[Remote] CrowdStrike Next-Gen SIEM Associate Consultant (Remote)
Note: The job is a remote job and is open to candidates in USA. CrowdStrike is a global leader in cybersecurity, dedicated to stopping breaches with their advanced AI-native platform. The Next-Gen SIEM Associate Consultant serves as a technical advisor to strategic customers, focusing on maximizing the value of their Next-Gen SIEM investment through deployment, optimization, and operational support.ResponsibilitiesServe as the primary technical advisor for assigned strategic customer accountsDevelop and maintain trusted advisor relationships with customer security teams and leadershipUnderstand customer security operations workflows, use cases, and business objectivesMentor customer teams on SIEM best practices and threat hunting techniquesGuide customers through Next-Gen SIEM deployment, configuration, and integrationOptimize data ingestion strategies and log source configurationsDesign and implement custom detection rules, correlation searches, and use casesDevelop dashboards, reports, and visualizations tailored to customer requirementsAssist with migration of detection content from legacy SIEM platforms (Splunk, QRadar, etc.)Perform health checks and platform optimization reviewsTroubleshoot complex technical issues and coordinate with engineering teams as neededTrack and report on key performance indicators and success metricsIdentify opportunities for automation and workflow improvementsContribute to internal knowledge base and best practices documentationSkills2+ years of experience in security operations, SIEM administration, or security engineeringFamiliarity with at least one major SIEM platform (Next-Gen SIEM, LogScale, Splunk, QRadar, Sentinel, Chronicle, etc.)Understanding of query languages (SQL, SPL, KQL, CQL, or similar)Experience with detection engineering and correlation rule developmentKnowledge of common log sources (Windows, Linux, network devices, cloud platforms)Familiarity with scripting/automation (Python, PowerShell, Bash)Understanding of cloud security (AWS, Azure, GCP, OCI)Familiarity with endpoint detection and response (EDR) conceptsExceptional communication skills with ability to explain technical concepts to varied audiencesStrong presentation and training delivery capabilitiesSelf-motivated with excellent time management and prioritization skillsCustomer-focused mindset with commitment to driving customer successAbility to work independently in a remote/embedded environmentStrong problem-solving and analytical thinking abilitiesExperience with CrowdStrike Falcon platform and Next-Gen SIEMCrowdStrike certification (CCFA, CCFH, or similar)Previous consulting or customer-facing technical role experienceIndustry certifications (CISSP, GCIA, GCIH, CEH, or similar)Experience with SOAR platforms and security automationKnowledge of threat intelligence platforms and frameworksBenefitsEligibility for bonusesEquity grantsA comprehensive benefits package that includes health insurance, 401k and paid time offMarket leader in compensation and equity awardsComprehensive physical and mental wellness programsCompetitive vacation and holidays for rechargePaid parental and adoption leavesProfessional development opportunities for all employees regardless of level or roleEmployee Networks, geographic neighborhood groups, and volunteer opportunities to build connectionsVibrant office culture with world class amenitiesGreat Place to Work Certified™ across the globeCompany OverviewCrowdStrike is a cybersecurity technology firm that provides cloud-delivered protection for cloud workloads, identity, and data. It was founded in 2011, and is headquartered in Sunnyvale, California, USA, with a workforce of 5001-10000 employees. Its website is http://www.crowdstrike.com.