CrowdStrike

Security Researcher, Malware Reverse Engineer (Remote)


PayCompetitive
LocationRemote
Employment typeFull-Time

This job is now closed

  • Job Description

      Req#: R14228

      #WeAreCrowdStrike and our mission is to stop breaches. As a global leader in cybersecurity, our team changed the game. Since our inception, our market leading cloud-native platform has offered unparalleled protection against the most sophisticated cyberattacks. We’re looking for people with limitless passion, a relentless focus on innovation and a fanatical commitment to the customer to join us in shaping the future of cybersecurity. Consistently recognized as a top workplace, CrowdStrike is committed to cultivating an inclusive, remote-first culture that offers people the autonomy and flexibility to balance the needs of work and life while taking their career to the next level. Interested in working for a company that sets the standard and leads with integrity? Join us on a mission that matters - one team, one fight.

      About the Role:

      CrowdStrike Intelligence, a core component of CrowdStrike, is seeking a motivated reverse engineer with excellent technical skills to research advanced cybercriminal attacks. Our Technical Analysis Cell (TAC) is at the forefront of CrowdStrike’s mission against state-sponsored adversaries and criminal actors. We combine intelligence analysis with deep-dive reverse engineering and malicious code analysis, in addition to building and using automation systems to deliver actionable indicators and operational insights.

      This highly technical position on the TAC eCrime team serves an important role in conducting research, increasing our coverage of the global threat landscape, contributing to the continuous tracking of criminal adversary groups, and ultimately developing finished intelligence products.
      We are ideally looking for a seasoned specialist in the tracking of eCrime actors, their tooling, and their TTPs . That said, we are also open to applications by experienced and talented malware researchers or reverse engineers without significant knowledge in this field who are willing to rapidly expand their skills to successfully carry out the following duties:

      What You'll Do:
      Technical Analysis:

      • Discover, investigate and track advanced cyber intrusion campaigns and document findings.

      • Enhance understanding of the tools and malware used in intrusions through reverse engineering.

      • Develop tools to assist with automation of malware reverse engineering tasks and tracking of threat actors.

      • Create host-based and network-based signatures suited for large-scale hunting, detection, and tracking of threats.

      Intelligence Reporting:

      • Produce high-quality threat intelligence reporting for all levels of readership, including actionable mitigation and detection guidance.

      • Collaborate across teams to inform various functions within CrowdStrike Intelligence and beyond about activity of interest, to coordinate adversary and campaign tracking, and to provide support to teams developing mitigation strategies and responding to incidents.

      What You'll Need:
      Required:

      • Knowledge of reverse engineering tools (disassemblers, decompilers, debuggers) and processes (unpacking malware, reconstructing code logic, etc) combined with ongoing interest and ability to learn and self-teach new techniques.

      • Knowledge of programming and scripting languages, in particular Python.

      • Ability to accurately express complex technical and non-technical concepts in written, verbal and graphical products.

      • Strong problem solving skills are a must.

      • Team player.

      Preferred:

      • Ability to interpret raw network data and to develop network signatures, as well as custom protocol decoders and decryption tools.

      • Experience identifying and classifying malicious tooling through development of signatures that can be used for tracking and hunting purposes.

      • Good understanding of Windows OS internals and the Windows API.

      • Familiarity tracking botnets and commodity malware.

      • Experience tracking adversaries engaged in Big Game Hunting (BGH).

      • A background in intelligence is a plus.

      • Experience with multiple platforms (Linux, MacOS, mobile, etc.) is a plus.

      Education:

      • BA/BS or equivalent experience in a related field

      Location:

      • Remote, with occasional travel.

      #LI-Remote

      #LI-AO1

      Benefits of Working at CrowdStrike:

      • Remote-first culture

      • Market leader in compensation and equity awards

      • Competitive vacation and flexible working arrangements

      • Comprehensive and inclusive health benefits

      • Physical and mental wellness programs

      • Paid parental leave, including adoption

      • A variety of professional development and mentorship opportunities

      • Offices with stocked kitchens when you need to fuel innovation and collaboration

      We are committed to fostering a culture of belonging where everyone feels seen, heard, valued for who they are and empowered to succeed. Our approach to cultivating a diverse, equitable, and inclusive culture is rooted in listening, learning and collective action. By embracing the diversity of our people, we achieve our best work and fuel innovation - generating the best possible outcomes for our customers and the communities they serve.

      CrowdStrike is committed to maintaining an environment of Equal Opportunity and Affirmative Action. If you need reasonable accommodation to access the information provided on this website, please contact Recruiting@crowdstrike.com , for further assistance.

      CrowdStrike participates in the E-Verify program.

      Notice of E-Verify Participation

      Right to Work

      CrowdStrike, Inc. is committed to fair and equitable compensation practices. The base salary range for this position in the U.S. is $65,000 - $95,000 per year + variable/incentive compensation + equity + benefits. A candidate’s salary is determined by various factors including, but not limited to, relevant work experience, skills, certifications and location.
  • About the company

      CrowdStrike Holdings, Inc. is a cybersecurity technology company based in Sunnyvale, California.

Notice

Talentify is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, or protected veteran status.

Talentify provides reasonable accommodations to qualified applicants with disabilities, including disabled veterans. Request assistance at accessibility@talentify.io or 407-000-0000.

Federal law requires every new hire to complete Form I-9 and present proof of identity and U.S. work eligibility.

An Automated Employment Decision Tool (AEDT) will score your job-related skills and responses. Bias-audit & data-use details: www.talentify.io/bias-audit-report. NYC applicants may request an alternative process or accommodation at aedt@talentify.io or 407-000-0000.