Cybersecurity Engineer - Endpoint (Technical Analyst)
Guidehouse · ARLINGTON, VA
$98,000–$163,000from the description
Jul 24, 2026
ARLINGTON, VA
Jul 25, 2026
What this job asks for AI summary
A senior-level cybersecurity engineering role supporting federal clients, focused on configuring, operating, and maintaining security tools within DoD environments while adhering to the NIST Risk Management Framework. Day-to-day work spans areas such as endpoint security, vulnerability management, SIEM operations, Zero Trust architecture, and incident response. Suited to candidates with an active Top Secret clearance and hands-on experience across enterprise security technologies and compliance standards.
Senior level · 4+ years · Bachelor's required · TS/SCI clearance · Full-time
“or” means any one of them counts — you don't need all of them.
We read this from the posting text with AI. Skim the description below before ruling yourself out.
How this req sits in the market our data
Rare in this occupation — lead with these, and say what you built with them.
Most people in this occupation already list these. Still required — just not what gets you shortlisted.
What the occupation pays Median $132,021 (middle half $99,961–$167,095). This posting is about at that midpoint.
Estimated from BLS employment for this occupation and area, per-skill prevalence across our listing corpus, and published wage benchmarks — as of Jul 28, 2026. It is a model, not a headcount.
Why we read it this way (9)
No specific work location or metro area is stated in the posting; the role is at a federal consulting firm (Guidehouse) and likely requires on-site presence at a federal client site given the active TS/SCI clearance requirement and up to 10% travel.
The clearance requirement is stated as 'Active Top Secret (TS) with SCI eligibility' — mapped to TopSecretSci.
The endpoint management tools (Microsoft Intune, VMware Workspace ONE, Tanium, CrowdStrike, SentinelOne) are listed as a single 'proven experience' requirement with 'e.g.' framing, indicating any one of these satisfies the requirement; they are captured as alternatives on the primary skill.
Cloud platforms (AWS, Azure, GCP) are listed together as a single required bullet; AWS is the primary with Azure and GCP as alternatives, but all three are also emitted individually as required since the posting lists them as a group without 'or' language — the 'or similar' rule does not strictly apply here.
The role title is 'Cybersecurity Engineer – Technical Analyst' with no explicit seniority level word; the title states no level. The 4-year minimum and scope of responsibilities (leading cross-functional teams, advising on advanced initiatives) support a Senior classification.
SOC confidence is Medium: the role blends hands-on security engineering/tool operations (which could lean 15-1244) with security analysis and compliance (15-1212). The primary framing as a cybersecurity analyst/consultant with SIEM, vulnerability management, and incident response duties tips it to 15-1212.
Certifications (CISM, CAP/CGRC, AWS Certified Security, Microsoft Cybersecurity Architect Expert, PMP, SAFe) are listed under 'What Would Be Nice To Have' and are preferred, not required. PMP/SAFe are captured as a preferred skill pair.
Ignored 1 non-technology phrase(s) as skills (responsibilities/concepts, not named tools): NIST SP 800-53.
Requires a TS/SCI clearance — the cleared population is a small fraction of this occupation, so the real candidate pool is materially smaller than the estimate below, which does not model clearance.
Read the full posting
The employer publishes the full description on their own site — read it there ↗. Or sign in to read it here — it's free, and it also lets you track this application.