Full-Time

Senior Backend Engineer

Charlotte AI

Posted on 12/13/2025

Crowdstrike

Crowdstrike

10,001+ employees

Cloud-native endpoint security platform provider

Compensation Overview

$140k - $215k/yr

+ Bonus + Equity Grants

Company Historically Provides H1B Sponsorship

Pennsylvania, USA + 23 more

More locations: Delaware, USA | Washington, DC, USA | Vermont, USA | Jackson Township, NJ, USA | Florida, USA | Waterbury, CT, USA | South Carolina, USA | Georgia, USA | Concord, NH, USA | Mississippi, USA | Tennessee, USA | Virginia, USA | Rhode Island, USA | Kentucky, USA | New York, NY, USA | Maryland, USA | Maine, USA | Massachusetts, USA | North Carolina, USA | Missouri, USA | Ohio, USA | Louisiana, USA | Michigan, USA

Remote

Bachelor's

Category
Software Engineering (1)
Required Skills
LLM
Data Science
Microservices

Get referred to Crowdstrike

See people who can refer or advise you

Requirements
  • Degree in Computer Science (or professional experience in data structures/algorithms/distributed systems)
  • Prior work experience with GenAI, LLMs or Agentic Systems
  • Prior work experience with big data and microservices
  • Understanding scalability and distributed systems i.e. sharding, partitioning, concurrency, etc.
  • Being a team player
  • A thorough understanding of engineering best practices from appropriate testing paradigms to effective peer code reviews and resilient architecture
  • The ability to thrive in a test-driven, collaborative, and iterative programming environment
  • The skills to meet your commitments on time and produce high-quality software that is unit tested, code reviewed and checked in regularly for continuous integration
Responsibilities
  • Advance backend microservices, pinpointing and addressing critical concerns to implement effective solutions
  • Employ established CrowdStrike tools and services to build cloud solutions for detecting and countering targeted cyber assaults
  • Innovate with Large Language Models to develop and refine Charlotte AI's capabilities
  • Construct and maintain data pipelines, engage in data upkeep, and contribute to the training and implementation of custom LLMs
  • Collaborate across various teams to brainstorm, define, and devise solutions
  • Commit to ongoing learning and self-improvement
  • Stay attuned to our customers' challenges, always seeking ways to enhance support
  • Emphasize top-tier coding quality by adhering to best practices, rigorous testing, and thorough logging and metrics
  • Work within a collaborative and agile team environment
  • Contribute to mentoring fellow engineers across a spectrum of technologies and also absorb knowledge from them
  • Constantly explore ways to refine product architecture, knowledge models, user experience, performance, and reliability
  • Own your work with autonomy, end to end: develop, test, deploy and monitor your changes
  • Thrive in an environment that highly values trust
Desired Qualifications
  • Existing exposure to Go, AWS, Cassandra, Kafka, Elasticsearch
  • Prior experience in the cybersecurity or intelligence fields

CrowdStrike provides cloud-native endpoint security for businesses, protecting computers and servers from cyber threats. Its Falcon platform runs in the cloud and includes Falcon Pro (next-generation antivirus with threat intelligence and fast threat response), Falcon Insight (endpoint detection and response), and Falcon Device Control (manages and restricts network-connected devices). It differentiates itself by offering a fully cloud-first security suite that integrates intelligence and automated responses across multiple tools, serving many Fortune 100 companies and other large organizations in finance, healthcare, and energy. Its goal is to help organizations prevent, detect, and quickly respond to threats through a scalable, subscription-based platform.

Company Size

10,001+

Company Stage

IPO

Headquarters

Austin, Texas

Founded

2011

Get referred to Crowdstrike

See people who can refer or advise you

Simplify Jobs

Simplify's Take

What believers are saying

  • August 26, 2026: Q2 revenue hit $1.47 billion, up 26%.
  • August 26, 2026: net new ARR reached $333 million, a record, lifting FY27 guidance.
  • August 20, 2026: Fal.Con 2026 sold out with 150 sponsors and 10,000 attendees.

What critics are saying

  • July 2024 outage still fuels Delta litigation; a Georgia case remains active.
  • August 20, 2026: CTO Elia Zaitsev exits, weakening product leadership during AI competition.
  • XM Cyber contributes no FY27 revenue; acquisition risk stays purely integration and distraction.

What makes Crowdstrike unique

  • Falcon platform unifies endpoint, identity, cloud, and SIEM across heterogeneous stacks.
  • March 23, 2026: Falcon Next-Gen SIEM ingests Microsoft Defender telemetry without extra sensors.
  • August 26, 2026: Falcon Flex reached $2.29 billion ARR, up 101%.

Help us improve and share your feedback! Did you find this helpful?

Benefits

Competitive Employee Stock Purchase Plan

Remote-friendly culture

Market leader in compensation and equity awards

Competitive vacation and flexible working arrangements

Comprehensive health benefits + 401k plan

Paid Parental Leave, including adoption

Wellness programs

Professional development and mentorship opportunities

Open offices have stocked kitchens, coffee, soda and treats

Growth & Insights and Company News

Headcount

6 month growth

-3%

1 year growth

-3%

2 year growth

-3%
Associated Press
Aug 26th, 2026
CrowdStrike posts record Q2 with $333M net new ARR, raises full-year growth outlook

CrowdStrike reported record-breaking second quarter fiscal year 2027 results, with total revenue reaching $1.47 billion, a 26% year-over-year increase. The cybersecurity company added $332.8 million in net new annual recurring revenue during the quarter, bringing total ARR to $5.84 billion. The company achieved record cash flow from operations of $530.3 million and free cash flow of $377.4 million. CrowdStrike reported GAAP net income of $5.3 million, compared to a loss of $70.2 million in the prior year period. For the full fiscal year 2027, CrowdStrike raised its net new ARR growth outlook to 34% at the midpoint and increased revenue guidance to between $5.99 billion and $6.01 billion. The company's cash and cash equivalents stood at $5.01 billion as of 31st July 2026.

Business Wire
Aug 26th, 2026
Theta Lake integrates AI interaction governance with CrowdStrike Falcon Next-Gen SIEM

Theta Lake has announced an integration with CrowdStrike Falcon Next-Gen SIEM to provide AI interaction governance telemetry. The integration allows security teams to monitor and correlate AI interactions across enterprise communications with other security signals during investigations. As organisations increasingly adopt AI assistants and agentic workflows, the integration aims to provide visibility into AI-related activity within existing security operations workflows. Theta Lake supplies contextual AI interaction data, including interaction timelines, to help organisations understand AI activity across enterprise communications. The integration supports automated workflows through CrowdStrike Falcon Fusion SOAR and enables organisations to incorporate AI interaction governance data into broader security investigations. It also helps address governance requirements through secure retention of AI interaction content, chain-of-custody, and auditability.

PR Newswire
Aug 25th, 2026
Commvault closes the gap between detection and recovery at Fal.Con 2026.

Commvault closes the gap between detection and recovery at Fal.Con 2026. Aug 25, 2026, 08:30 ET Learn how integrated threat intelligence and extended visibility can accelerate clean recovery at booth #1439 TINTON FALLS, N.J., Aug. 25, 2026 /PRNewswire/ - Commvault (NASDAQ: CVLT), a leader in unified resilience at enterprise scale, will be exhibiting at Fal.Con 2026, CrowdStrike's annual user conference, from August 31 through September 3 at Mandalay Bay in Las Vegas. Together, Commvault and CrowdStrike help security and IT teams validate clean data, recover to a known-good state, and keep compromised data from reinfecting their environment. There are a variety of ways to hear how Commvault and CrowdStrike are advancing resilience in the AI era. First, join Commvault at 1923 Prohibition Mandalay Bay for Netskope's pre-conference Fuel Stop, which takes place Monday, August 31 at 7:30 p.m. PDT. Prepare for the week ahead, chat with Commvault team members, and hear about the latest advancements from Commvault and CrowdStrike that are debuting at the show. Register now Throughout the week, visit booth #1439 to learn how organizations can move beyond detection and build a comprehensive cyber resilience strategy that includes threat scanning and testing, clean recovery, and resilience operations (ResOps). Commvault experts will also be available to discuss recovery readiness, ransomware recovery, cleanroom technologies, and best practices for operationalizing security and recovery workflows. Book a meeting Beyond the booth, attendees can check out Commvault's Hub Theater Partner Session, "Respond Faster. Recover Smarter. Investigate with Confidence - With Falcon Fusion + Commvault," on Tuesday, September 1, at 11:15 a.m. PDT. Hear how Falcon Fusion SOAR and Commvault work together to automate response actions across identity, endpoint, and backup environments. Add to your schedule To learn more about Commvault's presence at Fal.Con 2026 or to schedule a meeting with the team, visit the event page or stop by booth #1439 during expo hours. About Commvault Commvault (NASDAQ: CVLT) is a leader in unified resilience at enterprise scale. In a constantly evolving threat landscape, Commvault keeps customers ready by unifying data security, identity resilience, and cyber recovery, on one cloud-native, AI-enabled platform. Customers trust Commvault to conduct the fastest, most complete recoveries - not just their data, but their entire business. Purpose-built for the agentic enterprise, Commvault also enables organizations to safely embrace AI while protecting against AI-driven threats. SOURCE COMMVAULT

VocoLife
Aug 24th, 2026
CrowdStrike (CRWD): AI security expands, valuation debated.

CrowdStrike (CRWD): AI security expands, valuation debated. 4h ago · 0:00 listen · Source: simplywall.st Summary. CrowdStrike Holdings is expanding its AI security reach, with recent product news highlighting integrations with Endace Limited and the wider rollout of Project QuiltWorks. The company's stock currently trades at US$191.95. What's interesting is the stock's valuation. The most popular narrative suggests a fair value of $193.13, placing it about 1% undervalued. This view considers the focus on Next-Gen SIEM, cloud-native security, and large partnerships as supportive of demand. However, a different model estimates a fair value of $99.69 per share, suggesting the stock is overvalued by that measure. The company has seen strong momentum, with an 82.57% total shareholder return over one year, despite a recent 7-day pullback of 11.52%. Key risks include potential disappointment in new products and intense cloud security competition. The bottom line for investors is to consider these different valuation perspectives when assessing CrowdStrike's future potential. This is an AI-generated audio summary. Always check the original source for complete reporting.

Rankiteo
Aug 23rd, 2026
ReliaQuest: how ReliaQuest stopped a ShinyHunters breach attempt.

ReliaQuest: how ReliaQuest stopped a ShinyHunters breach attempt. ReliaQuest Thwarts ShinyHunters Social Engineering Attack Targeting Okta SSO On 23 August 2026, cybersecurity firm ReliaQuest confirmed a social engineering attack linked to the ShinyHunters threat group, which attempted to breach its systems using a fake Okta Single Sign-On (SSO) page. The attackers, posing as IT support, tricked an employee into approving a multi-factor authentication (MFA) push during an impersonation call, granting them access to a view-only identity dashboard session. The breach was contained quickly due to ReliaQuest's layered security controls, including device-trust policies that restricted the attacker to a single session. No business applications, customer data, or company data were accessed, and no persistence was established. The compromised credentials were immediately expired and reset upon detection. The attack followed a well-documented playbook: threat actors registered a lookalike domain, hosted a fake SSO page behind a content delivery network (CDN), and used phone-based impersonation to deceive the employee. The incident mirrored a recently disclosed WordPress plugin flaw that allowed authentication bypass, reinforcing the need for defense-in-depth strategies rather than reliance on single security measures. ReliaQuest's GreyMatter platform, which integrates with Splunk, CrowdStrike, Fortinet, and Google Cloud Chronicle, played a key role in normalizing telemetry data and enabling rapid response. The company emphasized that phishing remains effective, particularly when attackers leverage employee names and urgency to manipulate victims. A week prior, ReliaQuest's threat research team had shared intelligence on ShinyHunters, highlighting the group's use of fake domains and MFA bypass techniques. The screenshots of the compromised Okta dashboard, initially posted on X (formerly Twitter), were later deleted. The incident underscores the growing sophistication of social engineering attacks, even against cybersecurity providers. "id": "REL1787660926", "linkid": "reliaquest", "type": "Cyber Attack", "date": "8/2026", "severity": "25", "impact": "1", "explanation": "Attack without any consequences" {'affected_entities': [{'customers_affected': 'None', 'industry': 'Cybersecurity', 'name': 'ReliaQuest', 'type': 'Cybersecurity Firm'}], 'attack_vector': 'Fake Okta SSO page, MFA push manipulation, phone-based ' 'impersonation', 'data_breach': {'data_exfiltration': 'No', 'personally_identifiable_information': 'No', 'type_of_data_compromised': 'None'}, 'date_detected': '2026-08-23', 'date_publicly_disclosed': '2026-08-23', 'date_resolved': '2026-08-23', 'description': 'On 23 August 2026, cybersecurity firm ReliaQuest confirmed a ' 'social engineering attack linked to the ShinyHunters threat ' 'group, which attempted to breach its systems using a fake ' 'Okta Single Sign-On (SSO) page. The attackers, posing as IT ' 'support, tricked an employee into approving a multi-factor ' 'authentication (MFA) push during an impersonation call, ' 'granting them access to a view-only identity dashboard ' 'session. The breach was contained quickly due to ReliaQuest's ' 'layered security controls, including device-trust policies ' 'that restricted the attacker to a single session. No business ' 'applications, customer data, or company data were accessed, ' 'and no persistence was established. The compromised ' 'credentials were immediately expired and reset upon ' 'detection.', 'impact': {'data_compromised': 'None', 'operational_impact': 'Minimal (contained quickly)', 'systems_affected': 'Okta identity dashboard (view-only session)'}, 'initial_access_broker': {'backdoors_established': 'No', 'entry_point': 'Fake Okta SSO page, lookalike ' 'domain'}, 'investigation_status': 'Contained and resolved', 'lessons_learned': 'The incident underscores the growing sophistication of ' 'social engineering attacks, even against cybersecurity ' 'providers. Defense-in-depth strategies are critical, and ' 'phishing remains effective when attackers leverage ' 'employee names and urgency.', 'post_incident_analysis': {'corrective_actions': 'Credential reset, ' 'device-trust policies ' 'enforcement, enhanced ' 'monitoring', 'root_causes': 'Social engineering (MFA push ' 'manipulation), fake Okta SSO page, ' 'phone-based impersonation'}, 'recommendations': 'Implement layered security controls, enforce device-trust ' 'policies, and educate employees on social engineering ' 'tactics.', 'references': [{'source': 'ReliaQuest Threat Research Team'}, {'source': 'X (formerly Twitter)'}], 'response': {'containment_measures': 'Device-trust policies, credential ' 'expiration and reset', 'enhanced_monitoring': 'GreyMatter platform integration with ' 'Splunk, CrowdStrike, Fortinet, and ' 'Google Cloud Chronicle', 'incident_response_plan_activated': 'Yes', 'remediation_measures': 'Compromised credentials expired and ' 'reset'}, 'threat_actor': 'ShinyHunters', 'title': 'ReliaQuest Thwarts ShinyHunters Social Engineering Attack Targeting ' 'Okta SSO', 'type': 'Social Engineering', 'vulnerability_exploited': 'Human vulnerability (social engineering), ' 'potential WordPress plugin flaw (authentication ' 'bypass)'} Published by Cybersecurity Gaps Expose Australia's Transport and Logistics Sector Australia's transport and logistics industry a critical backbone for supply... Aug 25, 2026 Sotheby's International Investigates Cybersecurity Incident Involving Client Data Luxury real estate firm Sotheby's International is probing a cybersecurity... Aug 25, 2026 Historic McQuay Farmhouse Preserved Amid Charlotte's Growth; Preferred Parking Reports Data Breach Charlotte's Historic McQuay Farmhouse Stands as... Aug 24, 2026

INACTIVE