Cologne
1 month ago

Job Overview

Job Type
Professionally Experienced
Pay
Not disclosed

Job description

Location:
Cologne, Germany
Work arrangement:
On-site

Role Summary

We are particularly interested in the following points

  • Which AWS or Azure environments do you have connected?
  • What tasks did you carry out yourself?
  • Have you already configured CrowdStrike CSPM productively?
  • Have you integrated Entra ID or another identity system?
  • How many cloud accounts, subscriptions or workloads have you managed?
  • What CrowdStrike or Cloud certifications do you hold?

If you don't meet every single point but already have practical experience with CrowdStrike Falcon Cloud Security, we would still like to get to know you.

We look forward to your application.

Responsibilities

  • You will analyze the customer's existing AWS and Azure environment together with us.
  • You will help define the exact scope, goals and success criteria of the implementation.
  • You develop an understandable and technically feasible CrowdStrike Falcon Cloud Security architecture.
  • You connect AWS Organizations, AWS Accounts, Azure Tenants and Azure Subscriptions to CrowdStrike Falcon.
  • You set up the required access rights and cloud permissions.
  • You ensure that CrowdStrike only receives the permissions that are actually needed.
  • You check whether all agreed cloud resources are recognized and displayed correctly.
  • You configure CrowdStrike CSPM to suit the customer's security requirements.
  • You activate and check CIS benchmarks and other agreed security controls.
  • You configure policies, risk thresholds, exceptions and notifications.
  • You carry out the initial assessment of the cloud security posture and discuss the results with the responsible teams.
  • You support the integration of Microsoft Entra ID.
  • You develop a sensible role and authorization model together with the customer.
  • You check whether users, groups and roles are assigned correctly.
  • You help sort findings according to risk, criticality and responsibility.
  • Together with the customer, you define which team will receive which findings and how further processing will take place.
  • You develop suitable dashboards and key figures for security, IT operations and management.
  • You document the settings made and important decisions in an understandable way.
  • At the end you check whether the agreed functions, integrations and security controls work properly.
  • You will help resolve technical issues during the rollout.
  • You prepare the solution for handover to the later company.

Requirements

  • What is most important to us is that you have already worked practically with CrowdStrike Falcon Cloud Security.
  • You should know how to connect AWS and Azure environments and how to then check whether the connection, permissions and data are complete.

You should be well versed in the following topics:

!!! GERMAN and English AT LEAST C1 LEVEL!!!

  • CrowdStrike Falcon Cloud Security
  • Cloud Security Posture Management
  • AWS Organizations and AWS IAM
  • Azure Tenants, Subscriptions and Azure RBAC
  • Microsoft Entra ID
  • Roles and authorization concepts
  • CIS benchmarks and compliance controls
  • Security policies and exceptions
  • Evaluate and prioritize cloud findings
  • Reporting and security dashboards
  • Technical documentation

The following experience and certifications are an advantage, but not all are mandatory:

  • CrowdStrike Certified Cloud Specialist
  • CrowdStrike Certified Falcon Administrator
  • AWS Certified Security Specialty
  • Microsoft Azure Security Engineer Associate
  • Microsoft Identity and Access Administrator
  • Experience with CrowdStrike Fusion SOAR
  • Experience with CrowdStrike APIs
  • Experience with SIEM or ticketing systems
  • Knowledge of Terraform
  • Knowledge of Kubernetes and container security

You should also be able to explain technical topics in an understandable way. In this project, you will not only work in the CrowdStrike console, but also with various contacts from security, cloud, IAM, compliance and IT operations.

Benefits

  • With us you get the opportunity to take responsibility and really help shape a cloud security project.
  • You work directly with our security specialists and management. We make decisions quickly and together.
  • We support you with professional training and CrowdStrike certifications. If you already have practical CrowdStrike experience but have not yet completed all of the certificates, this is not a reason for exclusion for us.
  • We offer you flexible working hours, hybrid collaboration, modern technical equipment and long-term development opportunities within our cloud and cybersecurity area.
  • You don't need a classic cover letter.
  • Simply send us your CV and briefly tell us which CrowdStrike products you have worked with so far.

About the Company

We are AJAT GmbH, an IT and cybersecurity company from Cologne. We support companies in making their IT and cloud environments more secure, stable and easier to control.

With us you don't work somewhere in the background on small individual tasks. You will be directly involved in demanding customer projects and can contribute your experience from planning to technical implementation.

We are currently expanding our area of CrowdStrike Falcon Cloud Security. We are looking for someone who not only knows CrowdStrike from training or presentations, but has already worked with it practically.

What the job is about

Together with our security architect, you will introduce CrowdStrike Falcon Cloud Security in larger AWS and Azure environments.

You accompany the project from the initial inventory, through architecture and configuration, to technical testing and handover to later operations.

This particularly concerns CSPM, cloud authorizations, compliance controls, Entra ID, reporting and the correct handling of findings.

Role:
Senior CrowdStrike Falcon Cloud Security / CSPM Engineer (m/w/d)
Job Type:
Professionally Experienced