yoinka

Endpoint Threat Hunting Consultant (Remote)

CrowdStrike

RemoteUSA - RemoteMidH-1B sponsor company
Sign in to applyVerified 2h ago
Location
USA - Remote
Work model
Remote
Level
Mid
H-1B history
35 approvals (FY2023)
Posted
Sep 1, 2026

Skills

AWSAzureCybersecurityGCPLinuxPython

About this role

As a global leader in cybersecurity, CrowdStrike protects the people, processes and technologies that drive modern organizations. Since 2011, our mission hasn’t changed — we’re here to stop breaches, and we’ve redefined modern security with the world’s most advanced AI-native platform. We work on large scale distributed systems, processing almost 3 trillion events per day and this traffic is growing daily. Our customers span all industries, and they count on CrowdStrike to keep their businesses running, their communities safe and their lives moving forward. We're proud to work for a mission-driven company leveraging AI to transform the way we work. CrowdStrikers drive their careers through flexibility and autonomy while also being expected to contribute to a culture of responsible AI adoption, experimentation, and innovation. We use an AI-first mindset as a force multiplier to proactively and continuously accelerate execution, build expertise, uncover insights, and solve complex problems. We’re always looking to add talented CrowdStrikers to the team who have limitless passion, a relentless focus on innovation and a fanatical commitment to our customers, our community and each other. Ready to join a mission that matters? The future of cybersecurity starts with you.

About the Role

CrowdStrike is looking for highly motivated, self-driven, Senior Consultant dedicated to protect organizations against the most advanced adversaries in the world. The candidate would be responsible for hunting for historical and active threats in enterprise environments and providing actionable recommendations to remediate findings. What You’ll Do: Analyze logs and system artifacts looking for evidence of adversary activity in enterprise environments. Produce high-quality written and verbal reports, presentations, recommendations, and findings to key stakeholders, including technical audiences, management, and legal counsel. Contribute to developing and maturing threat hunting capabilities, including research, methodology, and scripting. What You’ll Need: Successful candidates will have experience in one or more of the following areas : Threat Hunting : An understanding of Windows and Linux forensic artifacts and analysis methodologies, including program execution, persistence, file system, event logging, process analysis, and anomaly detection,  Analysis : Strong threat analysis skills, including hypothesis-driven analysis, IOC searching, long-tail analysis, correlation, and pivoting on findings, and timelining threat activity. Threat Intelligence : An understanding of targeted attacks, including tradecraft associated with eCrime and nation-state adversaries, and an ability to use intelligence for targeted IOC searching. Scripting : An ability to create search queries and write simple scripts in Python or another scripting language. Platform Architecture: A practical understanding of Windows and Linux operating systems, including file systems, registry, memory management, kernel and user-mode functions, identity, and process handling. Networking : A practical understanding of network protocols and how data is handled at the various layers of the OSI model. Identity : A familiarity with fundamental identity concepts, including Active Directory and associated protocols like Kerberos. Communication : strong ability to communicate analysis findings to clients, including technical and executive audiences, and legal counsel. Proven experience utilizing AI technologies to enhance decision-making, streamline workflows and processes, improve efficiency and drive business outcomes. Experience/training in the topics below is beneficial but not essential for consideration : Incident Response: Incident response experience, especially with large-scale investigations involving e-Crime and nation-state actors. Cloud Platforms : familiarity with one or more of the following cloud platforms: AWS, Azure, and GCP. Incident Remediation : strong

Listing verified 2h ago. Applications go through the company's official careers site.

← Back to Yoinka

Endpoint Threat Hunting Consultant (Remote) at CrowdStrike, USA - Remote | Yoinka