
Platform Threat Hunter
CrowdStrike
full-time
Posted on:
Location Type: Remote
Location: Remote • 🇺🇸 United States
Visit company websiteSalary
💰 $100,000 - $145,000 per year
Job Level
Mid-LevelSenior
Tech Stack
AWSAzureCloudGoGoogle Cloud PlatformPythonSplunk
About the role
- Maintain threat hunting infrastructure and tooling as needed
- Implement automated threat intelligence integrations or hunting enrichments
- Develop new custom security detections for CrowdStrike’s internal environment
- Implement automated validation of detection quality
- Contribute to the incident response lifecycle through hunting and deep-dive analysis
- Provide written and verbal reports to leadership about hunting findings and their impact to CrowdStrike
- Summarize hunting activities and findings through regular metrics reporting and highlighting wins to key stakeholders
- Develop plans and strategies for what a world-class hunting program can look like
Requirements
- 4+ years of Security Operations or Incident Response experience
- Understanding of: MITRE ATT&CK framework, incident response processes, threat hunting methodologies and security data analysis
- Cloud platforms (AWS, Azure, GCP)
- Log aggregation and processing
- Python or Go programming
- SIEM platforms (Splunk, ELK, LogScale)
- Experience with: SOAR platforms (Phantom, Demisto, Falcon Fusion)
- EDR platforms (Falcon greatly preferred)
- Security automation frameworks (Tines, XSOAR)
Benefits
- Remote-friendly and flexible work culture
- Market leader in compensation and equity awards
- Comprehensive physical and mental wellness programs
- Competitive vacation and holidays for recharge
- Paid parental and adoption leaves
- Professional development opportunities for all employees regardless of level or role
- Employee Networks, geographic neighborhood groups, and volunteer opportunities to build connections
- Vibrant office culture with world class amenities
Applicant Tracking System Keywords
Tip: use these terms in your resume and cover letter to boost ATS matches.
Hard skills
PythonGolog aggregationsecurity data analysisautomated threat intelligence integrationscustom security detectionsdetection quality validationincident responsethreat hunting methodologiessecurity automation frameworks
Soft skills
communicationreportinganalysisstrategic planningstakeholder engagement