Director, Internal Threat Intelligence and Detection Engineering (Remote, Eastern & Central) at Crowdstrike

Virginia, United States

Crowdstrike Logo
Not SpecifiedCompensation
Expert & Leadership (9+ years)Experience Level
Full TimeJob Type
UnknownVisa
CybersecurityIndustries

Requirements

  • 12+ years of experience in cybersecurity, with significant focus on threat intelligence and detection engineering
  • 8+ years of leadership experience managing multiple teams and managers in security operations, threat intelligence, or detection engineering roles
  • Proven track record of building and scaling threat intelligence programs and detection engineering capabilities
  • Deep understanding of adversary tactics, techniques, and procedures (TTPs)
  • Strong technical background in security tooling, SIEM, and related technologies

Responsibilities

  • Lead and evolve CrowdStrike's threat intelligence and detection engineering strategies, ensuring alignment with the mission to stop breaches
  • Drive operational excellence in intelligence collection, analysis, and detection engineering processes while maintaining the highest standards of quality and efficiency
  • Develop and execute the technical roadmap for intelligence-driven detection engineering pipelines and automation frameworks
  • Build and mentor high-performing teams across threat intelligence and detection engineering disciplines
  • Partner with incident response teams to ensure delivery of actionable intelligence and effective detection capabilities
  • Oversee the development and implementation of response playbooks and orchestration frameworks
  • Drive strategy and implementation of AI/LLM security controls to protect against emerging AI-based threats and attacks
  • Lead initiatives to leverage AI/LLM capabilities for enhanced threat detection while ensuring secure AI operations
  • Oversee the development of detection engineering frameworks that incorporate AI-powered analysis and response capabilities
  • Collaborate with cross-functional teams to drive innovation in threat detection and response capabilities
  • Lead strategic initiatives to stay ahead of evolving threat landscapes and adversarial techniques

Skills

Key technologies and capabilities for this role

Threat IntelligenceDetection EngineeringCybersecurityIncident ResponseIntelligence AnalysisNation-State ThreatseCrimeTargeted IntrusionsTactical IntelligenceStrategic IntelligenceOperational Intelligence

Questions & Answers

Common questions about this position

Is this position remote?

Yes, this is a remote position available in Eastern and Central time zones.

What salary or compensation does this role offer?

This information is not specified in the job description.

What are the key responsibilities for this Director role?

The role involves leading threat intelligence and detection engineering strategies, driving operational excellence in intelligence collection and analysis, developing technical roadmaps for detection pipelines, building and mentoring teams, partnering with incident response, and implementing AI/LLM security controls.

What is the company culture like at CrowdStrike?

CrowdStrike cultivates a culture that gives every employee flexibility and autonomy to own their careers, with a focus on limitless passion, relentless innovation, and commitment to customers, community, and each other.

What makes a strong candidate for this position?

A strong candidate should have leadership experience in threat intelligence and detection engineering, the ability to build and mentor elite teams of analysts and engineers, and expertise in developing intelligence-driven detection pipelines and AI security controls.

Crowdstrike

Cloud-native endpoint security solutions provider

About Crowdstrike

CrowdStrike specializes in cybersecurity, focusing on protecting businesses from cyber threats through cloud-native endpoint security solutions. Their main product, the Falcon platform, includes services like Falcon Pro, which replaces traditional antivirus with next-generation antivirus that integrates threat intelligence, Falcon Insight for endpoint detection and response, and Falcon Device Control to manage connected devices. Unlike many competitors, CrowdStrike's services are subscription-based, allowing clients to choose different levels of protection based on their needs. The company serves a diverse clientele, including many Fortune 100 companies, and is recognized as a leader in the cybersecurity field, known for its effectiveness in threat detection and response.

Austin, TexasHeadquarters
2011Year Founded
$468MTotal Funding
IPOCompany Stage
Enterprise Software, CybersecurityIndustries
5,001-10,000Employees

Benefits

Competitive Employee Stock Purchase Plan
Remote-friendly culture
Market leader in compensation and equity awards
Competitive vacation and flexible working arrangements
Comprehensive health benefits + 401k plan
Paid Parental Leave, including adoption
Wellness programs
Professional development and mentorship opportunities
Open offices have stocked kitchens, coffee, soda and treats

Risks

Increased competition from companies like Lumos could challenge CrowdStrike's market share.
Recovery from last year's outage may still affect customer trust and future sales.
Pressure to demonstrate ROI by 2025 could challenge CrowdStrike's financial transparency.

Differentiation

CrowdStrike's Falcon platform offers cloud-native endpoint security solutions, a key differentiator.
The company serves 44 of the Fortune 100, showcasing its strong market presence.
CrowdStrike's proactive threat hunting sets it apart in cybersecurity threat detection.

Upsides

Partnership with SonicWall opens new SMB market segment for CrowdStrike.
Recognition as a leader in ransomware prevention boosts CrowdStrike's market credibility.
Gamified learning initiatives help address cybersecurity skills gap, benefiting future talent pipeline.

Land your dream remote job 3x faster with AI