Cloud Threat Detection Engineer

Tel Aviv

Applications have closed

CrowdStrike

CrowdStrike is a global cybersecurity leader with an advanced cloud-native platform for protecting endpoints, cloud workloads, identities and data.

View company page

​​#WeAreCrowdStrike and our mission is to stop breaches. As a global leader in cybersecurity, our team changed the game. Since our inception, our market leading cloud-native platform has offered unparalleled protection against the most sophisticated cyberattacks. We’re looking for people with limitless passion, a relentless focus on innovation and a fanatical commitment to the customer to join us in shaping the future of cybersecurity. Consistently recognized as a top workplace, CrowdStrike is committed to cultivating an inclusive, remote-first culture that offers people the autonomy and flexibility to balance the needs of work and life while taking their career to the next level. Interested in working for a company that sets the standard and leads with integrity? Join us on a mission that matters - one team, one fight.

About the Role:

The CrowdStrike Cloud Content team is an integral part of the Content Product Group, tasked with the critical mission of safeguarding cloud environments through innovative detection and response capabilities. This specialized team comprises cloud security experts, researchers, and detection engineers in various time zones working in unison to ensure our customers’ cloud workloads are secure against the ever-changing threats in the security landscape. 

This role provides a unique opportunity to join a team with strategic importance to protecting our customers from emerging threats and novel attack methodologies in both cloud and Linux based environments. You will stay ahead of the curve with regards to the threat landscape and your research will directly impact the direction of the team and our product.

If you have a strong passion for security and technology, have an interest in supporting engineering projects, and want to gain real-world experience in dealing with advanced threat actors targeting cloud environments, we have a role for you!


Your contributions will enable continuous improvement of CrowdStrike’s cloud detection capabilities ensuring that our customers can be secured with the most advanced security measures in place.

 

What You'll Do:

  • Develop, implement and optimize threat detection rules tailored to cloud runtime environments. Aim to detect and respond to activity as early in the killchain as possible.

  • Rapid response to potential malicious campaigns or extensive exploitation cloud runtime resources post vulnerabilities disclosure.

  • Conduct proactive threat hunting exercises to identify potential security gaps and emerging threats within cloud environments.

  • Track and present threat detection findings, including recommended strategies or possible product improvements.

  • Collaborate with cross functional teams: Work closely with various teams, including OverWatch, engineering, product management, detection engineering, and threat intelligence to drive cloud detections in the Crowdstrike falcon platform.

  • Stay abreast of the latest threat landscape and cloud security trends, continuously updating detection strategies to address emerging threats and vulnerabilities.

What You'll Need:

  • You have a good understanding of  Linux-based systems.

  • You have understanding of cloud-based infrastructure and cloud service models (IaaS, PaaS, Saas).

  • You can demonstrate experience in container/container orchestrator based intrusion analysis, detection development or malware analysis.

  • You are comfortable assessing cyber threat intelligence, open source intelligence or partner reporting.

  • You have a keen interest in the security research field (following subject matter expert blogs, building up static and dynamic analysis environment).

  • You have knowledge of programming and scripting languages, in particular Python or Bash.

  • You have experience with large scale data analysis,

  • You are capable and comfortable communicating information to both technical and nontechnical stakeholders.

  • You have a deep drive to “stop the bad guys”.

  • Good problem solving, communication, and teamwork skills.


Bonus Points:

  • You have extensive experience in securing services operating on public cloud services (Azure, AWS, Google Cloud).

  • You have a good understanding of managed Kubernetes services (AKS, EKS, GKS).

  • Contributions to the open source community (GitHub, Stack Overflow, blogging).

  • Published research papers at conferences or through other mediums (blogs, articles).

#LI-MZ1

Benefits of Working at CrowdStrike:

  • Remote-first culture

  • Market leader in compensation and equity awards with option to participate in ESPP in eligible countries

  • Competitive vacation and flexible working arrangements

  • Physical and mental wellness programs 

  • Paid parental leave, including adoption 

  • A variety of professional development and mentorship opportunities

  • Access to CrowdStrike University, LinkedIn Learning and Jhanna

  • Offices with stocked kitchens when you need to fuel innovation and collaboration

  • Birthday time-off in your local country

  • Work with people who are passionate in our mission and Great Place to Work certified across the globe

We are committed to fostering a culture of belonging where everyone feels seen, heard, valued for who they are and empowered to succeed. Our approach to cultivating a diverse, equitable, and inclusive culture is rooted in listening, learning and collective action. By embracing the diversity of our people, we achieve our best work and fuel innovation - generating the best possible outcomes for our customers and the communities they serve.

CrowdStrike is committed to maintaining an environment of Equal Opportunity and Affirmative Action. If you need reasonable accommodation to access the information provided on this website, please contact Recruiting@crowdstrike.com​, for further assistance.

* Salary range is an estimate based on our InfoSec / Cybersecurity Salary Index 💰

Tags: AWS Azure Bash Cloud CrowdStrike GCP GitHub IaaS Kubernetes Linux Malware Open Source PaaS Python SaaS Scripting Threat detection Threat intelligence Vulnerabilities

Perks/benefits: Career development Competitive pay Conferences Equity Flex hours Flex vacation Parental leave Salary bonus

Region: Middle East
Country: Israel
Job stats:  29  1  0

More jobs like this

Explore more InfoSec / Cybersecurity career opportunities

Find even more open roles in Ethical Hacking, Pen Testing, Security Engineering, Threat Research, Vulnerability Management, Cryptography, Digital Forensics and Cyber Security in general - ordered by popularity of job title or skills, toolset and products used - below.