Sr. Intrusion Analyst, OverWatch (Remote)

Posted Yesterday
Be an Early Applicant
5 Locations
Remote or Hybrid
125K-180K Annually
Senior level
Cloud • Computer Vision • Information Technology • Sales • Security • Cybersecurity
Define your future at CrowdStrike.
The Role
Analyzes intrusions and adversary activity using endpoint and security telemetry, communicates findings to customers, conducts active and passive threat hunting, and researches emerging threats. The role also improves detection capabilities, investigates cloud and identity activity, builds tools, and collaborates with cybersecurity teams to protect customer networks from threat actors.
Summary Generated by Built In

As a global leader in cybersecurity, CrowdStrike protects the people, processes and technologies that drive modern organizations. Since 2011, our mission hasn’t changed — we’re here to stop breaches, and we’ve redefined modern security with the world’s most advanced AI-native platform. We work on large scale distributed systems, processing almost 3 trillion events per day and this traffic is growing daily. Our customers span all industries, and they count on CrowdStrike to keep their businesses running, their communities safe and their lives moving forward. We're proud to work for a mission-driven company leveraging AI to transform the way we work. CrowdStrikers drive their careers through flexibility and autonomy while also being expected to contribute to a culture of responsible AI adoption, experimentation, and innovation. We use an AI-first mindset as a force multiplier to proactively and continuously accelerate execution, build expertise, uncover insights, and solve complex problems. We’re always looking to add talented CrowdStrikers to the team who have limitless passion, a relentless focus on innovation and a fanatical commitment to our customers, our community and each other. Ready to join a mission that matters? The future of cybersecurity starts with you.


About the Role:

We are looking for a passionate cyber professional to join our rapidly growing team of intrusion analysts tasked with defending CrowdStrike customers and understanding their adversaries. As part of our remote close-knit team, you will bring with you your experience in cybersecurity to help evolve how we do threat hunting at CrowdStrike.

 

After a period of learning our custom-built tool suite, workflows, and methodologies you will join other OverWatch analysts protecting our customer's networks by identifying and understanding intrusions using Falcon Endpoint data and the broader CrowdStrike product suite. You will be analyzing adversary activity and communicating those findings to customers as part of our fast-paced time sensitive mission to help stop breaches. When the pressure is off you will have time to undertake research to improve our detection capabilities, understand our adversaries, build tools, or work with other CrowdStrike teams across a broad range of topics and projects. If you are proficient in either network/host-based intrusion analysis, cloud/identity, digital forensics or cyber threat intelligence, and you want to gain fast-paced experience in dealing with eCrime threat actors, we may have a role for you!

Note, role is for our West region, requiring availability in PST.

What You’ll Do:

  • Protect our customer's networks by identifying and understanding intrusions using Falcon Endpoint data and the broader CrowdStrike product suite.

  • Analyze adversary activity and communicate those findings to customers as part of our fast-paced time sensitive mission to help stop breaches.

  • Undertake research to improve our detection capabilities, understand our adversaries, build tools, or work with other CrowdStrike teams across a broad range of topics and projects

  • Participate in active and passive threat hunting and gain fast-paced experience in dealing with threat actors

What You'll Need:

  • Ability to convey complex or technical concepts to various stakeholders.

  • Demonstrated experience in endpoint security, cybersecurity, threat intelligence, or cloud security principles.

  • An excellent understanding of operating systems

  • Experience with logging platforms such as LogScale, Splunk, or Kibana and creating queries to identify suspicious activity

  • Proven experience utilizing AI technologies to enhance decision-making, streamline workflows and processes, improve efficiency and drive business outcomes.

  • Having a good understanding of current and emerging threats and ability to demonstrate practical knowledge of security research

  • Bachelor's degree in a relevant field or comparable work experience.

 

Bonus Points:

  • Experience correlating investigations across third party data sources (e.g.: leveraging IAM data while analyzing an EDR alert)

  • Experience investigating commonly leveraged TTPs observed across Azure, and or AWS Cloud Computing Providers

  • Experience in a security operations center or similar environment tracking threat actors or responding to incidents

  • Being able to demonstrate experience in conventional network or host-based intrusion analysis, and identity or cloud security fundamentals.

  • Published research or findings at conferences or through other non-academic channels (blogs, articles, etc.)

#LI-AM1

#LI-Remote

This role may require the candidate to periodically undergo and pass alcohol and/or drug test(s) during the course of employment.

Benefits of Working at CrowdStrike:

  • Market leader in compensation and equity awards

  • Comprehensive physical and mental wellness programs 

  • Competitive vacation and holidays for recharge  

  • Paid parental and adoption leaves

  • Professional development opportunities for all employees regardless of level or role

  • Employee Networks, geographic neighborhood groups, and volunteer opportunities to build connections

  • Vibrant office culture with world class amenities

  • Great Place to Work Certified™ across the globe

CrowdStrike is proud to be an equal opportunity employer. We are committed to fostering a culture of belonging where everyone is valued for who they are and empowered to succeed. We support veterans and individuals with disabilities through our affirmative action program.

CrowdStrike is committed to providing equal employment opportunity for all employees and applicants for employment. The Company does not discriminate in employment opportunities or practices on the basis of race, color, creed, ethnicity, religion, sex (including pregnancy or pregnancy-related medical conditions), sexual orientation, gender identity, marital or family status, veteran status, age, national origin, ancestry, physical disability (including HIV and AIDS), mental disability, medical condition, genetic information, membership or activity in a local human rights commission, status with regard to public assistance, or any other characteristic protected by law. We base all employment decisions--including recruitment, selection, training, compensation, benefits, discipline, promotions, transfers, lay-offs, return from lay-off, terminations and social/recreational programs--on valid job requirements.

If you need assistance accessing or reviewing the information on this website or need help submitting an application for employment or requesting an accommodation, please contact us at [email protected] for further assistance.

Find out more about your rights as an applicant.

CrowdStrike participates in the E-Verify program.

Notice of E-Verify Participation

Right to Work

CrowdStrike, Inc. is committed to fair and equitable compensation practices. Placement within the pay range is dependent on a variety of factors including, but not limited to, relevant work experience, skills, certifications, job level, supervisory status, and location. The base salary range for this position for all U.S. candidates is $125,000 - $180,000 per year, with eligibility for bonuses, equity grants and a comprehensive benefits package that includes health insurance, 401k and paid time off.

For detailed information about the U.S. benefits package, please click here

Skills Required

  • Ability to convey complex or technical concepts to various stakeholders
  • Demonstrated experience in endpoint security, cybersecurity, threat intelligence, or cloud security principles
  • Excellent understanding of operating systems
  • Experience with logging platforms such as LogScale, Splunk, or Kibana and creating queries to identify suspicious activity
  • Proven experience utilizing AI technologies to enhance decision-making, workflows, efficiency, and business outcomes
  • Good understanding of current and emerging threats and practical knowledge of security research
  • Bachelor's degree in a relevant field or comparable work experience
  • Experience correlating investigations across third-party data sources, including IAM data and EDR alerts
  • Experience investigating TTPs across Azure and/or AWS cloud computing providers
  • Experience in a security operations center or similar environment tracking threat actors or responding to incidents
  • Experience in network- or host-based intrusion analysis and identity or cloud security fundamentals
  • Published research or findings at conferences, blogs, articles, or other non-academic channels

What the Team is Saying

Andrew C.
Lauren P.
Brian P.
Alexa Z.
Theo K.
Sara I.
Lam N.
Lauren B.
Adeeb C.
Kristan C.
Alena C.
Thaddeus M.
Alyssa J.
KT T.

CrowdStrike Compensation & Benefits Highlights

  • Healthcare Strength Healthcare coverage is described as comprehensive, with medical, dental, vision, mental-health/EAP resources, wellness programs, and multiple plan options.
  • Equity Value & Accessibility Equity is a core part of total rewards, with RSUs common and an ESPP that allows employees to purchase company stock at a discount confirmed in filings.
  • Parental & Family Support Programs include paid parental leave for primary and secondary caregivers, along with adoption and fertility assistance and caregiver resources.

CrowdStrike Insights

Am I A Good Fit?
beta
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.

The Company
HQ: Austin, TX
11,000 Employees
Year Founded: 2011

What We Do

CrowdStrike has redefined security with the world’s most advanced cloud-native platform that protects and enables the people, processes and technologies that drive modern enterprise. Tested and proven, the world's largest organizations trust CrowdStrike to stop breaches with unparalleled protection against the most sophisticated cyberattacks. The CrowdStrike culture has been built upon our Core Values since the day we began. We are Fanatical About the Customer, Relentlessly Focused on Innovation and believe that our Limitless Passion drives Unlimited Potential for every CrowdStriker. As a purpose-built remote-first company, we believe cultivating a connected culture for every employee, no matter where they are in the world, is a key ingredient in building a high-performing, diverse team. We don’t have a mission statement. We’re on a mission—to stop breaches. Ready to join a mission that matters?

Why Work With Us

We have a culture that celebrates achievement, encourages flexibility and innovation and thrives on teamwork. We all work towards a single mission: to stop breaches. This common goal drives a sense of community and connection among our people across the globe.

Gallery

Gallery
Gallery
Gallery
Gallery
Gallery
Gallery
Gallery
Gallery
Gallery
Gallery
Gallery
Gallery

CrowdStrike Offices

Hybrid Workspace

Employees engage in a combination of remote and on-site work.

Typical time on-site: Flexible
HQAustin, TX
Osaka
Aarhus, DK
Arlington, VA
Barcelona, ES
Bengaluru, IN
Brussels, BE
Bucharest, RO
Cheltenham, GB
Copenhagen, DK
Dubai, Dubai
Irvine, CA
Kirkland, WA
Minneapolis, MN
Mumbai, IN
New Delhi, IN
Pune, IN
Reading, GB
Riyadh, SA
Saint Louis, MO
Singapore
Sunnyvale, CA
Sydney, Sydney
Tel Aviv-Yafo, IL
Tokyo, Japan
Learn more

Similar Jobs

CrowdStrike Logo CrowdStrike

Business Systems Analyst

Cloud • Computer Vision • Information Technology • Sales • Security • Cybersecurity
Remote or Hybrid
USA
11000 Employees
100K-155K Annually

CrowdStrike Logo CrowdStrike

Analyst I, Falcon Complete (Remote, PST/MST)

Cloud • Computer Vision • Information Technology • Sales • Security • Cybersecurity
Remote or Hybrid
USA
11000 Employees
85K-120K Annually

CrowdStrike Logo CrowdStrike

Executive Assistant

Cloud • Computer Vision • Information Technology • Sales • Security • Cybersecurity
Remote or Hybrid
4 Locations
11000 Employees
86K-135K Annually

CrowdStrike Logo CrowdStrike

Associate Analyst, Falcon Complete

Cloud • Computer Vision • Information Technology • Sales • Security • Cybersecurity
Remote or Hybrid
St. Louis, MO, USA
11000 Employees
70K-95K Annually

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account