CrowdStrike, Inc.
CrowdStrike, Inc.Verified Source

Engineer II Threat Detection - Windows (Hybrid)

100K–145K
Partially · San Jose, California
Posted August 12, 2026
payroll

Overview

CrowdStrike seeks an Engineer II to lead threat detection on Windows endpoints. This hybrid role involves analyzing emerging threats and authoring behavioral detection rules. You will collaborate across teams to mitigate intrusions and improve detection coverage at scale.

What You'll Do9

  • 1Analyze emerging threats and malware telemetry to identify detectable behaviors and coverage gaps
  • 2Author and optimize behavioral detection rules targeting adversary techniques on Windows endpoints
  • 3Query endpoint telemetry to validate detection hypotheses and assess coverage
  • 4Monitor detection precision metrics and tune detections to maintain high signal-to-noise ratios
  • 5Manage detection lifecycle from development to production monitoring
  • 6Collaborate with threat intelligence and incident response teams to prioritize detection development
  • 7Take ownership of solving detection gaps that protect customers
  • 8Work independently and cross-functionally within a cutting-edge threat detection team
  • 9Stay current with AI-assisted tools and detection engineering best practices

Requirements10

  • 1Eligible for CJIS clearance with U.S. citizenship or Green Card status
  • 2Bachelor's degree in information security or related field or 4+ years equivalent experience
  • 3Proficiency in Windows OS internals and detection platforms like Falcon sensor
  • 4Experience with behavioral malware analysis and detection rule authoring
  • 5Strong understanding of MITRE ATT&CK and adversary tactics
  • 6Ability to translate threat intelligence into actionable detection opportunities
  • 7Experience with regex optimization and detection content lifecycle management
  • 8Familiarity with endpoint telemetry analysis and detection precision concepts
  • 9Passion for detection engineering and continuous learning
  • 10Experience with AI technologies to enhance security workflows

Salary Insight

$100 - $145k per year

Location

Typepartially
LocationSan Jose, California

Required Skills

Windows OS internalsPowerShellPythonregular expressionsendpoint detection platformsbehavioral malware analysis
Share:

Similar open positions

Explore active roles that match your skills and interests.

CrowdStrike, Inc.

CrowdStrike, Inc.

1d agoSeattle, Washingtonpayroll

Senior Software Engineer Windows Sensor Hybrid

CrowdStrike seeks a Senior Software Engineer to lead detection technology development for Windows sensors. The role involves designing and building detection logic, researching malicious techniques, and collaborating across teams. Candidates must have strong Windows internals expertise and a passion for AI-driven security solutions.

140K–215K
C/C++C++Python+6 more

SMART TECH SKILLS LLC

1d agoAustin, Texaspayroll

Detection Engineering & SOAR Architect - SMART TECH SKILLS LLC

Senior Security Operations Analyst leads detection response and orchestration at a public sector organization. This role builds scalable AI-assisted workflows using CrowdStrike Falcon and Torq while enforcing Zero Trust principles. The ideal candidate drives detection engineering excellence and differentiates through advanced automation and governance.

Competitive salary
CrowdStrike FalconTorqPowerShell+6 more
AssetMark Financial Holdings, Inc.

AssetMark Financial Holdings, Inc.

12d agoAtlanta, Georgiapayroll

Security Engineer II - Cloud & IAM | AssetMark

You will own security operations for AssetMark's hybrid cloud environment, protecting AWS and Azure workloads and IAM infrastructure. You will work alongside engineering teams to embed security into the software development lifecycle, integrating CrowdStrike Falcon, Check Point Harmony, and Microsoft Defender. Your role focuses on incident response, vulnerability management, and threat modeling for key products. This position stands out for its hybrid schedule and direct impact on securing a leading advisor platform.

Competitive salary
AWSAzurePowerShell+9 more
BCforward

BCforward

22h agoPhoenix, Arizonapayroll

Cyber Security Engineer, SOC & Incident Response

Own security monitoring and incident response for a Fortune 500 client in Phoenix, AZ. You will join BCforward's security operations team, working onsite to detect, investigate, and mitigate threats across a hybrid cloud and on-premise environment. This role demands hands-on expertise with SIEM platforms and EDR tools, with a direct impact on the client's security posture.

135K–146K
splunkcrowdstrikeaws+2 more

Cylake-Inc

1d agoSan Jose, Californiapayroll

Security Researcher (Detection Systems)

Join Cylake-Inc in San Jose, California for an onsite opportunity. Lead the creation of next-generation cybersecurity products from the ground up. Shape the future of threat detection while growing your career with a world-class team.

150K–250K
Python programmingC/C++/Rust/GoThreat hunting+11 more
Conquest Consulting

Conquest Consulting

1d agoAustin, Texaspayroll

Senior SOC Detection Engineer CrowdStrike Falcon & SOAR AI

Lead detection engineering for CrowdStrike Falcon and SOAR platforms. Own and scale threat detection solutions. Drive platform improvements. Shape security operations strategy. Differentiate by delivering proactive threat intelligence.

Competitive salary
pythonsparkairflow+2 more