Jobs and Careers
CR

Consultant - Cloud Security Assessments (Remote)

CrowdStrike
USA CO Remote, United States, United StatesRemotefull_timeVerifiedPosted 9 Jan 2025
💰 $140,000/yr($90,000/yr$140,000/yr)

About the role

As a global leader in cybersecurity, CrowdStrike protects the people, processes and technologies that drive modern organizations. Since 2011, our mission hasn’t changed — we’re here to stop breaches, and we’ve redefined modern security with the world’s most advanced AI-native platform. Our customers span all industries, and they count on CrowdStrike to keep their businesses running, their communities safe and their lives moving forward. We’re also a mission-driven company. We cultivate an inclusive culture that gives every CrowdStriker both the flexibility and autonomy to own their careers. We’re always looking to add talented CrowdStrikers to the team who have limitless passion, a relentless focus on innovation and a fanatical commitment to our customers, our community and each other. Ready to join a mission that matters? The future of cybersecurity starts with you.

About the Role:

CrowdStrike is looking for highly motivated, self-driven, Cloud Security Consultants dedicated to making a difference in global security by protecting organizations against the most advanced adversaries in the world. Our CrowdStrike Professional Services team offers opportunities to expand your skill set through a wide variety of impactful consulting engagements for many of the world's leading organizations. The Cloud Security Consultant would be responsible for delivering cloud security assessments and providing actionable recommendations to enhance the security posture of customer cloud environments.

What You’ll Do:

  • Actively contribute to a cloud assessment methodology - collaborate with leadership, research, and product teams to continuously improve and develop new analysis approaches.

  • Leverage scientific thinking, analytics, and threat intelligence to identify viable attack paths and contextualize risk in client cloud environments based on resource configurations and business context.

  • Develop tools, detections, and queries to work with large data sets at scale, including SIEM analytics, querying APIs, and automating repetitive tasks.

  • Manage client engagements, lead internal teams, and provide regular status updates to clients regarding project status and findings.

  • Analyze cloud security architecture and resource configurations to identify security weaknesses and misconfigurations that may expose cloud environments to threats.

  • Review identity plane configurations and advise clients about hardening authentication and authorization controls, including hybrid identity.

  • Conduct workshops with stakeholders to identify gaps in cloud security management practices and governance, including logging, workload security, DevSecOps, and network security.

  • Write queries and simple scripts to interact with APIs exposed by security tools and cloud control plane services.

  • Produce high-quality written and verbal reports, presentations, recommendations, and findings to key stakeholders including customer management, regulators, and legal counsel.

  • Demonstrate industry thought leadership through blog posts, CrowdCasts, and other public speaking events.

What You’ll Need:

Successful candidates will have experience in one or more of the following areas:

  • At least 6 years of hands-on experience in cloud engineering, DevOps, security, or cloud support roles.

  • A strong understanding of one or more of the following cloud platforms: Azure, M365, AWS, GCP, or OCI.

  • Familiarity with modern cloud workloads - DevOps, CICD pipelines, containers, and related security defenses and pitfalls.

  • Strong analytical skills, attention to details, and critical thinking skills 

  • Excellent communication skills, including a strong ability to communicate executive and/or detailed level findings to clients; ability to effectively communicate tasks, guidance, and methodology with internal teams.

Experience/training in the topics below is beneficial but not essential for consideration:

  • Incident Remediation: strong understanding of targeted attacks and able to create customized tactical and strategic remediation plans for compromised organizations related to major cloud platforms.

  • Cloud Incident Response: knowledge in AWS, Azure, M365, or GCP incident response methodologies.

  • An understanding of Kubernetes management plane, deployment models within public cloud environments, and container security.

A

Apply for this role

Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.

Apply Now →Generate Application Kit

Free account required — sign up in 30s

Company

CrowdStrike

View company profile →