System Engineer 3 (EDR)
The Senior Systems Engineer (Level 3) serves as a principal technical leader and subject matter expert within the Agency’s Enterprise Endpoint Detection and Response (EDR) Program. Operating in a highly classified, multi-domain infrastructure, the successful candidate will drive the strategic architectural design, end-to-end integration, deployment, and optimization of premier endpoint security platforms, specifically Microsoft Defender for Endpoint (MDE) and Trellix HX. This critical role bridges high-level systems architecture with operational defense capabilities, ensuring total endpoint visibility, robust threat containment, and resilient configuration management across all enterprise and mission-critical assets to defend national security infrastructure against sophisticated cyber threats.
The Systems Engineer 3 is responsible for leading the lifecycle engineering and scale-out architecture of MDE and Trellix HX across hybrid environments, including on-premises, cloud, and virtual desktop infrastructures (VDI). This includes authoring complex system engineering and implementation plans, tuning agent configurations and exclusion policies to eliminate mission friction, and monitoring overall endpoint health at scale. The engineer will collaborate closely with threat hunting and intelligence analysts to translate actionable threat intelligence into custom technical indicators of compromise (IOCs), utilizing Kusto Query Language (KQL) and YARA rules. Additionally, the individual will act as a primary technical advisor to Government stakeholders on system risks and engineering considerations, provide advanced forensic support to the SOC during critical high-priority incidents, and actively mentor junior and mid-level engineering personnel within the program.
Required Qualifications
- TS/SCI with agency appropriate poly
- Twenty (20) years experience as a SE in programs and contracts of similar scope, type and complexity is required.
- Demonstrated experience in planning and leading Systems Engineering efforts is
required. - Bachelor’s degree in System Engineering, Computer Science, Information Systems,
Engineering Science, Engineering Management, or related discipline from an accredited college or university is required. - Five (5) years of additional SE experience may be substituted for a bachelor’s degree.
Required Technical Skills
- Microsoft Defender for Endpoint (MDE) Expertise: Proven engineering experience with MDE architecture, deployment strategies via MECM/SCCM or Intune, policy ring management, and advanced hunting using Kusto Query Language (KQL).
- Trellix HX Expertise: Demonstrated experience engineering, deploying, and managing Trellix HX (formerly FireEye) controllers and agents within air-gapped or highly restricted networks, including the creation of OpenIOC and YARA rules.
- Operating System & Forensic Knowledge: In-depth technical understanding of Windows, Linux, and macOS internals, including file systems, registry structures, and process execution mechanics.
- Professional Standards: Compliance with DoD 8570/8140 IAM Level II or III baseline certifications.
Desired Technical Skills
- Vendor Certifications: Microsoft Certified: Security Operations Analyst Associate (SC-200), Azure Security Engineer Associate (AZ-500), or Trellix Certified Engineering credentials.
- Methodologies & Toolsets: Experience with Model-Based Systems Engineering (MBSE), Cameo, and workflow management within the Atlassian Suite (Jira, Confluence).
- Technical Frameworks: Familiarity with Agency Technical Manual Standards (e.g., Agency DS-89) and defense-in-depth engineering principles.
- Core Competencies: Strong record of team collaboration, exceptional transparency in managing high-consequence infrastructure, and an aptitude for developing technical leadership pipelines.
The Benefits Package
- Wyetech believes in generously supporting employees as they prepare for retirement. The company automatically contributes 20% of each employee's gross compensation to a Simplified Employee Pension (SEP) IRA, with no requirement for employee matching. All contributions are fully vested from day one, ensuring immediate ownership of retirement funds.
- Wyetech provides a generous PTO plan of up to 200 hours annually, aligned with applicable state leave regulations. Employees have the flexibility to adjust their PTO allocation at the start of each calendar year, ensuring it meets their evolving needs.
- A Choice of Medical Plan Options, some with Health Savings Account (HSA)
- Vision and Dental
- Life and AD&D Benefits
- Short and Long-Term Disability
- Hospital Indemnity, Accident, and Critical Illness Insurances
- Optional Identity Theft and Legal Protection Services
Company Environment & Perks
- Employee Referral Bonus Eligibility up to $10,000
- Mobility Among Wyetech-supported Contracts
- Various contract and work locations throughout Maryland, Virginia, Colorado, Texas, Utah, Alaska, Hawaii and OCONUS
- Various team-building events throughout the year such as: monthly lunches, summer company picnic, and an annual holiday party. Employees receive two complementary branded clothing orders annually.
More jobs at Wyetechllc
- Business Process Engineer 2 — Linthicum Heights, Maryland
- Data Scientist 3 — Linthicum Heights, Maryland
- Software Engineer 1 (DevOps) — Linthicum Heights, Maryland
- Front End Developer (Hybrid) - 29216 — San Antonio, Texas
Similar roles
- Security Operations Lead at Replit
- Strategic Partner Development, Product Partnerships - Cybersecurity at Anthropic
- Endpoint Security Engineer III at Caci
- CSOC CIR Tier II Analyst at Pingwind