Enter a job title or keyword

Endpoint Security Analyst – Elastic Defend

Leidos


Job Location:

Adelphi, MD - USA

Yearly Salary: USD 107900 - 195050
Posted: 29 September 2026 (4 days ago)
Application Deadline: 27 December 2026
Vacancies: 1 Vacancy

Job Summary

The C5ISR Center Cyber Security Service Provider (CSSP) is a premier defensive cyber operations organization supporting the Department of War (DoW). Operating 24x7x365 the CSSP provides continuous monitoring threat detection incident response and vulnerability management across cloud and on-premises environments including AWS Azure GCP Oracle Cloud and SaaS platforms.

Every day our team protects the networks systems and data that enable critical DoW missions.

Leidos has an immediate opportunity for an experienced Endpoint Security Analyst to support a highly visible strategic Cybersecurity Task this role you will provide specialized expertise supporting Elastic Agent and Elastic Defend helping deploy configure optimize and sustain endpoint protection telemetry collection threat detection and automated response capabilities across the enterprise.

You will work closely with threat engineering and cybersecurity operations teams to strengthen endpoint defenses improve visibility and rapidly identify and respond to emerging cyber threats.

Location: Hybrid - 3 days on site at Adelphi MD

Clearance: U.S. Citizenship with an active TS/SCI with SAP Eligibility

Primary Responsibilities:
  • Deploy configure operate tune upgrade and troubleshoot Elastic Agent Elastic Defend and other enterprise endpoint security technologies.

  • Optimize endpoint protection and telemetry collection to maximize security visibility and detection effectiveness while minimizing operational and system performance impacts.

  • Partner with Threat and Detection teams to customize detection rules develop threat signatures and align endpoint defenses with emerging threat intelligence and MITRE ATT&CK techniques.

  • Conduct host-based defensive cyber operations to identify investigate contain mitigate and remediate vulnerabilities and intrusions.

  • Support cyber investigations using advanced endpoint queries forensic data collection and rapid containment and response capabilities.

  • Build and maintain queries dashboards and reports that provide enterprise security visibility and leadership awareness.

  • Coordinate with engineering teams on endpoint security deployments patches hot fixes upgrades and other critical security updates.

  • Troubleshoot endpoint security tool issues performance concerns and outages.

  • Develop and maintain endpoint security policies configurations and Standard Operating Procedures (SOPs).

  • Evaluate emerging endpoint security tools techniques and technologies and recommend improvements aligned with enterprise cybersecurity strategy.

Basic Qualifications:

  • Bachelors degree in Science Technology Engineering Mathematics (STEM) cybersecurity or a related field and 4 years of relevant cybersecurity experience.

  • Hands-on experience deploying configuring operating or supporting enterprise endpoint security or EDR solutions.

  • Strong understanding of endpoint protection security telemetry threat detection incident investigation and response.

  • Experience investigating and responding to endpoint security alerts and potential compromises.

  • Knowledge of current cyber threats attacker techniques and defensive strategies including familiarity with the MITRE ATT&CK framework.

  • Strong analytical troubleshooting and problem-solving skills.

  • Ability to work effectively across cybersecurity threat and engineering teams.

  • Strong written and verbal communication skills.

  • U.S. citizenship and an active TS/SCI with SAP eligibility.

  • At least one of the following certifications:

    • GIAC/SANS: GCIA GCIH GCFA GCFE GREM GISF GXPN GWEB GNFA or GMON

    • Offensive Security: OSCP OSCE OSWP or OSEE

    • ISC2: CCFP or CISSP

    • EC-Council: CEH CHFI LPT ECSA or ECI

Preferred Qualifications:

  • Hands-on experience with Elastic Agent and Elastic Defend including deployment configuration policy management tuning and troubleshooting.

  • Experience optimizing endpoint telemetry and security controls in large-scale enterprise environments.

  • Experience developing or tuning endpoint detection rules threat signatures IOCs and behavioral detections.

  • Experience using Elastic capabilities for endpoint investigation advanced querying forensic data collection and response actions.

  • Experience with CrowdStrike Falcon McAfee/Trellix ePO Tanium or similar enterprise endpoint security platforms.

  • Experience deploying and configuring CrowdStrike Falcon sensors and creating custom Indicators of Compromise (IOCs) and Indicators of Attack (IOAs).

  • Experience supporting endpoint security operations within large complex or mission-critical environments.

  • Relevant endpoint security certifications such as Elastic CrowdStrike or Tanium certifications.

If youre looking for comfort keep scrolling. At Leidos we outthink outbuild and outpace the status quo because the mission demands it. Were not hiring followers. Were recruiting the ones who disrupt provoke and refuse to fail. Step 10 is ancient history. Were already at step 30 and moving faster than anyone else dares.

Original Posting:
August 25 2026

For U.S. Positions: While subject to change based on business needs Leidos reasonably anticipates that this job requisition will remain open for at least 3 days with an anticipated close date of no earlier than 3 days after the original posting date as listed above.

Pay Range:
Pay Range $107900.00 - $195050.00

The Leidos pay range for this job level is a general guideline onlyand not a guarantee of compensation or salary. Additional factors considered in extending an offer include (but are not limited to) responsibilities of the job education experience knowledge skills and abilities as well as internal equity alignment with market data applicable bargaining agreement (if any) or other law.


Required Experience:

IC


About Company

Company Logo

Leidos is an innovation company rapidly addressing the world's most vexing challenges in national security and health. Our 47,000 employees collaborate to create smarter technology solutions for customers in these critical markets.

View Profile View Profile