Jobs

Be a part of it. Join the #AccelFamily

Sr. Cloud Threat Detections Engineer (Remote)

CrowdStrike

CrowdStrike

Multiple locations
Posted on Thursday, May 16, 2024

​​#WeAreCrowdStrike and our mission is to stop breaches. As a global leader in cybersecurity, our team changed the game. Since our inception, our market leading cloud-native platform has offered unparalleled protection against the most sophisticated cyberattacks. We’re looking for people with limitless passion, a relentless focus on innovation and a fanatical commitment to the customer to join us in shaping the future of cybersecurity. Consistently recognized as a top workplace, CrowdStrike is committed to cultivating an inclusive, remote-first culture that offers people the autonomy and flexibility to balance the needs of work and life while taking their career to the next level. Interested in working for a company that sets the standard and leads with integrity? Join us on a mission that matters - one team, one fight.

About the Role:

The CrowdStrike Cloud Content team is an integral part of the Content Product Group, tasked with the critical mission of safeguarding cloud environments through innovative detection and response capabilities. This specialized team comprises cloud security experts, researchers, and detection engineers in various time zones working in unison to ensure our customers’ cloud workloads are secure against the ever-changing threats in the security landscape.

This role provides a unique opportunity to join a team with strategic importance to protecting our customers from emerging threats and novel attack methodologies in both cloud and Linux based environments. You will stay ahead of the curve with regards to the threat landscape and your research will directly impact the direction of the team and our product.

If you have a strong passion for security and technology, have an interest in supporting engineering projects, and want to gain real-world experience in dealing with advanced threat actors targeting cloud environments, we have a role for you!


Your contributions will enable continuous improvement of CrowdStrike’s cloud detection capabilities ensuring that our customers can be secured with the most advanced security measures in place.

What You'll Do:

  • Develop, implement and optimize threat detection rules tailored to cloud runtime environments. Aim to detect and respond to activity as early in the killchain as possible

  • Rapid response to potential malicious campaigns or extensive exploitation cloud runtime resources post vulnerabilities disclosure

  • Conduct proactive threat hunting exercises to identify potential security gaps and emerging threats within cloud environments

  • Track and present threat detection findings, including recommended strategies or possible product improvements

  • Collaborate with cross functional teams: Work closely with various teams, including OverWatch, engineering, product management, detection engineering, and threat intelligence to drive cloud detections in the Crowdstrike falcon platform

  • Stay abreast of the latest threat landscape and cloud security trends, continuously updating detection strategies to address emerging threats and vulnerabilities

  • As part of your role, you will be required to write and publish blog posts regularly and represent our company by speaking at various industry conferences to enhance our visibility and engagement with the community

What You'll Need:

  • You have an excellent understanding of Linux-based systems

  • You have understanding of cloud-based infrastructure and cloud service models (IaaS, PaaS, Saas)

  • You can demonstrate experience in container/container orchestrator based intrusion analysis, detection development or malware analysis

  • You are comfortable assessing cyber threat intelligence, open source intelligence or partner reporting

  • You have a keen interest in the security research field (following subject matter expert blogs, building up static and dynamic analysis environment)

  • You have knowledge of programming and scripting languages, in particular Python or Bash

  • You have experience with large scale data analysis,

  • You are capable and comfortable communicating information to both technical and nontechnical stakeholders

  • You have a deep drive to “stop the bad guys”

  • Good problem solving, communication, and teamwork skills.

Bonus Points:

  • You have extensive experience in securing services operating on public cloud services (Azure, AWS, Google Cloud),

  • You have a good understanding of managed Kubernetes services (AKS, EKS, GKS),

  • Contributions to the open source community (GitHub, Stack Overflow, blogging)

  • Published research papers at conferences or through other mediums (blogs, articles)

#LI-DM1

#LI- REMOTE

Benefits of Working at CrowdStrike:

  • Remote-first culture

  • Market leader in compensation and equity awards with option to participate in ESPP in eligible countries

  • Competitive vacation and flexible working arrangements

  • Physical and mental wellness programs

  • Paid parental leave, including adoption

  • A variety of professional development and mentorship opportunities

  • Access to CrowdStrike University, LinkedIn Learning and Jhanna

  • Offices with stocked kitchens when you need to fuel innovation and collaboration

  • Birthday time-off in your local country

  • Work with people who are passionate in our mission and Great Place to Work certified across the globe

We are committed to fostering a culture of belonging where everyone feels seen, heard, valued for who they are and empowered to succeed. Our approach to cultivating a diverse, equitable, and inclusive culture is rooted in listening, learning and collective action. By embracing the diversity of our people, we achieve our best work and fuel innovation - generating the best possible outcomes for our customers and the communities they serve.

CrowdStrike is committed to maintaining an environment of Equal Opportunity and Affirmative Action. If you need reasonable accommodation to access the information provided on this website, please contact [email protected], for further assistance.