Manager, Cyber Engineered Defense (CrowdStrike Services)

Kroll

United States

On-site

USD 150,000 - 175,000

Full time

7 days ago
Be an early applicant
Application generator

Don’t send a generic resume — generate a resume and cover letter tailored to this exact role.

Get past ATS filters

Benefits offered by this job

Healthcare Coverage
Paid time off
Company holidays
Life Insurance
Disability Insurance
401(k) matching
Merit-based compensation

Job summary

Kroll is seeking a Manager to lead CrowdStrike consulting engagements for enterprise clients, driving architectural designs and large-scale deployments. You will guide compromise assessments, threat hunting, and SOC modernization while communicating security posture to executives and boards.

The role requires deep CrowdStrike expertise, strong leadership, and a track record of delivering measurable risk reduction in complex environments. U.S. benefits are provided.

Qualifications

  • 8+ years of hands-on cybersecurity experience, building and scaling global SOCs and leading enterprise incident response programs.
  • Deep expertise in CrowdStrike ecosystem (Falcon, OverWatch, Spotlight, LogScale).
  • Ability to communicate complex cyber risk to C-suite and Board of Directors.

Responsibilities

  • Lead large-scale CrowdStrike deployments and architecture designs across complex environments.
  • Direct Compromise and Hygiene Assessments using CrowdStrike Falcon to establish visibility and deliver actionable intel to executives.
  • Modernize detection infrastructures by engineering pipelines to forward events into Next-Gen SIEMs like CrowdStrike LogScale.
  • Provide premier SOC consulting services including design, launch, and operation of 24/7 global SOCs with QA frameworks.
  • Lead advanced threat hunting and Purple Team exercises to close detection gaps.
  • Translate technical metrics into board-level security reporting to secure executive funding.

Skills

CrowdStrike
Python
SQL
Bash
Incident response
Leadership
Executive communications

Education

Bachelor's degree in a relevant field

Tools

CrowdStrike Falcon
OverWatch
LogScale
YARA
SIGMA
Zeek
Suricata

Job description

At Kroll, we provide reactive, advisory, transformation, and managed security services to support clients at every stage of their path toward cyber and data resilience maturity. Our experts bring decades of experience in cyber risk consultancy, helping organizations across the world simplify and reduce the complexity of implementing, transforming, and managing their cyber programs. Through our strategic multi-year partnership with CrowdStrike, we combine world-class investigative expertise with an AI-native platform to redefine the future of managed detection and response, delivering faster outcomes, stronger protection, and greater resilience for organizations worldwide.

The Engineered Defense capability is seeking a specialized Manager to drive our CrowdStrike consulting services. You will act as a trusted advisor to CISOs and executive stakeholders across financial services, consumer goods, and critical infrastructure sectors. This role focuses heavily on the architecture and deployment of CrowdStrike technologies (including Falcon Complete and LogScale Next-Gen SIEM), conducting advanced compromise and hygiene assessments, threat hunting, and modernizing Security Operations Centers (SOC).

Key Responsibilities
  • Lead complex, large-scale CrowdStrike deployments and architecture designs, including highly complex or OT-heavy enterprise environments spanning hundreds of thousands of endpoints.
  • Direct and execute Compromise and Hygiene Assessments leveraging CrowdStrike Falcon to establish visibility, identify active threats, and deliver actionable intelligence to executive leadership.
  • Modernize client detection infrastructures by engineering pipelines to collect, standardize, and forward events into Next-Gen SIEMs, specifically CrowdStrike LogScale.
  • Provide premier SOC consulting services, including the design, launch, and operationalization of 24/7 global Security Operations Centers, complete with automated quality assurance frameworks.
  • Lead advanced threat hunting initiatives and annual Purple Team exercises to validate logging, uncover emerging attacker tactics, and close detection gaps.
  • Design and implement Cyber Analytics programs that translate technical metrics into board-level security reporting, securing executive buy-in and organizational funding.
  • Serve as an Incident Commander during active breaches, coordinating with stakeholders and maintaining business continuity throughout containment and recovery.
Requirements
  • 8+ years of hands-on experience in cybersecurity, specifically building and scaling global Security Operations Centers and leading enterprise-wide incident response programs.
  • Deep expertise in the CrowdStrike ecosystem (Falcon, OverWatch, Spotlight, LogScale).
  • Demonstrated ability to manage cross-functional teams and communicate complex cyber risk to the C-suite and Board of Directors.
  • Strong background in network and detection engineering (YARA, SIGMA, Zeek, Suricata, Detection-as-Code).
  • Proficiency in programming and scripting (Python, SQL, Bash) for security automation and tool development.
  • Bachelor’s degree in a relevant field or equivalent professional experience.
Preferred Qualifications
  • Proven experience developing and deploying AI-driven security innovations, such as autonomous detection engineering, AI-powered YARA agents, or XSOAR machine learning integrations.
  • Recognized subject matter expertise in AI threats, adversarial obfuscation, and prompt injection (e.g., speaking engagements at major conferences like FS-ISAC).
  • Prior experience in a professional services or consulting firm, including client onboarding, architecture discussions, and pre-sales scoping.
  • Active or prior industry certifications (e.g., GCIA, CISSP).

Your recruiter will be happy to walk you through your U.S.-specific benefits, which include:

  • Healthcare Coverage: Comprehensive medical, dental, and vision plans.
  • Time Off and Leave Policies: Generous paid time off (PTO), paid company holidays, generous parental and family leave.
  • Protective Insurances: Life insurance, short- and long-term disability coverage, and accident protection.
  • Compensation and Rewards: Competitive salary structures, performance-based incentives, and merit-based compensation reviews.
  • Retirement Plans: 401(k) plans with company matching.

Please note that benefits may vary by region, department and role. We encourage you to speak with your recruiter to learn more about the specific benefits available for your position.

About Kroll

Join the global leader in risk and financial advisory solutions—Kroll. With a nearly century-long legacy, we blend trusted expertise with cutting-edge technology to navigate and redefine industry complexities. As a part of One Team, One Kroll, you'll contribute to a collaborative and empowering environment, propelling your career to new heights. Ready to build, protect, restore and maximize our clients’ value? Your journey begins with Kroll.

In order to be considered for a position, you must formally apply via careers.kroll.com.

We are proud to be an equal opportunity employer and will consider all qualified applicants regardless of gender, gender identity, race, religion, color, nationality, ethnic origin, sexual orientation, marital status, veteran status, age or disability.

The current salary range for this position is $150,000 to $175,000

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Manager, Cyber Engineered Defense (CrowdStrike Services)
Manager, Cyber Engineered Defense (CrowdStrike Services)

Kroll • Northern (KY)

Hybrid
USD 150,000 - 200,000
Healthcare Coverage
Generous PTO & Holidays
401(k) with company match
+1
Senior Manager, SIEM/ SOAR Engineer (CrowdStrike)
Senior Manager, SIEM/ SOAR Engineer (CrowdStrike)

Kroll • United States

On-site
USD 150,000 - 200,000
Healthcare Coverage
Time Off and Leave Policies
Protective Insurances
+2
Senior Manager, SIEM/ SOAR Engineer (CrowdStrike)
Senior Manager, SIEM/ SOAR Engineer (CrowdStrike)

Kroll • Northern (KY)

Hybrid
USD 140,000 - 230,000
Healthcare coverage
Generous PTO
401(k) with company match
Cyber Defense Architect & SOC Manager
Cyber Defense Architect & SOC Manager

Kroll • Northern (KY)

Hybrid
USD 150,000 - 200,000
Healthcare Coverage
Generous PTO & Holidays
401(k) with company match
+1
Associate Security Engineer (Remote)
Associate Security Engineer (Remote)

CrowdStrike • Town of Texas (WI)

On-site
USD 70,000 - 95,000
Market-leading compensation
Comprehensive wellness programs
Paid time off and holidays
Incident Response Senior Consultant (Remote)
Incident Response Senior Consultant (Remote)

CrowdStrike Holdings, Inc. • Northern (KY)

Hybrid
USD 95,000 - 140,000
Health insurance
401k
Paid time off
+1
Senior Associate , Incident Response
Senior Associate , Incident Response

Kroll • United States

On-site
USD 100,000 - 150,000
Healthcare Coverage
Time Off and Leave Policies
Protective Insurances
+2
Senior Associate, Incident Response
Senior Associate, Incident Response

Kroll • United States

On-site
USD 100,000 - 150,000
Healthcare Coverage
Generous PTO
Life & Disability Insurance
+2
Strategic Advisory Services Consultant (Remote)
Strategic Advisory Services Consultant (Remote)

CrowdStrike Holdings, Inc. • Town of Texas (WI), Northern (KY)

Hybrid
USD 95,000 - 140,000
Professional development
Paid parental leave
Vacation & holidays
+1
Incident Response Principal Consultant
Incident Response Principal Consultant

NEPSE Trading • Northern (KY)

Hybrid
USD 150,000 - 210,000
Market-leading compensation
Comprehensive wellness programs
Paid parental and adoption leave
+1