Engineer II, Software Assurance, Product Security (Remote)
Core
Securing CrowdStrike's software supply chain, open-source footprint, and upstream dependencies against active threats.
Role type
Mid-level IC software security engineer (supply chain)
Builds
Security controls, tooling, and automations for GitHub organizations and open-source integrations
Domain
Cybersecurity / Software Supply Chain / Open Source
Deliverable
production ML models | product features | dashboards & analysis | research | client delivery | infrastructure | physical/clinical work
Required skills
GitHub administration, dependency management, SCA, Linux/Unix configuration, scripting (Python/Golang/Shell/JS), SDLC knowledge, secure coding practices, AI tool utilization
Preferred skills
Log aggregation (Splunk/DataDog), CI/CD pipelines, large-scale cloud platforms
Technologies
GitHub, GitHub Actions, BitBucket, GitLab, Artifactory, S3, Python, Golang, Shell, JavaScript, LogScale, Splunk, DataDog, Prometheus, Jenkins, Argo CD
Responsibilities
Assess risk and provide security guidance on open-source usage; Implement and maintain controls for public/private GitHub organizations; Harden open-source code usage and distribution; Investigate dependencies to mitigate supply chain risks; Advocate for secure coding and compliance; Contribute to security initiatives for code-hosting environments
Seniority
Mid-level, hands-on IC