Security Engineer II - CrowdStrike NG SIEM
United States
Cyderes
Cyderes delivers proactive managed cybersecurity services, identity, and professional services to help enterprises stay ahead of threats and gain control of cyber risk. Be everyday ready.
Cyderes (Cyber Defense and Response) is a pure-play, full life-cycle cybersecurity services provider with award-winning managed security services, identity and access management, and professional services designed to manage the cybersecurity risks of enterprise clients. We specialize in multi-technology, complex environments with the in speed and agility needed to tackle the most advanced cyber threats. We leverage our global scale and decades of experience to accelerate our clients’ cyber outcomes through a full lifecycle of cybersecurity services. We are a global company with operating centers in the United States, Canada, the United Kingdom, and India.
The Security Engineer II is a subject matter expert responsible for managing our client's SIEM, Log Management Platform, and Data Analytical Tool. This role involves close collaboration with the Cyderes Team at various levels to identify and align business and IT objectives, address security and operational challenges, provide recommendations, and assess current and future IT security needs. The Security Engineer II is tasked with the management, maintenance, configuration, and troubleshooting of technology solutions. Most tasks are assigned through ticketing; the security engineer must complete customer-initiated requests within the established Service Level Agreements (SLAs).
Note: This job posting is intended for direct applicants only. We request that outside recruiters do not contact us regarding this position.
The Security Engineer II is a subject matter expert responsible for managing our client's SIEM, Log Management Platform, and Data Analytical Tool. This role involves close collaboration with the Cyderes Team at various levels to identify and align business and IT objectives, address security and operational challenges, provide recommendations, and assess current and future IT security needs. The Security Engineer II is tasked with the management, maintenance, configuration, and troubleshooting of technology solutions. Most tasks are assigned through ticketing; the security engineer must complete customer-initiated requests within the established Service Level Agreements (SLAs).
Responsibilities:
- Assist with administration and maintenance of CrowdStrike Falcon NG SIEM, Log Management and Data Analytical Platform.
- Provide Tier-III level technical support for SIEM, Log Management Platforms, and Data Analytical tools during both business hours and after-hours.
- Conduct system health checks on managed technologies and offer recommendations for performance improvements.
- Create and maintain standard operating procedures, technical documents, and troubleshooting guidelines for security solutions.
- Monitor and tune managed technologies to optimize system performance.
- Configure and troubleshoot managed security devices.
- Assist customers with requests related to log source configuration, application installation, data parsing, use case development, and troubleshooting of complex issues for managed technologies.
- Oversee patching and updates for managed technologies.
- Execute highly technical changes, manage change windows, and fulfill client requests by following Cyderes’s standard change management process.
- Develop technical solutions to automate repeatable tasks.
- Utilize tools and analytical skills to investigate the root causes of issues across the technologies.
- Provide overall guidance, instruction, and leadership to SOC analysts.
- Open and monitor tickets and customer requests with third-party vendors.
- Communicate effectively, both orally and in writing.
- Establish a cooperative working relationship with individuals encountered while performing assigned duties.
Requirements:
- A college diploma or university degree in Information Security, or relevant up-to-date security certifications, along with equivalent work experience.
- A minimum of 1 year of experience in managing CrowdStrike Falcon Next-Gen SIEM.
- Understanding of the features, functionalities, and capabilities of CrowdStrike Falcon Next-Gen SIEM.
- The ability to analyze security data, identify patterns, and correlate events to detect and investigate threats.
- Data Onboarding: Manage and integrate various security data sources, such as endpoints, cloud services, and third-party systems, into the CrowdStrike Falcon Next-Gen SIEM platform.
- Automation: Utilize the platform's workflow automation capabilities to streamline security operations, including incident response tasks and threat hunting.
- Performance Optimization: Monitor and optimize the performance of the SIEM system to ensure efficient data ingestion, processing, and analysis.
- Experience with scripting languages (e.g., Python, Go) for automating tasks, creating custom detections, and integrating with other systems.
- Familiarity with cloud platforms (e.g., AWS, Azure, GCP) and their security implications.
- Possession of industry-recognized certifications in security technologies or network technologies.
- Strong understanding of IT security concepts, best practices, and current market trends.
- Knowledge of common information security management frameworks such as ITIL, NIST, and PCI DSS.
- Excellent communication skills.
- Exceptional time management and organizational abilities.
- A positive, constructive mindset as a team player.
- Strong troubleshooting, reasoning, and problem-solving skills.
Note: This job posting is intended for direct applicants only. We request that outside recruiters do not contact us regarding this position.
* Salary range is an estimate based on our InfoSec / Cybersecurity Salary Index 💰
Job stats:
2
0
0
Category:
Security Engineering Jobs
Tags: Automation AWS Azure Cloud CrowdStrike Cyber defense GCP IAM Incident response ITIL NIST PCI DSS Python Scripting SIEM SLAs SOC Windows
Perks/benefits: Team events
Region:
North America
Country:
United States
More jobs like this
Explore more career opportunities
Find even more open roles below ordered by popularity of job title or skills/products/technologies used.
Security Operations Engineer jobsSenior Cloud Security Engineer jobsSystems Administrator jobsSenior Security Analyst jobsSenior Cybersecurity Engineer jobsIT Security Analyst jobsSenior Information Security Analyst jobsCyber Security Specialist jobsInformation Security Manager jobsSenior Network Security Engineer jobsSenior Information Security Engineer jobsSenior Product Security Engineer jobsSecurity Consultant jobsInformation System Security Officer (ISSO) jobsChief Information Security Officer jobsInformation Systems Security Engineer jobsSecurity Specialist jobsIT Security Engineer jobsSenior Cyber Security Engineer jobsSenior Software Engineer jobsCyber Threat Intelligence Analyst jobsCybersecurity Specialist jobsSenior IT Auditor jobsCyber Security Architect jobsSecurity Operations Analyst jobs
EDR jobsEncryption jobsTS/SCI jobsCEH jobsJava jobsThreat detection jobsSDLC jobsSplunk jobsTerraform jobsIDS jobsMalware jobsFinance jobsIPS jobsRMF jobsTop Secret jobsForensics jobsSQL jobsDocker jobsSOC 2 jobsActive Directory jobsCompTIA jobsIntrusion detection jobsOWASP jobsITIL jobsCRISC jobs
Clearance Required jobsGIAC jobsHIPAA jobsTCP/IP jobsAnsible jobsVPN jobsDoDD 8570 jobsSOAR jobsIT infrastructure jobsOSCP jobsMITRE ATT&CK jobsData Analytics jobsJira jobsDNS jobsSOX jobsBanking jobsUNIX jobsCCSP jobsZero Trust jobsIndustrial jobsJavaScript jobsCISO jobsGCIH jobsMachine Learning jobsArtificial Intelligence jobs