Demo

End Point Protection Engineer - REMOTE - Public Trust Needed

D&Z Federal Division
Washington, DC Remote Full Time
POSTED ON 6/4/2026
AVAILABLE BEFORE 8/3/2026
End Point Protection Engineer needed for a contract opportunity with SOC’s client remote in Washington, DC.

Contract Length: 6 months, with possible conversion to FTE
Location: 100% remote

*Must have an active Public Trust clearance to be considered for this role*

Job Description:
Provide senior engineering support for enterprise endpoint security across the SEC ISS contract environment. This role designs, implements, and sustains endpoint protection capabilities for Windows, macOS, and iOS endpoints, including workstation and server environments, while enforcing SEC security baselines and federal cybersecurity requirements. The engineer leads vulnerability remediation, patch and supersedence execution, and POA&M closure activities to maintain security posture and audit readiness. The position also drives operational visibility through automation, documentation, and transparent reporting to SEC stakeholders.

PRIMARY RESPONSIBILITIES
Endpoint Security Engineering & Baseline Management
  • Architect, implement, and maintain enterprise endpoint protection strategies across Windows, macOS, iOS, workstation, and server platforms.
  • Define, enforce, and continuously improve endpoint security baselines using Microsoft Defender for Endpoint and Microsoft Intune.
  • Lead deployment and configuration of antivirus and endpoint protection tooling, including policy tuning, signature/DAT update management, and scheduled scans.
  • Validate new endpoint security configurations in controlled environments before production rollout.
Vulnerability, Patching & POA&M Execution
  • Own endpoint patching strategy and execution across managed endpoint environments, including supersedence management.
  • Monitor vulnerability findings, assess risk and severity, and coordinate remediation with technical teams and system owners.
  • Lead development, tracking, and closure of endpoint POA&Ms with clear milestones and risk-based prioritization.
  • Ensure remediation and patch activities support ongoing compliance objectives and audit readiness.
Threat Monitoring, Incident Response & Reporting
  • Monitor endpoint security telemetry and respond to endpoint-specific threats, suspicious activity, and policy non-compliance.
  • Serve as an escalation point for complex endpoint incidents and coordinate with SOC and incident response stakeholders for broader investigations.
  • Create and maintain automation scripts and reporting workflows for endpoint compliance, vulnerability status, and remediation tracking.
  • Maintain accurate SOPs, runbooks, and status reporting to support governance, audit response, and service transparency.
Stakeholder Coordination & Technical Leadership
  • Collaborate with federal stakeholders, ISS teams, and partner vendors to validate endpoint security posture and operational readiness.
  • Provide senior technical guidance to engineering and operations teams on endpoint security architecture and best practices.
  • Support audit remediation activities (e.g., FISMA, IG, GAO) by preparing evidence and tracking corrective actions.
  • Drive continuous improvement initiatives that increase automation, resilience, and efficiency of endpoint security operations.

Required Qualifications
Citizenship/Work Authorization: Candidate must be a US Citizen
Clearance: Ability to obtain and maintain SEC Public Trust (or higher if required).
Education: Bachelors in a relevant field (e.g., Information Technology, Computer Science, Engineering).

Experience:
  • 8 years of experience in enterprise endpoint security engineering in large, regulated environments.
  • Advanced experience designing, implementing, and managing Microsoft Defender for Endpoint and Intune security baselines.
  • Hands-on experience in vulnerability management, endpoint patching strategies, supersedence processes, and POA&M resolution.
  • Experience documenting SOPs/runbooks and providing compliance-focused reporting to federal stakeholders.

Technical Skills:
  • Microsoft Defender for Endpoint
  • Microsoft Intune endpoint and mobile device security baseline management
  • Endpoint vulnerability assessment, remediation coordination, and POA&M tracking
  • Enterprise endpoint patching and supersedence management
  • Antivirus/endpoint protection deployment, signature/DAT update operations, and scheduled scan management
  • Endpoint threat triage, escalation, and response coordination
  • Automation scripting for reporting and remediation
  • Process documentation, status reporting, and compliance evidence support
Preferred Qualifications
  • Experience supporting federal IT operations under FISMA and NIST-aligned controls.
  • Experience implementing endpoint compliance enforcement at enterprise scale across distributed/remote workforces.
  • Experience integrating endpoint tooling and metrics into enterprise dashboards and executive reporting.
  • Demonstrated success leading cross-team remediation efforts for audit findings and complex security incidents.
  • Prior experience supporting SEC or similarly regulated federal civilian agency environments.
  • Microsoft SC-200 (Security Operations Analyst)
  • Microsoft MD-102 (Endpoint Administrator)
  • CISSP
Employment Prerequisites
The following requirements must be met to be eligible for this position: successful completion of a background investigation and drug urinalysis.

SOC, a Day & Zimmermann company, is an Equal Opportunity Employer, EOE AA M/F/Vet/Disability.

Note: Any pay ranges displayed are estimations, which may have been provided by job boards. Actual pay is determined by an applicant’s experience, technical expertise, and other qualifications as listed in the job description. All qualified applicants are welcome to apply.

#INDSOC
#DZFED


Estimated Min Rate: $42.73
Estimated Max Rate: $61.05

Salary : $43 - $61

If your compensation planning software is too rigid to deploy winning incentive strategies, it’s time to find an adaptable solution. Compensation Planning
Enhance your organization's compensation strategy with salary data sets that HR and team managers can use to pay your staff right. Surveys & Data Sets

What is the career path for a End Point Protection Engineer - REMOTE - Public Trust Needed?

Sign up to receive alerts about other jobs on the End Point Protection Engineer - REMOTE - Public Trust Needed career path by checking the boxes next to the positions that interest you.
Income Estimation: 
$83,086 - $106,052
Income Estimation: 
$83,298 - $131,726
Income Estimation: 
$101,020 - $131,637
Income Estimation: 
$139,945 - $168,577
Income Estimation: 
$164,835 - $201,088
Income Estimation: 
$135,994 - $168,063
Income Estimation: 
$161,209 - $233,553
Employees: Get a Salary Increase
View Core, Job Family, and Industry Job Skills and Competency Data for more than 15,000 Job Titles Skills Library

Job openings at D&Z Federal Division

  • D&Z Federal Division Washington, DC
  • EUT Specialist/SME needed for a contract opportunity with SOC’s client onsite in Washington, DC. Contract Length: 6 months with possible conversion to FTE ... more
  • 1 Day Ago

  • D&Z Federal Division Malibu, CA
  • Linux Systems Administrator needed for a long term Contract opportunity with SOC’s client to work in Malibu, California. Active Secret, TS or TS/SCI cleara... more
  • 10 Days Ago


Not the job you're looking for? Here are some other End Point Protection Engineer - REMOTE - Public Trust Needed jobs in the Washington, DC area that may be a better fit.

  • SOC LLC Washington, DC
  • End Point Protection Engineer needed for a contract opportunity with SOC's client remote in Washington, DC. Contract Length: 6 months, with possible conver... more
  • 1 Day Ago

  • Jobs via Dice Washington, DC
  • Dice is the leading career destination for tech experts at every stage of their careers. Our client, Apex Systems, is seeking the following. Apply via Dice... more
  • 1 Day Ago

AI Assistant is available now!

Feel free to start your new journey!