Security Engineer III - SIEM (Hybrid)
New York, United States · Hybrid · Full-time
- Posted 1mo ago
- From CrowdStrike’s careers page
- Location
- New York, United States
- Work mode
- Hybrid
- Type
- Full-time
- Experience
- 6+ years
- Department
- Engineering
Opens the listing on crowdstrike.wd5.myworkdayjobs.com
Let the right jobs find you
In your inbox every Wednesday and SaturdayPersonalised suggestions from verified career pages, matched to your role, location, level and skills.
About the role
About the Role:
The Get Data In (GDI) Integrations Content team at Next Gen-SIEM is responsible for building out of the box integrations for 3rd party products to ingest and parse data into SIEM platform. We are looking for a passionate Security Engineer with expertise in data ingestion and integration for SIEM. This role focuses on designing, developing, and maintaining out of the box data connectors for CrowdStrike Next-Gen SIEM, ensuring seamless ingestion of security data from various third-party products.
The ideal candidate has hands-on experience in cybersecurity, data ingestion pipelines, log collection mechanisms, and security event processing. You should be well-versed in industry-standard data ingestion and integration methods and possess strong knowledge about security products and platform.
This role is hybrid, on-site at our NYC Office Location. Candidates should be comfortable visiting the office twice a week once the development center is established.
What You'll Do:
- Evaluate, develop, maintain, and enhance data connectors and parsers to ingest data from third-party security products into CrowdStrike Next-Gen SIEM
- Set up and maintain a lab or test environment for security products to validate data connectors and troubleshoot issues
- Troubleshoot and resolve issues with existing data connectors to ensure reliable log ingestion
- Collaborate with internal teams to define efficient logging, error handling, data normalization and documentation for data connectors
- Research and implement best practices for ingesting security logs from Firewalls, IDS/IPS, Cloud Security products, Endpoint Security, and other security products and platforms
- Write and maintain high-quality technical documentation for integration methods and troubleshooting guides
- Provide on-call support for critical data ingestion issues and production incidents
- Work with customers, customer success and customer support teams to troubleshoot and resolve data ingestion-related issues and ensure effective communication
What You'll Need:
- Bachelor's or Master's degree in Computer Science or related field or equivalent work experience.
- 6+ years of experience in cybersecurity and SIEM integrations
- Experience in developing data connectors or ingestion pipelines for SIEM platforms such as Splunk, Sentinel, Exabeam, QRadar etc.
- Experience in security data normalization schemas, parsing and data enrichment
- Experience in setting up and managing environments for security products such as Firewalls, IDS/IPS, EDR, CASB, Identity Security, Email Security etc.
- Experience with security events and its formats such as Syslog, CEF, LEEF, JSON, XML
- Working knowledge of log processing or shipping tools such as Cribl, Splunk forwarder, Azure monitoring agent, LogScale log collector etc.
- Working knowledge on cloud-native logging services such as AWS CloudWatch, Azure Monitor, or GCP Logging
- Proficiency in at least one programming language, preferably Python or Go
- Strong documentation, communication and customer interaction skills
- Proven experience utilizing AI technologies to enhance decision-making, streamline workflows and processes, improve efficiency and drive business outcomes.
Benefits of Working at CrowdStrike:
- Market leader in compensation and equity awards
- Comprehensive physical and mental wellness programs
- Competitive vacation and holidays for recharge
- Paid parental and adoption leaves
- Professional development opportunities for all employees regardless of level or role
- Employee Networks, geographic neighborhood groups, and volunteer opportunities to build connections
- Vibrant office culture with world class amenities
- Great Place to Work Certified™ across the globe
Compensation:
CrowdStrike, Inc. is committed to fair and equitable compensation practices. Placement within the pay range is dependent on a variety of factors including, but not limited to, relevant work experience, skills, certifications, job level, supervisory status, and location. The base salary range for this position for all U.S. candidates is $120,000 - $180,000 per year, with eligibility for bonuses, equity grants and a comprehensive benefits package that includes health insurance, 401k and paid time off.
Skills they ask for
Pick one to see other roles that ask for it.
About CrowdStrike
AI-powered cybersecurity and threat responseCrowdStrike provides cloud-delivered cybersecurity products for detecting and responding to threats across endpoints and other environments.
See all 114 roles at CrowdStrikeMore roles at CrowdStrike
See all 114- Sr. Software Engineer - Sensor - Cloud Runtime Protection (Hybrid)Sunnyvale · Senior · HybridSoftware Development · Senior · HybridSunnyvale, United States1d
- Sr. Engineer - Risk Platform (Hybrid)Sunnyvale · Senior · HybridSoftware Development · Senior · HybridSunnyvale, United States1d
- Product Manager - Advanced Detection (Remote)United States · RemoteProduct Management · RemoteUnited States1d
- Staff Technical Marketing Manager (Staff TMM) – Browser Security (Remote)United States · Staff · RemoteMarketing · Staff · RemoteUnited States1d
Let the right jobs find you
In your inbox every Wednesday and SaturdayPersonalised suggestions from verified career pages, matched to your role, location, level and skills.