Detection Focused Senior Cloud Security Consultant - Japac (remote)

CrowdStrike CrowdStrike · Enterprise · WA, Australia +3 · Remote

CrowdStrike is seeking a Senior Cloud Security Consultant in JAPAC to conduct cloud security assessments, design and build detection logic, and write automation for security tasks. The role involves partnering with Red Teams, collaborating with internal teams, producing reports, managing client engagements, and contributing to service offering development. The ideal candidate has strong practical experience with AWS and Azure, detection engineering skills, cloud security configuration analysis experience, and scripting ability in Python. Familiarity with AI tooling for code generation, data analysis, and query development is also mentioned.

What you'd actually do

  1. Conduct cloud security assessments across a range of environments, focusing primarily on AWS and Azure: reviewing configurations, identity architectures, network exposure, and attack paths to surface the risks that actually matter.
  2. Design and build detection logic and alerting for cloud control plane activity, identity-based threats, and misconfiguration-driven exposure across cloud-native and third-party security platforms.
  3. Write automation to speed up assessment work, extract and correlate data across large datasets, and turn repeatable analysis into something the team can use again.
  4. Partner with our Red Team during Purple Team exercises: testing customer detection and response capabilities and translating the gaps into concrete recommendations.
  5. Collaborate with internal delivery teams to help turn assessment findings into detection content that's ready to deploy.

Skills

Required

  • AWS and Azure
  • cloud security assessments
  • detection logic and alerting
  • automation scripting
  • Python
  • KQL
  • SPL
  • cloud-native query engines
  • AI tooling
  • written and verbal communication in English
  • client relationship management

Nice to have

  • GCP experience
  • traditional enterprise environments detection engineering
  • on-premises Active Directory
  • Windows endpoint telemetry
  • classic Wintel infrastructure
  • Cloud incident response experience
  • Kubernetes and container security
  • CI/CD pipeline security
  • DevSecOps practices
  • Mandarin
  • Japanese
  • Hindi
  • Thai
  • AWS Certified Security Specialty
  • AZ-500

What the JD emphasized

  • genuine curiosity about cloud attack techniques
  • drive to build the detection and defensive capability to counter them
  • technical depth
  • client credibility
  • building detection content that works
  • working knowledge of how threat actors operate in cloud environments
  • ability to translate that into detections that actually fire on the right things
  • tracing how misconfigurations chain together into realistic attack paths
  • analysis that tells a coherent story rather than producing a list of isolated findings
  • Solid scripting ability in Python or equivalent
  • comfortable building tools to automate assessment tasks
  • work with large datasets
  • extend existing frameworks
  • writing queries across platforms such as KQL, SPL, or cloud-native query engines
  • Comfortable using AI tooling to sharpen and accelerate their work
  • enough critical judgement to know when the output needs work
  • Strong written and verbal communication in English
  • write a finding that prompts a CISO to act
  • explain a detection gap to an engineer without losing either audience
  • Comfortable presenting to senior stakeholders
  • managing client relationships directly
  • adapt your approach across different business cultures
  • working effectively across that range is part of the job
  • built real depth in cloud platforms and security over time