Data Engineer III - Security Engineer (Hybrid)
Role details
Job location
Tech stack
Job description
Experteer Overview In this role, you will design, develop, and maintain out-of-the-box data connectors for CrowdStrike Next-Gen SIEM to ingest security data from third-party products. You'll work within the GDI Integrations Content team to ensure reliable data ingestion, troubleshooting, and documentation. You will collaborate across teams to standardize logging, error handling, and data normalization, leveraging AI-enabled approaches to improve efficiency. This is a hybrid NYC-based position with a strong focus on security data integration and customer-focused support. Compensation / Benefits * Develop and enhance data connectors and parsers for third-party data ingestion into Next-Gen SIEM * Set up lab/test environments to validate connectors and troubleshoot ingestion issues * Troubleshoot and resolve issues with existing connectors for reliable logging * Collaborate to define logging, error handling, data normalization, and documentation * Research and implement best practices for ingesting security logs from various product categories * Create and maintain technical documentation and troubleshooting guides * Provide on-call support for critical data ingestion incidents * Engage with customers and success/support teams to resolve ingestion-related issues Tasks * 6+ years in cybersecurity and SIEM integrations * Experience building data connectors or ingestion pipelines for SIEMs (Splunk, Sentinel, Exabeam, QRadar) * Experience with security data normalization, parsing, and enrichment * Experience with security products and environments (Firewalls, IDS/IPS, EDR, CASB, Identity Security, Email Security) * Knowledge of log formats (Syslog, CEF, LEEF, JSON, XML) * Familiarity with log processing/shipping tools (Cribl, Splunk forwarder, Azure monitoring agent, LogScale) * Experience with cloud-native logging services (AWS CloudWatch, Azure Monitor, GCP Logging) * Proficiency in Python or Go * Strong documentation, communication and customer interaction skills * Proven experience using AI technologies to improve workflows * Bachelor or Master in CS or equivalent work experience Key requirements * Market leader in compensation and equity awards * Wellness programs * Competitive vacation and holidays * Paid parental and adoption leaves * Professional development opportunities * Employee networks and volunteer opportunities
Requirements
_ ingesting security logs from various product categories * Create and maintain technical documentation and troubleshooting guides * Provide on-call support for critical data ingestion incidents * Engage with customers and success/support teams to resolve ingestion-related issues Tasks * 6+ years in cybersecurity and SIEM integrations * Experience building data connectors or ingestion pipelines for SIEMs (Splunk, Sentinel, Exabeam, QRadar) * Experience with security data normalization, parsing, and enrichment * Experience with security products and environments (Firewalls, IDS/IPS, EDR, CASB, Identity Security, Email Security) * Knowledge of log formats (Syslog, CEF, LEEF, JSON, XML) * Familiarity with log processing/shipping tools (Cribl, Splunk forwarder, Azure monitoring agent, LogScale) * Experience with cloud-native logging services (AWS CloudWatch, Azure Monitor, GCP Logging) * Proficiency in Python or Go * Strong documentation, communication and customer interaction skills * aaaa
- experience using AI technologies to improve workflows * Bachelor or Master in CS or equivalent work experience Key requirements * Market leader in compensation and equity awards * Wellness programs * Competitive vacation and holidays * Paid parental and adoption leaves * Professional development opportunities * Employee networks and volunteer opportunities