Threat Analyst II (Remote, ROU) at CrowdStrike – Remote ROU

​​#WeAreCrowdStrike and our mission is to stop breaches. As the global leader in cybersecurity, our team has changed the game. Since our founding, our industry-leading cloud-native platform has provided unmatched protection against the most advanced cyberattacks. We’re looking for individuals with boundless passion, a relentless focus on innovation, and a fanatical dedication to our customers to join us in shaping the future of cybersecurity. Consistently recognized as a top place to work, CrowdStrike is committed to cultivating an inclusive, remote-first culture that gives people the autonomy and flexibility to balance work-life demands while advancing their careers. Interested in working for a company that sets the standard and leads with integrity? Join us on a mission that matters — one team, one fight.

About the role:

Our CrowdStrike Data Science Machine Learning Operations and Response Team is seeking a Threat Analyst who is both customer and team focused. This role will encompass both response and proactive aspects. This role is ideal for anyone with proven experience in detections and/or reverse engineering. The primary responsibility of this role is to analyze malware and detections by investigating individual customer detection tickets. This team is focused on improving detection capabilities and efficiency through analysis of malware or other threat detections that impact our customer base. Experience with detections of potential malicious behavior using machine learning models is a plus.

Bring your passion for helping internal partners solve questions about machine learning detections of potentially malicious activity and our detection capabilities. Our goal for the team is to both help internal teams answer customer questions about threat detection and to provide intelligence on the impacts of our detections across the Data Science organization – including detection effectiveness and managing false positive detections.

This role will work most closely with internal teams such as Technical Account Managers, Falcon Complete, Data Scientists, and the Malware Research Center in Data Science

What you will do:

  • Check current product detections to ensure they meet the company standard

  • Perform tasks to enable better management of false positive detections

  • Analyzing binaries to determine their legitimacy

  • Answer internal questions and concerns regarding customer threat detections

  • View Machine Learning Predictions

What do you need:

  • Exposure to and understanding of different types and functionalities of malware

  • General knowledge of reverse engineering malware, or malware operations

  • Fundamental understanding of binary file features such as import/export and packers

  • Ability to demonstrate working knowledge of research/collection skills and analytical methods

  • General understanding of threat/risk management and threat/risk assessment

  • Knowledge of different operating systems

  • Knowledge of one scripting language, Python, Bash or PowerShell

  • Ability to break down complex problems into workable components

  • Experience with Threat Detection through Machine Learning

  • BA/BS or MA/MS degree or equivalent experience in computer science, information security, or a related field

Bonus points:

  • Experience in a security operations center or similar incident response environment

  • Good understanding of the internal workings of Windows OS and the Windows API

  • Knowledge of MacOS and/or Linux OS

  • Knowledge of the tools used in targeted and criminal cyber intrusions

  • A background in exploit and vulnerability analysis

  • Knowledge of programming in C, C++, Java, assembly or GoLang

  • If you have experience using a post-exploitation framework (e.g. Metasploit)

  • Knowledge of Splunk, SIEM or Elastic

  • MITRE ATT&CK Framework Knowledge

#LI-Remote

#LI-JP2

#LI-EV1

Benefits of working at CrowdStrike:

  • Culture of ‘at a distance’

  • Market leader in compensation and equity rewards with the ability to participate in ESPP in eligible countries

  • Competitive vacation and flexible work arrangements

  • Physical and mental well-being programs

  • Paid parental leave, including adoption

  • A variety of professional development and mentorship opportunities

  • Access to CrowdStrike University, LinkedIn Learning and Jhanna

  • Offices with well-stocked kitchens when you want to stimulate innovation and collaboration

  • Birthday free time in your own country

  • Work with people who are passionate about our mission and are Great Place to Work certified globally

CrowdStrike is proud to be an equal opportunity and affirmative action employer. We are committed to fostering a culture of belonging where everyone is valued for who they are and has the opportunity to succeed. Our approach to cultivating a diverse, equitable, and inclusive culture is rooted in listening, learning, and collective action. By embracing the diversity of our people, we achieve our best work and drive innovation—creating the best possible outcomes for our clients and the communities they serve.

All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, or status as a protected veteran. If you require assistance accessing or viewing the information on this website or need assistance submitting an application or requesting an accommodation, please contact us at [email protected] for further assistance.

You May Also Like

More From Author