Security Engineer – Endpoint Security Tool Monitoring

LeidosAlexandria, VirginiaOn-siteFull-timeMid level, 2–5 yearsListed 1 hour ago

Apply now

About this role

Looking for an opportunity to make an impact?

At Leidos , we deliver innovative solutions through the efforts of our diverse and talented people who are dedicated to our customers’ success. We empower our teams, contribute to our communities, and operate sustainable. Everything we do is built on a commitment to do the right thing for our customers, our people, and our community. Our Mission, Vision, and Values guide the way we do business.

If this sounds like a mission you want to be a part of, keep reading!

Leidos is seeking experienced Security Engineers – Endpoint Security Tool Monitoring to support the Defense Manpower Data Center (DMDC) CyberPRIMES program. Leidos is a major partner on the contract and will provide a substantial portion of the cybersecurity workforce supporting the Defense Human Resources Activity (DHRA) and DMDC. The Security Engineer will support enterprise endpoint-security monitoring by validating that endpoint security tools are properly configured, reporting required data, and integrating with enterprise cybersecurity monitoring and reporting capabilities. This position will identify coverage and configuration gaps, troubleshoot endpoint-security issues, and develop recommendations that improve data collection, alerting, and threat response.

Mission Environment

DMDC supports the Defense Human Resources Activity within the Office of the Under Secretary of Defense for Personnel and Readiness (OUSD(P&R)) and maintains the Department of Defense’s largest and most comprehensive central repository of personnel, manpower, casualty, pay, entitlement, personnel security, identity, readiness, training, and related data.

The DHRA Information Technology (IT) environment includes approximately 15,000 network and endpoint devices supporting more than 600 Government-Off-The-Shelf (GOTS) applications and approximately 100 Risk Management Framework (RMF) authorization boundaries managed through the Enterprise Mission Assurance Support Service (eMASS). Endpoint-security capabilities provide a critical source of cybersecurity visibility across this environment. The Security Engineer will help ensure endpoint tools are deployed, configured, communicating, and providing reliable security data to the enterprise systems used for continuous monitoring, compliance reporting, and threat response.

Primary Responsibilities

- Support comprehensive cybersecurity monitoring and oversight of endpoint-security capabilities across the DHRA enterprise.
- Validate that endpoint-security tools are properly deployed, configured, operational, and reporting required data.
- Verify upstream rollup of endpoint-security data into applicable enterprise cybersecurity monitoring and reporting systems.
- Validate endpoint-security reporting through the Defense Information Systems Agency Continuous Monitoring and Risk Scoring (DISA CMRS) capability, as applicable.
- Maintain weekly records of endpoint-security data-rollup validation, coverage, configuration status, and identified deficiencies.
- Identify and document systems or environments that are incorrectly configured, not reporting, or providing incomplete endpoint-security data.
- Escalate endpoint-security configuration, connectivity, coverage, and reporting issues for corrective action.
- Develop recommendations to optimize endpoint-security configurations to improve data collection, alert generation, visibility, and threat response.
- Provide technically supported configuration recommendations to Government tool administrators for implementation.
- Support network and server security scanning and validation activities associated with endpoint-security monitoring.
- Perform compliance checks and cross-reference endpoint-security results against applicable Department of Defense, DHRA, and DMDC cybersecurity requirements.
- Troubleshoot endpoint-security tool configuration, connectivity, deployment, data-rollup, and reporting issues.
- Support Tier 2 troubleshooting and coordinate resolution with Government tool administrators, system owners, network and infrastructure teams, and cybersecurity personnel.
- Evaluate recurring endpoint-monitoring results to identify coverage gaps, configuration trends, or systemic issues that may affect enterprise cybersecurity posture.
- Document monitoring results, technical findings, corrective actions, and configuration recommendations.
- Support improvements to endpoint-monitoring procedures, technical baselines, and cybersecurity monitoring practices.

Basic Qualifications

- Bachelor’s degree in Cybersecurity, Computer Science, Information Technology, Engineering, or a related technical discipline and 4+ years of relevant professional experience. In lieu of degree, additional experience may be required.
- Experience supporting endpoint-security technologies, cybersecurity monitoring, security engineering, or enterprise cybersecurity operations.
- Experience validating deployment, configuration, connectivity, or reporting of endpoint-security tools.
- Experience troubleshooting endpoint-security, server, workstation, or enterprise security-tool issues.
- Experience with cybersecurity scanning, mitigation, compliance checking, or security configuration assessment.
- Understanding of endpoint-security telemetry, security-event generation, centralized monitoring, and enterprise data-rollup concepts.
- Experience documenting technical findings, configuration issues, corrective actions, and remediation recommendations.
- Ability to work effectively with Government customers, cybersecurity personnel, system administrators, engineers, and Information Technology operations teams.
- U.S. Citizenship required.
- Active Secret security clearance required.

​

Preferred Qualifications

- Experience supporting Department of Defense endpoint-security or enterprise cybersecurity environments.
- Experience with enterprise endpoint detection, endpoint protection, vulnerability scanning, configuration-monitoring, or comparable cybersecurity technologies. - Remove the VN Scanning, add tool names Trellix, Tanium, etc.
- Experience with Defense Information Systems Agency Continuous Monitoring and Risk Scoring or comparable continuous-monitoring and compliance-reporting capabilities.
- Experience validating cybersecurity-tool coverage against enterprise asset inventories.
- Experience supporting Commercial-Off-The-Shelf (COTS) cybersecurity tools in large enterprise environments.
- Experience performing Tier 2 cybersecurity troubleshooting and coordinating technical issues through resolution.
- Familiarity with Department of Defense continuous-monitoring, Risk Management Framework, and cybersecurity compliance requirements.
- Familiarity with DHRA, DMDC, or comparable Department of Defense enterprise environments.

If you're looking for comfort, keep scrolling. At Leidos, we outthink, outbuild, and outpace the status quo — because the mission demands it. We're not hiring followers. We're recruiting the ones who disrupt, provoke, and refuse to fail. Step 10 is ancient history. We're already at step 30 — and moving faster than anyone else dares.

##

##

## Original Posting:
October 9, 2026

For U.S. Positions: While subject to change based on business needs, Leidos reasonably anticipates that this job requisition will remain open for at least 3 days with an anticipated close date of no earlier than 3 days after the original posting date as listed above.

## Pay Range:
Pay Range $87,100.00 - $157,450.00

The Leidos pay range for this job level is a general guideline only and not a guarantee of compensation or salary. Additional factors considered in extending an offer include (but are not limited to) responsibilities of the job, education, experience, knowledge, skills, and abilities, as well as internal equity, alignment with market data, applicable bargaining agreement (if any), or other law.