Staff Security Engineer I

Posted 6 Days Ago
Hiring Remotely in Dallas, TX, USA
In-Office or Remote
114K-144K Annually
Senior level
eCommerce • Logistics
The Role
Own and administer the CrowdStrike Falcon security platform across a multi-cloud environment. Engineer SIEM data flows, onboard security tools, maintain platform health, troubleshoot complex issues, automate workflows with scripting, APIs, and SOAR, and improve SOC analyst effectiveness. The role also manages access and configuration governance, supports cloud and endpoint security initiatives, applies AI-driven capabilities, and creates operational documentation while partnering with vendors and cross-functional stakeholders.
Summary Generated by Built In

Role: Staff Security Engineer I

Location: Dallas, TX highly preferred but US Remote will be considered

Overview:

The Cyber Defense Engineering team at Blue Yonder owns the security tooling that protects the organization's multi-cloud estate across nine business units. As the platform engineering team behind the SOC, we implement, administer, and continuously evolve the technologies that enable effective detection, response, and protection across our enterprise security ecosystem.
 

We are seeking a Staff Security Engineer I to serve as a key contributor across endpoint security, security platforms, cloud security, and automation initiatives. This hands-on engineering role will have primary ownership of our CrowdStrike Falcon platform while supporting critical technologies across our cyber defense stack. You will be responsible for maintaining platform health, onboarding and operationalizing new security tools, driving automation through scripting and APIs, troubleshooting complex technical issues, and continuously improving the experience and effectiveness of our analysts and security operations teams.

What You’ll Do:

  • Own the CrowdStrike Falcon stack end to end. Administer the full platform, EDR/NGAV, Identity Protection, Exposure Management, Cloud Security, NGSIEM (LogScale), Fusion SOAR, and Counter Adversary Operations — under our Falcon Complete license. Manage sensor health, policies, exclusions, and the sensor update lifecycle across a multi-cloud fleet (VMware, Azure, AWS, GCP, OCI).
  • Implement new tools within the cyber defense scope. Lead the deployment, integration, and ongoing administration of new security platforms as the team adopts them, from proof-of-concept through to production operating model, documentation, and handover.
  • Engineer and maintain data flows. Build and maintain log ingestion pipelines into NGSIEM, onboard new sources across cloud and on-prem, and keep parsing, normalization, and connectors reliable. Investigate and resolve ingestion gaps, duplication, and attribution issues.
  • Keep the platform running. Own platform health, patching/upgrades, configuration governance, and capacity. Diagnose and resolve issues quickly, and drive complex problems to root cause, including working escalations with vendor TAMs and support.
  • Automate and orchestrate. Use Fusion SOAR (and adjacent automation) to eliminate manual toil, enforce lifecycle policies, and streamline provisioning and response workflows.
  • Bring AI into the workflow. Actively adopt AI-driven capabilities to raise the team's speed and quality — leverage platform-native AI (e.g., CrowdStrike Charlotte AI) for triage, investigation, and querying, and apply AI assistants and agentic tooling to accelerate scripting, documentation, and operational analysis. Help the team evaluate where AI genuinely improves detection engineering and administration versus where it doesn't.
  • Ease the life of analysts. Partner closely with the SOC to tune detections, reduce noise, standardize workflows, and remove operational friction. Translate analyst pain points into platform improvements.
  • Govern access and configuration. Manage role-based access, user and API lifecycle, and least-privilege enforcement across the security toolset.
  • Document and communicate. Produce clear operational runbooks, process documents, and design write-ups, and communicate effectively with both technical peers and leadership stakeholders.

What We’re Looking For:

Required:

  • 6+ years in security engineering, security administration, or a closely related infrastructure/operations role.
  • Hands-on administration experience with CrowdStrike Falcon (or a comparable enterprise EDR/XDR platform), sensor management, policy configuration, and troubleshooting at scale.
  • Working knowledge of SIEM/log management concepts; ingestion, parsing, normalization, and query, ideally with NGSIEM/LogScale or a comparable platform (Splunk, Sentinel, Elastic).
  • Practical experience across at least one major cloud (Azure, AWS, GCP, or OCI), including how logging and telemetry are produced and collected.
  • Strong troubleshooting instincts and the ability to drive incidents to root cause under pressure.
  • Scripting/automation ability (Python, PowerShell, or similar) and comfort working with REST APIs.
  • Exposure to email security tooling (e.g., Proofpoint) or other cyber defense platforms.
  • Fluency with AI tools in day-to-day work, using AI assistants for scripting, analysis, and documentation, and a willingness to adopt AI-driven security capabilities as they mature.
  • Clear written and verbal communication; able to document processes and work with cross-functional stakeholders.

Preferred:

  • Experience with SOAR/orchestration platforms (Fusion SOAR or comparable) and building automation workflows.
  • Familiarity with identity protection, cloud security posture (CSPM/CNAPP), or exposure/vulnerability management tooling.
  • Experience onboarding and standing up new security tools from POC to production.
  • Deception technology implementation experience; deploying and administering deception/ITD platforms (e.g., Proofpoint Deception) to detect lateral movement and identity-based attacks.
  • Experience applying AI/ML or AI-driven security tooling (e.g., Charlotte AI or comparable) to detection, investigation, or operational automation.
  • Relevant certifications — CrowdStrike (CCFA/CCFR/CCFH), cloud (AZ-500, AWS Security, GCP Security), or security fundamentals (Security+, GCIH, GCED).

#LI-MH1

#LI-Remote

-------------------------------------------

The annual salary range for this position is $114,103.81 - $143,896.18

The salary range information provided, reflects the anticipated base salary range for this position based on current national data.  Minimums and maximums may vary based on location.  Individual salary will be commensurate with skills, experience, certifications or licenses and other relevant factors.  In addition, this role will be eligible to participate in either the annual performance bonus or commission program, determined by the nature of the position.

At Blue Yonder, we care about the wellbeing of our employees and those most important to them. This is reflected in our robust benefits package and options that includes: 

  • Comprehensive Medical, Dental and Vision 

  • 401K with Matching 

  • Flexible Time Off 

  • Corporate Fitness Program 

  • A variety of voluntary benefits such as; Legal Plans, Accident and Hospital Indemnity, Pet Insurance and much more

At Blue Yonder, we are committed to a workplace that genuinely fosters inclusion and belonging in which everyone can share their unique voices and talents in a safe space. We continue to be guided by our core values and are proud of our diverse culture as an equal opportunity employer. We understand that your career search may look different than others, and embrace the professional, personal, educational, and volunteer opportunities through which people gain experience.

Our Values

If you want to know the heart of a company, take a look at their values. Ours unite us. They are what drive our success – and the success of our customers. Does your heart beat like ours? Find out here: Core Values

All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability or protected veteran status.

Skills Required

  • 6+ years of experience in security engineering, security administration, or a closely related infrastructure or operations role
  • Hands-on administration experience with CrowdStrike Falcon or a comparable enterprise EDR/XDR platform, including sensor management, policy configuration, and troubleshooting at scale
  • Working knowledge of SIEM and log management concepts, including ingestion, parsing, normalization, and querying
  • Practical experience with at least one major cloud platform: Azure, AWS, GCP, or OCI
  • Strong troubleshooting skills and ability to drive incidents to root cause under pressure
  • Scripting and automation ability using Python, PowerShell, or similar, with familiarity with REST APIs
  • Exposure to email security tooling such as Proofpoint or other cyber defense platforms
  • Fluency with AI tools for scripting, analysis, documentation, and AI-driven security capabilities
  • Clear written and verbal communication skills, including documentation and cross-functional collaboration
  • Experience with SOAR or orchestration platforms, preferably Fusion SOAR, and building automation workflows
  • Familiarity with identity protection, CSPM/CNAPP, or exposure and vulnerability management tooling
  • Experience onboarding and standing up new security tools from proof of concept through production
  • Deception technology implementation experience, such as Proofpoint Deception
  • Experience applying AI/ML or AI-driven security tooling to detection, investigation, or operational automation
  • Relevant certifications such as CCFA, CCFR, CCFH, AZ-500, AWS Security, GCP Security, Security+, GCIH, or GCED

Blue Yonder Compensation & Benefits Highlights

The following summarizes recurring compensation and benefits themes identified from responses generated by popular LLMs to common candidate questions about Blue Yonder and has not been reviewed or approved by Blue Yonder.

  • Leave & Time Off Breadth PTO is described as generous or “unlimited” in the U.S., alongside paid holidays, sick time, and two paid volunteer days. These policies are often highlighted as strengths that support work–life balance.
  • Flexible Benefits Remote-work options and flexible arrangements are emphasized as part of the package. This flexibility is valued alongside compensation and can help offset middling pay for some roles.
  • Healthcare Strength Medical, dental, and vision coverage are provided, with mental health/EAP support and HSA/FSA options referenced. These core coverages are portrayed as solid and comprehensive.

Blue Yonder Insights

Am I A Good Fit?
beta
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.

The Company
HQ: Scottsdale, AZ
5,001 Employees
Year Founded: 1985

What We Do

Blue Yonder is the world leader in digital supply chain and omni-channel commerce fulfillment. Our intelligent, end-to-end platform enables retailers, manufacturers and logistics providers to seamlessly predict, pivot and fulfill customer demand. With Blue Yonder, you can make more automated, profitable business decisions that deliver greater growth and re-imagined customer experiences. Blue Yonder - Fulfill your Potential Blue Yonder’s tagline “Fulfill Your Potential” reflects the company’s mission to empower every organization and person on the planet to fulfill their potential. Each day, our global teams of associates and business partners work together to accelerate global economic growth, increase sustainability and prosperity with a Sonoran Spirit.

Similar Jobs

Tulip Logo Tulip

Technical Account Manager

Enterprise Web • Hardware • Internet of Things • Software
Easy Apply
Remote or Hybrid
US
310 Employees
110K-160K Annually

UL Solutions Logo UL Solutions

Program Manager

Automotive • Professional Services • Software • Consulting • Energy • Chemical • Renewable Energy
Remote or Hybrid
United States
15000 Employees
114K-150K Annually

UL Solutions Logo UL Solutions

Digital Solutions Intern

Automotive • Professional Services • Software • Consulting • Energy • Chemical • Renewable Energy
Remote or Hybrid
United States
15000 Employees
20-25 Hourly

PNC Bank Logo PNC Bank

Security Analyst- Tokenization

Machine Learning • Payments • Security • Software • Financial Services
Remote or Hybrid
USA
55000 Employees

Similar Companies Hiring

Axle Health Thumbnail
Artificial Intelligence • Healthtech • Information Technology • Logistics
Santa Monica, CA
25 Employees
Scotch Thumbnail
Artificial Intelligence • eCommerce • Fintech • Payments • Retail • Software • Analytics
US
35 Employees
Golden Pet Brands Thumbnail
Digital Media • eCommerce • Information Technology • Marketing Tech • Pet • Retail • Social Media
El Segundo, California
178 Employees

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account