Vulnerability Detection Engineer – Exposure Management
This is a Full-Time, Remote Individual Contributor role within CrowdStrike’s Exposure Management Content team. CrowdStrike is an AI-native cybersecurity leader, and this specific group is responsible for the research and development of Host and Network Vulnerability Assessment detections. You will be part of the engine that processes nearly 3 trillion events per day, focusing on how the platform identifies, tracks, and prioritizes vulnerabilities across a massive global asset footprint.
- Job Requisition ID: R25646
- Location: Remote (USA / Canada)
- Experience Required: 5+ years as an Individual Contributor.
- Core Technology: Go (Golang), Python, and AI/ML-native detection models.
- Focus Area: Vulnerability Assessment, Risk-Based Prioritization, and Software Detection.
Key Responsibilities: Research, Detection, and Roadmap Execution
This role focuses on the lifecycle of a vulnerability—from discovery in the wild to automated detection in the CrowdStrike Falcon platform.
Vulnerability Detection Development
You will research, develop, and deliver detection logic for host and network-based vulnerabilities. This involves understanding the nuances of how software is detected on an endpoint and creating high-fidelity signatures that identify missing patches or insecure configurations. You will collaborate with product management to ensure that CrowdStrike’s vulnerability coverage aligns with market needs and the emerging threat landscape.
Risk-Based Vulnerability Management (RBVM)
A core part of this role is participating in “Company Thought Leadership” regarding how vulnerabilities are prioritized. Rather than just identifying “missing patches,” you will help build systems that analyze the data efficacy and accuracy of vulnerability findings. You’ll work on prioritization models that help customers understand which vulnerabilities pose the highest actual risk to their specific environment.
Engineering Roadmap and Automation
You will use Go and Python to automate daily tasks and develop detection pipelines. This includes designing and implementing validation workflows to ensure that security detections are accurate and performant before they are released to millions of sensors worldwide. You will also coordinate with distributed engineering teams to execute the broader Exposure Management roadmap.
Required Qualifications and Skills
CrowdStrike is looking for a senior-level engineer who combines deep security research with a pragmatic software engineering mindset.
- Technical Background: 5+ years of experience in Exposure Management and Vulnerability Analysis.
- Programming Mastery: Strong proficiency in Go (Golang) and/or Python for automation and backend logic.
- Security Depth: Deep understanding of software detection techniques, vulnerability mitigations, and remediation strategies.
- Process Knowledge: Experience working in an Agile environment and within remote, distributed teams.
- Leadership Qualities: While an IC role, you are expected to lead through technical influence, empowering peers and communicating clearly with executive staff.
- Bonus Skills: Familiarity with AI/ML models to enhance detection accuracy and predictive risk scoring.
Summary of Role Impact
At CrowdStrike, your work directly influences the security posture of global organizations ranging from small businesses to the Fortune 500. By building the next generation of “AI-native” vulnerability detections, you help shift the industry from reactive patching to proactive exposure management. You are not just finding bugs; you are building the logic that prevents the next global breach by identifying the path of least resistance before an attacker does.
Job Features
| Job Category | AI (Artificial Intelligence), IT & Cybersecurity |