Endpoint Security Operator (CrowdStrike)

SentarCharleston, SC
Onsite

About The Position

Sentar is seeking an Endpoint Security Operator (CrowdStrike) in Charleston. This Integrated Product Team (IPT) is charged with the mission of conducting Defensive Cyberspace Operations to defend subscriber networks. The DHA Cybersecurity Operations Center (CyOC) coordinates and orchestrates cybersecurity activities execution at the DoD Component scale to protect information systems against unauthorized activity, vulnerabilities, or threats. The Endpoint Security Operator is responsible for the technical administration, operational response, and management of the enterprise's end point security platform and supplemental endpoint security solutions as needed. The role ensures the health of the sensors across all endpoints, manages security policies to meet compliance directives, and serves as a subject matter expert on endpoint threat mitigation. This position performs hands-on triage of security events, validates security configurations for policy compliance, and reports confirmed incidents.

Requirements

  • Clearance Level: Top Secret
  • Certifications: IAT Level II required, IAT III preferred
  • Education: Bachelor's degree in a related field or five years of equivalent professional experience.
  • Experience: A minimum of three years of experience administering an enterprise endpoint security platform within a DoD context
  • Citizenship: Must be a US Citizen.
  • Core Skills: Excellent problem-solving, analytical, and communication abilities.
  • Ability to collaborate effectively with multiple teams in a fast-paced environment.
  • Strong understanding of common enterprise technologies and cybersecurity principles.

Nice To Haves

  • Highly Desired Technical Skills
  • CrowdStrike Expertise: Deep knowledge of the CrowdStrike Falcon platform, including Prevent/Insight (NGAV/EDR), Discover (Asset Inventory), Device Control (DLP), and Falcon Control (Application Control).
  • Systems Administration: Strong background in both Windows and Linux OS administration in a large enterprise (2,000+ servers).
  • SIEM Integration: Experience developing security-focused content and dashboards in Splunk using endpoint security data.

Responsibilities

  • Platform Administration: Build, maintain, and optimize the CrowdStrike Falcon environment. Manage technical changes, respond to escalated Tier II/III issues, assist with compatibility evaluations, and perform root cause analysis.
  • Security Operations & Triage: Proactively monitor and evaluate Falcon detections for malicious activity. Perform initial triage, tune prevention policies, develop custom Indicators of Compromise (IOCs), and report confirmed incidents.
  • Compliance & Readiness: Validate and enforce security configurations against STIG and TASKORD directives to ensure policy compliance. Audit and validate the endpoint security posture for CCRI/CORA readiness and report alerting events to Market Place Cyber Support (MPS) and ECMR for compliance monitoring.
  • Policy & Deployment: Implement the strategy for sensor deployment, security policy tuning, and the rollout of new Falcon capabilities (e.g., Application Control, Device Control) across the enterprise.

Benefits

  • Voluntary Medical, Dental, Vision, with Health Savings or Flexible Spending Plan options
  • Voluntary Life, Critical Illness, Accident, and Long Term Care insurance options
  • Group Term Life, Short-Term and Long-Term Disability is provided by Sentar to all qualifying employees
  • Generous 401(k) match
  • Competitive PTO plan that graduates quickly with years of service
  • Other leave programs; holiday schedule along with bereavement, maternity, jury and military duty
  • Mental health awareness programs
  • Tuition reimbursement
  • Professional development reimbursement
  • Recognition and Awards programs
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service