Crowdstrike Next-gen Siem Sr. Resident Consultant (remote)

CrowdStrike CrowdStrike · Enterprise · TX +1 · Remote

CrowdStrike is seeking a Senior Resident Consultant to provide technical advisory services to strategic customers, focusing on maximizing the value of their CrowdStrike Next-Gen SIEM investment. This role involves guiding customers through deployment, configuration, optimization, and operational support of the SIEM environment, including data ingestion, detection rule development, and dashboard creation. The consultant will also mentor customer teams on SIEM best practices and threat hunting techniques, and contribute to internal knowledge sharing.

What you'd actually do

  1. Serve as the primary technical advisor for assigned strategic customer accounts
  2. Develop and maintain trusted advisor relationships with customer security teams and leadership
  3. Understand customer security operations workflows, use cases, and business objectives
  4. Mentor customer teams on SIEM best practices and threat hunting techniques
  5. Guide customers through Next-Gen SIEM deployment, configuration, and integration

Skills

Required

  • 8+ years of experience in security operations, SIEM administration, or security engineering
  • Familiarity with at least one major SIEM platform (Next-Gen SIEM, LogScale, Splunk, QRadar, Sentinel, Chronicle, etc.)
  • Understanding of query languages (SQL, SPL, KQL, CQL, or similar)
  • Experience with detection engineering and correlation rule development
  • Knowledge of common log sources (Windows, Linux, network devices, cloud platforms)
  • Familiarity with scripting/automation (Python, PowerShell, Bash)
  • Understanding of cloud security (AWS, Azure, GCP, OCI)
  • Familiarity with endpoint detection and response (EDR) concepts
  • Exceptional communication skills with ability to explain technical concepts to varied audiences
  • Strong presentation and training delivery capabilities
  • Self-motivated with excellent time management and prioritization skills
  • Customer-focused mindset with commitment to driving customer success
  • Ability to work independently in a remote/embedded environment
  • Strong problem-solving and analytical thinking abilities

Nice to have

  • Familiarity with several major SIEM platforms (Next-Gen SIEM, LogScale, Splunk, QRadar, Sentinel, Chronicle, etc.)
  • Experience with CrowdStrike Falcon platform and Next-Gen SIEM
  • CrowdStrike certification (CCFA, CCFH, or similar)
  • Previous consulting or customer-facing technical role experience
  • Industry certifications (CISSP, GCIA, GCIH, CEH, or similar)
  • Experience with SOAR platforms and security automation
  • Knowledge of threat intelligence platforms and frameworks

What the JD emphasized

  • 8+ years of experience in security operations, SIEM administration, or security engineering
  • Familiarity with at least one major SIEM platform (Next-Gen SIEM, LogScale, Splunk, QRadar, Sentinel, Chronicle, etc.)
  • Understanding of query languages (SQL, SPL, KQL, CQL, or similar)
  • Experience with detection engineering and correlation rule development
  • Familiarity with scripting/automation (Python, PowerShell, Bash)