Configure and mature CrowdStrike Falcon Cloud Security CNAPP capabilities across Kubernetes and Amazon EKS, including CSPM policies, CDR detections, CWP runtime protection, container security, and CIEM. Test security use cases and communicate implementation decisions, architecture, and findings to client stakeholders and leadership.
Dragonfli Group is a cybersecurity and IT consulting firm providing services to federal agencies and Fortune 100 enterprises. Headquartered in Washington, DC, Dragonfli supports clients in securing mission-critical systems across on-site, hybrid, and fully remote environments.
We are seeking a Senior Consultant with 3+ years of hands-on experience configuring CrowdStrike Falcon Cloud Security and its Cloud-Native Application Protection Platform (CNAPP) modules across Kubernetes and Amazon Elastic Kubernetes Service (EKS) environments. In this role, you will partner closely with the client's Technology and Cloud Engineering teams to implement and mature a CNAPP solution end to end — from Cloud Security Posture Management (CSPM) policy design through runtime workload protection. This is a hands-on, technically hands-in-the-console role, not an advisory-only engagement.
This is a contract position involving a large state government health agency. Candidates with previous public sector or government contracting experience are preferred. U.S. Citizenship or Permanent Residency is required. If hired, all work related to this role must be performed within the continental U.S.
Job Responsibilities:
Configure CrowdStrike Falcon Cloud Security and its applicable CNAPP modules in the Falcon console
Configure Kubernetes and Amazon EKS security policies
Establish Cloud Security Posture Management (CSPM) policies and tune Cloud Detection and Response (CDR) detections
Configure Cloud Workload Protection (CWP) and runtime security policies across development, non-production, performance, and production environments
Execute security use-case testing to validate detection, containment, and admission-control functionality
Configure Cloud Infrastructure Entitlement Management (CIEM) capabilities, including entitlement analysis
Communicate architecture, implementation decisions, and technical findings to leadership and client stakeholders
Requirements
Must-Have:
3+ years of hands-on experience configuring CrowdStrike Falcon Cloud Security and CNAPP modules (or a comparable CNAPP platform such as Wiz or Palo Alto Prisma Cloud), with CrowdStrike experience strongly preferred
Experience configuring Kubernetes and Amazon EKS security policies
Experience establishing CSPM policies and tuning CDR detections
Experience configuring CWP and runtime security policies across development, non-production, performance, and production environments
Experience executing security use-case testing to validate detection, containment, and admission-control functionality
“I was the first applicant for a remote marketing position that got listed on the company website the same day I applied. Had an interview within 48 hours!”