We are seeking a highly skilled and innovative Endpoint Engineer to join our team in the greater DMV area, supporting the Army National Guard.
Lead enterprise endpoint engineering operations for workstations, mobile devices, and virtual desktop environments, defining configuration standards and lifecycle management strategies.
Design and enforce endpoint security baselines, STIG implementation plans, patch management frameworks, and hardening procedures to meet RMF/DoD/Army requirements.
Oversee endpoint management platforms (e.g., MECM, Intune): policy design, large-scale deployments, agent lifecycle, and configuration governance.
Direct vulnerability remediation coordination: validate patch strategies, manage agent updates, and ensure accurate compliance reporting.
Integrate endpoint services with Army 365, enterprise collaboration, and authentication architectures to enable secure user access and seamless operations.
Implement drift detection, performance optimization, automation, and remediation workflows to maintain baseline integrity and operational efficiency.
Produce and maintain documentation: baselines, runbooks, change logs, and audit evidence for accreditation and inspections.
Coordinate with SOC/CIRT, NOC, cybersecurity engineering, and application teams to support incident response and investigative activities involving endpoints.
Minimum of 8 years with BS/BA; Minimum of 6 years with MS/MA; Minimum of 3 years with PhD
Clearance: Active TS/SCI clearance.
Candidate must meet ONE of the following:
Master's degree or Ph.D. in Computer Science, Cybersecurity, Data Science, Information Systems, Information Technology, Software Engineering, or a related field; OR
Relevant DoD/military training (examples: M0923W1; Aβ102β5888; Aβ102β5599 (SNOOP); Cβ150β1401; Wβ150β4575; Sβ250β1095; Aβ531β0022; Aβ531β0009; Aβ531β0045; Aβ113β0381; Aβ113β0342; Aβ121β0594 (P/L); Aβ104β0084; Aβ150β4219 (P/L); Aβ150β9020 (P/L); Cβ531β0038); OR
Relevant professional certification or equivalent experience (examples: SecurityX/CASP+; CCNP Security; CCSP; FITSPβO; GFACT).
Required experience and skills:
Endpoint engineering, systems administration, or device management experience with at least 3 years leading enterprise endpoint programs.
Deep hands-on expertise with MECM (SCCM), Intune/Endpoint Manager, group policy, imaging/OS deployment, patch management, and EDR/AV integration.
Strong knowledge of DISA STIG application to endpoints, RMF/ATO evidence requirements, patching cycles, and compliance reporting workflows.
Proven ability to design and enforce secure baselines, implement automation for configuration drift remediation, and produce audit-quality documentation.
Experience coordinating cross-functional remediation with cybersecurity, SOC/CIRT, and application owners; strong troubleshooting and incident support skills.
Desired:
Prior DoD/ARNG endpoint management or classified environment experience.
Experience with VDI/Desktop virtualization platforms, mobile device management at scale, and endpoint hardening for multi-domain environments.
Background in scripting/automation (PowerShell, Python), telemetry integration, and tools for baseline validation and compliance dashboarding.
Peraton is a next-generation national security company that drives missions of consequence spanning the globe and extending to the farthest reaches of the galaxy. As the world's leading mission capability integrator and transformative enterprise IT provider, we deliver trusted, highly differentiated solutions and technologies to protect our nation and allies. Peraton operates at the critical nexus between traditional and nontraditional threats across all domains: land, sea, space, air, and cyberspace. The company serves as a valued partner to essential government agencies and supports every branch of the U.S. armed forces. Each day, our employees do the can't be done by solving the most daunting challenges facing our customers. Visit peraton.com to learn how we're keeping people around the world safe and secure.
$104,000 - $166,000. This represents the typical salary range for this position. Salary is determined by various factors, including but not limited to, the scope and responsibilities of the position, the individual's experience, education, knowledge, skills, and competencies, as well as geographic location and business and contract considerations. Depending on the position, employees may be eligible for overtime, shift differential, and a discretionary bonus in addition to base pay.
EEO: Equal opportunity employer, including disability and protected veterans, or other characteristics protected by law.