Threat Hunter, FedCloud (Remote)

CrowdStrike
United States
8 days ago
Apply on crowdstrike.wd5.myworkdayjobs.com
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Compensation
$85,000.0 - $120,000.0
Working hours
Shift work
Languages
English

Tech stack

Microsoft Windows Artificial Intelligence Amazon Web Services Apple Mac Systems Microsoft Azure Cloud Computing Cloud Computing Security Computer Programming Linux Digital Forensics Distributed Systems Intrusion Detection and Prevention
+12 more
Python (Programming Language) Open Source Intelligence Data Logging Scripting Google Cloud Mitre Att&ck Malware Cyber Threat Analysis Falcon Platform Cybercrime Kibana Splunk

Job description

As a global leader in cybersecurity, CrowdStrike protects the people, processes and technologies that drive modern organizations. Since 2011, our mission hasn’t changed - we’re here to stop breaches, and we’ve redefined modern security with the world’s most advanced AI-native platform. We work on large scale distributed systems, processing almost 3 trillion events per day and this traffic is growing daily. Our customers span all industries, and they count on CrowdStrike to keep their businesses running, their communities safe and their lives moving forward. We’re proud to work for a mission-driven company leveraging AI to transform the way we work. CrowdStrikers drive their careers through flexibility and autonomy while also being expected to contribute to a culture of responsible AI adoption, experimentation, and innovation. We use an AI-first mindset as a force multiplier to proactively and continuously accelerate execution, build expertise, uncover insights, and solve complex problems. We’re always looking to add talented CrowdStrikers to the team who have limitless passion, a relentless focus on innovation and a fanatical commitment to our customers, our community and each other. Ready to join a mission that matters? The future of cybersecurity starts with you.

About the Role:

Join CrowdStrike’s OverWatch FedCloud team as a Threat Hunter, where you’ll analyze threat actor activity, identify intrusions, create detections, and track campaigns across our government cloud infrastructure. Our team conducts both proactive and active threat hunting operations to detect and disrupt advanced adversaries while enhancing the Falcon platform’s detection capabilities.

Shift: Tuesday - Friday, 23:00 - 09:00 ET (03:00 - 13:00 UTC)

What You’ll Do:

  • Conduct advanced threat hunting operations across client environments
  • Analyze and respond to sophisticated threat actor activities
  • Develop and implement new detection methodologies
  • Communicate findings to technical and executive stakeholders
  • Contribute to threat intelligence and detection engineering initiatives

Requirements

  • Bachelor’s degree in relevant field or related work experience
  • Strong proficiency in English (written and verbal)
  • Demonstrated experience in network/host-based intrusion analysis, digital forensics, or malware analysis
  • Comprehensive understanding of Windows, MacOS, and Linux operating systems
  • Experience with cyber threat intelligence and open-source intelligence analysis
  • Programming/scripting knowledge, particularly Python or Go Understanding of administrative tools and living-off-the-land techniques
  • Familiarity with MITRE ATT&CK framework and adversary techniques Ability to communicate complex technical concepts to varied audiences
  • Proven experience utilizing AI technologies to enhance decision-making, streamline workflows and processes, improve efficiency and drive business outcomes. Willingness to undergo government required background checks and fingerprinting
  • This role is open to US Citizens and Green Card Holders

Bonus Points:

  • Advanced knowledge of Linux and MacOS environments
  • Hands-on experience with eCrime and nation-state threat actors SOC or incident response experience
  • Expertise with logging platforms (LogScale, NGSIEM, Splunk, Kibana)
  • Experience with Cloud technologies, preferable related to threat hunting and/or incident response (AWS, Azure, GCP) Published security research (conferences, blogs, articles)
  • Experience with cloud security fundamentals Demonstrated track record of security research and emerging threats analysis

Benefits & conditions

Work Environment and Schedule:

  • 100% remote position based in the United States Night shift schedule (Tuesday - Friday 23:00-09:00 ET)
  • Regular interaction with threat actors and advanced persistent threats.

This role may require the candidate to periodically undergo and pass alcohol and/or drug test(s) during the course of employment.This role will require the candidate to periodically undergo and pass additional background and fingerprint check(s) consistent with government customer requirements.

Benefits of Working at CrowdStrike:

  • Market leader in compensation and equity awards
  • Comprehensive physical and mental wellness programs
  • Competitive vacation and holidays for recharge
  • Paid parental and adoption leaves
  • Professional development opportunities for all employees regardless of level or role
  • Employee Networks, geographic neighborhood groups, and volunteer opportunities to build connections
  • Vibrant office culture with world class amenities
  • Great Place to Work Certified across the globe

CrowdStrike is proud to be an equal opportunity employer. We are committed to fostering a culture of belonging where everyone is valued for who they are and empowered to succeed. We support veterans and individuals with disabilities through our affirmative action program., CrowdStrike, Inc. is committed to fair and equitable compensation practices. Placement within the pay range is dependent on a variety of factors including, but not limited to, relevant work experience, skills, certifications, job level, supervisory status, and location. The base salary range for this position for all U.S. candidates is $85,000 - $120,000 per year, with eligibility for bonuses, equity grants and a comprehensive benefits package that includes health insurance, 401k and paid time off.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on crowdstrike.wd5.myworkdayjobs.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

52 sec

Running persistent Linux environments directly on Windows

Ben Breard Ben Breard ¡ World Congress 2025

2:38 min

Establishing comprehensive monitoring and log management

Michael Eder +1 ¡ LIVE

3:21 min

Deploying a primary Elasticsearch and Kibana cluster configuration

Philipp Krenn ¡ World Congress 2022

6:11 min

Threat modeling techniques for cloud native infrastructure

Andrew Martin ¡ World Congress 2022

3:55 min

Demonstrating .NET installation on Debian and Azure Linux

Silvano Coriani Silvano Coriani ¡ Europe 2026 Virtual

2:35 min

Exploring diverse resources for continuous security learning

Stefania Chaplin ¡ World Congress 2022

Videos

See all

Related articles

See all