at CrowdStrike, Inc. in Springfield, Illinois, United States
Job Description
CrowdStrike, Inc.Full time
R19358
About the Role:
Come join the CrowdStrike Platform Operations team and join our mission to protect our most critical customers. The Resident Responder Consultant is responsible for providing dedicated support to customers with implementation, ongoing operational support, threat hunting, and incident response functions using the CrowdStrike platform and related technologies. The Resident Responder Consultant will act as an oversight and technical escalation point for customer security operations center (SOC) team using CrowdStrike and related technologies as well as having responsibility for planning, optimizing, maintaining, and follow on support for the CrowdStrike platform and associated applications.
Specific Opportunity Information:
Onsite
Secret Clearance
Background and drug testing are required
What You’ll Do:
Advise customer of Cloud Security best practices, Cloud Security Configuration, and integration to meet business requirements
Design, implement, and configure SIEM solutions to collect, correlate, and analyze security events and logs from various sources.
Gather and support log sources into Elastic, creating custom detections to help expand holistic security posture visibility
Help customers build and mature their security operations and threat detection and response capabilities
Develop and maintain correlation rules, filters, and dashboards to improve the accuracy and efficiency of threat detection
Align cloud configurations and log sourcing for best practices
Guide customers by researching and assessing customer threats and indicators of compromise
Create reporting dashboards based on cloud platform security events
Act as escalation point cloud platform inquiries and issues
Review current cloud and SIEM environments to address any performance and security objectives, gaps, and/or opportunities
Optimizes, configures, and tests cloud and SIEM technology deployment to assist with custom detection and dashboard creation as well as log ingestion
Work closely and collaboratively onsite with customer security and information technology teams
Leverage APIs, builds scripts, and develop processes to support SIEM configuration
Act as the technical and/or senior level interface for customer concerns or escalations
Maintain awareness of customer environment for upcoming technologies and features releases to assist customer with adoption and operationalizing into their security operations process
What You’ll Need:
Bachelor’s degree, in Computer Science, Information Technology, Cybersecurity or a related field, and/or equivalent military or work experience.
Currently have or can obtain necessary security clearances, per customer requirement
5+ years of experience with SIEM administration, configuration, and management
3+ years of client-facing consulting experience
Highly knowledgeable on Windows, Mac, and Linux platforms as well as cloud environments such as AWS, GCP, and Azure
Working knowledge of Micros
PI243328453
CrowdStrike, Inc. is an Equal Opportunity Employer and does not discriminate against any applicants for employment based on their race, color, religion, sex (including pregnancy, sexual orientation, or gender identity), national origin, age, physical or mental disability, genetic information, veteran status, uniformed service member status, or any other status protected by law.