Skip to main content
Cybersecurity Analyst - SOC Operations & Threat Hunting — CrowdStrike
CrowdStrike logo
Cyber Security · Verified Opening #63

Cybersecurity Analyst - SOC Operations & Threat Hunting

business CrowdStrike location_on Remote — USA (Remote) home_work Remote Full Time

Compensation

$90K – 120K/yr

bolt Apply for this role
calendar_month

Published Date

1 week ago

home_work

Work Arrangement

Remote • Remote — USA

group_add

Open Positions

4 openings

workspace_premium

Experience Level

Entry / Mid-level

overview Role Overview

About the opportunity

Triage endpoint alerts, investigate indicators of compromise (IOCs), and hunt for adversary activity using Falcon telemetry.

CrowdStrike is looking for a Cybersecurity Analyst to join our threat operations ecosystem. In this role, you will analyze high-fidelity telemetry from the CrowdStrike Falcon platform, reconstruct attack paths, and remediate advanced threats. You will play a crucial frontline role defending organizations against sophisticated ransomware and state-sponsored adversaries.

Key Focus Areas:
• Triaging and investigating endpoint detection and response (EDR) alerts.
• Analyzing Windows Event logs, PowerShell traces, and network connections for anomalous behavior.
• Mapping attacks against MITRE ATT&CK techniques and writing detection rules.
• Incident response reporting, isolation protocols, and containment procedures.
task Core Responsibilities

What you will do

  • check_circle Monitor and triage security alerts across cloud, identity, and endpoint sensors.
  • check_circle Investigate suspicious process executions, PowerShell scripts, and network beacons.
  • check_circle Map adversary tactics, techniques, and procedures (TTPs) to the MITRE ATT&CK framework.
  • check_circle Prepare actionable incident response reports and recommend containment actions.
verified_user Candidate Profile

What we are looking for

  • arrow_circle_right Knowledge of operating system internals (Windows, Linux), networking fundamentals, and security protocols.
  • arrow_circle_right Hands-on experience with SIEM, EDR (CrowdStrike Falcon, Sentinel, or Defender), and log analysis.
  • arrow_circle_right Familiarity with basic scripting in Python or PowerShell for log parsing and workflow automation.
  • arrow_circle_right Relevant industry certifications (Security+, CySA+, CEH, or BTL1) are an advantage.
code_blocks Technologies & Competencies

Skills & Tech Stack

Threat Hunting EDR & SIEM Falcon Platform Incident Response MITRE ATT&CK Python/PowerShell
handshake Direct Referral Network

Why candidate applications stand out

verified

Verified Technical Credentials

Applications include direct proof-of-work repositories and instructor verification endorsements.

person_check

Fast-Track Hiring Visibility

Direct internal referral channels through enterprise partners bypass automated resume discard filters.

work Planning your next career move? Get professional course guidance from TutorAI.

cookie

We value your privacy

We use cookies to run the site and, with your consent, to understand how it's used so we can improve it. See our Cookie Policy and Privacy Policy.