Sr. Analyst, Falcon Complete (Remote)

CrowdStrike Holdings, Inc.$125K — $180K *
US-AnywhereRemote in United States
Information Technology
5 - 7 years of experience
Job Overview by Ladders

Qualifications

  • 5-7 years of experience in incident response and information security
  • Expertise in complex incident management and leading investigations
  • Advanced understanding of attack vectors and threat actor TTPs
  • Proficiency in forensic analysis across various environments
  • Strong knowledge in malware analysis, operating systems, and network security
  • Experience in identity and email security platforms
  • Familiarity with scripting to enhance detection and response capabilities

Responsibilities

  • Lead high-severity investigations across multiple environments
  • Analyze telemetry and forensic artifacts to identify compromises
  • Provide expert guidance on Microsoft 365 security incidents
  • Develop strategic remediation plans for compromised systems
  • Mentor and train Analyst team members to improve skills
  • Drive process improvements and contribute to SOPs
  • Engage in thought leadership through writing and speaking

Benefits

  • Market-leading compensation and equity awards
  • Comprehensive wellness programs
  • Competitive paid time off and holidays
  • Paid parental and adoption leave
  • Professional development for all employees
  • Opportunities to connect through employee networks
  • Vibrant office culture with great amenities
Full Job Description
About the Role:

CrowdStrike is looking for highly motivated, self-driven, technical analysts dedicated to making a difference in global security by protecting organizations against the most advanced attackers in the world. Our CrowdStrike virtual security operations center offers opportunities to expand your skill set through a wide variety of experiences, detecting and responding to incidents as they occur in real-time for our customers.

Am I a Senior Analyst, Endpoint Protection Team Candidate?
  • Do you have a passion for hunting down advanced threats and leading complex incident response investigations from start to finish?
  • Are you self-motivated and ready to take ownership of the most challenging cases your team faces?
  • Do you crave new and innovative work that actually matters to your customer?
  • Do you have an extensive Incident Response or Information Security background and the desire to put it to work at scale?
  • Do you excel at communicating clearly and professionally with customers, including in high-pressure escalation scenarios?
  • Do you love developing others and leaving your team measurably stronger than you found it?
  • Do you have a desire to contribute to the security community through thought leadership, mentoring, and industry engagement?
  • Are you excited about the evolving role of AI in security operations, including AI models, prompt engineering, and agentic SOC workflows?


What You'll Do:
  • Lead complex investigations across endpoint, identity, email, network, and cloud environments, serving as technical lead for high-severity and multi-customer incidents.
  • Conduct advanced analysis of EDR telemetry, forensic artifacts, and network data to determine root cause, attacker TTPs, and full scope of compromise.
  • Investigate sophisticated Microsoft 365 attacks including business email compromise (BEC) and adversary-in-the-middle (AITM), and provide expert-level guidance to customers.
  • Perform advanced review of static and dynamic malware analysis to understand threat behavior, identify indicators of compromise, and inform detection and remediation strategies.
  • Develop and lead strategic and surgical remediation plans for compromised environments, including coordination of third-party platform containment actions across customer infrastructure.
  • Actively mentor and develop Analyst team members, contributing to training materials, knowledge base content, and team capability development.
  • Identify and drive process improvements, contribute to SOP development, and build automation to enhance detection and response capabilities.
  • Represent CrowdStrike through thought leadership activities including blog posts, CrowdCasts, and external speaking engagements.
  • Deliver expert-level customer communications, managing technical escalations and serving as a trusted advisor during critical incidents.


What You'll Need:

Successful candidates will have extensive experience in one or more of the following areas:
  • Incident Handling: expert-level experience leading and managing complex incident response investigations, including the ability to take ownership of high-severity, multi-host, and multi-customer incidents from triage through remediation. Proven experience investigating host/user compromises, organized crime groups, and sophisticated nation-state adversaries.
  • Threat Landscape Awareness: deep expertise in attack vectors, threat actor tactics, techniques, and procedures (TTPs), with advanced proficiency applying and extending MITRE ATT&CK to drive detection improvements and investigation strategies.
  • Computer Forensic Analysis: advanced experience conducting forensic analysis across host, memory, and network artifacts using a broad toolkit to determine full scope and root cause of compromise.
  • Malware Analysis: advanced ability to perform static and dynamic malware analysis, including reverse engineering concepts and behavioral analysis.
  • Operating System Fundamentals: expert-level knowledge of Windows, Mac, and/or Linux operating systems, with particular depth in at least one of these areas.
  • Systems Administration: advanced experience administering and securing enterprise network environments, with strong knowledge of IT architecture, authentication systems, and common attack paths across infrastructure.
  • Network Analysis Fundamentals: expert-level knowledge of network protocols and traffic analysis, with the ability to identify attack patterns, lateral movement, and exfiltration in network data.
  • Identity Platform Awareness: deep expertise with identity and access management platforms such as Okta, Microsoft Entra ID, and Active Directory, including advanced knowledge of identity-based attack techniques and credential abuse patterns.
  • Email Security Awareness: advanced experience investigating and remediating Microsoft 365 security incidents, including sophisticated business email compromise (BEC) and adversary-in-the-middle (AITM) attack chains.
  • Third-Party Log Analysis: advanced proficiency querying and correlating log sources across cloud platforms, network devices, identity providers, and email platforms within a SIEM environment to build detection logic and drive complex investigations.
  • Incident Remediation: proven expertise developing and executing strategic and surgical remediation plans for compromised environments, including complex multi-host and multi-platform scenarios with third-party containment coordination.
  • Network Operations and Architecture/Engineering: expert-level understanding of secure network architecture with advanced hands-on experience navigating and troubleshooting enterprise network environments to support complex incident investigations.
  • Programming/Scripting: experience developing scripts and automation using Python, PowerShell, or Bash to build investigative tooling, automate remediation workflows, and expand detection and response capabilities.
  • AI Platforms:
    Experience working across various AI models, platforms, and tooling including MCP servers and agentic frameworks. Applies AI broadly across security operations - from investigation acceleration and workflow automation to internal capability development, prompt engineering, and driving AI adoption and maturity across the team.
  • Proven experience utilizing AI technologies to enhance decision-making, streamline workflows and processes, improve efficiency and drive business outcomes.


Additionally, all candidates must possess the following qualifications:
  • Capable of leading complex technical investigations independently and serving as a subject matter expert.
  • Actively mentors peers and junior team members, with a demonstrated commitment to team development.
  • Contributing thought leader within the incident response industry.
  • Project management skills with the ability to drive process improvement initiatives to completion.
  • Ability to foster a positive work environment and attitude.


Requirements:
  • Must be willing to work 4x10 schedule, including a day on the weekend.
  • This role is only open to US citizens and Green Card holders.


Education:

BA or BS / MA or MS degree in Computer Science, Computer Engineering, Math, Information Security, Information Assurance, Information Security Management, Intelligence Studies, Cybersecurity, Cybersecurity Policy, or a related field. Applicants without a degree but with relevant work experience and/or training will be considered.

#LI-RC2
#LI-Remote

Benefits of Working at CrowdStrike:
  • Market leader in compensation and equity awards
  • Comprehensive physical and mental wellness programs
  • Competitive vacation and holidays for recharge
  • Paid parental and adoption leaves
  • Professional development opportunities for all employees regardless of level or role
  • Employee Networks, geographic neighborhood groups, and volunteer opportunities to build connections
  • Vibrant office culture with world class amenities
  • Great Place to Work Certified™ across the globe


CrowdStrike is committed to fair and equitable compensation practices. Placement within the pay range is dependent on a variety of factors including, but not limited to, relevant work experience, skills, certifications, job level, supervisory status, and location. The base salary range for this position for all U.S. candidates is $125,000 - $180,000 per year, with eligibility for bonuses, equity grants and a comprehensive benefits package that includes health insurance, 401k and paid time off.

For detailed information about the U.S. benefits package, please click here.

Expected Close Date of Job Posting is:10-14-2026

About CrowdStrike Holdings, Inc.

CrowdStrike Holdings, Inc. Careers

Joining CrowdStrike Holdings, Inc. presents an unparalleled opportunity to advance a career in the tech industry with a company at the forefront of digital security. As a leader in cybersecurity solutions, CrowdStrike Holdings, Inc. offers a range of job opportunities that cater to a variety of skills and experiences, from entry-level positions to senior leadership roles.

Explore Job Opportunities

CrowdStrike Holdings, Inc. is continuously seeking talented individuals who are passionate about protecting organizations against cyber threats. With a commitment to innovation and excellence, the company is hiring professionals who are eager to contribute to a team that values hard work and creative solutions.

Innovation and Professional Growth

At CrowdStrike Holdings, Inc., employees are encouraged to push the boundaries of technology and leadership. The company supports professional growth through robust training programs, including leadership development and diversity training, ensuring that every team member has the resources to thrive in their career.

Culture and Benefits

The culture at CrowdStrike Holdings, Inc. is dynamic and inclusive, fostering a workplace where diversity is celebrated and every voice is heard. Employees enjoy comprehensive benefits that support both their professional and personal lives, enhancing job satisfaction and team morale.

Internship Programs

For those starting their career, CrowdStrike Holdings, Inc. offers internship programs that provide a rich learning environment. Interns gain hands-on experience, working alongside seasoned professionals and participating in projects that deliver real-world solutions.

Networking and Career Advancement

CrowdStrike Holdings, Inc. emphasizes the importance of networking within the industry, offering numerous opportunities for employees to connect with thought leaders and innovators. These connections can lead to career advancement and a deeper understanding of the cybersecurity landscape.

Applying for a Position

To apply for a position at CrowdStrike Holdings, Inc., candidates should prepare a resume that highlights relevant experience and skills. The interview process is designed to assess not only professional qualifications but also a candidate's fit within the company culture and team.

Stay Connected with CrowdStrike Careers

Interested candidates can stay informed about new openings and company news by subscribing to job alert emails. This personalized service ensures that potential applicants are the first to know about new opportunities that match their career interests and skills.

Join the Team

CrowdStrike Holdings, Inc. is looking for curious, creative, and solution-driven team players. Explore the employment opportunities on the CrowdStrike Holdings, Inc. careers page to find a position that matches your skills and passions.

SEARCH CROWDSTRIKE JOBS

Keep Up to Date

Stay ahead with career tips, insider perspectives, and industry-leading insights you can put to use today—all from the professionals who work at CrowdStrike Holdings, Inc.

READ CAREERS BLOG

Job Alert Emails

Customize your subscription to receive job alerts, latest news, and insider tips tailored to your preferences. Discover the exciting and rewarding career opportunities waiting at CrowdStrike Holdings, Inc.
Learn more about CrowdStrike Holdings, Inc.

Similar Jobs

More Jobs at CrowdStrike Holdings, Inc.

More Information Technology Jobs

Find similar Sr. Analyst, Falcon Complete (Remote) jobs: