Threat Hunter, FedCloud; Remote
Jeffersontown, Jefferson County, Kentucky, USA
Listed on 2026-09-12
-
IT/Tech
Cybersecurity
As a global leader in cybersecurity, Crowd Strike protects the people, processes and technologies that drive modern organizations. Since 2011, our mission hasn’t changed — we’re here to stop breaches, and we’ve redefined modern security with the world’s most advanced AI-native platform. We work on large scale distributed systems, processing almost 3 trillion events per day and this traffic is growing daily.
Our customers span all industries, and they count on Crowd Strike to keep their businesses running, their communities safe and their lives moving forward. We're proud to work for a mission-driven company leveraging AI to transform the way we work. Crowd Strikers drive their careers through flexibility and autonomy while also being expected to contribute to a culture of responsible AI adoption, experimentation, and innovation.
We use an AI-first mindset as a force multiplier to proactively and continuously accelerate execution, build expertise, uncover insights, and solve complex problems. We’re always looking to add talented Crowd Strikers to the team who have limitless passion, a relentless focus on innovation and a fanatical commitment to our customers, our community and each other.
Join Crowd Strike's Over Watch Fed Cloud team as a Threat Hunter, where you'll analyze threat actor activity, identify intrusions, create detections, and track campaigns across our government cloud infrastructure. Our team conducts both proactive and active threat hunting operations to detect and disrupt advanced adversaries while enhancing the Falcon platform's detection capabilities.
Shift: Tuesday
- Friday, 23:00 - 09:00 ET (03:00 - 13:00 UTC)
- Conduct advanced threat hunting operations across client environments
- Analyze and respond to sophisticated threat actor activities
- Develop and implement new detection methodologies
- Communicate findings to technical and executive stakeholders
- Contribute to threat intelligence and detection engineering initiatives
- Bachelor's degree in relevant field or related work experience
- Strong proficiency in English (written and verbal)
- Demonstrated experience in network/host-based intrusion analysis, digital forensics, or malware analysis
- Comprehensive understanding of Windows, MacOS, and Linux operating systems
- Experience with cyber threat intelligence and open-source intelligence analysis
- Programming/scripting knowledge, particularly Python or Go
- Understanding of administrative tools and living-off-the-land techniques
- Familiarity with MITRE ATT&CK framework and adversary techniques
- Ability to communicate complex technical concepts to varied audiences
- Proven experience utilizing AI technologies to enhance decision-making, streamline workflows and processes, improve efficiency and drive business outcomes.
- Willingness to undergo government required background checks and fingerprinting
- This role is open to US Citizens and Green Card Holders
- Advanced knowledge of Linux and MacOS environments
- Hands‑on experience with eCrime and nation‑state threat actors SOC or incident response experience Expertise with logging platforms (Log Scale, NGSIEM, Splunk, Kibana)
- Experience with Cloud technologies, preferable related to threat hunting and/or incident response (AWS, Azure, GCP)
- Published security research (conferences, blogs, articles)
- Experience with cloud security fundamentals
- Demonstrated track record of security research and emerging threats analysis
Schedule:
100% remote position based in the United States. Night shift schedule (Tuesday
- Friday 23:00-09:00 ET). Regular interaction with threat actors and advanced persistent threats. This role may require the candidate to periodically undergo and pass alcohol and/or drug…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).