Security Engineer, Security Control Management

Posted Aug 25

This is a fully remote position, open to applicants in Maryland.

📋 Description

• Manage CyberMaxx-controlled EDR platforms within customer environments, encompassing routine configuration, policy upkeep and adjustments, agent lifecycle management, operational controls, and platform health assessments.

• Implement sanctioned routine and extensive platform modifications, including agent upgrades, bulk operations, policy transitions, and recovery actions, adhering to established change controls, validation procedures, and documentation standards.

• Oversee platform health, agent coverage, version status, policy alignment, and operational anomalies; investigate inconsistencies and coordinate remediation efforts.

• Assist in agent deployment, console configuration, integrations, and platform migrations under the guidance of senior engineering personnel.

• Track vendor roadmaps, emerging functionalities, and industry trends across supported EDR platforms, providing insights and recommendations.

• Examine endpoint security challenges related to agent connectivity, performance, interoperability, policy behavior, detections, exclusions, upgrades, and deployment failures.

• Gather and evaluate endpoint, console, and application data to identify probable causes.

• Address requests within specified protocols and escalate complex, high-risk, or vendor-dependent issues with comprehensive technical findings.

• Collaborate with vendors and internal teams to advance support cases, validate remediation efforts, and relay status updates to customer-facing stakeholders.

• Engage in peer review of configuration modifications, exclusions, and technical advice.

• Utilize PowerShell, Python, vendor APIs, or approved automation tools to execute repeatable tasks and minimize manual effort.

• Contribute to scripts, workflows, and platform integrations, including testing, documentation, and controlled deployment.

• Identify recurring requests, failure patterns, and manual processes for standardization or automation.

• Confirm automation output and maintain safeguards for changes across multiple customer environments.

• Create and sustain operational dashboards, reports, and health metrics.

• Contribute to engineering repositories, runbooks, operational checklists, and tooling documentation.

• Coordinate operational requests and technical investigations from initiation to completion.

• Offer insights on EDR configuration, deployment, platform health, and endpoint security operations.

• Support customer meetings by clearly communicating findings, risks, dependencies, and next steps in business-friendly language.

• Develop and maintain customer-facing procedures, configuration guidance, and implementation documentation.

• Assist in customer training and guidance on routine EDR platform administration and workflows.

• Identify recurring issues or misconfigurations and escalate them to senior engineers.

• Attain working proficiency across CrowdStrike Falcon, SentinelOne, and Microsoft Defender for Endpoint.

• Share troubleshooting insights, technical notes, and reusable procedures with team members and SOC analysts.

• Collaborate with SOC, detection engineering, professional services, customer success, and other operational teams.


⛳️ Requirements

• A minimum of 1 year of experience in endpoint security, EDR operations, security engineering, systems administration, SOC operations, or a closely related technical role.

• Hands-on experience administering or supporting at least one of the following: CrowdStrike Falcon, SentinelOne Singularity, or Microsoft Defender for Endpoint.

• Practical experience in troubleshooting Windows endpoints.

• Familiarity with macOS or Linux endpoint administration is advantageous.

• Working knowledge of EDR concepts, endpoint security policies, agent deployment, exclusions, detection triage, and basic response actions.

• Proficiency in using PowerShell, Python, command-line tools, or vendor APIs for troubleshooting and repeatable operational tasks.

• Capability to analyze technical evidence, document findings, adhere to change controls, and escalate issues with sufficient context for effective resolution.

• Strong written and verbal communication skills for collaboration with internal engineering teams and customer stakeholders.

• Experience in an MSSP, MDR, SOC, or other multi-customer security operations environment is preferred.

• Relevant vendor certification or training, such as CrowdStrike CCFA, SentinelOne Certified Administrator or Engineer, Microsoft SC-200, or equivalent practical coursework, is preferred.

• Experience with SOAR platforms, SIEM integrations, or security automation tools in the context of endpoint security operations is preferred.

• Understanding of MITRE ATT&CK, common endpoint attack techniques, and how EDR telemetry supports detection and investigation is preferred.

• Experience in large-scale EDR deployments, platform consolidations, or migrations across diverse enterprise environments is preferred.

• Experience utilizing EDR-native remote response, querying, hunting, bulk management, or detection validation capabilities to investigate and manage endpoints at scale is preferred.


🏝️ Benefits

• Flexible Paid Time Off.

• 401k with a company match.

• Medical, Dental and Vision Coverage.

• Voluntary Short Term and Long-Term Disability.

• Employee Assistance Program with Mental Health Supplement.

• Voluntary Basic, Accidental, and other ancillary life insurance.

• Health Savings Account Contribution (with selection of a HDHP).

• 10 annual, paid holidays.

• Structured cross-training will be provided to build working proficiency across the supported portfolio.

People also viewed

GuidePoint Security1 day ago

Security Engineer

US flagUnited States OnlyFull-timeCybersecurity / Security Engineer
ApplyView job
Gravie1 day ago

Vice President, Information Security and IT

US flagUnited States OnlyFull-timeCybersecurity / Security Engineer$261k – $348k/year
ApplyView job
Your Software Supplier1 day ago

Cyber Security Engineer

Anywhere in the WorldFreelanceCybersecurity / Security Engineer$30 – $100/hour
ApplyView job
Dragonfli Group1 day ago

Cybersecurity Consultant – MS Copilot, Power Platform

US flagUnited States OnlyFreelanceCybersecurity / Security Engineer
ApplyView job
Headway1 day ago

Senior Infrastructure Security Engineer

US flagCalifornia, +2 more statesFull-timeCybersecurity / Security Engineer$222.8k – $278.5k/year
ApplyView job
Dragonfli Group1 day ago

Senior Cybersecurity Consultant – MS Copilot, Power Platform

US flagUnited States OnlyFull-timeCybersecurity / Security Engineer
ApplyView job

Never miss a great job!

Get handpicked remote jobs straight to your inbox weekly.

Trusted by 7,400+ designers