Must Have Technical/Functional Skills
• 5+ years in detection engineering, threat hunting, or security operations.
• Deep expertise with CrowdStrike Falcon Endpoint, Next-Gen SIEM, CS IDP, FUSION, and SOAR platforms.
• Strong experience with cloud security (AWS, Azure).
• Proficiency in CrowdStrike Query Language (FQL/CQL) and scripting (Python, PowerShell).
• Proven ability to troubleshoot CrowdStrike sensor issues, agent health, and platform integration.
• Familiarity with MITRE ATT&CK, NIST 800-53, and modern detection frameworks.
• Expertise in Cribl and/or Cribl-like data optimization tools
• CrowdStrike certifications (e.g., CCFA, CCFH)
• Experience with threat intelligence platforms and adversary emulation.
• Familiarity with CI/CD pipelines, detection-as-code, and infrastructure-as-code practices Roles & Responsibilities
• Detection Engineering & Threat Monitoring
• Develop and maintain high-fidelity detection rules using CrowdStrike Falcon, Next-Gen SIEM, and FUSION.
• Leverage CS IDP to detect identity-based threats and lateral movement.
• Write and optimize queries using CrowdStrike Query Language (FQL/CQL) for threat hunting and detection
• validation.
• Build and tune detections for cloud environments (AWS, Azure, GCP) and integrate with cloud-native logging tools.
• Strong Experience in data engine tools like Cribl for SIEM integration, data processing, normalization, and enrichment to enhance SIEM capabilities.
• CrowdStrike Ecosystem Ownership
• Function as the primary SME for CrowdStrike, including Falcon, IDP, FUSION, and related modules.
• Troubleshoot and resolve sensor deployment issues, agent health problems, and telemetry gaps.
• Serve as the escalation point for CrowdStrike-related errors, automation failures, and detection tuning.
• Collaborate with CrowdStrike support and engineering teams to resolve complex issues and optimize platform performance.
• SOAR Automation & Incident Response
• Design and implement automated response playbooks using SOAR platforms to reduce dwell time and automate/streamline triage.
• Integrate detection outputs with incident response and/or other compliance frameworks as required.
• Threat Modeling & Use Case Development&nbs p;
• Conduct threat modeling for enterprise systems, cloud platforms, and business-critical applications.
• Translate MITRE ATT&CK techniques into actionable detection logic and use cases.
• Collaboration & Mentorship
• Work closely with infrastructure, compliance, and security operations teams to ensure secure operations.
• Mentor junior engineers and analysts on detection engineering, query development, and CrowdStrike best practices
• Knowledge of cybersecurity frameworks and best practices. Generic Managerial Skills, If any
• Team management skills
• Strong analytical and problem-solving skills.
• Excellent communication with both technical and non-technical stakeholders.
• Ability to work independently in a fast-paced environment.
...by trying new ideas.Accountability: Adapt We own our results.Integrity: We do the right thing.What You'll Do: The Academic Records Manager is a working leadership role and responsibilities evolve as the campus grows. They work closely with the campus leadership team...
...environment! We are seeking an experienced material handler (forklift operator experience is helpful), in a steel production / manufacturing... ...equipment. What's in it for you? Great Benefits Paid training Full time hours - 1st shift (8:00 am - 5:00 pm) Clean...
...the DGDG family, is looking for talented sales professionals to join their team. If... ...culture and cutting-edge technology. We seek automotive professionals who think differently and... ...our employees succeed. Position: General Manager As a General Manager , you will be...
...Why USAA? At USAA, our mission is to empower our members to achieve financial security through highly competitive products, exceptional service and trusted advice. We seek to be the #1 choice for the military community and their families. Embrace a fulfilling career...
...Job Description Job Description AKIRA Fashion Stylist In 2002, AKIRA opened the doors to its first women's clothing boutique in Chicago. Since then, the company has extended its reach to 35+ stores across the United States, as well as a thriving eCommerce business...