
Senior Analyst, Falcon Complete
Posted 4 days ago

Posted 4 days ago
This is a fully remote position, open to applicants in New Zealand.
• Oversee intricate investigations spanning endpoint, identity, email, network, and cloud environments.
• Act as the technical lead for high-severity incidents affecting multiple customers.
• Execute in-depth analysis of EDR telemetry, forensic artifacts, and network data to identify root causes, attacker tactics, techniques, and procedures (TTPs), as well as the extent of the compromise.
• Examine advanced Microsoft 365 attacks, including business email compromise and adversary-in-the-middle scenarios.
• Offer expert-level assistance to clients.
• Conduct both static and dynamic malware analysis to comprehend threat behaviors and pinpoint indicators of compromise.
• Formulate and implement strategic and tactical remediation plans for compromised environments.
• Coordinate containment actions of third-party platforms across client infrastructure.
• Mentor and cultivate the skills of Analyst team members.
• Contribute to the development of training materials, knowledge base content, standard operating procedures (SOPs), and enhance team capabilities.
• Propel process enhancements and create automation to improve detection and response capabilities.
• Represent CrowdStrike through blog posts, CrowdCasts, and public speaking engagements.
• Provide expert-level communications to clients and manage technical escalations during critical incidents.
• Extensive experience in incident management, threat landscape awareness, computer forensic analysis, malware analysis, or related areas in information security.
• Expert-level proficiency in leading and managing complex incident response investigations.
• Experience overseeing high-severity incidents involving multiple hosts and customers from initial triage to remediation.
• Background in investigating host/user compromises, organized crime groups, and sophisticated nation-state adversaries.
• Deep knowledge of attack vectors and the tactics, techniques, and procedures (TTPs) used by threat actors.
• Advanced skills in applying and extending the MITRE ATT&CK framework.
• Advanced experience in forensic analysis across host, memory, and network artifacts.
• Advanced capability in conducting static and dynamic malware analysis, including concepts of reverse engineering and behavioral analysis.
• Proven experience in leveraging AI technologies to enhance decision-making, streamline workflows and processes, improve efficiency, and drive business results.
• Candidates with proficiency in written and spoken Japanese are strongly encouraged to apply.
• Leading compensation packages and equity awards in the market.
• Comprehensive wellness programs focusing on physical and mental health.
• Competitive vacation and holiday offerings for personal rejuvenation.
• Paid parental and adoption leave benefits.
• Opportunities for professional development available to all employees, regardless of level or role.
• Employee Networks, neighborhood groups, and volunteer opportunities to foster connections.
• Dynamic office culture featuring world-class amenities.
• Great Place to Work Certified™ globally.
Highmark Health
Brown & Brown Insurance
ASRC Federal
Rithum
Get handpicked remote jobs straight to your inbox weekly.