
Senior Security Engineer - Crowdstrike
UltraViolet Cyber1 month ago
Base Salary
$135k - $150k/yr
Responsibilities
- Lead cross-tool security engineering efforts and advise on closing detection and reporting gaps across multiple platforms.
- Diagnose and resolve visibility and reporting gaps caused by deprecated, replaced, or reconfigured security tools.
- Design, implement, and document data flows and integration points across endpoint protection, SIEM, and other security tools.
- Build and tune detection logic, correlation searches, dashboards, and cross-tool reporting workflows.
- Lead security tool transition and migration work without losing detection or reporting coverage.
- Integrate CrowdStrike, Splunk, Cribl, CyberArk, Suricata, Tenable, Tanium, Thales, CASB, Trellix, Axonius, and other security tools.
- Develop automation and API-based correlation workflows to reduce manual reporting and analysis.
- Support threat hunting, incident response, endpoint and platform security compliance, and security-tool documentation.
- Serve as the primary point of contact for cross-tool security engineering issues.
Requirements
- Ability to attain DHS EOD and pass a federal background investigation; US citizenship is required.
- Master's degree or equivalent plus 12 years of relevant experience.
- Hands-on experience across multiple security tool categories, such as endpoint/EDR, SIEM, vulnerability management, and network detection.
- Hands-on experience administering, developing detections for, or responding with an EDR or endpoint platform such as CrowdStrike Falcon.
- Hands-on Splunk or equivalent SIEM experience, including searches, correlation searches, dashboards, and reporting development.
- Experience correlating and integrating data across disparate security platforms to close visibility, detection, or reporting gaps.
- Proficiency with Python, PowerShell, or similar scripting and automation tools for data pipelines and API integrations.
- Experience owning security-tool deprecation or migration while preserving detection and reporting coverage.
- Strong written and verbal communication, customer orientation, organization, initiative, and composure under pressure.
- Preferred qualifications include federal security operations center experience, CISSP, GIAC, or Security+ certifications, CrowdStrike cloud workload protection experience, CISA directive and CDM knowledge, threat hunting and advanced persistent threat detection experience, security orchestration and automation experience, and Zero Trust Architecture familiarity.
Benefits
- 401(k) with an employer match of 100% of the first 3% contributed and 50% of the next 2% contributed.
- Medical, dental, and vision insurance available on the first day of the month following the first day of employment.
- Group term life, short-term disability, and long-term disability insurance.
- Voluntary life, hospital indemnity, accident, and critical illness coverage.
- Discretionary Time Off program and 11 paid holidays annually.
- Hybrid work model with three days per week onsite near National Harbor, Maryland.
- Participation in an on-call rotation for security incident response.