Senior Engineer II - SOC ( Clowdstrike experience)

NextGenEnergyJobs

Bengaluru

On-site

INR 4,000,000 - 6,000,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

Bloom Energy seeks a Senior Engineer II – SOC to lead and mature security operations. You will own Falcon endpoint security, SIEM/ SOAR, and cloud security across AWS/Azure, with ITDR and Zero Trust governance. The role demands strong incident leadership and cross-team collaboration to reduce risk and improve security posture.

The ideal candidate has 12+ years in information security, deep Falcon expertise, and hands-on IAM/SSPM experience, driving architecture and automation.

Qualifications

  • Extensive hands-on Falcon platform experience across Prevent, Insight, and RTR.
  • Experience with Falcon Complete MDR and Adversary OverWatch models.
  • Strong SIEM and SOAR expertise with automated playbooks.
  • Cloud security with CNAPP/CDR on AWS/Azure.
  • ITDR, NGIS+ privileged access, SSPM and Zero Trust knowledge.
  • Scripting skills: Python, PowerShell, Bash.

Responsibilities

  • Lead security assessments, threat analysis, and vulnerability management.
  • Own and optimize the Falcon endpoint security stack and policies.
  • Act as L3 escalation owner and incident commander for alerts.
  • Engineer and administer Falcon Next-Gen SIEM and SOAR playbooks.
  • Mature cloud security across AWS/Azure workloads and CNAPP.
  • Implement ITDR, SSPM, and Zero Trust for IAM and access security.
  • Develop automation for security monitoring and compliance checks.
  • Design secure system architectures with Falcon agents.
  • Drive SOC maturity and MDR relationship management.
  • Collaborate with teams and document security designs and best practices.

Skills

CrowdStrike Falcon
Falcon Complete MDR
SIEM/SOAR
ITDR/NGIS+
Zero Trust
Python
PowerShell

Tools

Charlotte AI Agentic SOAR
Falcon Cloud Security
AWS/Azure security
Falcon Insight/EDR/XDR

Job description

Bloom Energy, a solid oxide fuel cell company, is looking for a Senior Engineer II – SOC, to join its world-class team.

Key Responsibilities
  • Lead security assessments, threat analysis, and vulnerability management using Falcon Exposure Management and Falcon Discover for asset discovery, risk-based prioritization, and continuous attack-surface reduction.
  • Own and optimize the endpoint security stack — Falcon Prevent (NGAV), Falcon Insight (EDR/XDR), Falcon Device Control, and Falcon Firewall Management — including policy design, detection tuning, and Real Time Response (RTR) containment.
  • Serve as the in-house L3 escalation owner and incident commander for alerts handed off by Falcon Complete Next-Gen MDR and Adversary OverWatch, driving triage, root-cause analysis, and corrective action plans.
  • Engineer and administer Falcon Next-Gen SIEM — data ingestion, retention, correlation content, dashboards, and build automated playbooks in Charlotte AI Agentic SOAR.
  • Operate and mature cloud security through Falcon Cloud Security (CNAPP), including Cloud Detection & Response (CDR), container security (Falcon for Managed Containers), and posture management across AWS/Azure workloads (EC2/ECS/EKS).
  • Implement and manage Identity Threat Detection & Response (ITDR) via Identity Threat Protection and Next-Gen Identity Security Privileged (NGIS+), enforcing Zero Trust, Just-in-Time / privileged access.
  • Implement, monitor and optimise gaps in Falcon SaaS Security Posture Management (SSPM).
  • Deploy and administer AIDR for Workforce to secure enterprise AI usage (shadow AI, prompt injection, data leakage) and Falcon Data Protection for DLP and data-loss controls.
  • Operationalise Falcon Intelligence Recon for threat intel, digital-risk / brand-exposure monitoring, and intelligence-led detection.
  • Develop automation for security monitoring and compliance checks across the Falcon platform using its APIs and Charlotte AI/SOAR.
  • Design secure system architectures (cloud, on-prem, hybrid) anchored on the Falcon agent.
  • Define security standards, frameworks, and controls as might be required for the SOC operation.
  • Align security with cyber risk and compliance needs.
  • Design SIEM architecture, define and implement Zero Trust for IAM strategy on the Falcon platform.
  • Drive Security Operations and SOC Security-Maturity Improvement.
  • Govern MDR relationship and close control gaps through various SOC tools.
  • Collaborate with various teams and stakeholders to strengthen the overall security posture, and document security designs, processes, and best practices.
Requirements
  • Deep, hands-on expertise operating the CrowdStrike Falcon platform end-to-end (Prevent, Insight/EDR-XDR, Device Control, Firewall Management, Discover, RTR) as a single-agent, single-console environment.
  • Proven experience with Falcon Complete MDR and Adversary OverWatch operating models and L3-in-house escalation workflows.
  • Strong expertise in Falcon Next-Gen SIEM and Charlotte AI Agentic SOAR — ingestion, retention, correlation rules, dashboards, and automated response playbooks.
  • Hands-on experience with Falcon Cloud Security (CNAPP/CDR) and container security across AWS/Azure (EC2, ECS, EKS).
  • Experience implementing Identity Threat Detection & Response (ITDR), NGIS+ privileged access, SSPM, Zero Trust and IAM strategy.
  • Familiarity with AIDR for Workforce, Falcon Data Protection (DLP), Falcon Adversary Intelligence Premium, Recon+, and Falcon Secure Access.
  • Strong understanding of security frameworks (NIST, ISO 27001, CIS, CSF) and the ability to establish system controls and access levels based on NIST standards; recommending improvements.
  • Ensure authorized access by investigating improper access, revoking access, reporting violations, monitoring information requests, and recommending improvements — leveraging Falcon ITDR/NGIS+ telemetry.
  • Strong scripting/automation skills (Python, PowerShell, Bash) and experience with the CrowdStrike Falcon API for integration and automation.
  • Ability to investigate complex security issues and drive resolutions; excellent communication and cross-functional collaboration skills.
  • CrowdStrike certifications (e.g., CCFA / CCFR / CCFH ) are preferred.
  • Hands-on experience with CrowdStrike Falcon Next-Gen SIEM and Charlotte Agentic SOAR automation (SIEM/SOAR migration and content engineering).
  • Hands-on experience with AWS and Azure security and Falcon Cloud Security CNAPP (CSPM, CWP, CDR, container/Kubernetes security).
  • Experience with Falcon Data Protection (DLP) and enterprise data-loss controls.
  • Experience with Falcon Exposure Management for vulnerability management and continuous, risk-based scanning (transitioning from Tenable/Nessus).
  • Windows, Linux, and macOS endpoint security (Intune and Jamf managed environments under Falcon).
  • Experience in hybrid / cloud architecture with focus on security controls.
  • Extensive experience managing firewalls and developing host firewall policies via Falcon Firewall Management.
  • 5+ years of experience with cloud security technology; experience migrating from Prisma Cloud to Falcon Cloud Security CNAPP is a strong plus.
  • Experience with Identity Threat Protection / NGIS+ privileged access, ITDR alerting, and SSPM.
  • 5 + years of implementation and management experience of EDR / XDR solutions.
  • 12+ years of Information Security experience in a diverse range of technology environment
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Cyber Security Engineer
Cyber Security Engineer

Sapphire Software Solutions Inc • India

Remote
INR 1,800,000 - 2,800,000
IT Security Support Engineer
IT Security Support Engineer

Fusion Practices • Pune District

On-site
INR 900,000 - 1,300,000
CrowdStrike Engineer
CrowdStrike Engineer

JUARA IT SOLUTIONS • Chennai District

On-site
INR 900,000 - 1,300,000
SOC Analyst
SOC Analyst

Kratikal Tech Private Limited • Dadri

On-site
INR 400,000 - 600,000
Health insurance
Gratuity payment
Employees' Provident Fund
Flex XSIAM / EDR / Automation Engineer
Flex XSIAM / EDR / Automation Engineer

Lumen Technologies India • Dadri

On-site
INR 1,500,000 - 2,800,000
CrowdStrike Falcon Administration
CrowdStrike Falcon Administration

Purview Services • Gurugram District

Hybrid
INR 1,500,000 - 2,500,000
CrowdStrike Falcon Administration
CrowdStrike Falcon Administration

Purview Services • Faridabad District

Hybrid
INR 2,500,000 - 4,200,000
CrowdStrike Falcon Administration
CrowdStrike Falcon Administration

Purview Services • Khordha

Hybrid
INR 1,400,000 - 2,400,000
CrowdStrike Falcon Administration
CrowdStrike Falcon Administration

Purview Services • Nagpur District

Hybrid
INR 1,800,000 - 2,400,000
CrowdStrike Falcon Administration
CrowdStrike Falcon Administration

Purview Services • New Delhi

Hybrid
INR 2,500,000 - 4,800,000