Security Engineer – CrowdStrike Falcon

Posted 7hrs ago

Employment Information

Education
Salary
Experience
Job Type

Report this job

Job expired or something wrong with this job?

Job Description

Senior CrowdStrike CNAPP engineer configuring cloud, Kubernetes, and container security for a cybersecurity consulting firm. Securing government and enterprise environments through hands-on Falcon implementation.

Responsibilities:

  • Configure CrowdStrike Falcon Cloud Security and applicable CNAPP modules in the Falcon console
  • Configure Kubernetes and Amazon EKS security policies
  • Establish CSPM policies and tune CDR detections
  • Configure CWP and runtime security policies across development, non-production, performance, and production environments
  • Execute security use-case testing to validate detection, containment, and admission-control functionality
  • Implement end-to-end container security spanning image scanning, admission control, and runtime protection
  • Configure CIEM capabilities, including entitlement analysis
  • Communicate architecture, implementation decisions, and technical findings to leadership and client stakeholders
  • Partner with the client's Technology and Cloud Engineering teams to implement and mature a CNAPP solution end to end
  • Perform hands-on configuration and implementation in a live production environment

Requirements:

  • 3+ years of hands-on experience configuring CrowdStrike Falcon Cloud Security and CNAPP modules, or a comparable CNAPP platform such as Wiz or Palo Alto Prisma Cloud
  • Experience configuring Kubernetes and Amazon EKS security policies
  • Experience establishing CSPM policies and tuning CDR detections
  • Experience configuring CWP and runtime security policies across development, non-production, performance, and production environments
  • Experience executing security use-case testing to validate detection, containment, and admission-control functionality
  • Experience implementing end-to-end container security, including image scanning, admission control, and runtime protection
  • Experience configuring CIEM capabilities, including entitlement analysis
  • Legally authorized to work in the U.S.
  • Able to perform all work within the continental U.S.
  • Able to work primarily remote with travel approximately once per month
  • Strong AWS and GovCloud platform experience: IAM, IAM Roles for Service Accounts (IRSA), secure networking, GuardDuty, AWS Inspector, AWS KMS
  • Awareness of NIST SP 800-53 Revision 5 and CMS ARC-AMPE guidance
  • CrowdStrike certifications
  • Prior public-sector or government-contracting experience

Benefits:

  • Medical — Multiple POS health plan options including an HSA-compatible plan
  • Dental — PPO coverage for preventive, basic, and major services
  • Vision — Annual exam, frames, lenses, and contact lens allowance
  • 401(k) — Employer match up to 5% of eligible compensation
  • Long-Term Disability — 100% employer-paid coverage at 50% of pre-disability earnings
  • Life Insurance & AD&D — 100% employer-paid coverage valued at $10,000 each
  • PTO — 15–25 days annually based on tenure
  • Paid Federal Holidays — All 11 federal holidays observed