LightGrid is Hiring an Endpoint Security Administration Senior/SME to work at Fort lee VA. Active SECRET Clearance is required.
The Endpoint Security Administration Senior/SME is responsible for configuring, deploying, maintaining, and troubleshooting enterprise endpoint security technologies across Microsoft and Linux environments. The role requires strong experience with Trellix Endpoint Security (ENS) and ePolicy Orchestrator (ePO), endpoint detection and response, anti-malware, policy management, security platform integrations, system logging, network fundamentals, and incident response. The position also supports security ticket resolution, cross-functional troubleshooting, and development and maintenance of endpoint security documentation and procedures.
Active DoD Secret Clearance (Required)
Must be qualified under the DoD 8140 Cyber Workforce Qualification Program with the following:
· IT 521 – Endpoint Security Administrator
· Cyber 212 – Cybersecurity Service Provider (Infrastructure Support)
· Endpoint Security Solutions (ESS) Administrator 202 certificate - Required
HBSS Advanced 301 & 501 Highly recommended.
7+ years of IT experience, including at least 5+ years specializing in endpoint cybersecurity
· Configure, deploy, maintain, and troubleshoot enterprise endpoint security technologies and associated policies.
· Administer endpoint protection capabilities including EDR, anti-malware, threat prevention, exploit prevention, firewall, web control, and On-Access/On-Demand scanning.
· Manage Data Loss Prevention (DLP), removable media controls, and application whitelisting across Windows and Linux/*NIX environments.
· Maintain endpoint compliance with STIGs, TASKORDs, CTOs, RMF, and NIST SP 800-53 requirements.
· Perform intermediate systems administration and troubleshooting across Microsoft Windows and Linux environments.
· Integrate cybersecurity platforms using APIs, pxGrid, SAML, Okta, ODBC, and related technologies.
· Analyze syslogs, packet captures, and system logs to support troubleshooting, incident response, and security posture assessments.
· Support endpoint-related incidents and tickets within established SLAs and participate in Incident Response activities as required.
· Collaborate with DeCA technical and business stakeholders on endpoint security settings, policy changes, troubleshooting, and compliance.
· Maintain technical documentation for endpoint configurations, security posture, procedures, and policy implementation.
· Ability to work both independently and as part of a cross-functional cyber response team; may coordinate activities with other analysts. · Exercise sound judgment and report/escalate issues clearly and promptly.