Threat Analyst (Remote, ROU) at Crowdstrike

Romania

Crowdstrike Logo
Not SpecifiedCompensation
Mid-level (3 to 4 years), Senior (5 to 8 years)Experience Level
Full TimeJob Type
UnknownVisa
Cybersecurity, BiotechnologyIndustries

Requirements

Candidates must have a comprehensive understanding of common adversary tactics and techniques, and demonstrated ability to analyze complex situations and articulate information clearly to diverse stakeholders. A profound understanding of and ability to interpret logs generated by systems, networks, and applications is required, along with proven experience in identifying and isolating unique patterns within process behavior or logs (e.g., RegEx, correlation rules, YARA). Prior experience with EDR products and endpoint security monitoring is necessary, as is expertise in and understanding of Windows, Linux, and MacOSX operating systems. The ability to contribute both independently and collaboratively within a team environment, possess an inquisitive nature and the ability to conduct thorough research using historical data, exhibit a keen eye for documenting pertinent details and facilitating focused discussions, and eagerness to acquire new knowledge and skills are also essential. Bonus points for experience in a security operations center or similar environment responding to incidents, demonstrated ability to automate repetitive tasks, in-depth experience with and knowledge of penetration testing (red team) methodologies and tools, and forensic experience.

Responsibilities

The Threat Analyst will monitor and analyze detections and preventions deployed by internal teams, respond to customer inquiries regarding threat detections and capabilities, proactively manage false positives, and enhance the overall efficacy of content. This role involves providing assistance to various internal teams in the creation of new detections, improvements to existing models, and assessment of detection gaps related to various CrowdStrike products. The analyst will document and offer expert-level information to diverse stakeholders regarding content detections within CrowdStrike Falcon, support customers and teams in enhancing or suppressing detection alerts, and develop new detection content based on adversarial or testing activity observed in logs.

Skills

Cybersecurity
Threat Analysis
False Positive Management
Data Science
Endpoint Protection
Technical Acumen
Customer Inquiries
Security Response

Crowdstrike

Cloud-native endpoint security solutions provider

About Crowdstrike

CrowdStrike specializes in cybersecurity, focusing on protecting businesses from cyber threats through cloud-native endpoint security solutions. Their main product, the Falcon platform, includes services like Falcon Pro, which replaces traditional antivirus with next-generation antivirus that integrates threat intelligence, Falcon Insight for endpoint detection and response, and Falcon Device Control to manage connected devices. Unlike many competitors, CrowdStrike's services are subscription-based, allowing clients to choose different levels of protection based on their needs. The company serves a diverse clientele, including many Fortune 100 companies, and is recognized as a leader in the cybersecurity field, known for its effectiveness in threat detection and response.

Austin, TexasHeadquarters
2011Year Founded
$468MTotal Funding
IPOCompany Stage
Enterprise Software, CybersecurityIndustries
5,001-10,000Employees

Benefits

Competitive Employee Stock Purchase Plan
Remote-friendly culture
Market leader in compensation and equity awards
Competitive vacation and flexible working arrangements
Comprehensive health benefits + 401k plan
Paid Parental Leave, including adoption
Wellness programs
Professional development and mentorship opportunities
Open offices have stocked kitchens, coffee, soda and treats

Risks

Increased competition from companies like Lumos could challenge CrowdStrike's market share.
Recovery from last year's outage may still affect customer trust and future sales.
Pressure to demonstrate ROI by 2025 could challenge CrowdStrike's financial transparency.

Differentiation

CrowdStrike's Falcon platform offers cloud-native endpoint security solutions, a key differentiator.
The company serves 44 of the Fortune 100, showcasing its strong market presence.
CrowdStrike's proactive threat hunting sets it apart in cybersecurity threat detection.

Upsides

Partnership with SonicWall opens new SMB market segment for CrowdStrike.
Recognition as a leader in ransomware prevention boosts CrowdStrike's market credibility.
Gamified learning initiatives help address cybersecurity skills gap, benefiting future talent pipeline.

Land your dream remote job 3x faster with AI