Sr. Intelligence Analyst - China Mission (remote)

CrowdStrike CrowdStrike · Enterprise · United States · Remote

This role involves tracking and analyzing cyber intrusion activity associated with China-nexus adversaries, producing intelligence assessments, and identifying intelligence gaps. It requires hands-on knowledge of threat intelligence research tools and analytical tradecraft, with a focus on geopolitical issues specific to the PRC and their impact on the cyber threat landscape.

What you'd actually do

  1. Track adversary campaigns, tactics, techniques, and procedures (TTPs) through analysis of CrowdStrike's unique telemetry, open-source data sets, and third-party intelligence
  2. Author short and long format written reports with minimal supervision that apply analytic tradecraft, including appropriate use of estimative language, confidence levels, and structured analytic techniques
  3. Engage in cross-team discussions and collaborate with subject matter experts across CrowdStrike Intelligence and other business units to ensure comprehensive adversary tracking and deconfliction
  4. Identify intelligence gaps and propose research projects to address collection shortfalls within the mission area
  5. Conduct peer review of reporting by team members to help maintain CrowdStrike Intelligence's analytic standards for accuracy, clarity, and objectivity

Skills

Required

  • Threat intelligence research
  • Analytical tradecraft
  • Cyber operations analysis
  • Report writing
  • Geopolitical analysis (PRC)
  • Technical terminology (threat actors)
  • Collaboration
  • Research project management

Nice to have

  • Basic technical analysis of threat actor tools/tradecraft
  • Monitoring threat actor infrastructure
  • Process improvement
  • Automation

What the JD emphasized

  • 2+ years' experience in a threat intelligence environment, preferably with a practical focus on PRC cyber operations
  • Hands-on knowledge of threat intelligence research/collection tools and analytical tradecraft methods
  • Ability to identify, organize, catalog, and track adversary tradecraft trends — often with incomplete data
  • Ability to produce quality finished intelligence products on short deadlines, as well as continuing to maintain analysis for and report on long-term strategic assessments with minimal assistance
  • Understanding of technical terminology, tools, and tactics employed by threat actors
  • Ability or willingness to learn to conduct basic technical analysis of the tools and tradecraft employed by threat actors, as well as to enumerate and monitor threat actors' infrastructure
  • Knowledge of geopolitical issues specific to the PRC (including regional dynamics in the Indo-Pacific, cross-strait relations, and China's strategic interests) and ability to use that information to support understanding of current and future impacts on the cyber threat landscape
  • Demonstrated commitment to self-driven research and maintaining current awareness of developments in PRC cyber operations, regional geopolitics, and the broader cyber threat landscape