurance.
  • 401(k) retirement plan with company match.
  • Paid time off (PTO) and holidays.
  • Parental Leave and dependent care.
  • Flexible work arrangements.
  • Professional development opportunities.
  • Employee assistance and wellness programs.
Full Job Description
As a Sr. Endpoint Security Engineer (Trellix) I, you'll serve as the technical lead for the organization's endpoint security and data protection ecosystem, balancing day-to-day operational support with strategic cybersecurity engineering initiatives. You will work closely with security operations, infrastructure, application teams, and leadership to strengthen the organization's overall security posture.

What you'll do:
  • Monitoring and managing enterprise Trellix security platforms, including ePO, ENS, EDR, DLP, and encryption technologies.
  • Supporting SOC analysts by tuning alerts, improving detection capabilities, and investigating endpoint security events.
  • Remediating JCIP and compliance findings through application whitelisting, File Integrity Monitoring (FIM), DLP enhancements, and security control implementations; designing and deploying endpoint hardening and application control solutions using Trellix Application and Change Control (Solidcore).
  • Developing and maintaining DLP policies, encryption controls, removable media protections, and data classification safeguards; integrating endpoint security telemetry into SIEM and SOAR platforms to improve visibility, detection, and automated response capabilities.
  • Performing root-cause analysis of security incidents, policy conflicts, and endpoint management issues; developing automation workflows and operational efficiencies using scripts, APIs, and orchestration tools.
  • Creating and maintaining dashboards, reports, and metrics to support cybersecurity operations and executive reporting; collaborating with security assessors and compliance teams to implement and validate technical controls.
  • Documenting security architectures, SOPs, playbooks, and engineering standards; researching emerging threats, evaluating new security capabilities, and recommending improvements to strengthen enterprise cyber defenses.

What you'll need to succeed:
  • Active TS/SCI security clearance.
  • 5+ years of experience administering and engineering Trellix security solutions in a large enterprise environment.
  • Hands-on experience with Trellix ePolicy Orchestrator (ePO), Endpoint Security (ENS), Endpoint Detection and Response (EDR), Data Loss Prevention (DLP), Drive Encryption (FRP/FRMP), Threat Intelligence Exchange (TIE), Data Exchange Layer (DXL), Policy Auditor, Rogue System Detection, Trellix Security for Microsoft Exchange (TSME), Application and Change Control (Solidcore), and File Integrity Monitoring (FIM).
  • Experience implementing and managing application whitelisting, endpoint hardening, encryption, and data protection technologies; integrating endpoint security platforms with SIEM, SOAR, threat intelligence, and identity management solutions.
  • Strong understanding of endpoint security architecture, cyber threat detection, incident response, and risk management principles; experience developing and maintaining DLP policies, device control mechanisms, and data exfiltration prevention controls.
  • Experience supporting SOCs and enhancing 24x7 threat monitoring and response capabilities; ability to develop security engineering standards, SOPs, playbooks, and operational procedures.
  • Experience supporting compliance initiatives and implementing security controls aligned with federal cybersecurity frameworks and regulations; strong analytical, troubleshooting, and root-cause analysis skills.

SALARY RANGE: $138,000 - $166,000

The salary range for this position is determined based on qualifications, skills, and relevant experience. The final salary offered will be determined based on several factors including:
  • The candidate's professional background and relevant work experience
  • The specific responsibilities of the role and organizational needs
  • Internal equity and alignment with current team compensation
  • This role is also eligible for additional compensation, subject to the terms and policies of MetroStar, which may include:
    • Performance-based bonuses
    • Company-paid training and/or certifications
    • Referral bonuses


To apply for this position, please submit your resume via the form below or through our careers page: https://www.metrostar.com/jobs/

Application Deadline: Applications will be accepted on a rolling basis until the position is filled; candidates are encouraged to apply as early as possible for full consideration.

Additional Compensation: This role may also be eligible for bonuses and/or additional incentives based on individual and company performance.

Benefits: All full-time employees are eligible to participate in our benefits programs:
  • Health, dental, and vision insurance
  • 401(k) retirement plan with company match
  • Paid time off (PTO) and holidays
  • Parental Leave and dependent care
  • Flexible work arrangements
  • Professional development opportunities
  • Employee assistance and wellness programs

Like we said, we are big fans of our people. That's why we offer a generous benefits package, professional growth, and valuable time to recharge. Learn more about our company culture code and benefits. Plus, check out our accolades.

Not ready to apply now?

Sign up to join our newsletter here.

About MetroStar Systems

MetroStar Systems is a technology services provider specializing in digital transformation, cybersecurity, and customer experience. The company was founded in 1999 and is headquartered in Washington, DC. MetroStar Systems has worked with clients in the public and private sectors, including the Department of Defense, the Department of Homeland Security, and the Federal Aviation Administration. The company has received numerous awards for its work, including being named a Top Workplace by The Washington Post.
Learn more about MetroStar Systems
Size
400 employees
Industry
Net Income
$2 million
Founded
1999
5 Year Trend
+20%
Revenue
$50 million

Similar Jobs

More Jobs at MetroStar Systems

More Information Technology Jobs

Find similar Sr. Endpoint Security Engineer I (6701) jobs: