Full-Time

Principal Consultant

Cloud Red Team Blue Team

Posted on 1/10/2025

Crowdstrike

Crowdstrike

5,001-10,000 employees

Cloud-native endpoint security solutions provider

Enterprise Software
Cybersecurity

Compensation Overview

$125k - $190kAnnually

+ Variable Compensation + Equity

Senior, Expert

Remote in USA

Category
Cybersecurity
IT & Security
Required Skills
Packer
PowerShell
Microsoft Azure
Python
AWS
Go
Terraform
Ansible
Splunk
Google Cloud Platform
Requirements
  • 2-3 years experience in incident response consulting services or MSSP roles, with a strong background in one or more public cloud platforms (typically AWS, Azure infrastructure, Microsoft Entra ID/M365, GCP & Google Workspace), including an understanding of common attack paths in those platforms particularly surrounding identity
  • Experience in architecting multiple security technologies, including at least one log search engine/SIEM (Splunk, Azure Sentinel, LogScale, etc.)
  • Experience with building and growing strategic relationships with client mid-level managers and executives
  • Experience implementing information security programs within domains such as endpoint security, cloud security, network security, threat intelligence, or security operations centers is helpful
  • 2-3 years experience in red team consulting services, with a strong background in one or more public cloud platforms (typically AWS, Azure infrastructure, Microsoft Entra ID/M365, GCP & Google Workspace)
  • 2-3 years of researching threats and adversaries in at least one of the public cloud services
  • Programming/scripting experience for automating tasks - particularly in Python, Go and PowerShell
  • Experience with infrastructure as code - particularly Terraform, Ansible, and Packer
  • A research mindset with a focus on simulating adversaries and discovering new and novel attack vectors in the cloud
  • An advanced understanding of public cloud resource and control plane threats and vulnerabilities
  • 5+ years cybersecurity industry experience overall, ideally in hands-on roles including security engineering, detection engineering, etc.
  • Experience in customer-facing project management with a keen eye toward customer service
  • Demonstrated ability to excel in a fast-paced professional services environment and ability to balance competing priorities while still maintaining focus on details and meeting deadlines with a structured approach
  • Proven track record in technical and creative problem solving coupled with the analytical expertise to provide quick resolution to problems
  • Exceptional oral and written communication skills
  • Strong business acumen
  • Ability to foster a positive work environment and attitude
Responsibilities
  • Deliver CRTBT engagements, where you will support the customer’s SOC/IR team in threat hunting and incident response activities as the CrowdStrike Red Teamer uses techniques characteristic of real breach attempts to generate potential detections and telemetry.
  • Work closely with customers to understand existing controls and practices and make recommendations based on detection and response capabilities, as well as manage projects from kickoff call through to report delivery.
  • Identify and implement long-term enhancements to the CRTBT offering that will better enable clients to stop and recover from breaches.
  • Perform live attack techniques against the customer’s cloud environment or an environment hosted within one of our labs.
  • Trigger detections and generate telemetry whilst simulating real breach attempts as the CrowdStrike Blue Teamer supports the customer’s SOC/IR team in performing incident response and threat hunting targeting your activity.
  • Help customers understand gaps in their existing controls, provide remediation instructions, and make recommendations for detection and prevention based on their capabilities.
  • Utilize and develop both open-source and in-house toolkits for attack automation written in Python and PowerShell.

CrowdStrike specializes in cybersecurity, focusing on protecting businesses from cyber threats through cloud-native endpoint security solutions. Their main product, the Falcon platform, includes services like Falcon Pro, which replaces traditional antivirus with next-generation antivirus that integrates threat intelligence, Falcon Insight for endpoint detection and response, and Falcon Device Control to manage connected devices. CrowdStrike serves a diverse clientele, including many Fortune 100 companies, and operates on a subscription model, offering various service levels and premium options like proactive threat hunting. The company is recognized as a leader in the cybersecurity industry, noted for its effectiveness in threat detection and endpoint security.

Company Stage

IPO

Total Funding

$468M

Headquarters

Austin, Texas

Founded

2011

Growth & Insights
Headcount

6 month growth

1%

1 year growth

0%

2 year growth

-1%
Simplify Jobs

Simplify's Take

What believers are saying

  • Partnership with SonicWall opens new SMB market segment for CrowdStrike.
  • Recognition as a leader in ransomware prevention boosts CrowdStrike's market credibility.
  • Gamified learning initiatives help address cybersecurity skills gap, benefiting future talent pipeline.

What critics are saying

  • Increased competition from companies like Lumos could challenge CrowdStrike's market share.
  • Recovery from last year's outage may still affect customer trust and future sales.
  • Pressure to demonstrate ROI by 2025 could challenge CrowdStrike's financial transparency.

What makes Crowdstrike unique

  • CrowdStrike's Falcon platform offers cloud-native endpoint security solutions, a key differentiator.
  • The company serves 44 of the Fortune 100, showcasing its strong market presence.
  • CrowdStrike's proactive threat hunting sets it apart in cybersecurity threat detection.

Help us improve and share your feedback! Did you find this helpful?

Benefits

Competitive Employee Stock Purchase Plan

Remote-friendly culture

Market leader in compensation and equity awards

Competitive vacation and flexible working arrangements

Comprehensive health benefits + 401k plan

Paid Parental Leave, including adoption

Wellness programs

Professional development and mentorship opportunities

Open offices have stocked kitchens, coffee, soda and treats