Incident Response Principal Consultant; Remote
Oregon, Dane County, Wisconsin, 53575, USA
Listed on 2025-12-01
-
IT/Tech
Cybersecurity, IT Consultant
Incident Response Principal Consultant (Remote)
Crowd Strike is a global leader in cybersecurity, protecting people, processes, and technologies that drive modern organizations. We are looking for a highly motivated, self-driven, technical consultant dedicated to making a difference in global security by protecting organizations against the most advanced attackers in the world.
About The Role:
Crowd Strike Services team offers opportunities to expand your skill set through a wide variety of engagements, including front-page incident response investigations for organizations on the annual Fortune 100 list. We are looking for US-based candidates located in either Pacific or Mountain time.
Am I a Principal Consultant Candidate?
- Do you keep up with the latest vulnerabilities and breaches?
- Are you self-motivated and looking for an opportunity to rapidly accelerate your skills?
- Do you crave new and innovative work that matters to your customer?
- Do you have an Incident Response or Information Security background?
- Are you capable of leading teams and interacting with customers?
- Do you love working with like-minded, smart people who you can learn from and mentor?
What You'll Do:
- Lead incident response engagements
- Develop and use new methods to hunt for bad actors across large sets of data
- Work under the direction of outside counsel to conduct intrusion investigations
- Perform host and/or network-based forensics across Windows, Mac, and Linux platforms
- Perform basic malware analysis
- Demonstrate industry thought leadership through blog posts, Crowd Casts, and other public speaking events
What You'll Need:
- Team leadership experience in a matrixed consulting environment
- Incident Response experience conducting or managing incident response investigations
- Computer Forensic Analysis background using forensic analysis tools
- Network Forensic Analysis knowledge of network protocols and analysis tools
- Reverse Engineering ability to understand static and dynamic malware analysis
- Incident Remediation strong understanding of targeted attacks and ability to create customized remediation plans
- Network Operations and Architecture/Engineering strong understanding of secure network architecture
- Cloud Incident Response knowledge in AWS, Azure, GCP incident response methodologies
- Communications strong ability to communicate executive and/or detailed level findings to clients
Additionally, All Candidates Must Possess The Following Qualifications
- Capable of completing technical tasks without supervision
- Desire to grow and expand both technical and soft skills
- Strong project management skills
- Contributing thought leader within the incident response industry
- Ability to foster a positive work environment and attitude
- Ability to travel on short notice, up to 30% of the time
Education: BA or BS / MA or MS degree in Computer Science, Computer Engineering, Math, Information Security, or a related field. Applicants without a degree but with relevant work experience and/or training will be considered.
Benefits Of Working At Crowd Strike:
- Remote-friendly and flexible work culture
- Market leader in compensation and equity awards
- Comprehensive physical and mental wellness programs
- Competitive vacation and holidays for recharge
- Paid parental and adoption leaves
- Professional development opportunities for all employees
- Employee Networks, geographic neighborhood groups, and volunteer opportunities
- Vibrant office culture with world-class amenities
Crowd Strike is proud to be an equal opportunity employer. We are committed to fostering a culture of belonging where everyone is valued for who they are and empowered to succeed. We support veterans and individuals with disabilities through our affirmative action program.
#J-18808-Ljbffr(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).