Salary
💰 $120,000 - $180,000 per year
Tech Stack
Cyber SecurityDistributed SystemsJenkins
About the role
- We are looking for a hands-on, detail oriented Detection Content Operations Engineer to manage the end-to-end release, triage, and observability of security detections in production.
You’ll play a critical role in scaling our detection engineering operations by owning the execution and monitoring of detection content as it moves through deployment pipelines and into the field.
This role is at the intersection of release operations, runtime health, and first-level anomaly investigation.
You’ll work closely with detection authors, release pipelines, runtime dashboards, and anomaly data - becoming the first line of defense in ensuring detection efficacy and release stability at scale.
Execute detection content deployments through CrowdStrike’s internal tooling and manage progression through each stage.
Monitor runtime telemetry and stage health to detect anomalies, regressions, or unexpected behavior post-release.
Perform first-level triage on anomalous detection hits and partner with detection engineers to route or resolve issues.
Define common mechanisms for rollbacks and alerting to standardize response to deployment issues.
Create, maintain, and improve dashboards and playbooks for monitoring detection content health and release performance.
Contribute feedback back into the authoring and QA process to improve detection efficacy.
Help reduce operational friction and improve release reliability through automation or tooling improvements.
Create and publicize customer facing release notes, as well as own and execute internal communication for each release.
Requirements
- Experience with threat detection platforms, SIEMs, EDRs, or detection-driven security workflows.
Some experience in SRE, QA, release engineering or a similar hands-on operational role.
Comfort with telemetry, logs, dashboards, and anomaly detection in large-scale distributed systems.
Experience executing or coordinating structured releases in CI/CD environments.
Familiarity with common CI/CD tools such as Jenkins, Git, or Bitbucket
Problem solving mindset with a focus on root cause analysis.
Energetic “self starter” mentality with the ability to take ownership and be accountable for deliverables
The ability to thrive in a fast paced, test-driven, collaborative and iterative programming environment.
Clear written and verbal communication skills to drive triage and cross-functional alignment.
Passion for detection engineering, threat analysis, or security research, with the motivation to grow into more advanced roles.