Engineer II - IOT Security Content

CrowdStrike CrowdStrike · Enterprise · Pune, India

Engineer II focused on IoT Security within the Product Group, specifically for ICS/OT and Healthcare verticals. The role involves understanding OT/IoT domains, identifying and onboarding vulnerability data sources, monitoring threat intelligence, handling customer escalations, and maintaining device inventory. A key aspect is leveraging generative AI tools and designing AI agent workflows to automate vulnerability validation processes, with human oversight. Requires experience in OT/IoT security, vulnerability research, packet analysis tools, Python/Go scripting, and knowledge of OT protocols and security standards.

What you'd actually do

  1. Identify, evaluate, and onboard vulnerability data sources relevant to OT/IoT vendors and devices, assessing reliability, timeliness, and coverage quality.
  2. Monitor threat intelligence and vulnerability disclosures to inform content prioritization.
  3. Handling and troubleshooting Customer escalations, to validate content quality and inform product improvements.
  4. Maintain a structured device inventory and prioritize expansion opportunities based on customer and market needs.
  5. Leverage generative AI tools to accelerate vulnerability analysis, proof-of-concept development, and detection rule creation while maintaining human oversight for validation and detection accuracy.

Skills

Required

  • 3–7 years of hands-on experience in OT/IoT security, vulnerability research, or related technical disciplines
  • Proficiency with packet analysis tools such as Wireshark, Zeek, or Scapy; experience writing custom dissectors or parsers for OT protocols.
  • Experience working in or supporting OT environments, including familiarity with SCADA, DCS, HMI, or other Purdue Model L2/L3 systems and their security considerations.
  • Programming/scripting proficiency for automating tasks, data processing, and pipeline tooling. Python or Go required
  • Working knowledge of IoT/ICS/OT network architecture and the unique security challenges of operational environments
  • Working knowledge of ICS/OT protocols such as Modbus, DNP3, ENIP, and similar
  • Curiosity-driven research mindset, able to identify and evaluate relevant threat intelligence, vulnerability disclosures, and adversary activity in the ICS/OT domain
  • Ability to communicate, collaborate, and work effectively in a globally distributed team, customers and partners.

Nice to have

  • Familiarity with IOT security compliance standards and processes, such as NIST CSF, IEC 62443 or AWIA etc. is good to have

What the JD emphasized

  • AI agent workflows to automate multi-step vulnerability validation processes
  • human oversight for validation and detection accuracy
  • human-in-the-loop verification for critical vulnerability detections and false positive reduction

Other signals

  • Leverage generative AI tools to accelerate vulnerability analysis
  • Design and implement AI agent workflows to automate multi-step vulnerability validation processes