Platform Professional Services Associate Consultant (remote, Can)

CrowdStrike CrowdStrike · Enterprise · ON · Remote

CrowdStrike is seeking an Associate Consultant for their Platform Professional Services team, focusing on Falcon Next-Gen SIEM. This role involves acting as a trusted advisor to customers, providing technical guidance, demonstrating SIEM capabilities, and developing roadmaps. The consultant will operationalize Next-Gen SIEM, help expand use cases, and provide feedback to product management. The role requires experience with log management/SIEM and SOAR solutions, cloud providers, and traditional IT security functions. Experience using AI platforms for integrations and security data synthesis is required, with bonus points for applied experience with generative AI.

What you'd actually do

  1. Work with other CrowdStrike Professional Services consultants and independently providing best-in-class delivery and integration services to a wide range of organizations and verticals
  2. Act a trusted advisor to help lead customers to mature outcomes using next generation SIEM, log management, AI assisted investigations and SOAR features and functionality
  3. Provide knowledge transfer of Falcon Next-Gen and other relevant Falcon modules to our customers

Skills

Required

  • Fundamental/academic understanding of common Information Security principles and standards
  • 2+ years of experience working with log management/SIEM solutions (e..g, Falcon Next-Gen SIEM, Splunk, Chronicle, Exabeam, QRadar, Sumo Logic, etc) and SOAR (e.g., CrowdStrike Fusion, Palo Alto XSOAR, Splunk SOAR, Tines, Swimlane etc.) in a Security Operations role, a consulting role or similar capacity
  • Knowledge of skills and best practices related to log analysis, data onboarding, parsing, developing searches, dashboards, and reviewing alerts within an information security analysis/investigation tool
  • Experience (1+ years) knowledge of common cloud providers and their services such as AWS, GCP, and Azure, including hands on configuration of policies and integrations with applications
  • Experience (2+ years) knowledge of supporting traditional IT Security functions such as directory services, authentication, networking, data storage, endpoint security
  • Experience using an AI platform for development of integrations, synthesis of security data, assisting with code reviews
  • Experience developing documentation to internal stakeholders and external parties as necessary
  • Strong problem-solving, written and oral communication skills in English

Nice to have

  • Experience creating, interpreting and modifying configuration, automation and integration scripts with languages, tools and standards such as Python, Powershell, Javascript, YAML, REST API, GO, Cribl, Postman, etc.
  • Experience working at a InfoSec software or services organization on technical scoping and requirements gathering
  • Recent (last 2 years) industry certifications with SANS, ISC2, Amazon, Microsoft, Google and other organizations within the Information Security domain
  • Long term (6 months min) recent experience within a SOC performing analysis and triage of security incidents using a SIEM, Log Management and/or SOAR platform
  • Applied knowledge and integration experience, with demonstrable use cases with a generative AI platform.

What the JD emphasized

  • AI assisted investigations
  • AI platform for development of integrations
  • generative AI platform