CrowdStrike is a global leader in cybersecurity, dedicated to stopping breaches with their advanced AI-native platform. The role involves researching mobile threats, conducting technical analysis, and producing actionable intelligence reports to enhance understanding and tracking of cyber campaigns.
Responsibilities:
- Discover, analyze and track advanced cyber campaigns that exploit security issues in mobile platforms or leverage mobile malware
- Enhance understanding of malicious mobile tools and malware through reverse engineering
- Develop and maintain tools to automate analysis tasks and tracking of threat actors
- Create host-based and network-based signatures suited for large-scale hunting, detection, and tracking of threats
- Produce high-quality, actionable intelligence reporting
- Collaborate with our interdisciplinary team to coordinate adversary and campaign tracking, and to provide support to teams developing mitigation strategies and responding to incidents
Requirements:
- Knowledge of reverse engineering tools (disassemblers, decompilers, debuggers) and processes (unpacking malware, reconstructing code logic, etc)
- Knowledge of programming and scripting languages, in particular Python
- Ability to identify and classify malicious tooling through development of signatures that can be used for tracking and hunting purposes
- Ability to express complex technical and non-technical concepts in written, verbal and graphical products
- Proven track record of relevant experience in the field cybersecurity and ability to be a team player
- Ability to interpret raw network data and to develop network signatures, as well as custom protocol decoders and decryption tools
- Familiarity with mobile threats
- A background in intelligence is a plus