Sr. Identity Engineer, Privileged Access Management (Remote) - USA CA Remote
#WeAreCrowdStrike and our mission is to stop breaches. As a global leader in cybersecurity, our team changed the game. Since our inception, our market leading cloud-native platform has offered unparalleled protection against the most sophisticated cyberattacks. We’re looking for people with limitless passion, a relentless focus on innovation and a fanatical commitment to the customer to join us in shaping the future of cybersecurity. Consistently recognized as a top workplace, CrowdStrike is committed to cultivating an inclusive, remote-first culture that offers people the autonomy and flexibility to balance the needs of work and life while taking their career to the next level. Interested in working for a company that sets the standard and leads with integrity? Join us on a mission that matters - one team, one fight.
About the Role:
The Identity and Access Management (IAM) team offers opportunities to create a meaningful impact and expand your skill set through a variety of experiences building tools, processes and infrastructure supporting all-things-Identity. As part of this team, you will have the opportunity to be a trailblazer on automation and cross-team DevOps processes here at CrowdStrike IT. You’ll be working with a small group of highly dedicated individuals across the globe. We are looking to find individuals that are prepared to challenge and suggest options that disrupt the existing processes to properly provide scale and future resiliency.
What You'll Do:
Privileged Access Management (PAM):
Leverage PAM for cost savings and automated credential management.
Manage access control policies and user permissions for privileged accounts.
Provide organization-wide direction and oversight into PAM functions, including password vaulting of elevated user and application service accounts.
Implement and manage PAM features such as workflows, analytics, monitoring, and credential rotation, just-in-time (JIT) access, agent management for efficient and secure credential management.
Scale the PAM deployment to meet the growing needs of the organization, including high availability, disaster recovery, and load balancing configurations.
Active Directory Administration:
Administer, maintain, and optimize Active Directory services (users, groups, GPOs, domain controllers).
Implement security best practices for Active Directory hardening and security configurations.
Collaborate on Active Directory-related projects and initiatives with cross functional teams.
Automation and DevOps:
Develop repeatable automation for CI/CD, DevOps, and SRE processes.
Utilize scripting languages (PowerShell, Python, Go) to automate tasks and system management.
Integrate security and automate processes across non-SSO applications (AD/LDAP, F5 proxies, MFA).
Cloud and Security:
Design, implement, and manage AWS cloud services (IAM, EC2, S3, VPC, CloudFormation).
Implement OS hardening techniques for servers and workstations within Active Directory.
Utilize REST APIs for system and process integration, enhancing efficiency and scalability.
Troubleshoot technical issues related to AD, AWS, security, and API integrations.
What You'll Need:
Bachelor's degree in CS, IT, or related field (or equivalent experience).
5+ years of experience building and managing privileged access systems and rules
3+ years of experience with either Powershell or Python for scripting and automation
Subject matter expertise of PAM systems and controls in a scalable enterprise environment.
Active Directory administration experience (users, groups, GPOs, domain controllers).
Experience with CI/CD workflows and tools (Jenkins, Git).
Hands-on experience with AWS cloud services (IAM, EC2, S3, VPC, CloudFormation).
Highly proficient in PAM administration, configuration, and integration with various systems.
Security-minded approach with experience implementing best practices for AD and cloud environments.
Excellent communication and collaboration skills.
Bonus Points:
Full-stack Python/Golang development experience.
Experience with security assessments and audits.
Microsoft Certified: Azure Solutions Architect Expert.
Experience with SaaS DR (Okta DR fail-over).
SIEM/Log Analysis tools (LogScale, LogStash, Datadog, Splunk).
Graph relationship databases (Neo4j).
Atlassian stack (Jira & Confluence).
Understanding of the federal sector.
#LI-Remote
#LI-MP1
#LI-DG1
Benefits of Working at CrowdStrike:
Remote-first culture
Market leader in compensation and equity awards
Competitive vacation and flexible working arrangements
Comprehensive and inclusive health benefits
Physical and mental wellness programs
Paid parental leave, including adoption
A variety of professional development and mentorship opportunities
Offices with stocked kitchens when you need to fuel innovation and collaboration
We are committed to fostering a culture of belonging where everyone feels seen, heard, valued for who they are and empowered to succeed. Our approach to cultivating a diverse, equitable, and inclusive culture is rooted in listening, learning and collective action. By embracing the diversity of our people, we achieve our best work and fuel innovation - generating the best possible outcomes for our customers and the communities they serve.
CrowdStrike is committed to maintaining an environment of Equal Opportunity and Affirmative Action. If you need reasonable accommodation to access the information provided on this website, please contact Recruiting@crowdstrike.com, for further assistance.
CrowdStrike participates in the E-Verify program.
Notice of E-Verify Participation
CrowdStrike, Inc. is committed to fair and equitable compensation practices. The base salary range for this position in the U.S. is $115,000 - $185,000 per year + variable/incentive compensation + equity + benefits. A candidate’s salary is determined by various factors including, but not limited to, relevant work experience, skills, certifications and location. ApplyJob Profile
Regions Countries Benefits/PerksAutonomy Autonomy and flexibility Competitive vacation and flexible working arrangements Comprehensive and inclusive health benefits Equal Opportunity and Affirmative Action Equity awards Flexibility Flexible working arrangements Health benefits Inclusive culture Paid parental leave Paid parental leave, including adoption Physical and mental wellness programs Professional development and mentorship opportunities Remote-first culture Stocked kitchens Wellness programs
SkillsActive Directory Active Directory Administration APIs Automation AWS AWS Cloud Azure CI/CD CloudFormation Cloud Security Cloud Services COM Communication Cybersecurity DevOps EC2 Git Go Golang IAM Jenkins Jira PAM PowerShell Python REST REST APIs S3 Scripting Scripting Languages Security Security Best Practices SIEM Systems VPC
Tasks- Active Directory Administration
- Automation and DevOps
- Cloud and Security
- Communication
- Privileged Access Management (PAM)
5 years
EducationBachelor's degree Bachelor’s degree in CS IT Related Field
RestrictionsRemote-first culture
TimezonesAmerica/Anchorage America/Chicago America/Denver America/Los_Angeles America/New_York Pacific/Honolulu UTC-10 UTC-5 UTC-6 UTC-7 UTC-8 UTC-9