Sr. Cloud Threat Detection Engineer

2 weeks ago


NA, United States CrowdStrike, Inc. Full time

About the Role:

The CrowdStrike Cloud Content team is an integral part of the Content Product Group, tasked with the critical mission of safeguarding cloud environments through innovative detection and response capabilities. This specialized team comprises cloud security experts, researchers, and detection engineers in various time zones working in unison to ensure our customers’ cloud workloads are secure against the ever-changing threats in the security landscape. 

This role provides a unique opportunity to join a team with strategic importance to protecting our customers from emerging threats and novel attack methodologies in both cloud and Linux based environments. You will stay ahead of the curve with regards to the threat landscape and your research will directly impact the direction of the team and our product.

If you have a strong passion for security and technology, have an interest in supporting engineering projects, and want to gain real-world experience in dealing with advanced threat actors targeting cloud environments, we have a role for you
Your contributions will enable continuous improvement of CrowdStrike’s cloud detection capabilities ensuring that our customers can be secured with the most advanced security measures in place.

What You'll Do:

  • Develop, implement and optimize threat detection rules tailored to cloud runtime environments. Aim to detect and respond to activity as early in the killchain as possible

  • Rapid response to potential malicious campaigns or extensive exploitation cloud runtime resources post vulnerabilities disclosure

  • Conduct proactive threat hunting exercises to identify potential security gaps and emerging threats within cloud environments

  • Track and present threat detection findings, including recommended strategies or possible product improvements

  • Collaborate with cross functional teams: Work closely with various teams, including OverWatch, engineering, product management, detection engineering, and threat intelligence to drive cloud detections in the Crowdstrike Falcon platform

  • Stay abreast of the latest threat landscape and cloud security trends, continuously updating detection strategies to address emerging threats and vulnerabilities

  • As part of your role, you will be required to write and publish blog posts regularly and represent our company by speaking at various industry conferences to enhance our visibility and engagement with the community.

What You'll Need:

  • You have a good understanding of  Linux-based systems.

  • You have understanding of cloud-based infrastructure and cloud service models (IaaS, PaaS, Saas),

  • You can demonstrate experience in container/container orchestrator based intrusion analysis, detection development or malware analysis,

  • You are comfortable assessing cyber threat intelligence, open source intelligence or partner reporting,

  • You have a keen interest in the security research field (following subject matter expert blogs, building up static and dynamic analysis environment),

  • You have knowledge of programming and scripting languages, in particular Python or Bash,

  • You have experience with large scale data analysis,

  • You are capable and comfortable communicating information to both technical and nontechnical stakeholders,

  • You have a deep drive to “stop the bad guys”,

  • Good problem solving, communication, and teamwork skills.

Bonus Points Awarded For:

  • You have extensive experience in securing services operating on public cloud services (Azure, AWS, Google Cloud),

  • You have a good understanding of managed Kubernetes services (AKS, EKS, GKS),

  • Contributions to the open source community (GitHub, Stack Overflow, blogging)

  • Published research papers at conferences or through other mediums (blogs, articles)

#LI-NT1

#LI-Remote

PandoLogic. Category:Arts & Entertainment, Keywords:Music Arranger and Orchestrator, Location:AUSTIN, TX-78703

  • N/A, United States CrowdStrike, Inc. Full time

    About the Role:The CrowdStrike Cloud Content team is an integral part of the Content Product Group, tasked with the critical mission of safeguarding cloud environments through innovative detection and response capabilities. This specialized team comprises cloud security experts, researchers, and detection engineers in various time zones working in unison to...


  • N/A, United States CrowdStrike, Inc. Full time

    About the Role:The CrowdStrike Cloud Content team is an integral part of the Content Product Group, tasked with the critical mission of safeguarding cloud environments through innovative detection and response capabilities. This specialized team comprises cloud security experts, researchers, and detection engineers in various time zones working in unison to...


  • N/A, United States CrowdStrike, Inc. Full time

    About the Role: The CrowdStrike Next-Generation Security Information and Event Management (NG SIEM)  Response team is seeking an experienced and passionate professional to analyze threat actor tactics ranging from prevalent to the most obscure, and to drive efforts to mitigate them by implementing robust coverage. The team is focused on improving detection...


  • N/A, United States CrowdStrike, Inc. Full time

    About the Role:The CrowdStrike Next-Generation Security Information and Event Management (NG SIEM)  Response team is seeking an experienced and passionate professional to analyze threat actor tactics ranging from prevalent to the most obscure, and to drive efforts to mitigate them by implementing robust coverage. The team is focused on improving detection...


  • N/A, United States CrowdStrike, Inc. Full time

    About the Role: The CrowdStrike Next-Generation Security Information and Event Management (NG SIEM)  Response team is seeking an experienced and passionate professional to analyze threat actor tactics ranging from prevalent to the most obscure, and to drive efforts to mitigate them by implementing robust coverage. The team is focused on improving detection...

  • Sr. Engineer II

    2 weeks ago


    N/A, United States CrowdStrike, Inc. Full time

    About The Role:CrowdStrike is looking for a Sr. Cloud Engineer to join our growing Detections Platform team. The cloud side of the detections platform works in conjunction with on-endpoint code to detect security problems and incidents, automatically stop adversaries in their tracks, and provide actionable data to customers. We process massive amounts of...


  • N/A, United States CrowdStrike, Inc. Full time

    About the Role:Help us protect the Security Cloud from the most advanced threats!  As a Sr. Security Engineer in Product Security, you will work hand-in-hand as a Security Partner to product engineers designing and implementing new services across our various Product teams to ensure security is built-in from the start.  This highly dynamic, hands-on role...


  • N/A, United States CrowdStrike, Inc. Full time

    About the Role:Help us protect the Security Cloud from the most advanced threats!  As a Sr. Security Engineer in Product Security, you will work hand-in-hand as a Security Partner to product engineers designing and implementing new services across our various Product teams to ensure security is built-in from the start.  This highly dynamic, hands-on role...


  • N/A, United States CrowdStrike, Inc. Full time

    About the Role:Help us protect the Security Cloud from the most advanced threats!  As a Sr. Security Engineer in Product Security, you will work hand-in-hand as a Security Partner to product engineers designing and implementing new services across our various Product teams to ensure security is built-in from the start.  This highly dynamic, hands-on role...


  • N/A, United States CrowdStrike, Inc. Full time

    About the Role:CrowdStrike is looking for a Senior Software Engineer to join our growing Content Research & Integration Tactical team within the EndPoint Protection Content group, which focuses on vulnerability research, exploit mitigations, and security-related endpoint development on the Windows operating system. The Endpoint Protection Content group...


  • N/A, United States CrowdStrike, Inc. Full time

    About the Role:CrowdStrike is looking for a Senior Software Engineer to join our growing Content Research & Integration Tactical team within the EndPoint Protection Content group, which focuses on vulnerability research, exploit mitigations, and security-related endpoint development on the Windows operating system. The Endpoint Protection Content group...


  • N/A, United States CrowdStrike, Inc. Full time

    About the Role:The CrowdStrike Next-Generation Security Information and Event Management (NGSIEM)  Content Threat Research team is seeking an experienced and passionate security researcher to analyze threat actor tactics ranging from prevalent to the most obscure, and to drive efforts to mitigate them by implementing robust coverage. The team is focused on...

  • Sr. Engineer II

    3 weeks ago


    N/A, United States CrowdStrike, Inc. Full time

    About The Role:You’ll be joining the cloud backend team in the Platform product group responsible for managing thecustomer lifecycle and their product experience. Whenever a new customer onboards on the the Falconplatform, getting them operational could mean initializing them in our customer stores, setting uprequired policies, setting up management groups...


  • N/A, United States CrowdStrike, Inc. Full time

    About the Role:The CrowdStrike Cloud Content team is an integral part of the Content Product Group, tasked with the critical mission of safeguarding cloud environments through innovative detection and response capabilities. This specialized team comprises cloud security experts, researchers, and engineers in various time zones working in unison to ensure our...


  • N/A, United States CrowdStrike, Inc. Full time

    About the Role:Falcon Cloud Security (FCS) is a key product area for CrowdStrike. We’re extending CrowdStrike’s mission of “stopping breaches” into the public cloud and cloud-native workloads. CrowdStrike’s FCS Cloud Security Posture Management (CSPM) offering provides visibility into your entire cloud infrastructure, continuous monitoring for...

  • Senior Engineer

    1 day ago


    N/A, United States CrowdStrike, Inc. Full time

    About the Role:Falcon Cloud Security (FCS) is a key product area for CrowdStrike. We’re extending CrowdStrike’s mission of “stopping breaches” into the public cloud and cloud-native workloads. CrowdStrike’s FCS Cloud Security Posture Management (CSPM) offering provides visibility into your entire cloud infrastructure, continuous monitoring for...

  • Sr. Engineer, Cloud

    4 weeks ago


    N/A, United States CrowdStrike, Inc. Full time

    About the Role:Have you spent hours arguing about tabs versus spaces? Does correlating and analyzing data at massive trillions-of-events-per-day scale excite you? Do you care deeply about cybersecurity and want to play an active role in helping to secure organizations from cyberattacks? Hi, we’d like to meet you.We need a new senior engineer to join our...

  • Sr. Engineer, Cloud

    3 weeks ago


    N/A, United States CrowdStrike, Inc. Full time

    About the Role:Have you spent hours arguing about tabs versus spaces? Does correlating and analyzing data at massive trillions-of-events-per-day scale excite you? Do you care deeply about cybersecurity and want to play an active role in helping to secure organizations from cyberattacks? Hi, we’d like to meet you.We need a new senior engineer to join our...


  • N/A, United States CrowdStrike, Inc. Full time

    About the Role:Falcon Cloud Security (FCS) is a a key product area for CrowdStrike. We’re extending CrowdStrike’s mission of “stopping breaches” into the public cloud and cloud-native workloads. CrowdStrike’s FCS Cloud Security Posture Management (CSPM) offering provides visibility into your entire cloud infrastructure, continuous monitoring for...


  • N/A, United States CrowdStrike, Inc. Full time

    About the Role:Falcon Cloud Security (FCS) is a a key product area for CrowdStrike. We’re extending CrowdStrike’s mission of “stopping breaches” into the public cloud and cloud-native workloads. CrowdStrike’s FCS Cloud Security Posture Management (CSPM) offering provides visibility into your entire cloud infrastructure, continuous monitoring for...