Security Researcher (Remote)
GBR Remote, United Kingdom
- Remote-first
- Website
- @CrowdStrike 𝕏
- Search
CrowdStrike
CrowdStrike is a global cybersecurity leader with an advanced cloud-native platform for protecting endpoints, cloud workloads, identities and data.As a global leader in cybersecurity, CrowdStrike protects the people, processes and technologies that drive modern organizations. Since 2011, our mission hasn’t changed — we’re here to stop breaches, and we’ve redefined modern security with the world’s most advanced AI-native platform. Our customers span all industries, and they count on CrowdStrike to keep their businesses running, their communities safe and their lives moving forward. We’re also a mission-driven company. We cultivate an inclusive culture that gives every CrowdStriker both the flexibility and autonomy to own their careers. We’re always looking to add talented CrowdStrikers to the team who have limitless passion, a relentless focus on innovation and a fanatical commitment to our customers, our community and each other. Ready to join a mission that matters? The future of cybersecurity starts with you.
About Us:
CrowdStrike Counter Adversary Operations, a core component of CrowdStrike, is seeking a motivated reverse engineer with excellent technical skills to research nation state adversary operations used in targeted intrusions. Our Technical Analysis Cell (TAC) is at the forefront of CrowdStrike’s mission against state-sponsored adversaries and criminal actors. We combine intelligence analysis with deep-dive reverse engineering and malicious code analysis, in addition to building and using automation systems to deliver actionable indicators and operational insights.
This highly technical position on the TAC Targeted Intrusion team serves an important role in conducting research, increasing our coverage of the global threat landscape, contributing to the continuous tracking of targeted intrusion and nation state adversaries, and ultimately developing finished intelligence products that provide a decision advantage to customers.
We are ideally looking for a specialist in targeted intrusions and tracking of nation state adversaries. That said, we are also open to applications by talented malware researchers or reverse engineers without significant knowledge in this field who are willing to rapidly expand their skills to successfully carry out the following duties:
What You'll Do:
Technical Analysis:
Discover, investigate and track advanced cyber intrusions and document findings.
Enhance understanding of the tools and malware used in intrusions through reverse engineering.
Develop tools to assist with automation of malware reverse engineering tasks and tracking of threat actors.
Create host-based and network-based signatures suited for large-scale hunting, detection, and tracking of threats.
Intelligence Reporting:
Produce high-quality threat intelligence reporting for all levels of readership, including actionable mitigation and detection guidance.
Collaborate across teams to inform various functions within CrowdStrike Intelligence and beyond about activity of interest, to coordinate adversary and campaign tracking, and to provide support to teams developing mitigation strategies and responding to incidents.
What You'll Need:
Knowledge of reverse engineering tools (disassemblers, decompilers, debuggers) and processes (unpacking malware, reconstructing code logic, etc) combined with ongoing interest and ability to learn and self-teach new techniques.
Knowledge of programming and scripting languages, in particular Python.
Ability to accurately express complex technical and non-technical concepts in written, verbal and graphical products.
Strong problem solving skills are a must.
Team player.
Bonus Points:
Ability to interpret raw network data and to develop network signatures, as well as custom protocol decoders and decryption tools.
Familiarity with targeted intrusions and tracking of state-operated adversaries.
A background in intelligence is a plus.
#LI-EV1
#LI-JP2
Benefits of Working at CrowdStrike:
Remote-friendly and flexible work culture
Market leader in compensation and equity awards
Comprehensive physical and mental wellness programs
Competitive vacation and holidays for recharge
Paid parental and adoption leaves
Professional development opportunities for all employees regardless of level or role
Employee Resource Groups, geographic neighbourhood groups and volunteer opportunities to build connections
Vibrant office culture with world class amenities
Great Place to Work Certified™ across the globe
CrowdStrike is proud to be an equal opportunity and affirmative action employer. We are committed to fostering a culture of belonging where everyone is valued for who they are and empowered to succeed. Our approach to cultivating a diverse, equitable, and inclusive culture is rooted in listening, learning and collective action. By embracing the diversity of our people, we achieve our best work and fuel innovation - generating the best possible outcomes for our customers and the communities they serve.
All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, or status as a protected veteran. If you need assistance accessing or reviewing the information on this website or need help submitting an application for employment or requesting an accommodation, please contact us at recruiting@crowdstrike.com for further assistance.
* Salary range is an estimate based on our InfoSec / Cybersecurity Salary Index 💰
Tags: Automation Code analysis CrowdStrike Malware Python Reverse engineering Scripting Threat intelligence
Perks/benefits: Career development Competitive pay Equity / stock options Flex hours Flex vacation Salary bonus
More jobs like this
Explore more career opportunities
Find even more open roles below ordered by popularity of job title or skills/products/technologies used.