Engineer II - Vulnerability Detection

CrowdStrike

Pune District

On-site

INR 1,800,000 - 3,200,000

Full time

13 days ago
Application generator

Turn this role into an interview — a resume and cover letter built around what this employer wants.

Get past ATS filters

Benefits offered by this job

Market-leading compensation
Wellness programs
Vacation & holidays
Parental leaves
Professional development
Employee networks
Office culture excellence

Job summary

CrowdStrike is seeking an OT/IoT security professional to join the IoT Security Product Group. You will identify and onboard vulnerability data sources, analyze threat intel, and maintain a robust asset inventory for industrial environments.

The role emphasizes data-driven content delivery, collaboration with security SMEs, and leveraging AI tools under human supervision to validate detections in IC/OT contexts.

Qualifications

  • 3–7 years of hands-on experience in OT/IoT security, vulnerability research, or related technical disciplines.
  • Go (Golang) — Backend/Cloud service development.
  • Search proficiency with OpenSearch/Elasticsearch, large-scale data queries.

Responsibilities

  • Identify, evaluate, and onboard vulnerability data sources for OT/IoT, assessing reliability and coverage.
  • Monitor threat intelligence and disclosures to inform content prioritization.
  • Handle and troubleshoot customer escalations to validate content quality and inform product improvements.
  • Maintain a structured device inventory and prioritize expansion based on customer needs.
  • Identify bottlenecks and suggest process improvements for content quality and delivery.
  • Develop KPIs and baseline metrics for pipeline performance and content coverage.
  • Operationalize health checks and quality controls across the vulnerability content pipeline.
  • Track new CVE disclosures against the device inventory and triage findings.

Skills

OT/IoT security
Go backend/cloud
OpenSearch/Elasticsearch
Data correlation
Asset fingerprinting
Packet analysis (Wireshark/Zeek/Scapy)
OT networking
Python or Go scripting
IC/OT protocols (Modbus/DNP3/ENIP)
Team collaboration (distributed teams)

Education

Bachelor’s degree or equivalent in a technical field

Tools

Wireshark
Zeek
Scapy
Custom parsers

Job description

India - Pune

Full time

R29202

As a global leader in cybersecurity, CrowdStrike protects the people, processes and technologies that drive modern organizations. Since 2011, our mission hasn’t changed — we’re here to stop breaches, and we’ve redefined modern security with the world’s most advanced AI-native platform. We work on large scale distributed systems, processing almost 3 trillion events per day and this traffic is growing daily. Our customers span all industries, and they count on CrowdStrike to keep their businesses running, their communities safe and their lives moving forward. We're proud to work for a mission-driven company leveraging AI to transform the way we work. CrowdStrikers drive their careers through flexibility and autonomy while also being expected to contribute to a culture of responsible AI adoption, experimentation, and innovation. We use an AI-first mindset as a force multiplier to proactively and continuously accelerate execution, build expertise, uncover insights, and solve complex problems. We’re always looking to add talented CrowdStrikers to the team who have limitless passion, a relentless focus on innovation and a fanatical commitment to our customers, our community and each other. Ready to join a mission that matters? The future of cybersecurity starts with you.

The Product Group:

IOT Security Product Group is focussed on developing products and solutions for IC/ OT and other IOT verticals like Healthcare. The charter for the team is to use CrowdStrike's platform capabilities and threat intelligence, and build modules and features, integrate with partner products and platforms to establish ourselves as the leading security vendor in this space.

About the Role:

This role will have a solid understanding of the IOT IC domain. He/ she will understand the Purdue model, the assets, criticality and the data pertaining to security and its sources to provide accurate asset visibility, vulnerabilities. This involves understanding the domain and systems and software like SCADA servers, HMI, EW, DCS and understanding how adversaries may exploit these resources to advance their modes of interest. This person will be required to identify the data sources, gather the data, analyse the data, identify its criticality, and also automate simple tasks. They will also be responsible for troubleshooting issues with current data and making enhancements.

What You'll Do:
  • Identify, evaluate, and onboard vulnerability data sources relevant to OT/IoT vendors and devices, assessing reliability, timeliness, and coverage quality.
  • Monitor threat intelligence and vulnerability disclosures to inform content prioritization.
  • Handling and troubleshooting Customer escalations, to validate content quality and inform product improvements.
  • Maintain a structured device inventory and prioritize expansion opportunities based on customer and market needs.
  • Identify pipeline bottlenecks and propose process improvements to enhance content quality and delivery.
  • Contribute to KPI development and baseline metric tracking for pipeline performance and content coverage
  • Operationalize health checks and quality controls across the vulnerability content pipeline.
  • Establish and maintain a cadence for monitoring new CVE disclosures against the supported device inventory, triaging and routing findings appropriately
  • Engage with customers in POVs and beta programs to improve platform capabilities.
  • Collaborate with security SMEs to develop detection content focused on adversary activity in industrial environments
  • Leverage generative AI tools to accelerate vulnerability analysis, proof-of-concept development, and detection rule creation while maintaining human oversight for validation and detection accuracy.
  • Design and implement AI agent workflows to automate multi-step vulnerability validation processes (e.g., discovery, analysis, prioritization, remediation guidance) while ensuring human-in-the-loop verification for critical vulnerability detections and false positive reduction.
  • Other projects as assigned
What You'll Need:
  • 3–7 years of hands-on experience in OT/IoT security, vulnerability research, or related technical disciplines
  • Go (Golang) — Backend/Cloud service development.
  • Search Proficiency — Cloud search (OpenSearch/Elastic search), complex queries, aggregations and correlating data across large scale datasets.
  • Data Correlation — Stitching heterogeneous telemetry from multiple sources into unified asset records.
  • Device / Asset Identification & Fingerprinting — Combine different data sources to accurately fingerprint assets.
  • Proficiency with packet analysis tools such as Wireshark, Zeek, or Scapy; experience writing custom dissectors or parsers for OT protocols.
  • Experience working in or supporting OT environments, including familiarity with SCADA, DCS, HMI, or other Purdue Model L2/L3 systems and their security considerations.
  • Programming/scripting proficiency for automating tasks, data processing, and pipeline tooling. Python or Go required; additional languages a plus
  • Working knowledge of IoT/ICS/OT network architecture and the unique security challenges of operational environments
  • Working knowledge of IC/OT protocols such as Modbus, DNP3, ENIP, and similar
  • Curiosity-driven research mindset, able to identify and evaluate relevant threat intelligence, vulnerability disclosures, and adversary activity in the IC/OT domain
  • Ability to communicate, collaborate, and work effectively in a globally distributed team, customers and partners.

#LI-SM2

Benefits of Working at CrowdStrike:
  • Market leader in compensation and equity awards
  • Comprehensive physical and mental wellness programs
  • Competitive vacation and holidays for recharge
  • Paid parental and adoption leaves
  • Professional development opportunities for all employees regardless of level or role
  • Employee Networks, geographic neighborhood groups, and volunteer opportunities to build connections
  • Vibrant office culture with world class amenities
  • Great Place to Work Certified™ across the globe

CrowdStrike is proud to be an equal opportunity employer.

We are committed to fostering a culture of belonging where everyone is valued for who they are and empowered to succeed.

We support veterans and individuals with disabilities through our affirmative action program.

The Company does not discriminate in employment opportunities or practices on the basis of race, color, creed, ethnicity, religion, sex (including pregnancy or pregnancy-related medical conditions), sexual orientation, gender identity, marital or family status, veteran status, age, national origin, ancestry, physical disability (including HIV and AIDS), mental disability, medical condition, genetic information, membership or activity in a local human rights commission, status with regard to public assistance, or any other characteristic protected by law.

We base all employment decisions--including recruitment, selection, training, compensation, benefits, discipline, promotions, transfers, lay-offs, return from lay-off, terminations and social/recreational programs--on valid job requirements.

If you need assistance accessing or reviewing the information on this website or need help submitting an application for employment or requesting an accommodation, please contact us at recruiting@crowdstrike.com for further assistance.

CrowdStrike was founded in 2011 to fix a fundamental problem: The sophisticated attacks that were forcing the world’s leading businesses into the headlines could not be solved with existing malware-based defenses. Founder George Kurtz realized that a brand new approach was needed — one that combines the most advanced endpoint protection with expert intelligence to pinpoint the adversaries perpetrating the attacks, not just the malware.

There’s much more to the story of how Falcon has redefined endpoint protection but there’s only one thing to remember about CrowdStrike: We stop breaches.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Backend Engineer II - Cloud
Backend Engineer II - Cloud

CrowdStrike Holdings, Inc. • Pune District

On-site
INR 1,500,000 - 4,000,000
Competitive compensation
Wellness programs
Generous vacation
+3
Engineer III - CICD DevOps
Engineer III - CICD DevOps

CrowdStrike • Pune District

On-site
INR 3,000,000 - 6,000,000
Compensation & equity
Wellness programs
Vacation & holidays
+4
Sr. Security Researcher (Remote).
Sr. Security Researcher (Remote).

CrowdStrike • India

Remote
INR 8,126,000 - 11,472,000
Market-leading compensation
Wellness programs
Vacation and holidays
+1
Backend Engineer III - Cloud
Backend Engineer III - Cloud

CrowdStrike • Pune District

On-site
INR 3,500,000 - 5,500,000
Backend Engineer III- Falcon Exposure Management
Backend Engineer III- Falcon Exposure Management

CrowdStrike • Bengaluru

On-site
INR 1,500,000 - 2,000,000
Market leader in compensation
Comprehensive wellness programs
Competitive vacation and holidays
+1
Engineer III - CICD DevOps
Engineer III - CICD DevOps

CrowdStrike • Bengaluru

On-site
INR 4,000,000 - 7,000,000
Compensation and equity
Wellness programs
Generous vacation and holidays
+5
Manager, Engineering - Vulnerability Detection
Manager, Engineering - Vulnerability Detection

CrowdStrike • Pune District

On-site
INR 3,500,000 - 6,000,000
Equity awards
Wellness programs
Vacation & holidays
+5
Manager, Sales Engineering
Manager, Sales Engineering

CrowdStrike • Mumbai City

On-site
INR 1,800,000 - 3,200,000
Market-leading compensation
Wellness programs
Vacation and holidays
+2
Manager, Sales Engineering
Manager, Sales Engineering

CrowdStrike • Mumbai

On-site
INR 1,200,000 - 2,300,000
Wellness programs
Parental leave
Professional development
+2
Sr. Software Developer - Observability Tracing (Hybrid)
Sr. Software Developer - Observability Tracing (Hybrid)

CrowdStrike Holdings, Inc. • Pune District

Hybrid
INR 4,000,000 - 7,000,000
Competitive compensation
Wellness programs
Paid parental and adoption leaves
+1