Senior Endpoint Detection and Response (EDR) Engineer
Location: Onsite – Washington, DC
Security Clearance: Public Trust High (Tier 4/BI)
Key Responsibilities:
- EDR Platform Management: Administer and configure CrowdStrike Falcon for security compliance.
- Incident Response: Investigate and remediate security threats and vulnerabilities.
- Threat Intelligence: Integrate feeds, monitor trends, and enhance detection capabilities.
- Policy Enforcement: Develop and implement security policies and automation workflows.
- Compliance & Reporting: Maintain documentation, generate reports, and ensure audit readiness.
- Security Optimization: Improve detection techniques, automate processes, and integrate EDR with SIEM and ITSM.
Qualifications:
- Education: Bachelor's in computer science, Cybersecurity, IT, or a related field.
Experience:
- 3+ years of experience with EDR deployment, configuration, maintenance, and supporting enterprise EDR solutions, including CrowdStrike Falcon, Carbon Black EDR, SentinelOne, FireEye HX, McAfee MVision, Microsoft Defender for Endpoint (MDE), Tanium, or Elastic Endpoint Protection deployments.
- 3+ years of experience performing CrowdStrike EDR systems administration, including basic troubleshooting and installation, monitoring system performance or availability, performing security upgrades, and optimizing solution configurations to meet the needs of operational users.
- 2+ years of experience working in a Security Operations Center (SOC) environment, leveraging EDR tools to support incident response, vulnerability scanning, threat hunting, network monitoring and log management, and compliance management activities.
- Proficiency in Python, PowerShell, and regex for automation.
Certifications: Preferred CrowdStrike Certified Falcon Administrator; other security certifications (GIAC, CEH, OSCP, etc.) are a plus.
Preferred Skills:
- Strong communication and incident reporting abilities.
- Familiarity with security frameworks (NIST, MITRE ATT&CK, OWASP).
- Experience in high-pressure environments (SOC, emergency response, etc.).