Palantir

Information Security Engineer - Endpoint

Palantir
Apply
5 months ago
Washington, DC, USASenior

Base Salary

$145k - $200k/yr

Responsibilities

  • Own and continuously validate the security posture, hardening standards, and configuration of Palantir’s Windows and Active Directory estate.
  • Audit and remediate Active Directory misconfigurations, legacy protocol exposure, excessive privileges, Kerberos delegation abuse, and tier-model violations.
  • Evaluate, deploy, and manage EDR, PAM, identity threat detection, and endpoint-hardening controls.
  • Build and maintain automation for patching, configuration-drift monitoring, access reviews, and credential hygiene.
  • Partner with Identity and Infrastructure teams on tiered administration, Protected Users, LAPS, Credential Guard, PAM trusts, and authentication policy silos.
  • Convert assessment and red-team findings into durable configuration, architectural, and policy improvements.
  • Conduct prevention, detection, and investigation of security events across the Windows environment.

Requirements

  • At least 5 years of hands-on security experience, with most experience focused on Windows environments and Active Directory.
  • Deep working knowledge of Active Directory architecture, including replication, trusts, delegation, LDAP schema, and attack detection across the kill chain.
  • Thorough understanding of Windows security architecture, internals, kernel structures, driver behavior, and undocumented APIs.
  • Experience writing high-fidelity detection logic, building ETW-based telemetry pipelines, and leading complex incident response investigations.
  • Strong Windows disk, memory, and network forensics fundamentals.
  • Proficiency in Python or PowerShell for detection development, automation, and forensic tooling.
  • Active TS/SCI security clearance or eligibility and willingness to obtain one.
  • A portfolio of real work, such as written detections, published research, built tools, or led incident investigations.
  • Experience with Entra ID (Azure AD), hybrid identity architectures, adversary simulation, red teaming, offensive security research, or public security contributions is valued.

Benefits

  • Medical, dental, vision, and voluntary life insurance options are available for employees and eligible dependents.
  • Employees receive basic life, AD&D, and disability insurance coverage.
  • Commuter benefits are provided.
  • Take-what-you-need paid time off is offered, along with two additional weeks of year-end paid time off subject to team and business needs.
  • Ten paid holidays are provided annually.
  • Supportive leave programs include military and medical leave.
  • Paid leave for new parents, subsidized backup care, fertility and family-building benefits, and a new-child expense stipend are available.
  • Employees can enroll in Palantir’s 401(k) plan.
  • The company encourages in-office work; many teams offer hybrid arrangements of one or two work-from-home days per week, while exceptional remote roles require working from the state of employment.

Tech Stack

PowerShellPythonWindows

Categories

Palantir

About Palantir

1,001-5,000 employees

AI-powered automation for every decision. At Palantir, our software powers AI-driven decisions in critical government and commercial enterprises in the West, from the factory floors to the front lines. Our platforms feature advanced tools for data protection, governance, responsible use of AI, and civilian protection capabilities for defense applications. Dominate your most complex problems with Palantir.

Contact me