Incident Response Consultant (remote)

CrowdStrike CrowdStrike · Enterprise · United States · Remote

CrowdStrike is seeking an Incident Response Consultant to join their cybersecurity team. The role involves investigating security incidents, hunting for threat actors, performing forensic analysis on various platforms, and communicating findings to stakeholders. The ideal candidate will have experience in incident response, computer forensics, network forensics, reverse engineering, or cloud incident response.

What you'd actually do

  1. Serve as part the technical team on incident response engagements
  2. Develop and use new methods to hunt for bad actors across large sets of data.
  3. Work under the direction of project leadership and outside counsel to conduct intrusion investigations
  4. Perform host and/or network-based forensics across Windows, Mac, and Linux platforms.
  5. Support the production of high-quality written and verbal reports, presentations, recommendations, and findings to key stakeholders including customer management, regulators, and legal counsel .

Skills

Required

  • Incident Response experience
  • Computer Forensic Analysis experience
  • Network Forensic Analysis knowledge
  • Reverse Engineering ability
  • Incident Remediation understanding
  • Network Operations and Architecture/Engineering understanding
  • Cloud Incident Response knowledge
  • Strong communication skills

Nice to have

  • Experience managing incident response investigations
  • Experience investigating targeted threats
  • Experience using forensic analysis tools
  • Knowledge of network protocols
  • Experience with network analysis tools like Bro/Zeek or Suricata
  • Ability to perform analysis of network logs
  • Ability to understand malware analysis capabilities
  • Ability to support creating customized tactical and strategic remediation plans
  • Strong background in performing network operations
  • Knowledge of AWS, Azure, or GCP incident response methodologies
  • Ability to communicate executive and/or detailed level findings to clients
  • Ability to effectively communicate tasks, guidance, and methodology with internal teams

What the JD emphasized

  • Incident Response
  • Computer Forensic Analysis
  • Network Forensic Analysis
  • Incident Remediation
  • Cloud Incident Response