Platform Security Operations Engineer III (Hybrid, ROU)

Bucharest, Romania

CrowdStrike

CrowdStrike is a global cybersecurity leader with an advanced cloud-native platform for protecting endpoints, cloud workloads, identities and data.

View all jobs at CrowdStrike

Apply now Apply later

As a global leader in cybersecurity, CrowdStrike protects the people, processes and technologies that drive modern organizations. Since 2011, our mission hasn’t changed — we’re here to stop breaches, and we’ve redefined modern security with the world’s most advanced AI-native platform. Our customers span all industries, and they count on CrowdStrike to keep their businesses running, their communities safe and their lives moving forward. We’re also a mission-driven company. We cultivate a culture that gives every CrowdStriker both the flexibility and autonomy to own their careers. We’re always looking to add talented CrowdStrikers to the team who have limitless passion, a relentless focus on innovation and a fanatical commitment to our customers, our community and each other. Ready to join a mission that matters? The future of cybersecurity starts with you.

About the Role:

As a Platform Security Operations Engineer, you’ll support incident response and threat hunting teams by building, maintaining, and optimizing the infrastructure and tooling needed for effective threat detection, investigation, and response. You’ll automate security workflows and ensure the reliability of security platforms while improving detection and response capabilities.

  • Security Platform Engineering

    • Implement automated threat intelligence platforms and integrations

    • Design and maintain threat hunting infrastructure and tools

    • Automate incident response workflows and playbooks

  • Detection Engineering Support

    • Develop and maintain infrastructure for detection engineering workflows

    • Create automated testing environments for detection rules

    • Build CI/CD pipelines for detection deployment

    • Implement automated validation of detection quality

    • Support threat hunting infrastructure needs

  • Incident Response Infrastructure

    • Maintain emergency response platforms and tools

    • Implement automated containment and response capabilities

  • Automation & Integration

    • Automate routine security operations tasks

    • Develop custom integration between security tools

    • Create self-service security tooling for IR teams

    • Build automated reporting and metrics collection

What You'll Need:

8+ years of DevOps/Platform Engineering experience

What You'll Do:

  • Understanding of:

    • MITRE ATT&CK framework

    • Incident response processes

    • Threat hunting methodologies

    • Security data analysis

  • Cloud platforms (AWS, Azure, GCP)

  • Log aggregation and processing

  • Python/Go programming

  • SIEM platforms (Splunk, ELK)

  • Infrastructure as Code (Terraform, Ansible)

  • Git and CI/CD pipelines

  • Containerization (Docker, Kubernetes)

Preferred Skills:

Experience with:

  • SOAR platforms (Phantom, Demisto)

  • EDR platforms

  • Threat intelligence platforms

  • Security automation frameworks


#LI-GT1

#LI-JP2

#LI-Remote

Benefits of Working at CrowdStrike:

  • Remote-friendly and flexible work culture

  • Market leader in compensation and equity awards

  • Comprehensive physical and mental wellness programs

  • Competitive vacation and holidays for recharge

  • Paid parental and adoption leaves

  • Professional development opportunities for all employees regardless of level or role

  • Employee Resource Groups, geographic neighbourhood groups and volunteer opportunities to build connections

  • Vibrant office culture with world class amenities

  • Great Place to Work Certified™ across the globe

CrowdStrike is proud to be an equal opportunity employer. We are committed to fostering a culture of belonging where everyone is valued for who they are and empowered to succeed. We support veterans and individuals with disabilities through our affirmative action program.

CrowdStrike is committed to providing equal employment opportunity for all employees and applicants for employment. The Company does not discriminate in employment opportunities or practices on the basis of race, color, creed, ethnicity, religion, sex (including pregnancy or pregnancy-related medical conditions), sexual orientation, gender identity, marital or family status, veteran status, age, national origin, ancestry, physical disability (including HIV and AIDS), mental disability, medical condition, genetic information, membership or activity in a local human rights commission, status with regard to public assistance, or any other characteristic protected by law. We base all employment decisions--including recruitment, selection, training, compensation, benefits, discipline, promotions, transfers, lay-offs, return from lay-off, terminations and social/recreational programs--on valid job requirements.

If you need assistance accessing or reviewing the information on this website or need help submitting an application for employment or requesting an accommodation, please contact us at recruiting@crowdstrike.com for further assistance.

Apply now Apply later

* Salary range is an estimate based on our InfoSec / Cybersecurity Salary Index 💰

Job stats:  2  0  0

Tags: Ansible Automation AWS Azure CI/CD Cloud CrowdStrike DevOps Docker EDR ELK GCP Incident response Kubernetes MITRE ATT&CK Python SIEM SOAR Splunk Terraform Threat detection Threat intelligence

Perks/benefits: Career development Competitive pay Equity / stock options Flex hours Flex vacation

Regions: Remote/Anywhere Europe
Country: Romania

More jobs like this

Explore more career opportunities

Find even more open roles below ordered by popularity of job title or skills/products/technologies used.