UltraViolet Cyber

Senior Security Engineer - Crowdstrike

UltraViolet Cyber
Apply
1 month ago
Washington, DC, USASenior
H1B sponsor

Base Salary

$135k - $150k/yr

Responsibilities

  • Lead cross-tool security engineering efforts and advise on closing detection and reporting gaps across multiple platforms.
  • Diagnose and resolve visibility and reporting gaps caused by deprecated, replaced, or reconfigured security tools.
  • Design, implement, and document data flows and integration points across endpoint protection, SIEM, and other security tools.
  • Build and tune detection logic, correlation searches, dashboards, and cross-tool reporting workflows.
  • Lead security tool transition and migration work without losing detection or reporting coverage.
  • Integrate CrowdStrike, Splunk, Cribl, CyberArk, Suricata, Tenable, Tanium, Thales, CASB, Trellix, Axonius, and other security tools.
  • Develop automation and API-based correlation workflows to reduce manual reporting and analysis.
  • Support threat hunting, incident response, endpoint and platform security compliance, and security-tool documentation.
  • Serve as the primary point of contact for cross-tool security engineering issues.

Requirements

  • Ability to attain DHS EOD and pass a federal background investigation; US citizenship is required.
  • Master's degree or equivalent plus 12 years of relevant experience.
  • Hands-on experience across multiple security tool categories, such as endpoint/EDR, SIEM, vulnerability management, and network detection.
  • Hands-on experience administering, developing detections for, or responding with an EDR or endpoint platform such as CrowdStrike Falcon.
  • Hands-on Splunk or equivalent SIEM experience, including searches, correlation searches, dashboards, and reporting development.
  • Experience correlating and integrating data across disparate security platforms to close visibility, detection, or reporting gaps.
  • Proficiency with Python, PowerShell, or similar scripting and automation tools for data pipelines and API integrations.
  • Experience owning security-tool deprecation or migration while preserving detection and reporting coverage.
  • Strong written and verbal communication, customer orientation, organization, initiative, and composure under pressure.
  • Preferred qualifications include federal security operations center experience, CISSP, GIAC, or Security+ certifications, CrowdStrike cloud workload protection experience, CISA directive and CDM knowledge, threat hunting and advanced persistent threat detection experience, security orchestration and automation experience, and Zero Trust Architecture familiarity.

Benefits

  • 401(k) with an employer match of 100% of the first 3% contributed and 50% of the next 2% contributed.
  • Medical, dental, and vision insurance available on the first day of the month following the first day of employment.
  • Group term life, short-term disability, and long-term disability insurance.
  • Voluntary life, hospital indemnity, accident, and critical illness coverage.
  • Discretionary Time Off program and 11 paid holidays annually.
  • Hybrid work model with three days per week onsite near National Harbor, Maryland.
  • Participation in an on-call rotation for security incident response.

Tech Stack

PowerShellPythonSplunk

Categories

UltraViolet Cyber

About UltraViolet Cyber

501-1,000 employees
Contact me