SIEM Engineer (CrowdStrike's Next - Gen SIEM platform experience) - Remote (USA)

Echelon Risk + Cyber

$110K — $130K *
US-AnywhereRemote in United States
Information Technology
Less than 5 years of experience
Job Overview by Ladders

Qualifications

  • 4+ years as a SIEM Engineer or similar role, specifically handling Next-Gen SIEM/LogScale.
  • Degree in computer science, information security, or similar field.
  • Hands-on experience with CrowdStrike Falcon LogScale and proficiency in CrowdStrike Query Language (CQL).
  • In-depth knowledge of security monitoring, incident response, and threat hunting.
  • Familiarity with security concepts such as SIEM, EDR, IDS/IPS, and Firewall.
  • Experience with data management platforms like Cribl and common log formats.

Responsibilities

  • Implement SIEM solutions including log configuration and tool deployment.
  • Support SOC efforts in detecting and analyzing security events using various platforms.
  • Collaborate with clients to enhance security monitoring and incident response.
  • Document security procedures and create detailed reports and analyses.
  • Develop queries using Falcon LogScale to identify anomalies and threats.
  • Provide exceptional client services throughout the project lifecycle.
  • Manage multiple engagements while meeting deadlines.

Benefits

  • Comprehensive medical, dental, and vision insurance with most costs covered by the employer.
  • Employer funding for HSA accounts and access to an FSA.
  • 401(k) plan with a guaranteed employer contribution.
  • Flexible vacation policy for personal management of work-life balance.
  • 11 flexible holidays tailored to personal significance.
  • Family-friendly benefits including maternity and parental leave, disability insurance, life insurance, and mental health support.
  • Skill development support through certifications, continuous learning, and conference attendance.
Full Job Description
SIEM Engineer to join our Managed Security Services team with specialized expertise in CrowdStrike's Next-Gen SIEM platform (powered by LogScale, formerly Humio). The engineer will work with clients of various industries, sizes, and composition.

What You Will Do:
  • Implement SIEM solutions, specifically CrowdStrike's Falcon Next-Gen SIEM and LogScale, including log configuration and ingestion, tool configuration, software and appliance deployment, and alert, dashboard, and parser creation and tuning.
  • Support SOC efforts using MDR/EDR/SIEM platforms to detect, investigate and analyze events from CrowdStrike Falcon solutions and other security tools.
  • Collaborate with client's team to develop and implement security monitoring strategies and improve incident response processes.
  • Create and maintain documentation for security procedures, including detailed reports and analysis.
  • Develop and define queries using the Falcon LogScale query language to detect anomalies and security threats.
  • Deliver exceptional client service, including communicating with clients throughout the project life cycle to better understand client needs.
  • Manage several engagements at once while remaining highly responsive and ensuring all deadlines are met.

Your knowledge, skills, and abilities:
  • 4+ years of experience as a SIEM Engineer or similar role (e.g. SOC Engineer, Security Engineer). Next-Gen SIEM/LogScale experience is required.
  • Degree in computer science, information security, or related discipline, or equivalent working experience with increasing responsibility and complexity.
  • Hands-on experience with CrowdStrike Falcon LogScale, including tool administration and CrowdStrike Query Language (CQL) proficiency.
  • In-depth knowledge of security monitoring, incident response, and threat hunting techniques.
  • Familiarity with security solutions and concepts such as SIEM, EDR, IDS/IPS, and Firewall.
  • Familiarity with data management platforms including Cribl.
  • Familiarity with common log formats and regular expressions.
  • Strong attention to detail and superior analytical, technical, and problem-solving skills.
  • Authorized to work in the United States.

Preferred Qualifications:

CrowdStrike certifications is a plus. While not required, holding any of these following certifications can be beneficial in this role.
  • CrowdStrike Certified Falcon Administrator (CCFA)
  • CrowdStrike Certified Identity Specialist (CCIS)
  • CrowdStrike Certified Cloud Specialist (CCCS)
  • CrowdStrike Certified Falcon Responder (CCFR)
  • CrowdStrike Certified Falcon Hunter (CCFH)

We currently offer the following benefits:
  • Access to medical, dental, and vision insurance through Cigna, with the majority of the employee cost covered by the employer
  • Employer funding to HSA accounts and FSA access
  • Access to a 401(k) through Vanguard with a guaranteed employer contribution
  • Flexible vacation policy that allows you to manage your schedule and rest and recharge when you need to
  • 11 holidays with flexibility based on what is important for you and those you love
  • Family-friendly benefits, including weeks off for Maternity leave, weeks off for non-birthing parent leave, employer-paid short-term and long-term disability, employer-paid life insurance, and access to additional life insurance, hospital coverage, accidental coverage, discounted mental health support, and more
  • Support for individual development through certifications, continued learning, conferences, and more

Similar Jobs

More Jobs at Echelon Risk + Cyber

More Information Technology Jobs

Find similar SIEM Engineer (CrowdStrike's Next - Gen SIEM platform experience) - Remote (USA) jobs: