Skip to content
NEXTMOVEFDE careers · United States

Manager, Cyber Engineered Defense (CrowdStrike Services)

AI summary of the role

This is a Manager-level role within Kroll's Engineered Defense capability, focused on delivering CrowdStrike consulting services to enterprise clients.

What you’ll do

  • Lead complex, large-scale CrowdStrike deployments and architecture designs, including OT-heavy environments spanning hundreds of thousands of endpoints.
  • Direct and execute Compromise and Hygiene Assessments using CrowdStrike Falcon to identify threats and deliver intelligence to executives.
  • Modernize client detection infrastructures by engineering pipelines into CrowdStrike LogScale Next-Gen SIEM.
  • Provide SOC consulting services, including design and operationalization of 24/7 global Security Operations Centers.

What you’ll bring

  • 8+ years of hands-on cybersecurity experience, specifically building/scaling global SOCs and leading incident response.
  • Deep expertise in CrowdStrike ecosystem (Falcon, OverWatch, Spotlight, LogScale).
  • Strong background in network and detection engineering (YARA, SIGMA, Zeek, Suricata, Detection-as-Code).
  • Proficiency in Python, SQL, Bash for security automation.

Technologies

CrowdStrike Falcon · LogScale · OverWatch · Spotlight · YARA · SIGMA · Zeek · Suricata · Python · SQL · Bash · XSOAR

Source and classification

Implementation & delivery · Evidence for this classification:

At Kroll, we provide reactive, advisory, transformation, and managed security services to support clients at every stage of their path toward cyber and data resilience maturity. Our experts bring decades of experience in cyber risk consultancy, helping organizations across the world simplify and reduce the complexity of implementing, transforming, and managing their cyber programs. Through our strategic multi-year partnership with CrowdStrike, we combine world-class investigative expertise with an AI-native platform to redefine the future of managed detection and response, delivering faster outcomes, stronger protection, and greater resilience for organizations worldwide. The Engineered Defense capability is seeking a specialized Manager to drive our CrowdStrike consulting services. You will act as a trusted advisor to CISOs and executive stakeholders across financial services,
More from the job description

At Kroll, we provide reactive, advisory, transformation, and managed security services to support clients at every stage of their path toward cyber and data resilience maturity. Our experts bring decades of experience in cyber risk consultancy, helping organizations across the world simplify and reduce the complexity of implementing, transforming, and managing their cyber programs. Through our strategic multi-year partnership with CrowdStrike, we combine world-class investigative expertise with an AI-native platform to redefine the future of managed detection and response, delivering faster outcomes, stronger protection, and greater resilience for organizations worldwide. The Engineered Defense capability is seeking a specialized Manager to drive our CrowdStrike consulting services. You will act as a trusted advisor to CISOs and executive stakeholders across financial services, consumer goods, and critical infrastructure sectors. This role focuses heavily on the architecture and deployment of CrowdStrike technologies (including Falcon Complete and LogScale Next-Gen SIEM), conducting advanced compromise and hygiene assessments, threat hunting, and modernizing Security Operations Centers (SOC). Key Responsibilities: • Lead complex, large-scale CrowdStrike deployments and architecture designs, including highly complex or OT-heavy enterprise environments spanning hundreds of tho [... source excerpt omitted ...] e and Hygiene Assessments leveraging CrowdStrike Falcon to establish visibility, identify active threats, and deliver actionable intelligence to executive leadership. • Modernize client detection infrastructures by engineering pipelines to collect, standardize, and forward events into Next-Gen SIEMs, specifically CrowdStrike LogScale. • Provide premier SOC consulting services, including the design, launch, and operationalization of 24/7 global Security Operations Centers, complete with automated quality assurance frameworks. • Lead advanced threat hunting initiatives and annual Purple Team exercises to validate logging, uncover emerging attacker tactics, and close detection [... source excerpt omitted ...] ational funding. • Serve as an Incident Commander during active breaches, coordinating with stakeholders and maintaining business continuity throughout containment and recovery. Requirements: • 8+ years of hands-on experience in cybersecurity, specifically building and scaling global Security Operations Centers and leading enterprise-wide incident response programs. • Deep expertise in the CrowdStrike ecosystem (Falcon, OverWatch, Spotlight, LogScale). • Demonstrated ability to manage cross-functional teams and communicate complex cyber risk to the C-suite and Board of Directors. • Strong background in network and detection engineering (YARA, SIGMA, Zeek, Suricata, Detection-as

How jobs are selected

Employer postings · Data from · Sources