Threat Detection Engineer - Cloud (Remote, ROU)

Posted:
8/20/2024, 5:00:00 PM

Location(s):
Bucharest, Romania

Experience Level(s):
Mid Level ⋅ Senior

Field(s):
IT & Security ⋅ Software Engineering

Workplace Type:
Remote

​​#WeAreCrowdStrike and our mission is to stop breaches. As a global leader in cybersecurity, our team changed the game. Since our inception, our market leading cloud-native platform has offered unparalleled protection against the most sophisticated cyberattacks. We’re looking for people with limitless passion, a relentless focus on innovation and a fanatical commitment to the customer to join us in shaping the future of cybersecurity. Consistently recognized as a top workplace, CrowdStrike is committed to cultivating an inclusive, remote-first culture that offers people the autonomy and flexibility to balance the needs of work and life while taking their career to the next level. Interested in working for a company that sets the standard and leads with integrity? Join us on a mission that matters - one team, one fight.

About the Role:

The Cloud Content team is a major contributor to Falcon Cloud Security Platform, tasked with the critical mission of safeguarding cloud environments through innovative detection and response capabilities. This specialized team comprises cloud security experts, researchers, and detection engineers in various time zones working in unison to ensure our customers’ cloud workloads are secure against the ever-changing threats in the security landscape. 

This role provides a unique opportunity to join a team with strategic importance to protecting our customers from emerging threats and novel attack methodologies in both cloud and Linux based environments. You will stay ahead of the curve with regards to the threat landscape and your research will directly impact the direction of the team and our product.

If you have a strong passion for security and technology, have an interest in supporting engineering projects, and want to gain real-world experience in dealing with advanced threat actors targeting cloud environments, we have a role for you!
Your contributions will enable continuous improvement of CrowdStrike’s cloud detection capabilities ensuring that our customers can be secured with the most advanced security measures in place.

 

What You'll Do:

  • Stay abreast of the latest threat landscape and cloud security trends, continuously updating detection strategies to address emerging threats and vulnerabilities

  • Rapid response to potential malicious campaigns or extensive exploitation of cloud runtime resources post vulnerabilities disclosure

  • Conduct proactive threat hunting exercises to identify potential security gaps and emerging threats within cloud environments

  • Track and present threat detection findings, including recommended strategies or possible product improvements

  • Develop, implement and optimize detections tailored to cloud runtime environments. 

  • Collaborate with cross functional teams: Work closely with various teams, including OverWatch, engineering, product management, detection engineering, and threat intelligence to drive cloud detections in the Crowdstrike falcon platform

  • As part of your role, you will be required to write and publish blog posts regularly and represent our company by speaking at various industry conferences to enhance our visibility and engagement with the community.

What You'll Need:

  • You have an excellent understanding of  Linux-based systems.

  • You can demonstrate experience in container/container orchestrator based intrusion analysis, detection development or malware analysis,

  • You are comfortable assessing cyber threat intelligence, open source intelligence or partner reporting,

  • You have a keen interest in the security research field (following subject matter expert blogs, building up static and dynamic analysis environment),

  • You have knowledge of programming and scripting languages, in particular Python or Bash,

  • You have experience with large scale data analysis,

  • You are capable and comfortable communicating information to both technical and nontechnical stakeholders,

  • You have a deep drive to “stop the bad guys”,

  • Good problem solving, communication, and teamwork skills.

Bonus Points:

  • You have understanding of cloud-based infrastructure and cloud service models (IaaS, PaaS, Saas),

  • You have extensive experience in securing services operating on public cloud services (Azure, AWS, Google Cloud),

  • You have a good understanding of managed Kubernetes services (AKS, EKS, GKS),

  • Contributions to the open source community (GitHub, Stack Overflow, blogging)

  • Published research papers at conferences or through other mediums (blogs, articles)

#LI-DM1

#LI-REMOTE

Benefits of Working at CrowdStrike:

  • Remote-first culture

  • Market leader in compensation and equity awards with option to participate in ESPP in eligible countries

  • Competitive vacation and flexible working arrangements

  • Physical and mental wellness programs 

  • Paid parental leave, including adoption 

  • A variety of professional development and mentorship opportunities

  • Access to CrowdStrike University, LinkedIn Learning and Jhanna

  • Offices with stocked kitchens when you need to fuel innovation and collaboration

  • Birthday time-off in your local country

  • Work with people who are passionate in our mission and Great Place to Work certified across the globe

CrowdStrike is proud to be an equal opportunity and affirmative action employer. We are committed to fostering a culture of belonging where everyone is valued for who they are and empowered to succeed. Our approach to cultivating a diverse, equitable, and inclusive culture is rooted in listening, learning and collective action. By embracing the diversity of our people, we achieve our best work and fuel innovation - generating the best possible outcomes for our customers and the communities they serve.

All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, or status as a protected veteran. If you need assistance accessing or reviewing the information on this website or need help submitting an application for employment or requesting an accommodation, please contact us at [email protected] for further assistance.

CrowdStrike

Website: https://www.crowdstrike.com/

Headquarter Location: Sunnyvale, California, United States

Employee Count: 5001-10000

Year Founded: 2011

IPO Status: Public

Last Funding Type: Post-IPO Equity

Industries: Artificial Intelligence (AI) ⋅ Cloud Data Services ⋅ Cloud Security ⋅ Cyber Security ⋅ Network Security