Resident Services Senior Consultant (remote)

CrowdStrike CrowdStrike · Enterprise · United States · Remote

This role is for a Senior Resident Consultant at CrowdStrike, focusing on their AI-native Next-Gen SIEM platform. The consultant will act as a technical advisor to strategic customers, guiding them through deployment, configuration, integration, optimization, and operational use of the SIEM. Responsibilities include developing custom detection rules, dashboards, and reports, assisting with migrations, performing health checks, troubleshooting, and identifying automation opportunities. The role requires strong technical skills in SIEM administration, security operations, detection engineering, and scripting, along with excellent communication and customer-facing abilities. While the platform is AI-native, the role itself is focused on customer implementation and operationalization rather than core AI/ML model development.

What you'd actually do

  1. Serve as the primary technical advisor for assigned strategic customer accounts
  2. Develop and maintain trusted advisor relationships with customer security teams and leadership
  3. Understand customer security operations workflows, use cases, and business objectives
  4. Guide customers through Next-Gen SIEM deployment, configuration, and integration
  5. Optimize data ingestion strategies and log source configurations

Skills

Required

  • 8+ years of experience in security operations, SIEM administration, or security engineering
  • Familiarity with at least one major SIEM platform (Next-Gen SIEM, LogScale, Splunk, QRadar, Sentinel, Chronicle, etc.)
  • Understanding of query languages (SQL, SPL, KQL, CQL, or similar)
  • Experience with detection engineering and correlation rule development
  • Knowledge of common log sources (Windows, Linux, network devices, cloud platforms)
  • Familiarity with scripting/automation (Python, PowerShell, Bash)
  • Understanding of cloud security (AWS, Azure, GCP, OCI)
  • Familiarity with endpoint detection and response (EDR) concepts
  • Exceptional communication skills with ability to explain technical concepts to varied audiences
  • Strong presentation and training delivery capabilities
  • Self-motivated with excellent time management and prioritization skills
  • Customer-focused mindset with commitment to driving customer success
  • Ability to work independently in a remote/embedded environment
  • Strong problem-solving and analytical thinking abilities

Nice to have

  • Familiarity with several major SIEM platforms (Next-Gen SIEM, LogScale, Splunk, QRadar, Sentinel, Chronicle, etc.)
  • Experience with CrowdStrike Falcon platform and Next-Gen SIEM
  • CrowdStrike certification (CCFA, CCFH, or similar)
  • Previous consulting or customer-facing technical role experience
  • Industry certifications (CISSP, GCIA, GCIH, CEH, or similar)
  • Experience with SOAR platforms and security automation
  • Knowledge of threat intelligence platforms and frameworks

What the JD emphasized

  • 8+ years of experience in security operations, SIEM administration, or security engineering