Listed on CrowdStrike’s own careers site. You apply with them directly — we never stand between you and the employer.
What this role is
This role develops security automation and AI-powered workflows for a managed detection and response team, building SOAR playbooks and integrations to enhance analyst efficiency. It suits engineers with 2+ years in automation or cybersecurity who want to apply scripting and API skills to security operations at scale.
Our summary, not CrowdStrike’s wording. The full posting is on their site.
Skills this role names
Log in to see which of these are already on your profile.
What they ask for
Required
- 2+ years of automation, scripting, or cybersecurity experience
- PowerShell proficiency for security investigation and response
- Python working knowledge for automation and API integration
- Low-code/no-code or SOAR workflow automation platform experience
- REST API integration hands-on experience
- Event-driven and webhook-triggered automation design pattern familiarity
- Workflow validation and quality assurance testing design and execution
- Basic SIEM query language understanding
- JSON and Regular Expressions data parsing familiarity
- Incident detection and response workflow understanding in SOC/MDR environments
- Version control system experience (Git, GitHub, GitLab, Bitbucket)
- Self-motivated with strong initiative to work independently
- Results-oriented mindset with passion for solving technical challenges
- Eagerness to learn emerging technologies and automation concepts
- Analytical mindset to translate repetitive processes into automation
- Excellent collaboration and communication skills across SOC, engineering, and leadership teams
- Proven experience utilizing AI technologies to enhance workflows and drive outcomes
Nice to have
- Falcon SOAR platform experience
- LogScale experience
- Self-hosted automation platform deployment experience (Docker or containerized environments)
- Secure credential and secrets management within automation pipelines
- AI workflow frameworks, LLM integration, and basic prompt engineering concepts
- Cybersecurity frameworks familiarity (NIST, MITRE ATT&CK)
- Cloud platform experience (AWS, Azure, GCP)
- Previous SOC or security operations experience
- CrowdStrike Falcon platform and APIs experience
- Creative and optimistic perspective on AI potential with curiosity to experiment
- Passion for advancing AI and automation in cybersecurity