We are seeking a highly skilled Cybersecurity Technical Lead to design, implement, and optimize our next-generation security operations framework. The ideal candidate will be a subject matter expert in the CrowdStrike Falcon platform, specifically leveraging EDR, Next-Gen SIEM, and SOAR to create a unified, automated defense posture.
Requirements
- Platform Architecture: Lead the architectural design and lifecycle management of the Falcon ecosystem.
- CrowdStrike EDR: Extensive engagement with EDR, continuous policy tuning, expert specialist, real time response, build custom IOA, specialist is Behavioral Analytical Thinking.
- Next-Gen SIEM & Log Management: Design and optimize CrowdStrike Next-Gen SIEM. Create custom parsers, complex queries, and dashboards to provide real-time visibility across multi-cloud and on-prem environments.
- Automation & Orchestration: Build and maintain sophisticated SOAR (Falcon Fusion/Workflow) playbooks to automate repetitive tasks, reduce Mean Time to Respond (MTTR), and streamline incident escalation.
- MITRE ATT&CK Mapping: The ability to map Falcon detections to specific adversary tactics and techniques to understand the full scope of an intrusion.
- Data Security Integration: Work with stakeholders to implement DLP and DSPM strategies. Ensure that sensitive data is identified, mapped, and protected across SaaS, Cloud, and Endpoint environments.
- Cloud technology: Understanding of cloud technology & should understand core services deeply.
- Threat Modeling: Conduct architectural threat modeling to identify gaps in detection coverage and recommend specific CrowdStrike modules or third-party integrations to mitigate risks.
- Policy Governance: Define and enforce security configuration standards (prevention policies, USB device control, firewall management) across the global endpoint fleet.
Benefits
- Generous Paid Time Off
- 401k Matching
- Retirement Plan
- Visa Sponsorship
- Four Day Work Week
- Generous Parental Leave
- Tuition Reimbursement
- Relocation Assistance
