Tech Stack
AWSAzureCloudCyber SecurityDistributed SystemsFirewallsGoogle Cloud PlatformGraphQLPythonSplunk
About the role
- Next Gen-SIEM Integrations team responsible for building out-of-the-box integrations for 3rd party products to ingest data into SIEM.
Design, develop, and maintain high quality data connectors for CrowdStrike Next-Gen SIEM.
Evaluate, develop, maintain, and enhance data connectors to ingest data from third-party security products into CrowdStrike Next-Gen SIEM.
Troubleshoot and resolve issues with existing data connectors to ensure reliable log ingestion.
Write clean, maintainable, and testable code, following best practices for backend software development.
Implement CI/CD pipelines, automated testing, and monitoring to ensure software quality and reliability.
Conduct code reviews and provide constructive feedback.
Troubleshoot data ingestion performance issues, ensuring efficient handling of high-volume event streams.
Manage and maintain test environments/labs for validating data connectors and ingestion solutions.
Provide on-call support for critical data ingestion issues and production incidents.
Work with customers, customer success and customer support teams to troubleshoot and resolve data ingestion-related issues.
Requirements
- Bachelor’s or Master’s degree in Computer Science or related field or equivalent work experience.
10+ years of software development experience with strong expertise in Python for backend development, data processing, and API integrations.
Experience in building scalable, reliable, fault-tolerant data ingestion pipelines.
Expertise in consuming data from Cloud Storage, RESTful APIs, GraphQL, and WebSocket and log format such as JSON, CSV, XML, Syslog, CEF, LEEF
Strong understanding of various authentication methods such as OAuth, JWT
Proficiency with Git, branching strategies, and PR reviews in a collaborative development environment.
Experience in setting up CI/CD pipelines for automated testing, integration, and deployment.
Strong debugging, logging, and troubleshooting skills.
Knowledge with cloud environments (AWS, Azure, GCP) and cloud-native logging services (CloudWatch, Azure Monitor, GCP Logging).
Strong documentation, communication, and customer interaction skills.