-
Undelucram.ro

Threat Detections Engineer (Remote, ROU)

Undelucram.ro
Romania · Full-time · Entry

Undelucram.ro on behalf of:

Crowdstrike SRL

About The Role

The Falcon Cloud Security (FCS) Detection Engineering team enables CrowdStrike’s primary mission of Stopping the Breach, through a shift-left approach that focuses on helping customers of cloud computing manage their risk posture. We do this by writing and maintaining detection rules that assess cloud assets to identify risks and opportunities for improvement. We start by using research to define best practices for cloud security, which we translate into detection rules we author and deploy as code into the FCS product ecosystem. In addition to posture management, the Detection Engineering team researches threats to cloud services & assets, and writes detection rules to identify abuses and attacks.

This role combines a blend of skill sets including security operations & incident response, data analytics, risk management, software development, and threat research. If you enjoy researching cloud security issues and developing detection content as code, all in a fast-paced environment with broad collaboration across a diverse team, this role is for you.

As a member of the Falcon Cloud Security Detection Engineering team, you will be responsible for performing research into cloud threats, vulnerabilities, and abuses, to determine configuration best practices that can be used to secure cloud services and assets. You will also be responsible for developing and deploying detection rules as code into the FCS product ecosystem along with writing descriptions that customers will use to understand and action alerts generated by these rules.

What You’ll Need

  • Professional experience in cloud security-related operations and engineering roles, specifically related to threat detection, incident response, and risk management.
  • Experience with data analytics, including searching large data sets, correlating attributes, interpreting results, extracting insights, and forming data-driven conclusions.
  • Experience with searching data with analytics tools including Elastic Search, Splunk, or a SIEM.
  • A working practical knowledge of at least one of the following Cloud Service Providers: AWS, Azure, GCP, OCI.
  • A practical understanding of industry security standards and control frameworks such as NIST, CISA, CIS, HIPAA, HISTRUST, PCI and others.
  • Experience developing, deploying, and maintaining code in formalized software development/CICD workflows including the use of BitBucket to manage code deployments.
  • Familiarity with the Agile methodology for project management.
  • Experience in a DevOps or similar role that required use of Python and GO.
  • Ability to author and run Elastic Search queries and interpret results from large data sets.
  • Proficient in the English language with strong written and verbal communication skills.
  • A passion for quality and experience optimizing results.

Bonus

  • Experience writing detection rules with the Open Policy Agent query language, Rego.
  • Having served in a role focused on Detection Engineering; writing detection rules used by other teams.
  • Formalized training or certification in cloud computing, including administration, development, engineering, or architecture.

Key Skills

Ranked by relevance

cloud cloud security incident response python devops splunk hipaa cisa nist aws gcp cis
Login to Apply
Posted
Feb 01, 2025
Type
Full-time
Level
Entry
Location
Romania

Industries

Technology Information Internet Software Development IT Services IT Consulting

Categories

Engineering Information Technology

Related Jobs

3 roles aligned with this opportunity

View all jobs
View Job Details
Undelucram.ro
Related

Senior Cloud DevOps Engineer

2026-03-26

Full-time
Mid-Senior
Romania
Technology
Engineering
View Job Details
Undelucram.ro
Related

Senior Java Software Engineer - Big Data

2026-04-08

Full-time
Not Applicable
Romania
Technology
Engineering
View Job Details
Undelucram.ro
Related

Frontend Engineer - Counter Adversary Operations team (Hybrid, ROU)

2026-04-07

Full-time
Entry
Romania
Technology
Engineering