Remote (Global)

CrowdStrike is hiring a Sr. Consultant, Incident Response (Remote, DEU)

About the Role

CrowdStrike is looking for a highly motivated, self-driven Sr. Consultant, Incident Response dedicated to making a difference in global security by protecting organisations against the most advanced attackers in the world. You will lead technical investigations, develop new hunting methods, and deliver high-quality reports.

What You'll Do

  • Work on incident response engagements as both an analyst and project manager.
  • Develop and use new methods to hunt for adversaries across large data sets.
  • Conduct privileged intrusion investigations under the direction of outside counsel.
  • Perform host and/or network-based forensics across Windows, Mac, and Linux platforms.
  • Perform basic malware analysis.
  • Produce high-quality written and verbal reports, presentations, and findings for key stakeholders in English and German.
  • Demonstrate industry thought leadership through blog posts, CrowdCasts, and other public speaking events.

What We're Looking For

  • Capability to complete technical tasks without supervision.
  • A desire to grow and expand both technical and soft skills.
  • Strong project management skills.
  • A thought leader within the incident response industry.
  • Ability to foster a positive work environment and attitude.
  • Ability to travel within EU, UK, and US for team meetings and internal events, with required on-site customer travel on short notice (likely once or twice per year).
  • Fluent English and German speaker.
  • Based in EMEA (ideally Austria, Switzerland, or Germany).
  • For Senior Consultant: Substantial industry experience.
  • For Consultant: Minimum 3 years of professional experience.

Nice to Have

  • Project management experience in a matrixed consulting environment.
  • Experience conducting or managing incident response investigations for targeted threats like e-crime and nation-state activities.
  • A background using forensic analysis tools in investigations to determine the extent of compromise.
  • Strong understanding of targeted attacks and ability to create customized tactical and strategic remediation plans.
  • Strong understanding of secure network architecture and performing network operations.
  • Knowledge in cloud incident response methodologies for AWS, Azure, or GCP.
  • Strong ability to communicate executive and detailed findings to clients and internal teams.

Technical Stack

  • Windows, Mac, Linux
  • AWS, Azure, GCP

Benefits & Compensation

  • Market leader in compensation and equity awards.
  • Comprehensive physical and mental wellness programs.
  • Competitive vacation and holidays.
  • Paid parental and adoption leaves.
  • Professional development opportunities for all employees.
  • Employee Networks, geographic groups, and volunteer opportunities.
  • Vibrant office culture with world class amenities.

Work Mode

This is a remote position for candidates based in EMEA, ideally in Austria, Switzerland, or Germany.

CrowdStrike is proud to be an equal opportunity employer committed to fostering a culture of belonging. We support veterans and individuals with disabilities through our affirmative action program.

Required Skills
Incident ResponseDigital ForensicsThreat HuntingWindowsMacLinuxAWSAzureGCPSIEMEDRMalware AnalysisScripting/PythonNetwork Security
Starting a business in Thailand?

Company registration done right

Foreign ownership rules, licenses, tax registration — Thai business setup has many moving parts. SVBL guides you through every step with full legal compliance.

Company registration & structure
Foreign ownership solutions
License & tax registration
BOI promotion eligibility
Start your business
100% foreign ownership possible
About company
CrowdStrike
A global leader in cybersecurity that protects the people, processes and technologies that drive modern organizations. The company provides the world’s most advanced AI-native security platform to stop breaches.
All jobs at CrowdStrike Visit website
Job Details
Category security
Posted 3 months ago