CrowdStrike Logo

CrowdStrike

Threat Detections Engineer (Remote, ISR)

Job Posted 8 Days Ago Posted 8 Days Ago
Be an Early Applicant
Remote
Hybrid
Hiring Remotely in Israel
Mid level
Remote
Hybrid
Hiring Remotely in Israel
Mid level
The Threat Detections Engineer will research cloud threats, write detection rules, and secure cloud services while collaborating with teams.
The summary above was generated by AI

As a global leader in cybersecurity, CrowdStrike protects the people, processes and technologies that drive modern organizations. Since 2011, our mission hasn’t changed — we’re here to stop breaches, and we’ve redefined modern security with the world’s most advanced AI-native platform. We work on large scale distributed systems, processing almost 3 trillion events per day. We have 3.44 PB of RAM deployed across our fleet of C* servers - and this traffic is growing daily. Our customers span all industries, and they count on CrowdStrike to keep their businesses running, their communities safe and their lives moving forward. We’re also a mission-driven company. We cultivate a culture that gives every CrowdStriker both the flexibility and autonomy to own their careers. We’re always looking to add talented CrowdStrikers to the team who have limitless passion, a relentless focus on innovation and a fanatical commitment to our customers, our community and each other. Ready to join a mission that matters? The future of cybersecurity starts with you.

About the Role:

The Falcon Cloud Security (FCS) Detection Engineering team enables CrowdStrike’s primary mission of Stopping the Breach, through a shift-left approach that focuses on helping customers of cloud computing manage their risk posture. We do this by writing and maintaining detection rules that assess cloud assets to identify risks and opportunities for improvement. We start by using research to define best practices for cloud security, which we translate into detection rules we author and deploy as code into the FCS product ecosystem. In addition to posture management, the Detection Engineering team researches threats to cloud services & assets, and writes detection rules to identify abuses and attacks.

This role combines a blend of skill sets including security operations & incident response, data analytics, risk management, software development, and threat research. If you enjoy researching cloud security issues and developing detection content as code, all in a fast-paced environment with broad collaboration across a diverse team, this role is for you.

What You'll Do:

As a member of the Falcon Cloud Security Detection Engineering team, you will be responsible for performing research into cloud threats, vulnerabilities, and abuses, to determine configuration best practices that can be used to secure cloud services and assets. You will also be responsible for developing and deploying detection rules as code into the FCS product ecosystem along with writing descriptions that customers will use to understand and action alerts generated by these rules.

While this role is being sourced in the EMEA global region, the core of the FCS Detection Engineering team is US-based. While honoring local standard business hours for each team member, this role will require regular participation in team meetings and live collaboration during US standard business hours (GMT - 05:00-08:00).

What You’ll Need:

  • Professional experience in cloud security-related operations and engineering roles, specifically related to threat detection, incident response, and risk management.

  • Experience with data analytics, including searching large data sets, correlating attributes, interpreting results, extracting insights, and forming data-driven conclusions.

  • Experience with searching data with analytics tools including Elastic Search, Splunk, or a SIEM.

  • A working practical knowledge of at least one of the following Cloud Service Providers: AWS, Azure, GCP, OCI.

  • A practical understanding of industry security standards and control frameworks such as NIST, CISA, CIS, HIPAA, HISTRUST, PCI and others.

  • Experience developing, deploying, and maintaining code in formalized software development/CICD workflows including the use of BitBucket to manage code deployments.

  • Familiarity with the Agile methodology for project management.

  • Experience in a DevOps or similar role that required use of Python and GO.

  • Ability to author and run Elastic Search queries and interpret results from large data sets. 

  • Proficient in the English language with strong written and verbal communication skills.

  • A passion for quality and experience optimizing results.

Bonus Points:

  • Experience writing detection rules with the Open Policy Agent query language, Rego.

  • Having served in a role focused on Detection Engineering; writing detection rules used by other teams.

  • Formalized training or certification in cloud computing, including administration, development, engineering, or architecture.

#LI-DM1

#LI-Remote

Benefits of Working at CrowdStrike:

  • Remote-friendly and flexible work culture

  • Market leader in compensation and equity awards

  • Comprehensive physical and mental wellness programs

  • Competitive vacation and holidays for recharge

  • Paid parental and adoption leaves

  • Professional development opportunities for all employees regardless of level or role

  • Employee Resource Groups, geographic neighbourhood groups and volunteer opportunities to build connections

  • Vibrant office culture with world class amenities

  • Great Place to Work Certified™ across the globe

CrowdStrike is proud to be an equal opportunity employer. We are committed to fostering a culture of belonging where everyone is valued for who they are and empowered to succeed. We support veterans and individuals with disabilities through our affirmative action program.

CrowdStrike is committed to providing equal employment opportunity for all employees and applicants for employment. The Company does not discriminate in employment opportunities or practices on the basis of race, color, creed, ethnicity, religion, sex (including pregnancy or pregnancy-related medical conditions), sexual orientation, gender identity, marital or family status, veteran status, age, national origin, ancestry, physical disability (including HIV and AIDS), mental disability, medical condition, genetic information, membership or activity in a local human rights commission, status with regard to public assistance, or any other characteristic protected by law. We base all employment decisions--including recruitment, selection, training, compensation, benefits, discipline, promotions, transfers, lay-offs, return from lay-off, terminations and social/recreational programs--on valid job requirements.

If you need assistance accessing or reviewing the information on this website or need help submitting an application for employment or requesting an accommodation, please contact us at recruiting@crowdstrike.com for further assistance.

Top Skills

AWS
Azure
Bitbucket
Elastic Search
GCP
Go
Oci
Python
SIEM
Splunk

Similar Jobs at CrowdStrike

8 Days Ago
Remote
Hybrid
Israel
Senior level
Senior level
Cloud • Computer Vision • Information Technology • Sales • Security • Cybersecurity
Manage OEM partnerships, drive strategic sales, and coordinate with CrowdStrike teams to achieve quotas and develop embedded solutions.
Top Skills: Cloud ComputingCyber SecurityIndustrial Iot
8 Days Ago
Remote
Hybrid
10 Locations
Senior level
Senior level
Cloud • Computer Vision • Information Technology • Sales • Security • Cybersecurity
The Senior Windows Kernel Sensor Engineer designs and builds detection logic for cybersecurity. Responsibilities include coding in C++ and Python, collaborating across teams, and troubleshooting. Requires extensive experience with Windows kernel internals and low-level coding.
Top Skills: C++Python
Senior level
Cloud • Computer Vision • Information Technology • Sales • Security • Cybersecurity
The Program Manager will oversee complex engineering projects in SaaS Security, collaborating with cross-functional teams, managing project schedules, and ensuring timely delivery while resolving critical issues.
Top Skills: AgileCloud TechnologiesJIRAScaled Agile FrameworkScrum

What you need to know about the London Tech Scene

London isn't just a hub for established businesses; it's also a nursery for innovation. Boasting one of the most recognized fintech ecosystems in Europe, attracting billions in investments each year, London's success has made it a go-to destination for startups looking to make their mark. Top U.K. companies like Hoptin, Moneybox and Marshmallow have already made the city their base — yet fintech is just the beginning. From healthtech to renewable energy to cybersecurity and beyond, the city's startups are breaking new ground across a range of industries.
By clicking Apply you agree to share your profile information with the hiring company.

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account