分析师 I,Falcon Complete(远程,PST/MST)
Analyst I, Falcon Complete (Remote, PST/MST)
作为网络安全领域的全球领导者,CrowdStrike 保护推动现代组织的人员、流程和技术。自2011年以来,我们的使命从未改变——我们致力于阻止入侵,并通过全球最先进的 AI 原生平台重新定义现代安全。我们构建大规模分布式系统,每天处理近3万亿个事件,且这一流量每日都在增长。我们的客户涵盖所有行业,他们依赖 CrowdStrike 来保障业务运行、社区安全和生活持续向前。我们自豪于为一家以使命为导向的公司工作,利用 AI 改变我们的工作方式。CrowdStrikers 通过灵活性和自主性推动自己的职业发展,同时也被期望为负责任的 AI 采用、实验和创新文化做出贡献。我们以 AI 优先的思维作为增效工具,主动且持续地加速执行、建立专长、发现洞察并解决复杂问题。我们一直在寻找有才华的 CrowdStrikers 加入团队,他们充满无限热情,对创新有不懈追求,并对客户、社区和彼此有狂热的承诺。准备好加入一项重要的使命了吗?网络安全的未来从你开始。
职位简介:
CrowdStrike 正在寻找高度积极、自我驱动的技术分析师,他们致力于通过保护组织免受全球最先进攻击者的威胁,为全球安全带来改变。我们的 CrowdStrike 虚拟安全运营中心提供多种机会,让你通过丰富的经验扩展技能,在客户遇到事件时实时进行检测和响应。
该职位面向 PST 和 MST 时区的候选人开放。
你是 Endpoint Protection 团队的分析师候选人吗?
- 你是否喜欢将你的动手技术技能用于检测、遏制和修复事件?
- 你是否自我驱动,希望找到一个快速提升技能的机会?
- 你是否渴望从事真正对客户有意义的新颖创新工作?
- 你是否有事件响应或信息安全背景,但尚未充分利用?
- 你是否擅长与客户和同事清晰专业地沟通?
- 你是否喜欢与志同道合、聪明的人一起工作,每天都能向他们学习并指导他们?
- 你是否对不断演进的工作充满热情?
查看英文原文
As a global leader in cybersecurity, CrowdStrike protects the people, processes and technologies that drive modern organizations. Since 2011, our mission hasn’t changed — we’re here to stop breaches, and we’ve redefined modern security with the world’s most advanced AI-native platform. We work on large scale distributed systems, processing almost 3 trillion events per day and this traffic is growing daily. Our customers span all industries, and they count on CrowdStrike to keep their businesses running, their communities safe and their lives moving forward. We're proud to work for a mission-driven company leveraging AI to transform the way we work. CrowdStrikers drive their careers through flexibility and autonomy while also being expected to contribute to a culture of responsible AI adoption, experimentation, and innovation. We use an AI-first mindset as a force multiplier to proactively and continuously accelerate execution, build expertise, uncover insights, and solve complex problems. We’re always looking to add talented CrowdStrikers to the team who have limitless passion, a relentless focus on innovation and a fanatical commitment to our customers, our community and each other. Ready to join a mission that matters? The future of cybersecurity starts with you.
About the Role:
CrowdStrike is looking for highly motivated, self-driven, technical analysts dedicated to making a difference in global security by protecting organizations against the most advanced attackers in the world. Our CrowdStrike virtual security operations center offers opportunities to expand your skill set through a wide variety of experiences, detecting and responding to incidents as they occur in real-time for our customers.
This position is open to candidates in PST and MST time zones.
Am I an Analyst, Endpoint Protection Team Candidate?
- Do you find yourself interested in putting your hands-on technical skills to the test in detecting, containing, and remediating incidents?
- Are you self-motivated and looking for an opportunity to rapidly accelerate your skills?
- Do you crave new and innovative work that actually matters to your customer?
- Do you have an Incident Response or Information Security background that you're not fully utilizing?
- Do you excel at communicating clearly and professionally with customers and colleagues?
- Do you love working around like-minded, smart people who you can learn from and mentor on a daily basis?
- Are you excited about the evolving role of AI in security operations, including AI models, prompt engineering, and agentic SOC workflows?
What You'll Do:
- Triage, investigate, and respond to security detections across endpoint, identity, email, network, and cloud environments.
- Conduct tactical analysis of EDR telemetry, log sources, and forensic artifacts to determine the root cause and scope of compromise, and develop targeted remediation recommendations.
- Investigate suspicious Microsoft 365 activity, including business email compromise (BEC) and adversary-in-the-middle (AITM) attacks, contain the threat, and deliver actionable guidance to customers.
- Perform basic malware analysis to support investigation and triage of security incidents.
- Develop and improve processes for incident detection and the execution of countermeasures.
- Deliver clear, concise, and professional customer communications as the primary point of contact during incident response activities.
- Produce high-quality written and verbal communications, recommendations, and findings to customers and internally.
What You'll Need:
Successful candidates will have experience in one or more of the following areas:
- Incident Handling: hands-on experience conducting and coordinating incident response across a broad range of security events, including the ability to manage multiple simultaneous incidents across hosts and customer environments. Experience investigating threats including host/user compromises, network breaches, organized crime, and advanced persistent threats.
- Threat Landscape Awareness: strong working knowledge of attack vectors, threat actor tactics, techniques, and procedures (TTPs), with demonstrated experience applying frameworks such as MITRE ATT&CK to active investigations.
- Computer Forensic Analysis: hands-on experience using forensic analysis tools in incident response investigations to determine the extent and scope of compromise.
- Malware Analysis: demonstrated ability to perform basic static and dynamic malware analysis to understand the nature and behavior of malicious code.
- Operating System Fundamentals: strong understanding of Windows, Mac, and/or Linux operating systems with emphasis on Windows internals such as the file system, registry, scheduled tasks, and running processes.
- Systems Administration: hands-on experience administering networks and resolving connectivity, authentication, and configuration issues across small to large enterprise environments.
- Network Analysis Fundamentals: strong working knowledge of network protocols and analysis tools, with experience analyzing network traffic to support incident investigations.
- Identity Platform Awareness: experience working with identity and access management platforms such as Okta, Microsoft Entra ID, Active Directory, and similar enterprise technologies.
- Email Security Awareness: experience investigating Microsoft 365 security incidents, including business email compromise (BEC) and adversary-in-the-middle (AITM) attacks.
- Third-Party Log Analysis: working knowledge of log sources across cloud platforms, network devices, identity providers, email platforms, and other enterprise technologies, with experience conducting investigation and triage within a SIEM platform.
- Incident Remediation: basic understanding of surgical remediation actions needed to contain threats across compromised hosts, including third-party platform containment measures.
- Network Operations and Architecture/Engineering: working knowledge of secure network architecture and hands-on experience troubleshooting and navigating network environments.
- Programming/Scripting: experience with scripting languages such as Python, PowerShell, or Bash to support investigation workflows or automate repetitive tasks.
- AI Fundamentals: experience utilizing AI technologies to enhance decision-making, streamline workflows and processes, improve efficiency and drive business outcomes.
- Proven experience utilizing AI technologies to enhance decision-making, streamline workflows and processes, improve efficiency and drive business outcomes.
Bonus Points:
- Capable of completing technical tasks without supervision.
- Desire to grow and expand both technical and soft skills.
- Ability to foster a positive work environment and attitude.
Requirements
- Must be willing to work 4x10 schedule, including a day on the weekend.
- This role is only open to US citizens and Green Card holders.
Education:
BA or BS / MA or MS degree in Computer Science, Computer Engineering, Math, Information Security, Information Assurance, Information Security Management, Intelligence Studies, Cybersecurity, Cybersecurity Policy, or a related field. Applicants without a degree but with relevant work experience and/or training will be considered.
Benefits of Working at CrowdStrike:
- Market leader in compensation and equity awards
- Comprehensive physical and mental wellness programs
- Competitive vacation and holidays for recharge
- Paid parental and adoption leaves
- Professional development opportunities for all employees regardless of level or role
- Employee Networks, geographic neighborhood groups, and volunteer opportunities to build connections
- Vibrant office culture with world class amenities
- Great Place to Work Certified™ across the globe
CrowdStrike is proud to be an equal opportunity employer. We are committed to fostering a culture of belonging where everyone is valued for who they are and empowered to succeed. We support veterans and individuals with disabilities through our affirmative action program.
CrowdStrike is committed to providing equal employment opportunity for all employees and applicants for employment. The Company does not discriminate in employment opportunities or practices on the basis of race, color, creed, ethnicity, religion, sex (including pregnancy or pregnancy-related medical conditions), sexual orientation, gender identity, marital or family status, veteran status, age, national origin, ancestry, physical disability (including HIV and AIDS), mental disability, medical condition, genetic information, membership or activity in a local human rights commission, status with regard to public assistance, or any other characteristic protected by law. We base all employment decisions--including recruitment, selection, training, compensation, benefits, discipline, promotions, transfers, lay-offs, return from lay-off, terminations and social/recreational programs--on valid job requirements.
If you need assistance accessing or reviewing the information on this website or need help submitting an application for employment or requesting an accommodation, please contact us at for further assistance.
CrowdStrike Canada ULC is committed to equal pay for equal work in its compensation practices. The base salary range for this position in Canada is $90,000 - $135,000 CAD per year + variable/incentive compensation + equity + benefits. A candidate’s salary is determined by various factors including, but not limited to, relevant work experience, skills, certifications and location.This is Canadian-based employment, and it is expected that all employees maintain legal entitlement to work in Canada. Applicants selected to move forward in the hiring process are subject to background checks, including but not limited to criminal record, credit, and/or reference checks.Originally posted on Himalayas