Staff Security Engineer I

JDA Software

Dallas (TX)

Remote

USD 114,000 - 144,000

Full time

5 days ago
Be an early applicant
Application generator

An application made for this job — a tailored resume and cover letter that speak straight to the posting.

Get past ATS filters

Job summary

Blue Yonder is seeking a Staff Security Engineer I to own and evolve the CrowdStrike Falcon stack across a multi-cloud environment, enabling proactive detection, response, and automation. You will instrument data pipelines, improve SOC tooling, and drive AI-assisted security workflows to speed investigations and reduce analyst toil.

With 6+ years in security engineering, you will partner closely with the SOC, manage platform health, and champion scalable security practices across VMware, Azure,

Qualifications

  • 6+ years in security engineering, security administration, or related role.
  • Hands-on administration with CrowdStrike Falcon or equivalent.
  • Experience with SIEM/log management concepts and cloud telemetry collection.
  • Proficiency in at least one major cloud (Azure, AWS, GCP, etc.).
  • Scripting/automation (Python, PowerShell) and REST APIs.
  • Familiarity with email security tooling and AI tools in daily work.
  • Strong written and verbal communication.

Responsibilities

  • Own CrowdStrike Falcon stack end to end including EDR/NGAV and Cloud Security.
  • Manage sensor health, policies, exclusions, and updates across multi-cloud fleet.
  • Deploy, integrate, and administer new security platforms from POC to production.
  • Build and maintain data flows and log ingestion pipelines (NGSIEM/LogScale).
  • Investigate ingestion gaps, duplication, and attribution issues.
  • Own platform health, patching, configuration governance, and capacity.
  • Automate workflows using Fusion SOAR and AI-driven capabilities.
  • Collaborate with SOC to tune detections and reduce noise.
  • Govern access and configuration with RBAC and least-privilege enforcement.
  • Document runbooks and design write-ups for stakeholders.

Skills

CrowdStrike Falcon
EDR/XDR
SIEM/Log management
Cloud security
Scripting/Automation
REST APIs
AI tools
Communication
Incident response

Tools

Fusion SOAR
NGSIEM/LogScale
VMware

Job description

Role: Staff Security Engineer I Location: Dallas, TX highly preferred but US Remote will be considered Overview: The Cyber Defense Engineering team at Blue Yonder owns the security tooling that protects the organization's multi-cloud estate across nine business units. As the platform engineering team behind the SOC, we implement, administer, and continuously evolve the technologies that enable effective detection, response, and protection across our enterprise security ecosystem. We are seeking a Staff Security Engineer I to serve as a key contributor across endpoint security, security platforms, cloud security, and automation initiatives. This hands‑on engineering role will have primary ownership of our CrowdStrike Falcon platform while supporting critical technologies across our cyber defense stack. You will be responsible for maintaining platform health, onboarding and operationalizing new security tools, driving automation through scripting and APIs, troubleshooting complex technical issues, and continuously improving the experience and effectiveness of our analysts and security operations teams.

What You’ll Do:
  • Own the CrowdStrike Falcon stack end to end; administer the full platform, EDR/NGAV, Identity Protection, Exposure Management, Cloud Security, NGSIEM (LogScale), Fusion SOAR, and Counter Adversary Operations under our Falcon Complete license.
  • Manage sensor health, policies, exclusions, and the sensor update lifecycle across a multi‑cloud fleet (VMware, Azure, AWS, GCP, OCI).
  • Implement new tools within the cyber defense scope; lead the deployment, integration, and ongoing administration of new security platforms as the team adopts them from proof‑of‑concept through to production operating model, documentation, and handover.
  • Engineer and maintain data flows; build and maintain log ingestion pipelines into NGSIEM, onboard new sources across cloud and on‑prem, and keep parsing, normalization, and connectors reliable.
  • Investigate and resolve ingestion gaps, duplication, and attribution issues.
  • Own platform health, patching/upgrades, configuration governance, and capacity; diagnose and resolve issues quickly, and drive complex problems to root cause, including working escalations with vendor TAMs and support.
  • Automate and orchestrate using Fusion SOAR (and adjacent automation) to eliminate manual toil, enforce lifecycle policies, and streamline provisioning and response workflows.
  • Bring AI into the workflow; actively adopt AI‑driven capabilities to raise the team's speed and quality—leverage platform‑native AI (e.g., CrowdStrike Charlotte AI) for triage, investigation, and querying, and apply AI assistants and agentic tooling to accelerate scripting, documentation, and operational analysis.
  • Help the team evaluate where AI genuinely improves detection engineering and administration versus where it doesn't.
  • Ease the life of analysts by partnering closely with the SOC to tune detections, reduce noise, standardise workflows, and remove operational friction; translate analyst pain points into platform improvements.
  • Govern access and configuration by managing role‑based access, user and API lifecycle, and least‑privilege enforcement across the security toolset.
  • Document and communicate by producing clear operational runbooks, process documents, and design write‑ups, and communicating effectively with both technical peers and leadership stakeholders.
What We’re Looking For:
Required:
  • 6+ years in security engineering, security administration, or a closely related infrastructure/operations role.
  • Hands‑on administration experience with CrowdStrike Falcon (or a comparable enterprise EDR/XDR platform), sensor management, policy configuration, and troubleshooting at scale.
  • Working knowledge of SIEM/log management concepts; ingestion, parsing, normalization, and query, ideally with NGSIEM/LogScale or a comparable platform (Splunk, Sentinel, Elastic).
  • Practical experience across at least one major cloud (Azure, AWS, GCP, or OCI), including how logging and telemetry are produced and collected.
  • Strong troubleshooting instincts and the ability to drive incidents to root cause under pressure.
  • Scripting/automation ability (Python, PowerShell, or similar) and comfort working with REST APIs.
  • Exposure to email security tooling (e.g., Proofpoint) or other cyber defense platforms.
  • Fluency with AI tools in day‑to‑day work, using AI assistants for scripting, analysis, and documentation, and a willingness to adopt AI‑driven security capabilities as they mature.
  • Clear written and verbal communication; able to document processes and work with cross‑functional stakeholders.
Preferred:
  • Experience with SOAR/orchestration platforms (Fusion SOAR or comparable) and building automation workflows.
  • Familiarity with identity protection, cloud security posture (CSPM/CNAPP), or exposure/vulnerability management tooling.
  • Experience onboarding and standing up new security tools from POC to production.
  • Deception technology implementation experience; deploying and administering deception/ITD platforms (e.g., Proofpoint Deception) to detect lateral movement and identity‑based attacks.
  • Experience applying AI/ML or AI‑driven security tooling (e.g., Charlotte AI or comparable) to detection, investigation, or operational automation.
  • Relevant certifications — CrowdStrike (CCFA/CCFR/CCFH), cloud (AZ‑500, AWS Security, GCP Security), or security fundamentals (Security+, GCIH, GCED).

The annual salary range for this position is $114,103.81 - $143,896.18. The salary range information provided, reflects the anticipated base salary range for this position based on current national data. Minimums and maximums may vary based on location. Individual salary will be commensurate with skills, experience, certifications or licenses and other relevant factors. In addition, this role will be eligible to participate in either the annual performance bonus or commission program, determined by the nature of the position.

At Blue Yonder, we care about the wellbeing of our employees and those most important to them. This is reflected in our robust benefits package and options that includes:

  • Comprehensive Medical, Dental and Vision
  • 401K with Matching
  • Flexible Time Off
  • Corporate Fitness Program
  • Legal Plans
  • Accident and Hospital Indemnity
  • Pet Insurance
  • Much more

At Blue Yonder, we are committed to a workplace that genuinely fosters inclusion and belonging in which everyone can share their unique voices and talents in a safe space. We continue to be guided by our core values and are proud of our diverse culture as an equal opportunity employer. We understand that your career search may look different than others, and embrace the professional, personal, educational, and volunteer opportunities through which people gain experience.

Core Values

All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability or protected veteran status.

What do we do?

Blue Yonder is the AI company for supply chain. As the world leader in end‑to‑end digital supply chain transformation, Blue Yonder offers a unified, AI‑driven platform and multi‑tier network that empowers businesses to operate sustainably, scale profitably, and delight their customers—all at machine speed. A pioneer in applying AI solutions to the most complicated supply chain challenges, Blue Yonder’s modern innovations and unmatched industry expertise help more than 3,000 retailers, manufacturers, and logistics service providers confidently navigate supply chain complexity and disruption.

“Blue Yonder” is a trademark or registered trademark of Blue Yonder Group, Inc. Any trade, product or service name referenced in this document using the name “Blue Yonder” is a trademark and/or property of Blue Yonder Group, Inc.

Blue Yonder, Inc. - Administrative Office 15059 N Scottsdale Rd Suite 350 Scottsdale, AZ 85254‑2666

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Technology Control Officer (US Citizen - Security Clearance Required)
Technology Control Officer (US Citizen - Security Clearance Required)

JDA Software • Dallas (TX)

Hybrid
USD 100,000 - 115,000
Comprehensive Medical
Dental and Vision
401K with Matching
+3
Technology Control Officer
Technology Control Officer

JDA Software • Dallas (TX)

Hybrid
USD 100,000 - 115,000
Comprehensive Medical
Dental and Vision
401K with Matching
+3
Director, Customer Success - Falcon Cloud Security (Remote)
Director, Customer Success - Falcon Cloud Security (Remote)

CrowdStrike • United States

Remote
USD 155,000 - 240,000
Competitive compensation
Wellness programs
Generous vacation
+5
Engineering Manager, Cloud Backend - AI Detection and Response (AIDR) (Hybrid)
Engineering Manager, Cloud Backend - AI Detection and Response (AIDR) (Hybrid)

CrowdStrike Holdings, Inc. • Sunnyvale (CA)

Hybrid
USD 140,000 - 215,000
Equity awards
Wellness programs
Vacation & holidays
+3
Cloud Engineer III, Falcon Exposure Management (Hybrid)
Cloud Engineer III, Falcon Exposure Management (Hybrid)

CrowdStrike Holdings, Inc. • Sunnyvale (CA)

On-site
USD 120,000 - 180,000
Principal Consultant - Cloud Red Team Blue Team (Remote)
Principal Consultant - Cloud Red Team Blue Team (Remote)

CrowdStrike Holdings, Inc. • Northern (KY)

Hybrid
USD 140,000 - 195,000
Equity awards
Wellness programs
Vacation & holidays
+5
Software Engineer, Product Security - Security Automation (Remote)
Software Engineer, Product Security - Security Automation (Remote)

CrowdStrike Holdings, Inc. • Town of Texas (WI)

Hybrid
USD 120,000 - 180,000
Equity awards
Wellness programs
Generous vacation
+3
Director, Customer Success - Falcon Cloud Security (Remote)
Director, Customer Success - Falcon Cloud Security (Remote)

CrowdStrike Holdings, Inc. • Northern (KY)

Hybrid
USD 155,000 - 240,000
Compensation & equity awards
Wellness programs
Generous vacation and holidays
+2
Automation Engineer II, Falcon Complete (Remote)
Automation Engineer II, Falcon Complete (Remote)

Socket.dev • Town of Texas (WI)

Hybrid
USD 100,000 - 145,000
Market-leading compensation & equity
Wellness programs
Generous vacation & holidays
+5
Security Advisor I, Falcon Complete GovCloud (Remote)
Security Advisor I, Falcon Complete GovCloud (Remote)

CrowdStrike Holdings, Inc. • Minnesota

Hybrid
USD 85,000 - 120,000
Market-leading compensation
Equity awards
Wellness programs
+5