Threat Research Engineer I

CrowdStrike CrowdStrike · Enterprise · Pune, India

This role focuses on threat research and malware analysis within CrowdStrike's Malware Research Center. The primary responsibility is to understand current threats, validate their impact on the Falcon platform, and contribute to improving detection and response capabilities. The role involves analyzing malware behavior, reverse engineering, and defining automation improvements and process automation to reduce manual effort in threat analysis. It also involves collaborating with engineering teams to prioritize roadmap for analysis automation.

What you'd actually do

  1. The Threat Analyst will take input from many sources and validate if those threats are something Falcon can mount an effective defense against.
  2. Additionally, this role will be looked on as the go to person when new threats are reported for understanding those threats and formulating an opinion on how we should be thinking about the threat.
  3. As the gateway to the response organization for many new threats, good cross team collaboration skills are important.
  4. Another aspect of the position is working with the engineering team to define automation improvements and process automation to reduce time and manual effort in the analysis of threats.

Skills

Required

  • Bachelors or Masters in Computer Science or comparable field
  • 4+ year’s experience in the threat research field with a focus on malware analysis
  • Proficient level familiarity with at least one major Operating System
  • Competence handing off research to engineering
  • ability to produce small code projects to address immediate needs

Nice to have

  • A proven background in reverse engineering on file-based threats, exploits, and other attack techniques
  • A reasonable level of proficiency in disassembly
  • core principles of structured programming
  • Experience working with certification partners like AV-Test, AV-Comparatives, SE Labs
  • Experience with Splunk, ElasticSearch-Kibana or similar tools and working with large data sets

What the JD emphasized

  • focus on malware analysis
  • enormous scale of malware
  • automation and machine learning
  • understanding how the threat is working
  • proven track record of threat analysis
  • Clear, effective communication of technical details
  • define automation improvements
  • process automation
  • prioritize the roadmap for analysis automation

Other signals

  • malware analysis
  • automation
  • machine learning
  • threat research