Full-Time

Principal Consultant

Cloud Red Team Blue Team

Posted on 1/10/2025

Crowdstrike

Crowdstrike

5,001-10,000 employees

Cloud-native endpoint security solutions provider

Enterprise Software
Cybersecurity

Compensation Overview

$125k - $190kAnnually

+ Variable Compensation + Equity

Senior, Expert

Company Historically Provides H1B Sponsorship

Remote in USA

Category
Cybersecurity
IT & Security
Required Skills
Packer
PowerShell
Microsoft Azure
Python
AWS
Go
Terraform
Ansible
Splunk
Google Cloud Platform

You match the following Crowdstrike's candidate preferences

Employers are more likely to interview you if you match these preferences:

Degree
Experience
Requirements
  • 2-3 years experience in incident response consulting services or MSSP roles, with a strong background in one or more public cloud platforms (typically AWS, Azure infrastructure, Microsoft Entra ID/M365, GCP & Google Workspace), including an understanding of common attack paths in those platforms particularly surrounding identity
  • Experience in architecting multiple security technologies, including at least one log search engine/SIEM (Splunk, Azure Sentinel, LogScale, etc.)
  • Experience with building and growing strategic relationships with client mid-level managers and executives
  • Experience implementing information security programs within domains such as endpoint security, cloud security, network security, threat intelligence, or security operations centers is helpful
  • 2-3 years experience in red team consulting services, with a strong background in one or more public cloud platforms (typically AWS, Azure infrastructure, Microsoft Entra ID/M365, GCP & Google Workspace)
  • 2-3 years of researching threats and adversaries in at least one of the public cloud services
  • Programming/scripting experience for automating tasks - particularly in Python, Go and PowerShell
  • Experience with infrastructure as code - particularly Terraform, Ansible, and Packer
  • An advanced understanding of public cloud resource and control plane threats and vulnerabilities
  • 5+ years cybersecurity industry experience overall, ideally in hands-on roles including security engineering, detection engineering, etc.
  • Experience in customer-facing project management with a keen eye toward customer service
  • Demonstrated ability to excel in a fast-paced professional services environment and ability to balance competing priorities while still maintaining focus on details and meeting deadlines with a structured approach
  • Proven track record in technical and creative problem solving coupled with the analytical expertise to provide quick resolution to problems
  • Exceptional oral and written communication skills
  • Strong business acumen
  • Ability to foster a positive work environment and attitude
Responsibilities
  • Deliver CRTBT engagements, where you will support the customer’s SOC/IR team in threat hunting and incident response activities as the CrowdStrike Red Teamer uses techniques characteristic of real breach attempts to generate potential detections and telemetry
  • Work closely with customers to understand existing controls and practices and make recommendations based on detection and response capabilities
  • Manage projects from kickoff call through to report delivery
  • Identify and implement long-term enhancements to the CRTBT offering that will better enable clients to stop and recover from breaches
  • Perform live attack techniques against the customer’s cloud environment or an environment hosted within one of our labs
  • Trigger detections and generate telemetry whilst simulating real breach attempts as the CrowdStrike Blue Teamer supports the customer’s SOC/IR team in performing incident response and threat hunting targeting your activity
  • Help customers understand gaps in their existing controls, provide remediation instructions, and make recommendations for detection and prevention based on their capabilities
  • Utilize and develop both open-source and in-house toolkits for attack automation written in Python and PowerShell
Desired Qualifications
  • A strong background in teaching and/or mentorship, for example as an instructor or in an industry-related research capacity
  • Familiarity with common compliance standards and their implementation, such as CIS Benchmarks
  • Published cloud research work (i.e. blog, github, etc.)
  • Experience hosting lab environments (i.e. cloud ops roles, homelab, etc.)
  • Active on CTF platforms such as HackTheBox

CrowdStrike specializes in cybersecurity, focusing on protecting businesses from cyber threats through cloud-native endpoint security solutions. Their main product, the Falcon platform, includes services like Falcon Pro, which replaces traditional antivirus with next-generation antivirus that integrates threat intelligence, Falcon Insight for endpoint detection and response, and Falcon Device Control to manage connected devices. Unlike many competitors, CrowdStrike's services are subscription-based, allowing clients to choose different levels of protection based on their needs. The company serves a diverse clientele, including many Fortune 100 companies, and is recognized as a leader in the cybersecurity field, known for its effectiveness in threat detection and response.

Company Stage

IPO

Total Funding

$468M

Headquarters

Austin, Texas

Founded

2011

Growth & Insights
Headcount

6 month growth

0%

1 year growth

0%

2 year growth

-1%
Simplify Jobs

Simplify's Take

What believers are saying

  • Partnership with Cognizant enhances CrowdStrike's market reach and AI-native security solutions.
  • Recovery of $30 billion in market value demonstrates resilience and crisis management.
  • Participation in Davos positions CrowdStrike as a global cybersecurity thought leader.

What critics are saying

  • Rapid advancement of AI-powered cyber attacks challenges CrowdStrike's endpoint security solutions.
  • Increasing cloud exploitation cases test CrowdStrike's ability to protect against sophisticated attacks.
  • Major tech outage highlights risk of operational failures impacting reputation and stability.

What makes Crowdstrike unique

  • CrowdStrike's Falcon platform offers cloud-native endpoint security solutions, setting it apart from competitors.
  • The company serves 44 of the Fortune 100, showcasing its strong market presence.
  • CrowdStrike's proactive threat hunting services provide advanced threat detection capabilities.

Help us improve and share your feedback! Did you find this helpful?

Benefits

Competitive Employee Stock Purchase Plan

Remote-friendly culture

Market leader in compensation and equity awards

Competitive vacation and flexible working arrangements

Comprehensive health benefits + 401k plan

Paid Parental Leave, including adoption

Wellness programs

Professional development and mentorship opportunities

Open offices have stocked kitchens, coffee, soda and treats

INACTIVE