Endpoint Detection and Response; EDR Cyber Engineer
Listed on 2026-01-23
-
Engineering
Cybersecurity, Systems Engineer -
IT/Tech
Cybersecurity, Systems Engineer
Type of Requisition:
Regular
Clearance Level Must Currently Possess:Top Secret
Clearance Level Must Be Able to Obtain:Top Secret/SCI
Public Trust/OtherRequired:
None
Job Family:Cyber and IT Risk Management
Job Qualifications:Skills: Endpoint Management, Endpoint Security, Event Management, Security Platforms
Certifications: None
Experience: 5 + years of related experience
US Citizenship
Required:
Yes
Advance how our customers operate while you advance your career. Join GDIT as an Endpoint Detection and Response Engineer and build an impactful career in enterprise IT, collaborating with people who are driven and resourceful like you.
MEANINGFUL WORK AND PERSONAL IMPACT:As an EDR Engineer, the work you’ll do at GDIT will be impactful to a critical client mission. You will play a crucial role in supporting cybersecurity operations and enterprise endpoint protection.
RoleSummary:
The EDR Engineer is responsible for engineering, deploying, integrating, and sustaining endpoint security technologies across enterprise networks. This role ensures comprehensive protection of workstations, servers, and mobile devices through the implementation and maintenance of endpoint security technologies such as endpoint detection and response (EDR), Mobile Device Management platforms, next‑gen AV, SOAR, and Security Information and Event Management technologies. The engineer will support capability development, lifecycle management, and modernization efforts across both pre‑production and production environments.
Duties and Responsibilities:- Deploy, configure, and maintain endpoint security solutions including EDR, MDM, AV, SIEM, IDS/IPS, and vulnerability management agents.
- Monitor endpoint security platforms for performance, health, and security events; provide proactive recommendations for optimization.
- Analyze endpoint alerts, identify suspicious activity and suspected security incidents; communicate with Incident Response teams and support triage, investigation, and remediation as necessary.
- Integrate endpoint security solutions with enterprise systems, SIEM platforms, and cybersecurity workflows.
- Support lab‑based testing, validation, and integration of new endpoint security technologies prior to enterprise rollout.
- Develop and maintain documentation for endpoint security configurations, SOPs, and troubleshooting procedures.
- Collaborate with cybersecurity, network, and systems teams to implement enterprise‑wide endpoint protection enhancements.
- Assist in vulnerability management activities, including agent deployment, scanning, reporting, and remediation coordination.
- Participate in security audits, compliance reviews, and accreditation activities related to endpoint security.
- Provide technical guidance and mentorship to junior team members and other IT personnel.
- Engage with vendors to resolve technical issues, evaluate new capabilities, and support lifecycle management.
- Produce reports, dashboards, and data sets to support leadership decision making and continuous improvement efforts.
- Participate in capacity planning for endpoint security tools and supporting infrastructure.
- Contribute to cybersecurity modernization efforts by identifying innovative approaches to improve automation, orchestration, and operational efficiency.
- Experience:
5+ years of related experience. - Required Skills:
- Hands‑on experience with endpoint security solutions such as EDR, device control, and vulnerability management agents.
- Strong understanding of endpoint protection strategies, cybersecurity best practices, and industry frameworks.
- Experience supporting large‑scale enterprise environments, including Windows and Linux endpoints.
- Ability to analyze endpoint security events, identify risks, and support incident response activities.
- Experience deploying and maintaining virtual appliances and servers supporting endpoint security tools.
- Strong documentation skills for configuration guides, SOPs, and troubleshooting procedures.
- Ability to collaborate effectively with cross‑functional IT and cybersecurity teams.
- Desired
Skills:- Familiarity with enterprise EDR platforms, host‑based security tools, SOAR, and endpoint management…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).