Threat Detection Engineer Job at CrowdStrike, Inc., Austin, TX

UndHZmRIWVRVbGhHRjRzZjRGd2dWb3h1Tnc9PQ==
  • CrowdStrike, Inc.
  • Austin, TX

Job Description

Salary: $180,000 - 220,000 per year Requirements:

  • We are looking for candidates with experience in several of the following areas:
  • A minimum of 3 years of experience as a detection engineer, security engineer, security analyst, threat intelligence analyst, or a related discipline.
  • Knowledge of current cyber threats and methods for detecting them using SIEM and relevant technologies.
  • Relevant industry certifications, such as GCFA, GCDA, GCIH, etc.
  • Experience analyzing large datasets across a variety of vendors.
  • Proficiency in working with various SIEM solutions, including LogScale, Splunk, SumoLogic, Sentinel, QRadar, LogRhythm, etc.
  • A proven ability to write code and utilize regular expressions.
  • Willingness to participate in a Detection Engineer handler rotation.
  • Strong attention to detail and effective communication skills.
Responsibilities:
  • In this role, I will assign you to perform threat research and engage in threat hunting to identify emerging tactics, techniques, and procedures (TTPs) and develop detection requirements using an intelligence-driven approach. You will be tasked with developing, testing, and deploying actionable, high-fidelity CrowdStrike Next-Gen SIEM detection rules to support our elite Managed Detection and Response team. Additionally, you will conduct code reviews and testing to ensure the quality and fidelity of detection rules. You'll leverage Continuous Integration/Continuous Deployment (CI/CD) best practices to deploy detection rule logic at scale. Collaboration with Security Analysts will be essential as you create playbooks for triage and response regarding actionable high-fidelity detections. Furthermore, you will work alongside SIEM architects to establish best practices for parsing and normalizing data into a common event schema, as well as build and maintain utilities and tools that enable our managed services team to operate efficiently and at scale. Finally, you will be responsible for developing and maintaining processes and documentation.
Technologies:
  • CI/CD
  • Support
  • Security
  • Splunk

More:

The CrowdStrike Managed Services team provides the chance to enhance your skills through a diverse range of experiences in building detection rules, tools, and infrastructure that support Falcon Complete Next-Gen SIEM. As a Detection Engineer on our Falcon Complete team, you will collaborate with internal CrowdStrike teams to deliver high-fidelity detections based on both CrowdStrike and third-party telemetry, empowering the Falcon Complete Next-Gen MDR team. The ideal candidate will demonstrate a strong technical skill set focused on delivering value to our customers and ensuring a successful experience with Falcon Complete.

Job Tags

Full time,

Similar Jobs

Waypoint Human Capital

Air and Missile Defense (AMD) TIS SW Development Team Product Owner (PO) Job at Waypoint Human Capital

 ...Position Title: Air and Missile Defense (AMD) TIS SW Development Team Product Owner (PO) Position Type: Full-time, On-Site Location: Huntsville, AL Clearance: Secret Description : Waypoints client is seeking an Air and Missile Defense (AMD) TIS (Track... 

Placements USA LLC

Interventional Cardiologist Job at Placements USA LLC

 ...We have an exciting opportunity available for a BC/BE Interventional Cardiologist to join our progressive and thriving, large multidisciplinary practice with 4 locations in Southeast New Mexico. This experienced team of 14 providers and 100+ member support staff is... 

CBH Homes

Experienced Electrician Apprentice Job at CBH Homes

 ...to take your electrical career to the next level? Icon Electric is looking for dedicated and enthusiastic Experienced Electrician Apprentices to join our team! This role is ideal for individuals who have some background in electrical work and are eager to expand their... 

Property Claim Professionals

MULTI-LINE ADJUSTER - ILLINOIS Job at Property Claim Professionals

 ...supplying quality claims outsource solutions to insurance carriers, countrywide is seeking multi-line adjusters in your area. There are many competing vendors...  ...policyholders. Position Summary: A national independent insurance adjusting firm has immediate openings... 

General Dynamics Information Technology

Cybersecurity Engineer - Washington Job at General Dynamics Information Technology

 ...you with the responsibility of safeguarding our clients' operations by: Conceptualizing, designing, implementing, and maintaining Splunk infrastructure solutions. Supporting systems integration involving hardware, software, operating systems, and communication...