Sr. Security Researcher Ii, Persona Ops (remote)

CrowdStrike CrowdStrike · Enterprise · Germany, United Kingdom · Remote

Senior Security Researcher II focused on tracking and collecting information related to Russian-language eCrime actors, tools, tradecraft, and techniques in various online environments, including the deep and dark web, to provide unique insights into finished Intelligence products. Requires advanced engagement skills, OSINT tradecraft, and Russian-language proficiency.

What you'd actually do

  1. Collect unique, relevant actionable, and timely information to answer established standing and ad hoc requirements related to Russian/Eastern-European eCrime actors.
  2. Leverage advanced engagement skills and OSINT tradecraft to follow up on leads and identify Russian/Eastern-European eCrime threat actors and track them in various online communities.
  3. Identify current and emerging cyber threats and trends pertaining to Russian/Eastern-European eCrime, including technical information.
  4. Create consistently clear, highly-contextualised internal reports of collected information in a way that enables robust analysis.
  5. Collaborate with teams producing analytical reports and threat estimates pertaining to Russian/Eastern-European eCrime topics.

Skills

Required

  • Extensive experience navigating a wide variety of cyber threat actor environments, to include social media, hidden services, and forums.
  • In-depth familiarity with a wide variety of Russian-language eCrime groups.
  • Practical knowledge of technical terminology, tools, and tactics employed by eCrime actors, particularly those used by Russian-language eCrime actors.
  • Ability to perform comprehensive direct engagement and OSINT investigations using Russian-language skills.
  • Ability to adapt quickly to changing environments and identify creative solutions to difficult problems and scenarios with persistence.
  • Ability to work as part of a team, as well as independently and proactively.
  • Ability to work effectively under tight deadlines with minimal guidance.
  • Excellent attention to detail.

Nice to have

  • Additional background in Russian/Eastern European geopolitical issues and language capabilities including, but not limited to, Russian and Ukrainian.
  • Prior intelligence community, human intelligence (HUMINT), or cyber threat intelligence background highly preferred.
  • Practical experience with virtual HUMINT is highly desirable.

What the JD emphasized

  • Russian-language
  • eCrime actors
  • deep and dark web
  • OSINT
  • Russian/Eastern-European eCrime