自动化工程师 II,Falcon Complete
Automation Engineer II, Falcon Complete
作为网络安全领域的全球领导者,CrowdStrike 保护推动现代组织的人员、流程和技术。自 2011 年以来,我们的使命从未改变——我们致力于阻止安全事件,并通过全球最先进的 AI 原生平台重新定义现代安全。我们处理大规模分布式系统,每天处理近 3 万亿个事件,且这一数据每天都在增长。我们的客户遍布各个行业,他们依赖 CrowdStrike 来保障业务运行、社区安全和生活持续向前。我们自豪于为一家以使命驱动的公司工作,利用 AI 改变我们的工作方式。CrowdStrike 员工通过灵活性和自主性推动自己的职业发展,同时也被期望为负责任的 AI 采用、实验和创新文化做出贡献。我们以 AI 优先的思维作为增效工具,主动并持续地加速执行、建立专业知识、发现洞察并解决复杂问题。我们一直在寻找有才华的 CrowdStrikers 加入团队,他们充满无限热情,对创新有不懈的专注,并对客户、社区和彼此有狂热的承诺。准备好加入一项有意义的使命了吗?网络安全的未来从你开始。
职位简介:
作为 Falcon Complete 管理检测与响应(MDR)团队的 Automation Engineer II,你将通过自动化和 AI 发展专业技能,同时应用公司政策和流程来解决各种自动化挑战,以扩大我们的安全运营。你将建立高效内部和外部的工作关系,以支持我们通过增强的检测分类、调查和响应工作流来最大化分析师效率的使命。该职位涉及中等范围的问题,通常需要对情况或数据进行详细分析,需要审查多种因素。你将专注于构建 SOAR 情景剧本、AI 驱动的工作流和脚本解决方案,同时在既定程序和实践中运用判断力,对于新任务有基本的指导。
你将负责:
自动化开发
- 协助在 SOAR 平台上构建和维护安全自动化工作流和情景剧本,以简化调查、分类和响应操作
- 开发 PowerShell 和 Python 脚本用于安全增强、修复和基础取证功能
- 协助 SIEM 查询集成
查看英文原文
As a global leader in cybersecurity, CrowdStrike protects the people, processes and technologies that drive modern organizations. Since 2011, our mission hasn’t changed — we’re here to stop breaches, and we’ve redefined modern security with the world’s most advanced AI-native platform. We work on large scale distributed systems, processing almost 3 trillion events per day and this traffic is growing daily. Our customers span all industries, and they count on CrowdStrike to keep their businesses running, their communities safe and their lives moving forward. We're proud to work for a mission-driven company leveraging AI to transform the way we work. CrowdStrikers drive their careers through flexibility and autonomy while also being expected to contribute to a culture of responsible AI adoption, experimentation, and innovation. We use an AI-first mindset as a force multiplier to proactively and continuously accelerate execution, build expertise, uncover insights, and solve complex problems. We’re always looking to add talented CrowdStrikers to the team who have limitless passion, a relentless focus on innovation and a fanatical commitment to our customers, our community and each other. Ready to join a mission that matters? The future of cybersecurity starts with you.
About the Role:
As an Automation Engineer II on our Falcon Complete Managed Detection & Response (MDR) team, you will develop professional expertise in scaling our security operations through automation and AI while applying company policies and procedures to resolve a variety of automation challenges. You will build productive internal and external working relationships to support our mission of maximizing analyst efficiency through augmented detection triage, investigation, and response workflows. This role involves working on problems of moderate scope which often call for detailed analysis of situations or data, requiring review of a variety of factors. You will focus on building SOAR playbooks, AI-powered workflows, and scripted solutions while exercising judgment within defined procedures and practices, with general instructions on new assignments.
What You'll Do:
Automation Development
- Assist in building and maintaining security automation workflows and playbooks in SOAR platforms to streamline investigation, triage, and response actions
- Develop PowerShell and Python scripts for security enrichment, remediation, and basic forensic functions
- Assist with SIEM query integration into automated workflows to provide context for security investigations
AI Integration & Learning
- Learn AI workflow concepts and assist with implementation under guidance
- Apply data parsing techniques using JSON and Regular Expressions for security data manipulation
Collaboration & Innovation
- Partner with SOC analysts and engineering teams to identify high-value automation opportunities
- Proactively collaborate with Falcon Complete SOC analysts to gather feedback and identify automation opportunities
- Maintain version control of automation scripts and workflows using Git platforms
- Support initiatives to improve operational efficiency and contribute ideas for analyst productivity improvements
- Stay current with emerging technologies in SOAR, automation, and AI, and evaluate their application to MDR operations
What You'll Need:
Successful candidates will have experience in one or more of the following areas:
- 2+ years of experience in automation, scripting, or cybersecurity (relevant security experience considered)
- Proficiency with PowerShell for security investigation and response tasks
- Working knowledge of Python for automation and API integration
- Basic understanding of SIEM query languages and security analytics
- Familiarity with data formats (JSON) and Regular Expressions for data parsing
- Understanding of incident detection and response workflows in SOC/MDR environments
- Experience with version control systems (Git, GitHub, GitLab, Bitbucket)
- Self-motivated with strong initiative and ability to work independently
- Results-oriented mindset with passion for solving complex technical challenges
- Eagerness to learn emerging technologies and automation concepts
- Analytical mindset with the ability to identify and translate repetitive processes into scalable automation
- Excellent collaboration and communication skills for working across SOC, engineering, and leadership teams
- Proven experience utilizing AI technologies to enhance decision-making, streamline workflows and processes, improve efficiency and drive business outcomes.
Bonus Points:
- Falcon SOAR platform experience is a plus
- LogScale (formerly Humio) experience is a plus
- Basic familiarity with AI workflow frameworks and LLM integration
- Familiarity with cybersecurity frameworks (NIST, MITRE ATT&CK)
- Cloud platform experience (AWS, Azure, GCP)
- Previous SOC or security operations experience
- Experience with CrowdStrike Falcon platform and APIs
- Knowledge of generative AI concepts and basic prompt engineering
- Creative and optimistic about the potential of AI, with curiosity to experiment
- Passion for advancing the role of AI and automation in cybersecurity
Education:
- BA or BS / MA or MS degree in Computer Science, Computer Engineering, Math, Information Security, Information Assurance, Information Security Management, Intelligence Studies, Cybersecurity, Cybersecurity Policy, or a related field. Applicants without a degree but with relevant work experience and/or training will be considered.
This role may require the candidate to periodically undergo and pass alcohol and/or drug test(s) during the course of employment.Benefits of Working at CrowdStrike:
- Market leader in compensation and equity awards
- Comprehensive physical and mental wellness programs
- Competitive vacation and holidays for recharge
- Paid parental and adoption leaves
- Professional development opportunities for all employees regardless of level or role
- Employee Networks, geographic neighborhood groups, and volunteer opportunities to build connections
- Vibrant office culture with world class amenities
- Great Place to Work Certified™ across the globe
CrowdStrike is proud to be an equal opportunity employer. We are committed to fostering a culture of belonging where everyone is valued for who they are and empowered to succeed. We support veterans and individuals with disabilities through our affirmative action program.
CrowdStrike is committed to providing equal employment opportunity for all employees and applicants for employment. The Company does not discriminate in employment opportunities or practices on the basis of race, color, creed, ethnicity, religion, sex (including pregnancy or pregnancy-related medical conditions), sexual orientation, gender identity, marital or family status, veteran status, age, national origin, ancestry, physical disability (including HIV and AIDS), mental disability, medical condition, genetic information, membership or activity in a local human rights commission, status with regard to public assistance, or any other characteristic protected by law. We base all employment decisions--including recruitment, selection, training, compensation, benefits, discipline, promotions, transfers, lay-offs, return from lay-off, terminations and social/recreational programs--on valid job requirements.
If you need assistance accessing or reviewing the information on this website or need help submitting an application for employment or requesting an accommodation, please contact us at further assistance.
Find out more about your rights as an applicant.
CrowdStrike participates in the E-Verify program.
Notice of E-Verify Participation
Right to Work
CrowdStrike, Inc. is committed to fair and equitable compensation practices. Placement within the pay range is dependent on a variety of factors including, but not limited to, relevant work experience, skills, certifications, job level, supervisory status, and location. The base salary range for this position for all U.S. candidates is $100,000 - $145,000 per year, with eligibility for bonuses, equity grants and a comprehensive benefits package that includes health insurance, 401k and paid time off.For detailed information about the U.S. benefits package, please click here.
Expected Close Date of Job Posting is:11-15-2026Originally posted on Himalayas