SIEM Engineer; CrowdStrike's - Gen SIEM platform ; Remote
About us:
At Echelon Risk Cyber, we believe in defending the basic human right to security and privacy. We are looking for an exceptional SIEM Engineer to join our Managed Security Services team with specialized expertise in Crowd Strike's Next-Gen SIEM platform (powered by Log Scale, formerly Humio). The engineer will work with clients of various industries, sizes, and composition.
At Echelon, we believe learning never stops. You will have the opportunity to engage with cutting-edge technology systems and team members who will challenge you with meaningful work. We allow our team members to build from the ground up and make an impact across the organization.
What You Will Do:- Implement SIEM solutions, specifically Crowd Strike's Falcon Next-Gen SIEM and Log Scale, including log configuration and ingestion, tool configuration, software and appliance deployment, and alert, dashboard, and parser creation and tuning.
- Support SOC efforts using MDR/EDR/SIEM platforms to detect, investigate and analyze events from Crowd Strike Falcon solutions and other security tools.
- Collaborate with client's team to develop and implement security monitoring strategies and improve incident response processes.
- Create and maintain documentation for security procedures, including detailed reports and analysis.
- Develop and define queries using the Falcon Log Scale query language to detect anomalies and security threats.
- Deliver exceptional client service, including communicating with clients throughout the project life cycle to better understand client needs.
- Manage several engagements at once while remaining highly responsive and ensuring all deadlines are met.
- 4 years of experience as a SIEM Engineer or similar role (e.g. SOC Engineer, Security Engineer). Next-Gen SIEM/Log Scale experience is required.
- Degree in computer science, information security, or related discipline, or equivalent working experience with increasing responsibility and complexity.
- Hands-on experience with Crowd Strike Falcon Log Scale, including tool administration and Crowd Strike Query Language (CQL) proficiency.
- In-depth knowledge of security monitoring, incident response, and threat hunting techniques.
- Familiarity with security solutions and concepts such as SIEM, EDR, IDS/IPS, and Firewall.
- Familiarity with data management platforms including Cribl.
- Familiarity with common log formats and regular expressions.
- Strong attention to detail and superior analytical, technical, and problem-solving skills.
- Authorized to work in the United States.
- Crowd Strike certifications is a plus. While not required, holding any of these following certifications can be beneficial in this role.
- Crowd Strike Certified Falcon Administrator (CCFA)
- Crowd Strike Certified Identity Specialist (CCIS)
- Crowd Strike Certified Cloud Specialist (CCCS)
- Crowd Strike Certified Falcon Responder (CCFR)
- Crowd Strike Certified Falcon Hunter (CCFH)
We are committed to creating an inclusive environment for our team with unquestioned integrity. If you have a special need that requires accommodation, please let your recruiter know. One of our core values is "People with Personality" and we want to allow you the space to bring your full self to work.
We currently offer the following benefits:- Access to medical, dental, and vision insurance through Cigna, with the majority of the employee cost covered by the employer
- Employer funding to HSA accounts and FSA access
- Access to a 401(k) through Vanguard with a guaranteed employer contribution
- Flexible vacation policy that allows you to manage your schedule and rest and recharge when you need to
- 11 holidays with flexibility based on what is important for you and those you love
- Family-friendly benefits, including weeks off for Maternity leave, weeks off for non-birthing parent leave, employer-paid short-term and long-term disability, employer-paid life insurance, and access to additional life insurance, hospital coverage, accidental coverage, discounted mental health support, and more
- Support for individual development through certifications, continued learning, conferences, and more
We value a diverse workforce and a culture of inclusivity and belonging. All employment decisions shall be made without regard to age, race, creed, color, religion, gender, national origin, ancestry, disability status, veteran status, sexual orientation, gender identity or expression, genetic information, marital status, citizenship status, or…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).