CrowdStrike Architect
- Experience:
- 10+ years of experience in endpoint security or related IT security fields, with in-depth knowledge and hands-on experience with CrowdStrike Falcon Prevent, Falcon Insight, Falcon OverWatch, Falcon Discover, Falcon Device Control, Falcon Complete, and Falcon Identity Protection.
- Proven experience with troubleshooting, incident response, and threat mitigation in a complex security environment.
- Experience working in a support or managed services role, assisting clients with technical issues and system configurations.
- Technical Skills:
- Advanced knowledge of Windows, Linux, and macOS operating systems, including endpoint protection techniques, malware analysis, and security configurations.
- Strong understanding of security concepts such as endpoint detection and response (EDR), threat intelligence, SIEM, and vulnerability management.
- Familiarity with scripting and automation tools, such as PowerShell, Python, or Bash, for system administration, automation, and incident remediation.
- Experience with security information and event management (SIEM) solutions, log analysis, and integrating them with CrowdStrike products.
- Certifications:
- CrowdStrike Certified Falcon Administrator (CCFA) or equivalent CrowdStrike certifications are highly preferred.
- Other relevant certifications, such as CISSP, CISM, CEH, GIAC, or similar, are a plus.
- Problem-Solving & Analytical Skills:
- Excellent problem-solving skills, with the ability to investigate complex technical issues and provide effective solutions.
- Strong analytical and forensic skills to analyze endpoint data, identify threats, and develop action plans for remediation.
- Communication Skills:
- Strong written and verbal communication skills, including the ability to explain complex technical concepts to non-technical stakeholders.
- Comfortable interacting with customers, managing escalations, and providing clear updates during incident investigations.
- Teamwork & Collaboration:
- Proven ability to work effectively in a team environment and collaborate across multiple functions to solve technical problems.
Preferred Qualifications:
- Experience with cloud security platforms (AWS, Azure, Google Cloud) and managing endpoint security in cloud environments.
- Familiarity with other security tools and platforms, such as vulnerability scanners, network security tools, or threat intelligence services.
- Experience with advanced malware analysis or reverse engineering