$140K - 215K a year
Lead and grow a team of application security engineers, define and execute security strategy, manage security assessments and bug bounty programs, and collaborate with engineering and cybersecurity teams.
3+ years engineering management in security or product engineering, 5+ years hands-on application security experience, expertise in secure SaaS development, threat modeling, AppSec tools, cloud and container security, and strong communication skills.
As a global leader in cybersecurity, CrowdStrike protects the people, processes and technologies that drive modern organizations. Since 2011, our mission hasn’t changed — we’re here to stop breaches, and we’ve redefined modern security with the world’s most advanced AI-native platform. We work on large scale distributed systems, processing almost 3 trillion events per day and this traffic is growing daily. Our customers span all industries, and they count on CrowdStrike to keep their businesses running, their communities safe and their lives moving forward. We’re also a mission-driven company. We cultivate a culture that gives every CrowdStriker both the flexibility and autonomy to own their careers. We’re always looking to add talented CrowdStrikers to the team who have limitless passion, a relentless focus on innovation and a fanatical commitment to our customers, our community and each other. Ready to join a mission that matters? The future of cybersecurity starts with you. About the Role: We're seeking an experienced Engineering Manager to join our Application Security team, driving security excellence across CrowdStrike's product portfolio. You'll manage a team of security engineers who dig deep into both endpoint products and web applications, finding design and implementation flaws while partnering closely with product engineering teams. This role combines technical leadership with people management, requiring someone who can both guide complex security initiatives and develop high-performing security professionals. What You'll Do: Team Leadership & Development: Lead, mentor, and grow a team of Application Security Engineers across endpoint and web application security domains Conduct regular 1:1s, performance reviews, and career development planning Foster a collaborative culture that balances security rigor with engineering partnership Recruit and hire top security talent to expand team capabilities Technical Strategy & Execution: Define and execute the application security strategy across CrowdStrike's product portfolio Partner with engineering leadership to integrate security throughout the software development lifecycle Oversee threat modeling initiatives and security architecture reviews for critical products Drive cross-functional security projects that harden systems against advanced threats Security Program Management: Manage security assessments for both endpoint sensors and cloud-native applications Oversee bug bounty program responses and vulnerability remediation efforts Establish metrics and reporting to track security posture improvements Coordinate with CrowdStrike Cybersecurity leadership on strategic initiatives Stakeholder Collaboration: Work closely with product engineering teams as a trusted security advisor Collaborate with other CrowdStrike Cybersecurity teams Present security findings and recommendations to senior leadership Build strong relationships across engineering organizations What You'll Need: Leadership Experience: 3+ years of engineering management experience, preferably in security or product engineering Proven track record of building and scaling high-performing technical teams Experience managing geographically distributed teams with broad skill sets Strong communication skills for technical and executive audiences Experience managing geographically distributed teams Technical Security Expertise: 5+ years of hands-on application security experience across multiple domains Deep understanding of secure software development practices in SaaS environments Experience with web application security Knowledge of threat modeling methodologies (STRIDE preferred) Familiarity with AppSec tooling (SAST, DAST, etc.) Technical Foundation: Code review experience in languages like C/C++, Go, or Python Understanding of cloud-native security (AWS, GCP, Azure) Knowledge of containerization and virtualization security implications Experience with common software weaknesses and vulnerability classes Experience with Kubernetes and container security Understanding of AI-assisted development security implications Background in malware analysis or security research Background in threat intelligence #LI-SF1 #LI-MF1 #LI-Remote #HTF This role will require the candidate to periodically undergo and pass additional background and fingerprint check(s) consistent with government customer requirements. Benefits of Working at CrowdStrike: Remote-friendly and flexible work culture Market leader in compensation and equity awards Comprehensive physical and mental wellness programs Competitive vacation and holidays for recharge Paid parental and adoption leaves Professional development opportunities for all employees regardless of level or role Employee Networks, geographic neighborhood groups, and volunteer opportunities to build connections Vibrant office culture with world class amenities Great Place to Work Certified™ across the globe CrowdStrike is proud to be an equal opportunity employer. We are committed to fostering a culture of belonging where everyone is valued for who they are and empowered to succeed. We support veterans and individuals with disabilities through our affirmative action program. CrowdStrike is committed to providing equal employment opportunity for all employees and applicants for employment. The Company does not discriminate in employment opportunities or practices on the basis of race, color, creed, ethnicity, religion, sex (including pregnancy or pregnancy-related medical conditions), sexual orientation, gender identity, marital or family status, veteran status, age, national origin, ancestry, physical disability (including HIV and AIDS), mental disability, medical condition, genetic information, membership or activity in a local human rights commission, status with regard to public assistance, or any other characteristic protected by law. We base all employment decisions--including recruitment, selection, training, compensation, benefits, discipline, promotions, transfers, lay-offs, return from lay-off, terminations and social/recreational programs--on valid job requirements. If you need assistance accessing or reviewing the information on this website or need help submitting an application for employment or requesting an accommodation, please contact us at recruiting@crowdstrike.com for further assistance. Find out more about your rights as an applicant. CrowdStrike participates in the E-Verify program. Notice of E-Verify Participation Right to Work CrowdStrike, Inc. is committed to fair and equitable compensation practices. Placement within the pay range is dependent on a variety of factors including, but not limited to, relevant work experience, skills, certifications, job level, supervisory status, and location. The base salary range for this position for all U.S. candidates is $140,000 - $215,000 per year, with eligibility for bonuses, equity grants and a comprehensive benefits package that includes health insurance, 401k and paid time off. For detailed information about the U.S. benefits package, please click here. Expected Close Date of Job Posting is:12-02-2025 CrowdStrike was founded in 2011 to fix a fundamental problem: The sophisticated attacks that were forcing the world’s leading businesses into the headlines could not be solved with existing malware-based defenses. Founder George Kurtz realized that a brand new approach was needed — one that combines the most advanced endpoint protection with expert intelligence to pinpoint the adversaries perpetrating the attacks, not just the malware. There’s much more to the story of how Falcon has redefined endpoint protection but there’s only one thing to remember about CrowdStrike: We stop breaches.
This job posting was last updated on 10/7/2025