Position: CrowdStrike EngineerLocation: RemotePosition Type: Fulltime Key Roles and Responsibilities Identity Threat Monitoring: Monitor and analyze user behaviour, Active Directory (AD) activity, and authentication logs todetect anomalies, such as credential theft or lateral movement. Implementation & Configuration: Deploy and configure CrowdStrike Falcon Identity Protection modules across hybrid and cloud environments (Entra ID, Okta). Incident Response: Investigate identity-based attacks (e.g., Kerb roasting, Pass-the-Hash, Golden Ticket) and execute containment actions. Policy & Posture Management: Establish and maintain security policies, strengthen identity security posture, and remove unnecessary standing privileges. Automation: Develop and build Falcon Fusion SOAR playbooks to automate responses to identity threats. Collaboration: Work with security operations (SOC), IAM teams, and stakeholders to improve overall security, often acting as a bridge between IT and security teams. CrowdStrike Required Skills and Expertise CrowdStrike Platform: Strong hands-on experience with CrowdStrike Falcon Identity Protection (or similar ITDR tools). Identity Infrastructure: Deep understanding of Active Directory (AD) and cloud identity providers (Entra ID/Azure AD, Okta). Threat Intelligence: Knowledge of adversary tactics, techniques, and procedures (TTPs) related to identity attacks. Security Frameworks: Familiarity with MITRE ATT&CK framework, particularly techniques covering lateral movement and credential access. Scripting & Automation: Experience with Python or PowerShell to streamline detection and remediation processes. Analytical Skills: Ability to analyze large sets of data, logs, and telemetry to identify indicators of compromise (IoCs). CrowdStrike Experience and Qualifications
Years of Experience: Typically, 6+ years of experience in cybersecurity operations, specializing in identity, EDR, or threat hunting.
Education: Bachelor's degree in computer science, Information Security, or a related field.
Position: CrowdStrike EngineerLocation: RemotePosition Type: Fulltime Key Roles and Responsibilities Identity Threat Monitoring: Monitor and analyze user behaviour, Active Directory (AD) activity, and authentication logs todetect anomalies, such as credential theft or lateral movement. Implementation & Configuration: Deploy and configure CrowdStrike Falcon Identity Protection modules across hybrid and cloud environments (Entra ID, Okta). Incident Response: Investigate identity-based attacks (e.g., Kerb roasting, Pass-the-Hash, Golden Ticket) and execute containment actions. Policy & Posture Management: Establish and maintain security policies, strengthen identity security posture, and remove unnecessary standing privileges. Automation: Develop and build Falcon Fusion SOAR playbooks to automate responses to identity threats. Collaboration: Work with security operations (SOC), IAM teams, and stakeholders to improve overall security, often acting as a bridge between IT and security teams. CrowdStrike Required Skills and Expertise CrowdStrike Platform: Strong hands-on experience with CrowdStrike Falcon Identity Protection (or similar ITDR tools). Identity Infrastructure: Deep understanding of Active Directory (AD) and cloud identity providers (Entra ID/Azure AD, Okta). Threat Intelligence: Knowledge of adversary tactics, techniques, and procedures (TTPs) related to identity attacks. Security Frameworks: Familiarity with MITRE ATT&CK framework, particularly techniques covering lateral movement and credential access. Scripting & Automation: Experience with Python or PowerShell to streamline detection and remediation processes. Analytical Skills: Ability to analyze large sets of data, logs, and telemetry to identify indicators of compromise (IoCs). CrowdStrike Experience and Qualifications
Years of Experience: Typically, 6+ years of experience in cybersecurity operations, specializing in identity, EDR, or threat hunting.
Education: Bachelor's degree in computer science, Information Security, or a related field.