Athenix Solutions Group · 6 hours ago
Data Protection Engineer (Trellix), Zero Trust Program (USSOCOM)-Senior Level
Athenix Solutions Group is seeking a specialized Data Protection Engineer (Trellix) for a major Zero Trust transformation at U.S. Special Operations Command (USSOCOM). The role involves designing, deploying, and managing the Trellix Data Loss Prevention suite to secure classified environments against insider threats and accidental data loss.
Software
Responsibilities
Lead the design and configuration of Trellix DLP Endpoint policies within the ePolicy Orchestrator (ePO) on SIPR and Top-Secret networks to monitor and block unauthorized data transfer vectors (USB, Web, Print, Clipboard)
Create and refine complex data classification rules and regex patterns to identify specific USSOCOM sensitive data types, actively tuning policies to reduce false positives and transition from "Audit" to "Block" mode
Manage the unique lifecycle of the ePO environment on the Top-Secret network, including the manual "sneaker-net" transfer of policy updates, agent patches, and threat intelligence definitions
Configure ICAP integration between Trellix and other security components (such as Kiteworks or Web Proxies) to extend DLP inspection to network traffic and file transfers
Serve as the Tier 3 escalation point for DLP incidents, analyzing blocked actions and working with the SOC/SIEM team to ensure alerts are properly ingested into Splunk
Qualification
Required
Must be a U.S. Citizen
Active Top-Secret clearance with SCI eligibility
Master of Science (MS) degree in Computer Science, Cybersecurity, Information Technology, or a related field
10+ years of related technical experience
Extensive (5+ years) hands-on experience architecting and administering Trellix (McAfee) ePolicy Orchestrator (ePO) and Data Loss Prevention (DLP) Endpoint products
Deep understanding of Device Control policies for managing removable storage, peripheral devices, and printing in a secure environment
Proficiency in creating custom data identifiers using Regular Expressions (Regex) and dictionaries to detect sensitive information
Proven ability to troubleshoot complex agent-based issues on Windows endpoints, including conflict resolution with other security software
CompTIA Security+ CE (or higher) to meet DoD 8570 IAT Level II requirements
Preferred
Experience working in Air-Gapped or isolated network environments (e.g., JWICS, SAPs)
Knowledge of Trellix Endpoint Security (ENS) and Threat Intelligence Exchange (TIE/DXL)
Familiarity with Kiteworks or Boldon James for data classification integration
Experience with Splunk for log analysis and dashboarding
Trellix Certified Specialist - Data Loss Prevention (DLP) or equivalent McAfee certification
Company
Athenix Solutions Group
For Missions That Cannot Fail Athenix Solutions Group is focused exclusively on serving the Intelligence Community, DoD Cyber, Special Operations, and others who operate at the edge.