CrowdStrike Endpoint Security Engineer
Keywords:
- CrowdStrike
- Linux operating systems
Role Description:
- Provide operational support and administration of CrowdStrike Falcon EDR platform across diverse environments, especially Linux-based systems.
- Monitor agent deployments, troubleshoot issues, and ensure consistent coverage and compliance across all endpoints.
- Perform health checks, tuning, and configuration of policies, sensor updates, and detection rules.
- Collaborate with SOC and threat analysts to investigate alerts, remediate threats, and improve detection capabilities.
- Work with endpoint and infrastructure teams to ensure proper agent installation and performance on Linux, Windows, and MacOS systems.
- Maintain system documentation, SOPs, and security baselines for endpoint protection tools.
- Act as a point of escalation for security tool-related incidents and issues.
- Assist with integration of CrowdStrike with SIEMs, ticketing systems, and other security platforms.
- Support vulnerability management and threat detection initiatives related to endpoint security.
- Participate in platform upgrades, testing, patching, and performance tuning.
Competencies:
- CrowdStrike Endpoint Detection And Response
Experience (Years):
- 6–8
Essential Skills:
- Bachelor’s degree in Computer Science, Information Security, or a related field (or equivalent experience).
- 2–5 years of experience in security platform support, endpoint protection, or system administration.
- Hands-on experience with CrowdStrike Falcon deployment, configuration, and troubleshooting.
- Strong knowledge of Linux operating systems (Red Hat, CentOS, Ubuntu, etc.) including command line, scripting, and system logs.
- Familiarity with Windows endpoint environments and Active Directory integration.
- Working knowledge of EDR/EPP solutions, detection methodologies, and response processes.
- Ability to read and interpret security logs and detection events.
Desirable Skills:
- Experience with security monitoring, SIEM tools (e.g., Splunk, QRadar, Sentinel).
- Scripting skills in Bash, Python, or PowerShell.
- Experience with macOS endpoint management.
- CrowdStrike-related certifications or training.
- Exposure to other security tools/platforms such as Tanium, SentinelOne, Carbon Black, etc.
- Familiarity with vulnerability management tools like Qualys, Rapid7, or Tenable.
Job Types: Full-time, Fixed term contract
Work Location: Hybrid remote in Brampton, ON