Automation Engineer Ii, Falcon Complete (remote)

CrowdStrike CrowdStrike · Enterprise · Ireland, United Kingdom · Remote

The Automation Engineer II role focuses on scaling security operations through automation and AI within CrowdStrike's Falcon Complete MDR team. Responsibilities include building SOAR playbooks, developing PowerShell and Python scripts for security tasks, integrating SIEM queries, and assisting with AI workflow implementation. The role emphasizes collaboration with SOC analysts and engineering teams to identify automation opportunities and improve operational efficiency.

What you'd actually do

  1. Assist in building and maintaining security automation workflows and playbooks in SOAR platforms to streamline investigation, triage, and response actions
  2. Develop PowerShell and Python scripts for security enrichment, remediation, and basic forensic functions
  3. Assist with SIEM query integration into automated workflows to provide context for security investigations
  4. Learn AI workflow concepts and assist with implementation under guidance
  5. Apply data parsing techniques using JSON and Regular Expressions for security data manipulation

Skills

Required

  • 2+ years of experience in automation, scripting, or cybersecurity
  • Proficiency with PowerShell for security investigation and response tasks
  • Working knowledge of Python for automation and API integration
  • Basic understanding of SIEM query languages and security analytics
  • Familiarity with data formats (JSON) and Regular Expressions for data parsing
  • Understanding of incident detection and response workflows in SOC/MDR environments
  • Experience with version control systems (Git, GitHub, GitLab, Bitbucket)

Nice to have

  • Falcon SOAR platform experience
  • LogScale (formerly Humio) experience
  • Basic familiarity with AI workflow frameworks and LLM integration
  • Familiarity with cybersecurity frameworks (NIST, MITRE ATT&CK)
  • Cloud platform experience (AWS, Azure, GCP)
  • Previous SOC or security operations experience
  • Experience with CrowdStrike Falcon platform and APIs
  • Knowledge of generative AI concepts and basic prompt engineering

What the JD emphasized

  • AI-powered workflows
  • automation challenges
  • automation opportunities
  • emerging technologies in SOAR, automation, and AI
  • AI workflow frameworks and LLM integration
  • generative AI concepts and basic prompt engineering

Other signals

  • AI-powered workflows
  • SOAR playbooks
  • scripted solutions
  • automation