Endpoint Security Engineer

HalvikAlexandria, VA
Onsite

About The Position

The SentinelOne Endpoint Security Engineer is responsible for the administration, management, and optimization of the organization's endpoint security environment, with a primary focus on SentinelOne Endpoint Protection Platform (EPP) and Endpoint Detection and Response (EDR). This role works closely with Cybersecurity Operations teams to protect enterprise Windows endpoints from malware, ransomware, and advanced cyber threats while ensuring compliance with organizational security standards. This role is on site Monday through Friday in Alexandria, VA. The position is responsible for deploying and maintaining SentinelOne agents, managing endpoint security policies, investigating security alerts, and supporting incident response activities. Additionally, the engineer will leverage Microsoft Intune to administer endpoint security configurations and support the organization's transition from traditional endpoint management solutions to modern cloud-based management. The ideal candidate possesses strong experience in enterprise endpoint security, Windows administration, PowerShell automation, and security tool integration. This role also requires expertise in developing automated workflows through APIs and integrating endpoint security solutions with SIEM and SOAR platforms such as Microsoft Sentinel, Splunk, IBM QRadar, and Cortex XSOAR.

Requirements

  • Bachelor's degree in Cybersecurity, Information Technology, Computer Science, or a related field.
  • Minimum of three (3) years of experience administering enterprise endpoint security solutions.
  • Hands-on experience with SentinelOne EPP and EDR platforms.
  • Experience managing Windows 10/11 enterprise environments.
  • Experience deploying and managing Microsoft Intune policies and configurations.
  • Experience supporting enterprise cybersecurity operations and incident response activities.
  • Experience implementing endpoint hardening and security compliance standards.
  • Strong expertise in SentinelOne administration, monitoring, and policy management.
  • Advanced PowerShell scripting and automation experience.
  • Strong knowledge of Microsoft Intune and modern endpoint management.
  • Experience with Microsoft Entra ID (Azure AD).
  • Knowledge of Windows security architecture and security controls.
  • Understanding of malware analysis, ransomware protections, and endpoint threat detection.
  • Familiarity with enterprise security frameworks such as NIST 800-53, CIS Benchmarks, and Zero Trust principles.
  • Knowledge of endpoint compliance monitoring and vulnerability remediation processes.
  • Ensuring devices and endpoint management processes meet organizational standards, security requirements, and configuration policies. It includes maintaining patch levels, enforcing device and application policies, supporting conditional access, and monitoring systems to verify that endpoints remain secure and aligned with enterprise requirements.
  • Must be eligible to obtain and maintain Public Trust clearance.

Nice To Haves

  • Strong analytical and troubleshooting skills.
  • Excellent written and verbal communication abilities.
  • Ability to manage multiple priorities in a fast-paced environment.
  • Strong problem-solving and decision-making capabilities.
  • Ability to work independently and collaboratively within cross-functional teams.
  • Commitment to continuous learning and cybersecurity best practices.

Responsibilities

  • Lead the strategic implementation and optimization of SentinelOne EPP/EDR capabilities to strengthen the organization's endpoint security posture and align with cybersecurity objectives.
  • Drive the adoption of modern endpoint management practices through Microsoft Intune, supporting the transition from traditional on-premises management to cloud-based solutions.
  • Develop and execute endpoint security roadmaps, ensuring compliance with security standards, regulatory requirements, and industry best practices.
  • Enhance operational efficiency through PowerShell automation, API integrations, and SIEM/SOAR orchestration to improve threat detection, response, and reporting capabilities.
  • Collaborate with cybersecurity, infrastructure, and operations teams to proactively identify risks, implement security controls, and support continuous security improvement initiatives.
  • Oversee daily operations of the SentinelOne EPP/EDR platform, ensuring continuous endpoint protection, policy compliance, and operational effectiveness across the enterprise.
  • Monitor security alerts, investigate threats, and coordinate incident response activities to rapidly detect, contain, and remediate endpoint security risks.
  • Manage endpoint security configurations and deployments through Microsoft Intune, ensuring consistent enforcement of security policies and compliance standards.
  • Collaborate with cybersecurity and IT teams to maintain a secure, resilient, and well-governed endpoint environment while driving continuous operational improvements.
  • Partner with Cybersecurity Operations, Infrastructure, and IT support teams to strengthen endpoint security, streamline incident response, and ensure effective threat mitigation across the enterprise.
  • Collaborate with stakeholders to implement and maintain security policies, compliance standards, and endpoint protection strategies using SentinelOne and Microsoft Intune.
  • Work closely with security analysts, engineers, and administrators to integrate endpoint security solutions with SIEM/SOAR platforms and enhance security automation capabilities.
  • Engage with business and technical teams to support endpoint management initiatives, drive continuous improvement, and promote security best practices throughout the organization.
  • Demonstrate technical expertise in administering and optimizing the SentinelOne EPP/EDR platform to provide effective threat detection, prevention, and response capabilities across enterprise endpoints.
  • Manage the deployment, configuration, and maintenance of SentinelOne agents and endpoint security policies to ensure consistent protection, compliance, and operational stability.
  • Utilize Microsoft Intune, PowerShell scripting, and automation solutions to enhance endpoint management, streamline security operations, and improve reporting accuracy.
  • Leverage SentinelOne APIs and SIEM/SOAR integrations to automate security workflows, accelerate incident response, and strengthen overall endpoint security posture.
  • Apply advanced troubleshooting and analytical skills to resolve endpoint security, malware, ransomware, and Windows operating system issues while maintaining adherence to security baselines and best practices.

Benefits

  • Company-supported medical, dental, vision, life, STD, and LTD insurance
  • 11 federal holidays and PTO
  • Eligible employees may receive performance-based incentives in recognition of individual and/or team achievements.
  • 401(k) with company matching
  • Flexible Spending Accounts for commuter, medical, and dependent care expenses
  • Tuition Assistance
  • Charitable Contribution matching
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service