CrowdStrike Certified Falcon Administrator (CCFA), CISSP, or relevant SIEM/Identity certifications.
CrowdStrike Certified Falcon Administrator (CCFA), CISSP, or relevant SIEM/Identity certifications.
CrowdStrike USB Technical Project Manager
Pleasanton, CA · Remote
$60 - $70/hr
CrowdStrike Certified Falcon Administrator (CCFA) * Security+ or CISSP (bonus for security understanding)
Quick apply
CrowdStrike USB Technical Project Manager
Pleasanton, CA · Remote
$60 - $70/hr
CrowdStrike Certified Falcon Administrator (CCFA) * Security+ or CISSP (bonus for security understanding)
CrowdStrike Falcon Platform Services Senior Cybersecurity Engineer - Cloud and Identity Focus - R...
$117K - $160K/yr
Must have the CrowdStrike Certified Falcon Administrator (CCFA) Preferred Qualifications: * CrowdStrike Certified Identity Specialist (CCIS) * CrowdStrike Certified Cloud Specialist (CCCS)
CrowdStrike Falcon Platform Services Senior Cybersecurity Engineer - Cloud and Identity Focus - R...
$117K - $160K/yr
Must have the CrowdStrike Certified Falcon Administrator (CCFA) Preferred Qualifications: * CrowdStrike Certified Identity Specialist (CCIS) * CrowdStrike Certified Cloud Specialist (CCCS)
Sr. CrowdStrike Engineer
Washington, DC · On-site
$118K - $162K/yr
CrowdStrike Certified Falcon Administrator (CCFA) * CrowdStrike Certified SIEM Engineer (CCSE) * CrowdStrike Certified Cloud Specialist (CCCS) * Equivalent cybersecurity or endpoint security ...
Sr. CrowdStrike Engineer
Washington, DC · On-site
$118K - $162K/yr
CrowdStrike Certified Falcon Administrator (CCFA) * CrowdStrike Certified SIEM Engineer (CCSE) * CrowdStrike Certified Cloud Specialist (CCCS) * Equivalent cybersecurity or endpoint security ...
... CrowdStrike Certified Falcon Administrator (CCFA), CompTIA CySA+, CompTIA Security+, CEH, GCIA, GCIH, or equivalent industry certification. Knowledge and/or hands-on experience in operating ...
... CrowdStrike Certified Falcon Administrator (CCFA), CompTIA CySA+, CompTIA Security+, CEH, GCIA, GCIH, or equivalent industry certification. Knowledge and/or hands-on experience in operating ...
Cybersecurity Architect
Dallas, TX · On-site
CrowdStrike Certified Falcon Administrator * Security+ * CySA+ * SC-200 * Netskope NCCSA * Trellix Certification
Quick apply
Cybersecurity Architect
Dallas, TX · On-site
CrowdStrike Certified Falcon Administrator * Security+ * CySA+ * SC-200 * Netskope NCCSA * Trellix Certification
Lead advanced investigations using CrowdStrike Falcon SIEM, EDR/XDR, and telemetry. * Perform deep analysis of alerts, logs, endpoint behavior, and attacker TTPs. * Validate and triage alerts to ...
Quick apply
Lead advanced investigations using CrowdStrike Falcon SIEM, EDR/XDR, and telemetry. * Perform deep analysis of alerts, logs, endpoint behavior, and attacker TTPs. * Validate and triage alerts to ...
Experience with full module deployment of CrowdStrike (Falcon Prevent, Insight, Insight XDR ... Administer CrowdStrike policies, host groups, prevention settings, exclusions, user roles, and ...
Experience with full module deployment of CrowdStrike (Falcon Prevent, Insight, Insight XDR ... Administer CrowdStrike policies, host groups, prevention settings, exclusions, user roles, and ...
Cyber Security Architect
Dallas, TX · On-site
CrowdStrike Certified Falcon Administrator * Trellix Endpoint Security Certification
Cyber Security Architect
Dallas, TX · On-site
CrowdStrike Certified Falcon Administrator * Trellix Endpoint Security Certification
Cybersecurity Architect
Dallas, TX · On-site
CrowdStrike Certified Falcon Administrator * Trellix Endpoint Security Certification
Quick apply
Cybersecurity Architect
Dallas, TX · On-site
CrowdStrike Certified Falcon Administrator * Trellix Endpoint Security Certification
McAfee Consultant
Downey, CA · On-site +1
Generating reports using APIs As a CrowdStrike Falcon administrator you must demonstrate a mastery in knowledge, skills to operate and optimize the Falcon platform. Duties include administrator user ...
McAfee Consultant
Downey, CA · On-site +1
Generating reports using APIs As a CrowdStrike Falcon administrator you must demonstrate a mastery in knowledge, skills to operate and optimize the Falcon platform. Duties include administrator user ...
Enterprise Cybersecurity Analyst
Mclean, VA · On-site
$99K - $225K/yr
Security+, CISSP, GIAC, or CrowdStrike Certified Falcon Administrator (CCFA) Certification Compensation At Booz Allen, we celebrate your contributions, provide you with opportunities and choices, and ...
Enterprise Cybersecurity Analyst
Mclean, VA · On-site
$99K - $225K/yr
Security+, CISSP, GIAC, or CrowdStrike Certified Falcon Administrator (CCFA) Certification Compensation At Booz Allen, we celebrate your contributions, provide you with opportunities and choices, and ...
Enterprise Cybersecurity Analyst
Mclean, VA · On-site
$99K - $225K/yr
Security+, CISSP, GIAC, or CrowdStrike Certified Falcon Administrator (CCFA) Certification Compensation At Booz Allen, we celebrate your contributions, provide you with opportunities and choices, and ...
Enterprise Cybersecurity Analyst
Mclean, VA · On-site
$99K - $225K/yr
Security+, CISSP, GIAC, or CrowdStrike Certified Falcon Administrator (CCFA) Certification Compensation At Booz Allen, we celebrate your contributions, provide you with opportunities and choices, and ...
Enterprise Cybersecurity Analyst
Mclean, VA · On-site
$99K - $225K/yr
Security+, CISSP, GIAC, or CrowdStrike Certified Falcon Administrator (CCFA) Certification Compensation At Booz Allen, we celebrate your contributions, provide you with opportunities and choices, and ...
Enterprise Cybersecurity Analyst
Mclean, VA · On-site
$99K - $225K/yr
Security+, CISSP, GIAC, or CrowdStrike Certified Falcon Administrator (CCFA) Certification Compensation At Booz Allen, we celebrate your contributions, provide you with opportunities and choices, and ...
Cyber Security Architect
Dallas, TX · On-site
CrowdStrike Certified Falcon Administrator Trellix Endpoint Security Certification
Quick apply
Cyber Security Architect
Dallas, TX · On-site
CrowdStrike Certified Falcon Administrator Trellix Endpoint Security Certification
Information Security Analyst
$40 - $50/hr
Monitor enterprise systems using CrowdStrike Falcon (EDR) , Splunk (SIEM) , and Tenable ... Provide specialized training for privileged users and administrators. * Track and report on ...
Quick apply
Information Security Analyst
$40 - $50/hr
Monitor enterprise systems using CrowdStrike Falcon (EDR) , Splunk (SIEM) , and Tenable ... Provide specialized training for privileged users and administrators. * Track and report on ...
Director of IT - Oakland, CA
$220K - $260K/yr
Lead CrowdStrike Falcon operations and SIEM strategy, including threat detection and response * Oversee SOC strategy and vendor partnerships Collaboration & Productivity Platforms * Administer Slack ...
Director of IT - Oakland, CA
$220K - $260K/yr
Lead CrowdStrike Falcon operations and SIEM strategy, including threat detection and response * Oversee SOC strategy and vendor partnerships Collaboration & Productivity Platforms * Administer Slack ...
CrowdStrike Falcon deployment across all endpoints * Implementation of a next-generation SIEM ... Administer Slack Enterprise Grid , including workspace structure, integrations, and retention ...
CrowdStrike Falcon deployment across all endpoints * Implementation of a next-generation SIEM ... Administer Slack Enterprise Grid , including workspace structure, integrations, and retention ...
... cloud admin, security tooling, networking, AV, and asset management. That breadth would take years to accumulate at a larger org. * Work with a modern, marketable stack -- CrowdStrike Falcon ...
Quick apply
... cloud admin, security tooling, networking, AV, and asset management. That breadth would take years to accumulate at a larger org. * Work with a modern, marketable stack -- CrowdStrike Falcon ...
CrowdStrike Falcon deployment across all endpoints * Implementation of a next-generation SIEM ... Administer Slack Enterprise Grid , including workspace structure, integrations, and retention ...
Quick apply
CrowdStrike Falcon deployment across all endpoints * Implementation of a next-generation SIEM ... Administer Slack Enterprise Grid , including workspace structure, integrations, and retention ...
Crowdstrike Falcon Administrator information
What is the difference between Crowdstrike Falcon Administrator vs Crowdstrike Falcon Engineer?
| Aspect | Crowdstrike Falcon Administrator | Crowdstrike Falcon Engineer |
|---|---|---|
| Certifications | Typically requires Crowdstrike certifications and cybersecurity fundamentals | Often requires advanced certifications like CISSP, CEH, or vendor-specific engineering credentials |
| Work Environment | Focuses on managing and maintaining Falcon platform, troubleshooting, and user support | Involves designing, implementing, and optimizing Falcon security solutions, often in a technical engineering capacity |
| Employer & Industry Usage | Used across cybersecurity teams in various industries for endpoint security management | Used by security engineering teams for deployment and integration of Falcon in complex environments |
The Crowdstrike Falcon Administrator primarily manages and supports the Falcon platform, ensuring endpoint security and user support. In contrast, the Crowdstrike Falcon Engineer focuses on deploying, customizing, and optimizing Falcon solutions within an organization's security infrastructure. Both roles require cybersecurity knowledge, but the engineer role typically demands more technical and engineering expertise.
What are some common challenges faced by Crowdstrike Falcon Administrators when managing endpoint security across large organizations?
What is the 1 10 60 rule in CrowdStrike?
Do crowdstrikes pay well?
What is the salary of admin in CrowdStrike?
What are Crowdstrike Falcon Administrators?
How hard is it to get hired at CrowdStrike?
What are the key skills and qualifications needed to thrive as a Crowdstrike Falcon Administrator, and why are they important?

Full-time
Posted 12 days ago
Job description
Location: Remote
Position Type: Fulltime
Key Roles and Responsibilities
Identity Threat Monitoring: Monitor and analyze user behaviour, Active Directory (AD) activity, and authentication logs to detect anomalies, such as credential theft or lateral movement.
Implementation & Configuration: Deploy and configure CrowdStrike Falcon Identity Protection modules across hybrid and cloud environments (Entra ID, Okta).
Incident Response: Investigate identity-based attacks (e.g., Kerb roasting, Pass-the-Hash, Golden Ticket) and execute containment actions.
Policy & Posture Management: Establish and maintain security policies, strengthen identity security posture, and remove unnecessary standing privileges.
Automation: Develop and build Falcon Fusion SOAR playbooks to automate responses to identity threats.
Collaboration: Work with security operations (SOC), IAM teams, and stakeholders to improve overall security, often acting as a bridge between IT and security teams.
CrowdStrike
Required Skills and Expertise
CrowdStrike Platform: Strong hands-on experience with CrowdStrike Falcon Identity Protection (or similar ITDR tools).
Identity Infrastructure: Deep understanding of Active Directory (AD) and cloud identity providers (Entra ID/Azure AD, Okta).
Threat Intelligence: Knowledge of adversary tactics, techniques, and procedures (TTPs) related to identity attacks.
Security Frameworks: Familiarity with MITRE ATT&CK framework, particularly techniques covering lateral movement and credential access.
Scripting & Automation: Experience with Python or PowerShell to streamline detection and remediation processes.
Analytical Skills: Ability to analyze large sets of data, logs, and telemetry to identify indicators of compromise (IoCs).
CrowdStrike
Experience and Qualifications
- Years of Experience: Typically, 6+ years of experience in cybersecurity operations, specializing in identity, EDR, or threat hunting.
- Education: Bachelor's degree in computer science, Information Security, or a related field.
- Certifications (Preferred): CrowdStrike Certified Falcon Administrator (CCFA), CISSP, or relevant SIEM/Identity certifications.