What are the responsibilities and job description for the Cyber Security Specialist position at VistalTech Inc?
Job Title: Cyber Security (CrowdStrike) Consultant
Location: Aurora, IL 60504 (Onsite)
Duration: Long-term Contract
Description:
Key Responsibilities
- Endpoint Detection & Response (EDR)
- Deploy, configure, and manage CrowdStrike Falcon sensors across endpoints and servers.
- Monitor and investigate detections, triage alerts, and perform Real Time Response (RTR) for containment and remediation.
- Tune IOCs/IOAs and Falcon policies to reduce false positives and improve detection accuracy.
- Managed Detection & Response (MDR)
- Operate and manage CrowdStrike LogScale SIEM for log ingestion, correlation, and advanced analytics.
- Develop and maintain detection rules, dashboards, and queries in LogScale.
- Respond to MDR alerts, coordinate with SOC teams, and escalate incidents as needed.
- Integrate Falcon and LogScale with other security tools for unified visibility and automated response.
- Exposure & Attack Surface Management
- Utilize CrowdStrike Exposure Management capabilities to identify and prioritize external attack surface risks.
- Monitor internet-facing assets, misconfigurations, and vulnerabilities across endpoints and cloud workloads.
- Collaborate with IT and DevOps teams to remediate exposure findings and reduce attack surface.
- Generate reports and metrics for leadership on exposure trends and remediation progress.
- Automation & Integration
- Use CrowdStrike APIs and scripting (Python/PowerShell) to automate repetitive tasks such as sensor deployment, IOC ingestion, and reporting.
- Integrate CrowdStrike modules with SIEM/SOAR platforms for alert enrichment and orchestration.
- Governance & Compliance
- Ensure alignment with ISO 27001, NIST CSF, CIS Controls, and regulatory requirements.
- Maintain documentation, SOPs, and evidence for audits and compliance checks.
Required Qualifications
- 10 years in cybersecurity operations, SOC, or endpoint security roles.
- Hands-on experience with:
- CrowdStrike Falcon (EDR operations, RTR, policy tuning, threat hunting).
- CrowdStrike LogScale SIEM (log ingestion, detection engineering, dashboards).
- CrowdStrike Exposure Management (attack surface monitoring and remediation).
- Strong understanding of endpoint security, incident response, and threat detection.
- Familiarity with MITRE ATT&CK, SIEM correlation, and vulnerability management.
- Scripting skills (Python, PowerShell) and experience with CrowdStrike APIs.
Preferred Skills
- Certifications: CrowdStrike CCFA/CCFR, Security , CySA , GCIA/GCIH
- Experience with SOAR platforms and automation workflows
- Knowledge of cloud security and Zero Trust principles
he