Cybersecurity Engineer
Allen Control Systems · Austin, TX
About this role
## Company Overview ACS (Allen Control Systems) is a defense technology company building precision robotic systems for the United States and its allies. Founded by two former U.S. Navy electrical engineers, ACS combines AI, computer vision, precision motion, and advanced hardware to solve complex defense challenges across land, air, and maritime environments. Our flagship product, **Bullfrog**, is an autonomous precision weapon system that transforms existing weapons into highly accurate counter-drone systems—providing warfighters with a scalable, cost-effective response to a fast-growing modern battlefield threat. Bullfrog is deployed with U.S. forces, and ACS works with organizations across the U.S. military and national security community. ACS is headquartered in **Austin, Texas**, with additional operations in **Alexandria, Virginia; Mountain View, California; and Huntsville, Alabama**. --- ## Position Overview ACS is seeking an **experienced Cybersecurity Engineer** to build and operate our **detection and security monitoring capability on the CrowdStrike Falcon platform**. You will own onboarding of new log sources, authoring and tuning detection content, and day-to-day security telemetry to keep a fast-moving defense engineering organization protected. Working closely with IT and engineering, you’ll translate raw log data into reliable, low-noise detections and help mature toward a defensible, compliance-ready security posture. --- ## What You’ll Do - Implement, configure, and operate **CrowdStrike Falcon Next-Gen SIEM** as the organization’s core detection and monitoring platform. - Author, tune, and maintain **CQL** searches, correlation rules, and dashboards to support detection and investigation. - Onboard new log sources, including connectors, data pipelines, and third-party source integrations. - Parse and normalize incoming telemetry against the **CrowdStrike Parsing Standard** or **ECS**. - Write, tune, and maintain detection rules on production content, reducing false positives without sacrificing coverage. - Operate across Falcon’s **EDR, identity, and cloud telemetry** to build a complete picture of the environment. - Partner with IT and engineering to close detection gaps and improve the organization’s overall security posture. --- ## What You’ll Need - **3–5+ years** in security engineering, detection engineering, or SOC operations. - Hands-on production experience implementing, configuring, and operating **CrowdStrike Falcon Next-Gen SIEM**. - **CQL** proficiency (searches, correlation rules, dashboards). - Demonstrated **log onboarding** experience (connectors, data pipelines, third-party source integration). - Parsing and normalization against the **CrowdStrike Parsing Standard** or **ECS**. - Proven detection rule authoring, tuning, and **false-positive reduction** on production content. - Falcon platform fluency across **EDR, identity, and cloud telemetry**. --- ## You’ll Stand Out - CrowdStrike certifications: **CCSE, CCSA, CCFA, CCFH**. - Detection-as-code practice using **Git** and **CI/CD**. - **Falcon Fusion SOAR** development, or **Tines, Torq, XSOAR**. - Cloud security experience: **AWS, Azure, GCP logging**, **CSPM**, **Kubernetes**. - Threat hunting or purple team background. - Defense compliance experience: **CMMC, NIST 800-171, FedRAMP**. --- ## What We Offer - Competitive salary - ACS Equity Package - Health, Dental, Vision Insurance - Paid Time Off --- ## Equal Opportunity Employer Al
Listing freshness
CronJobs last confirmed this listing 1h ago. If its source stops confirming the opening for seven days, this page is removed from active inventory.