Sr. CrowdStrike Engineer (Endpoint Security) Job at Charles Schwab Corporation, Phoenix, AZ

QnN2ZXBpZnRSR3dyeW9QWTZwc0MxbXJVa2c9PQ==
  • Charles Schwab Corporation
  • Phoenix, AZ

Job Description

Your Opportunity The Senior CrowdStrike Engineer is an individual contributor supporting endpoint security technologies, threat monitoring, and management in Schwab Cybersecurity Services. This role leads the security and infrastructure teams on the design, engineering, and implementation of technology solutions and methodologies to ensure secure endpoints. This role requires advanced level knowledge of the risk and endpoint security landscape to be able to better implement and maintain impactful security solutions. What you're good at Leading the engineering efforts and implementation of endpoint security capabilities in CrowdStrike including EDR, NG-SIEM, DLP, IDP, and Zero Trust. Leading the implementation and adoption of CrowdStrike modules while ensuring all regulatory and compliance standards are met. Collaborating with product and project teams to understand needs and enablement with security products. Strong analysis and decision-making skills with the ability to identify opportunities to mature endpoint security offerings, participate in technical cross-functional sessions, and ensure adherence to change and configuration management principles. Assessing issues and developing resolutions to meet productivity, quality goals, and objectives. What you have A proven track record of experience in implementing enterprise security solutions including design, configuration, installation, customization, automation, and optimization of tools. 5+ years of experience configuring and maturing endpoint security programs, with at least 3 years of hands-on expertise in CrowdStrike Falcon (including EDR, Identity Protection, Data Protection, Exposure Management, SaaS Security, NG-SIEM, Fusion, CWP, or FIM). Proven track record of deploying, configuring, and tuning CrowdStrike agents across enterprise environments (Windows, macOS, Linux). Strong understanding of endpoint detection and response (EDR), threat hunting, IOC/IOA development, and real-time response (RTR). Experience writing and updating queries using CrowdStrike Query Language, or similar SIEM query language such as Splunk. Experience integrating CrowdStrike with

SIEM/SOAR

platforms. Experience integrating multiple security tools to provide enhanced visibility and monitoring capabilities. Experience developing advanced workflows leveraging the CrowdStrike platform. Ability to leverage CrowdStrike telemetry to support incident response investigations. Comfortable collaborating with SOC, threat intel, and infrastructure teams to refine detection logic and reduce false positives. Knowledge of MITRE ATT&CK, malware behaviors, and threat actor TTPs as they relate to endpoint security. Advanced experience with scripting (PowerShell, Python, Bash) for automation and custom response actions. Develop and report enterprise level metrics for endpoint security controls. Architect solutions (initial state, transition, final state architectures). Provide compliance and audit evidence for monitored systems. Document, publish, and maintain a knowledge base of information pertaining to the functionality, processes, and procedures related to the supported tools. One or more endpoint security related technologies CrowdStrike SIEM/SOAR DLP FIM Red Team Penetration testing Incident management and response Qualifications More than 7 years of progressive experience in cybersecurity engineering. CrowdStrike certifications (e.g., CCFR, CCFP) are highly desirable. Advanced experience administering and managing CrowdStrike environments, including Data Protection, Identity Protection, FIM, Next-Gen SIEM, Cloud Security, and Fusion Workflows. Ability to identify security risks and weaknesses and provide security mitigation and remediation recommendations. Demonstrated experience and expertise with multiple security controls within multiple security domains. Bachelor’s Degree in Computer Science, Engineering, or related field required. CISSP, CISM, or other relevant information security industry recognized certification preferred. #J-18808-Ljbffr Charles Schwab Corporation

Job Tags

Similar Jobs

Insight Global

Project Engineer Job at Insight Global

 ...complications. - Acquire easements, permits, and additional authorization to cross pipelines and other existing infrastructure. - Checking drawings, supporting other engineers by submitting survey requests, coordinating with overhead teams to acquire pole location... 

Dassault Aviation

WAREHOUSE RECEIVING CLERK Job at Dassault Aviation

 ...Under the direction of the Spares Inbound Supervisor, the Warehouse Receiving Clerk is responsible for performing the initial physical inspection...  ...Duties:Assist in picking, inspecting, packing and shipping domestic/export ordersRecommend ways to improve efficiency... 

Headlight

Licensed Mental Health Therapist - Hybrid Job at Headlight

 ...Admin Work on Autopilot: We handle insurance, billing, and marketing so you can focus on what you love seeing clients. Innovative...  ...will not be considered. We are currently not hiring associate/intern level therapists. ~2+ years' experience with providing diagnostic... 

LifeBridge Health

CHAPLAIN/ RABBI- BRIDGING LIFE HOSPICE-PRN Job at LifeBridge Health

 ...CHAPLAIN/ RABBI- BRIDGING LIFE HOSPICE-PRN ~ Westminster, MD ~CARROLL HOSPITAL ~HOME HOSPICE-EAST ~PRN - As Needed - Hours Vary ~Support Services/Security/Trade ~87832 ~$24.38-$36.57 ~ Posted: April 7, 2025 Apply Now Save Job Saved... 

Nightingale Nurses

Travel Resource Pool Registered Nurse (Medsurg, Stepdown & Telemetry) - $2,360per week Job at Nightingale Nurses

 ...Nightingale Nurses is seeking a travel nurse RN Stepdown for a travel nursing job in Morgantown, West Virginia. & Requirements ~ Specialty: Stepdown ~ Discipline: RN ~ Start Date: 05/31/2025~ Duration: 13 weeks ~36 hours per week ~ Shift: 12 hours, days...