Overview
Senior Engineer II for SOC, responsible for information security controls and incident response using the CrowdStrike Falcon stack.
What you'll do
- Lead security assessments, threat analysis, and vulnerability management using Falcon Exposure Management and Falcon Discover.
- Own and optimize endpoint security using Falcon Prevent, Falcon Insight, Falcon Device Control, and Falcon Firewall Management.
- Act as in-house L3 escalation owner and incident commander for alerts handed off by Falcon Complete and Adversary OverWatch.
- Engineer and administer Falcon Next-Gen SIEM and build automated playbooks in Charlotte AI Agentic SOAR.
- Mature cloud security using Falcon Cloud Security (CNAPP) across AWS/Azure workloads.
- Implement ITDR, SSPM, and AI/workforce and data protection controls using Falcon IT and data security products.
- Develop automation using Falcon APIs and Charlotte AI/SOAR, and document security designs and processes.
What you'll need
- Deep hands-on expertise operating the CrowdStrike Falcon platform end-to-end.
- Proven experience with Falcon Complete MDR and Adversary OverWatch operating models.
- Strong expertise in Falcon Next-Gen SIEM and Charlotte AI Agentic SOAR ingestion, retention, correlation, dashboards, and automated playbooks.
- Experience implementing Identity Threat Detection & Response (ITDR) and NGIS+ privileged access, including SSPM and Zero Trust/IAM strategy.
- Strong scripting/automation skills (Python, PowerShell, Bash) and experience using the CrowdStrike Falcon API.
- Experience investigating complex security issues and leading incidents through an incident lifecycle stages.
- Hands-on experience with AWS, Azure security, and Windows/Linux/macOS endpoint security (Intune and Jamf managed environments under Falcon).
Nice to have
- CrowdStrike certifications (e.g., CCFA / CCFR / CCFH).
Details
- Location: Bangalore, Karnataka.
Read the full description and apply on the company’s own careers page.