Crowdstrike

Detection Engineer, Falcon Complete (Remote, CAN)

Ontario, Canada

Not SpecifiedCompensation
Junior (1 to 2 years)Experience Level
Full TimeJob Type
UnknownVisa
Cybersecurity, Information SecurityIndustries

Requirements

Candidates should have 3+ years of experience as a detection engineer, security engineer, security analyst, threat intelligence analyst, or related field, along with knowledge of current cyber threats and how to detect them using SIEM and relevant technologies. Relevant industry certifications such as GCFA, GCDA, GCIH, or experience with analyzing large datasets across various vendors are preferred, as is experience working with SIEM solutions like LogScale, Splunk, SumoLogic, Sentinel, QRadar, or LogRhythm. Demonstrated ability to write code and leverage regular expressions is also required.

Responsibilities

The Detection Engineer will perform threat research and threat hunting to identify emerging tactics, techniques, and procedures (TTPs) to build detection requirements, develop, test, and deploy actionable high fidelity CrowdStrike Next-Gen SIEM detection rules, conduct code reviews and testing, collaborate with Security Analysts to create playbooks, and develop and maintain utilities and tools to support the managed services team. They will also collaborate with SIEM architects to develop best practices for data parsing and normalization, and participate in a Detection Engineer handler rotation.

Skills

Threat Research
Threat Hunting
Detection Rules Development
SIEM
Telemetry Analysis
Code Review
Cybersecurity
Incident Response

Crowdstrike

Cloud-native endpoint security solutions provider

About Crowdstrike

CrowdStrike specializes in cybersecurity, focusing on protecting businesses from cyber threats through cloud-native endpoint security solutions. Their main product, the Falcon platform, includes services like Falcon Pro, which replaces traditional antivirus with next-generation antivirus that integrates threat intelligence, Falcon Insight for endpoint detection and response, and Falcon Device Control to manage connected devices. Unlike many competitors, CrowdStrike's services are subscription-based, allowing clients to choose different levels of protection based on their needs. The company serves a diverse clientele, including many Fortune 100 companies, and is recognized as a leader in the cybersecurity field, known for its effectiveness in threat detection and response.

Key Metrics

Austin, TexasHeadquarters
2011Year Founded
$468MTotal Funding
IPOCompany Stage
Enterprise Software, CybersecurityIndustries
5,001-10,000Employees

Benefits

Competitive Employee Stock Purchase Plan
Remote-friendly culture
Market leader in compensation and equity awards
Competitive vacation and flexible working arrangements
Comprehensive health benefits + 401k plan
Paid Parental Leave, including adoption
Wellness programs
Professional development and mentorship opportunities
Open offices have stocked kitchens, coffee, soda and treats

Risks

Increased competition from companies like Lumos could challenge CrowdStrike's market share.
Recovery from last year's outage may still affect customer trust and future sales.
Pressure to demonstrate ROI by 2025 could challenge CrowdStrike's financial transparency.

Differentiation

CrowdStrike's Falcon platform offers cloud-native endpoint security solutions, a key differentiator.
The company serves 44 of the Fortune 100, showcasing its strong market presence.
CrowdStrike's proactive threat hunting sets it apart in cybersecurity threat detection.

Upsides

Partnership with SonicWall opens new SMB market segment for CrowdStrike.
Recognition as a leader in ransomware prevention boosts CrowdStrike's market credibility.
Gamified learning initiatives help address cybersecurity skills gap, benefiting future talent pipeline.

Land your dream remote job 3x faster with AI