Threat Hunter, FedCloud (Remote)
CrowdStrike · United States · 1 wk ago
RemoteRemoteManagement$85k–$120k/yrFull-time
About the role
Join CrowdStrike's OverWatch FedCloud team as a Threat Hunter, where you'll analyze threat actor activity, identify intrusions, create detections, and track campaigns across our government cloud infrastructure. Our team conducts both proactive and active threat hunting operations to detect and disrupt advanced adversaries while enhancing the Falcon platform's detection capabilities.
Shift
Tuesday - Friday, 23:00 - 09:00 ET (03:00 - 13:00 UTC)
What You'll Do
- Conduct advanced threat hunting operations across client environments
- Analyze and respond to sophisticated threat actor activities
- Develop and implement new detection methodologies
- Communicate findings to technical and executive stakeholders
- Contribute to threat intelligence and detection engineering initiatives
What You Need
- Bachelor's degree in relevant field or related work experience
- Strong proficiency in English (written and verbal)
- Demonstrated experience in network/host-based intrusion analysis, digital forensics, or malware analysis
- Comprehensive understanding of Windows, MacOS, and Linux operating systems
- Experience with cyber threat intelligence and open-source intelligence analysis
- Programming/scripting knowledge, particularly Python or Go
- Understanding of administrative tools and living-off-the-land techniques
- Familiarity with MITRE ATT&CK framework and adversary techniques
- Ability to communicate complex technical concepts to varied audiences
- Proven experience utilizing AI technologies to enhance decision-making, streamline workflows and processes, improve efficiency and drive business outcomes
- Willingness to undergo government required background checks and fingerprinting
- This role is open to US Citizens and Green Card Holders
Bonus Points
- Advanced knowledge of Linux and MacOS environments
- Hands-on experience with eCrime and nation-state threat actors
- SOC or incident response experience
- Expertise with logging platforms (LogScale, NGSIEM, Splunk, Kibana)
- Experience with Cloud technologies, preferable related to threat hunting and/or incident response (AWS, Azure, GCP)
- Published security research (conferences, blogs, articles)
- Experience with cloud security fundamentals
- Demonstrated track record of security research and emerging threats analysis
Work Environment And Schedule
- 100% remote position based in the United States
- Night shift schedule (Tuesday - Friday 23:00-09:00 ET)
- Regular interaction with threat actors and advanced persistent threats
- This role may require the candidate to periodically undergo and pass alcohol and/or drug test(s) during the course of employment
- This role will require the candidate to periodically undergo and pass additional background and fingerprint check(s) consistent with government customer requirements
Benefits
- Market leader in compensation and equity awards
- Comprehensive physical and mental wellness programs
- Competitive vacation and holidays for recharge
- Paid parental and adoption leaves
- Professional development opportunities for all employees regardless of level or role
- Employee Networks, geographic neighborhood groups, and volunteer opportunities to build connections
- Vibrant office culture with world class amenities
- Great Place to Work Certified™ across the globe
Pay
The base salary range for this position for all U.S. candidates is $85,000 - $120,000 per year, with eligibility for bonuses, equity grants and a comprehensive benefits package that includes health insurance, 401k and paid time off.