CrowdStrike Falcon Engineer
CrowdStrike Falcon Engineer
REMOTE (East coast work hours)
12+ month contract, potential extension
Description:
The CrowdStrike Engineer will support a large team of infrastructure, security and application team during migration of on-prem and cloud applications to the client Azure Government enclave. As a CrowdStrike Engineer, you will be responsible for leading the configuration, implementation, optimization, and ongoing management of CrowdStrike Falcon. You will also serve as the go-to expert for CrowdStrike best practices, troubleshooting, and advanced threat analysis.
This role requires a deep understanding of endpoint protection, security operations, and advanced threat detection techniques. This role will also support the security assessment and authorization/ ATO team and provide input for security audits. He/She will be working closely with the SOC and incident response teams to investigate incidents.
Task Description:
- Experience with implementation, configuration, and optimization of CrowdStrike Falcon platform across endpoints and cloud environments.
- Act as the primary technical resource for all CrowdStrike-related inquiries, troubleshooting, and advanced configurations.
- Monitor CrowdStrike Console and conduct in-depth analysis of security alerts and incidents, providing actionable intelligence and recommended remediation steps.
- Provide expert-level guidance on threat detection, incident response, and forensics using the CrowdStrike platform.
- Collaborate with the SOC, respond to security alerts and provide real-time analysis of cybersecurity incidents.
- Collaborate with security teams to integrate CrowdStrike Falcon with other security technologies such as SIEM.
- Monitor and assess the performance of CrowdStrike Falcon, identifying opportunities for improvement and fine-tuning the system for optimal efficiency.
- Participate in security audits, vulnerability assessments, and incident response exercises.
Required Qualifications:
- Bachelor s degree in a related field
- U.S. Citizen
- Ability to acquire a Public Trust Background investigation
- CrowdStrike Certified Falcon Administrator (CCFA) or similar CrowdStrike certifications.
- Experience with cloud security and platform integrations (AWS, Azure, Google Cloud Platform).
- Familiarity with scripting and automation (Python, PowerShell, etc.) to optimize security processes.
- Experience working with Threat Intelligence platforms and leading threat-hunting initiatives
- Knowledge of other securiy tools (e.g. Trellix)
- Experience with automation tools (e.g. Ansible, Puppet, or Chef)
- Certified in industry recognized areas such as CISSP, CEH, CISA, or CISM
- Excellent organization, collaboration, project management, and team leadership skills
- Strong communication skills and experience creating and delivering compliance status and metrics briefings to senior leadership
- Microsoft Excel
- Microsoft Word
- Rational Clearquest
- Rational ClearCase
- CMMi Level 3
- Excellent verbal and written communication skills