Senior Manager, SIEM/ SOAR Engineer (CrowdStrike)

Kroll

United States

On-site

USD 150,000 - 200,000

Full time

11 days ago

Get more replies from employers

Send a job-specific resume in minutes.

Benefits offered by this job

Healthcare Coverage
Time Off and Leave Policies
Protective Insurances
Compensation and Rewards
Retirement Plans

Job summary

Kroll’s Cyber Data & Resilience practice is building a high-growth CrowdStrike Next Gen SIEM and MDR Enablement practice, and we are seeking a proven technical leader to help shape and scale delivery across detection, automation, and managed response services.

As a Senior Manager / Principal Consultant, you will oversee a team of detection engineers and client delivery professionals deploying and operationalizing CrowdStrike Falcon and LogScale.

Qualifications

  • 7-10+ years in cybersecurity delivery, operations, or consulting.
  • Proven track record leading teams deploying CrowdStrike Falcon and LogScale.
  • Strong knowledge of SIEM/SOAR operations and threat detection workflows.
  • Experience designing MDR service models with metrics, automation, and reporting.
  • Proficiency in Terraform, PowerShell, or Python for automation.
  • Familiarity with multi-tenant operations and Azure Lighthouse.
  • Excellent communication and presentation skills with CISOs and technical teams.

Responsibilities

  • Lead end-to-end delivery of CrowdStrike MDR and Next Gen SIEM implementations for enterprise and mid-market clients.
  • Define SOPs, playbooks, and delivery frameworks for scalable service delivery.
  • Mentor detection engineers and consultants delivering client projects.
  • Oversee detection logic development, correlation rules, and SOC process optimization.
  • Partner with incident response and advisory teams to integrate post-incident detection enhancements.
  • Develop CrowdStrike baseline configurations, deployment templates, and automation accelerators.
  • Interface with client executives to translate business risk into detection and response strategies.
  • Collaborate with technology alliances on co-developed service offerings and GTM enablement.
  • Track delivery metrics, SLAs, and client satisfaction to improve maturity and profitability.

Skills

Leadership
Delivery leadership
SIEM/SOAR
CrowdStrike deployments
Automation
Communication
Azure Lighthouse

Tools

CrowdStrike Falcon
CrowdStrike LogScale
Terraform
Ansible
PowerShell
Python
Azure Lighthouse

Job description

Kroll’s Cyber Data & Resilience practice is building a high-growth CrowdStrike Next Gen SIEM and MDR Enablement practice, and we are seeking a proven technical leader to help shape and scale delivery across detection, automation, and managed response services.

As a Senior Manager / Principal Consultant, you will oversee a team of detection engineers and client delivery professionals deploying and operationalizing CrowdStrike Falcon and LogScale. Your mission: to design repeatable delivery models, ensure operational excellence, and help clients accelerate their detection maturity through Kroll’s modern managed-services framework.

This is a leadership and delivery role-ideal for someone who enjoys bridging technical execution, service development, and client outcomes.

Day-to-Day Responsibilities
  • Lead end-to-end delivery of CrowdStrike MDR and Next Gen SIEM (LogScale) implementations for enterprise and mid-market clients.
  • Define standard operating procedures, playbooks, and delivery frameworks for repeatable, scalable service delivery.
  • Manage and mentor detection engineers and consultants delivering client projects across CrowdStrike Falcon modules.
  • Oversee detection logic development, correlation rules, and SOC process optimization.
  • Partner with Kroll’s incident response and advisory teams to integrate post-incident detection enhancements into ongoing MDR operations.
  • Develop and maintain CrowdStrike baseline configurations, deployment templates, and automation accelerators (Terraform, Ansible, PowerShell).
  • Interface directly with client executives and technical stakeholders to translate business risk into detection and response strategies.
  • Collaborate with technology alliances (CrowdStrike, Microsoft, etc.) on co-developed service offerings and go-to-market enablement.
  • Track delivery metrics, SLAs, and client satisfaction to continuously improve program maturity and profitability.
Essential Traits
  • 7-10+ years of experience in cybersecurity delivery, operations, or consulting (preferably within MDR, SOC, or detection engineering programs).
  • Proven track record leading teams deploying CrowdStrike Falcon and CrowdStrike LogScale technologies.
  • Strong understanding of SIEM/SOAR operations, detection logic, and threat response workflows.
  • Experience designing or maturing MDR service models (process, metrics, automation, and reporting).
  • Proficiency in Terraform, PowerShell, or Python for automation and configuration management.
  • Deep familiarity with multi-tenant operations, Flight Control, and Azure Lighthouse environments.
  • Excellent communication and presentation skills-comfortable interfacing with client CISOs and technical teams alike.
Preferred Skills
  • Experience in security consulting or managed services leadership (Big 4, MSSP, or global cyber provider preferred).
  • CrowdStrike certifications (CCFA, CCFR, CCSA) or equivalent technical credentials.
  • Familiarity with Defender Suite integration and hybrid XDR architecture.
  • Knowledge of ROI modeling, efficiency metrics, and service-based automation frameworks.
  • Strong business acumen and the ability to link detection and response outcomes to client risk reduction and value realization.
Benefits
  • Healthcare Coverage: Comprehensive medical, dental, and vision plans.
  • Time Off and Leave Policies: Generous paid time off (PTO), paid company holidays, generous parental and family leave.
  • Protective Insurances: Life insurance, short- and long-term disability coverage, and accident protection.
  • Compensation and Rewards: Competitive salary structures, performance-based incentives, and merit-based compensation reviews.
  • Retirement Plans: 401(k) plans with company matching.

Please note that benefits may vary by region, department and role.

About Kroll

Join the global leader in risk and financial advisory solutions-Kroll. With a nearly century-long legacy, we blend trusted expertise with cutting-edge technology to navigate and redefine industry complexities. As a part of One Team, One Kroll, you'll contribute to a collaborative and empowering environment, propelling your career to new heights. Ready to build, protect, restore and maximize our clients’ value? Your journey begins with Kroll.

We are proud to be an equal opportunity employer and will consider all qualified applicants regardless of gender, gender identity, race, religion, color, nationality, ethnic origin, sexual orientation, marital status, veteran status, age or disability.

The current salary range for this position is $150,000 to $200,000

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Senior Manager, SIEM/ SOAR Engineer (CrowdStrike)
Senior Manager, SIEM/ SOAR Engineer (CrowdStrike)

Kroll • Northern (KY)

Hybrid
USD 140,000 - 230,000
Healthcare coverage
Generous PTO
401(k) with company match
Manager, Cyber Engineered Defense (CrowdStrike Services)
Manager, Cyber Engineered Defense (CrowdStrike Services)

Kroll • Northern (KY)

Hybrid
USD 150,000 - 200,000
Healthcare Coverage
Generous PTO & Holidays
401(k) with company match
+1
Senior Manager, SIEM/MDR & SOAR Delivery Lead
Senior Manager, SIEM/MDR & SOAR Delivery Lead

Kroll • United States

On-site
USD 150,000 - 200,000
Healthcare Coverage
Time Off and Leave Policies
Protective Insurances
+2
Senior SIEM/MDR Delivery Lead
Senior SIEM/MDR Delivery Lead

Kroll • Northern (KY)

Hybrid
USD 140,000 - 230,000
Healthcare coverage
Generous PTO
401(k) with company match
Sr. Director, Engineering - Next-Gen SIEM (Hybrid)
Sr. Director, Engineering - Next-Gen SIEM (Hybrid)

CrowdStrike • Austin (TX)

Hybrid
USD 235,000 - 350,000
Market leading compensation & equity
Wellness programs
Generous vacation & holidays
+4
Resident Services Senior Consultant (Remote)
Resident Services Senior Consultant (Remote)

CrowdStrike • United States

On-site
USD 100,000 - 155,000
Market competitive compensation
Comprehensive wellness programs
Paid parental leave
+1
Associate Security Engineer (Remote)
Associate Security Engineer (Remote)

CrowdStrike • Town of Texas (WI)

On-site
USD 70,000 - 95,000
Market-leading compensation
Comprehensive wellness programs
Paid time off and holidays
Sr. Director, Engineering - Next-Gen SIEM (Hybrid)
Sr. Director, Engineering - Next-Gen SIEM (Hybrid)

CrowdStrike • Redmond (WA)

Hybrid
USD 235,000 - 350,000
Market-leading compensation
Equity awards
Wellness programs
+5
Incident Response Principal Consultant (Remote)
Incident Response Principal Consultant (Remote)

CrowdStrike • United States

On-site
USD 115,000 - 160,000
Market-leading compensation
Wellness programs
Vacation & holidays
+5
Principal Product Manager - Threat Detection Engine and Content (Hybrid)
Principal Product Manager - Threat Detection Engine and Content (Hybrid)

CrowdStrike, Inc. • Arlington (VA)

Hybrid
USD 160,000 - 250,000
Equity awards
Wellness programs
Vacation and holidays
+3