Already filled

Don't miss the next one. Get matching roles delivered to your inbox.

RA

Rapisource LLC

CrowdStrike SIEM Engineer 3

Job summary

Austin

Work model

Fully remote
Only United States
1 month ago
Job description

Solicitation Reference Number: 70126092

Direct Client: Texas Education Agency

Working Title: Network Security Engineer 3 - CrowdStrike SIEM

Work Location: Austin, TX - Remote

JD:

This project will optimize the agency's CrowdStrike SIEM and related CrowdStrike services to improve threat detection, monitoring, and response capabilities. The contractor will expand and tune telemetry, integrate additional high‑value log sources, enhance security dashboards, and support the rollout of additional CrowdStrike services. The effort will increase visibility into endpoint and security risk, improve signal quality and correlation, and provide security leadership with clear insight into security operations effectiveness and overall risk posture.

Expected Outcomes:

  • Expanded and optimized CrowdStrike SIEM telemetry coverage
  • Integration of additional high‑value log sources
  • Improved dashboards for operational and executive visibility
  • Enhanced detection fidelity and monitoring effectiveness
  • Clearer insight for leadership into endpoint risk and security operations performance

Duties to Be Performed:

  • Assess current CrowdStrike SIEM configuration, telemetry coverage, and log ingestion
  • Enable and tune additional CrowdStrike telemetry to improve visibility and signal quality
  • Identify and integrate new high‑value log sources into CrowdStrike SIEM
  • Develop and refine security dashboards aligned to SOC and executive use cases
  • Assist with technical enablement and rollout of additional CrowdStrike services
  • Validate data quality, parsing, and correlation within the SIEM
  • Coordinate with Security Operations, IT Operations, and system owners
  • Identify gaps, risks, and improvement opportunities in monitoring and detection
  • Provide weekly status updates and monthly executive‑level progress summaries
  • Deliver supporting documentation and recommendations to sustain improvements

Deliverables:

  • Summary of work performed and capabilities delivered
  • Documentation supporting all telemetry enablement, log integrations, and dashboard implementations
  • Measurable improvements in monitoring, detection, or visibility
  • Recommendations for future enhancements or next-phase efforts

CANDIDATE SKILLS AND QUALIFICATIONS

Minimum Requirements:

Candidates that do not meet or exceed the minimum stated requirements (skills/experience) will be displayed to customers but may not be chosen for this opportunity.

YearsRequired/PreferredExperience
8RequiredDemonstrated skill with documentation, reporting, and knowledge transfer
8RequiredExperience with Stakeholder Engagement, and Executive Communication
8RequiredExperience in SIEM Detection Engineering and Alert Optimization
8RequiredExperience in Log Source Integration and Data Normalization
3RequiredHands-On Experience with CrowdStrike SIEM and Dashboard Development
5PreferredHands-On Experience with SIEM and Dashboard Development