2025-07-03
CrowdStrike, Inc.
Other
/yr
employee
contract
Sunnyvale
California
94085
United States
CrowdStrike, Inc.
Full time
R22632
About the Team
The CrowdStrike Malware Research Center is the core of Falcon’s malware detection and response capabilities. The team has a focus on understanding the threat landscape and sets the target for what Falcon should be identifying and preventing. Additionally, the MRC is responsible for understanding our capabilities, and mapping how well our machine learning and behavioral protection capabilities are doing against those threats. Where there is a gap, the MRC takes action
to improve our detection stance and overall protection story. MRC also performs pathfinding research to enable technology development using innovation, prototyping, and bleeding-edge machine learning to support our flagship Falcon product. The MRC works across many parts of CrowdStrike to ensure we're on target and delivering the best protection against the current threat landscape.
About the Role:
Leading the charge for understanding malware activity today is the Threat Research team. With a focus on malware research, the primary goal is to investigate relevant threats and techniques impacting our customers. Given the enormous volume of malware, this role requires a scalable approach via automation and machine learning, empowering researchers to extract insights while
systems handle volume.
Research Engineers will validate threats from a range of sources, using techniques such as execution, behavioral review, and reverse engineering to determine their potential impact. Key responsibilities include communicating technical details to cross-functional teams, recommending effective mitigations, and enabling Falcon’s defenses.
Reverse engineering of malware and exploits is a part of the role—uncovering underlying mechanisms, algorithms, and tactics used by adversaries. This insight feeds into internal tools and response strategies. Researchers also contribute to automation strategy by identifying where efficiencies can be gained and providing proof-of-concept tooling to enhance detection and mitigation workflows. Staying current with industry advancements and integrating new methods into the team’s
operations are key to maintaining cutting-edge protection.
What You'll Do:
Analyze and validate malware threats using behavioral analysis, execution, and reverse engineering.
Communicate technical threat details and mitigation strategies to response and engineering teams.
Collaborate to prioritize and define automation opportunities to streamline threat analysis workflows.
Perform reverse engineering of malware and exploits to identify TTPs and support mitigation planning.
Contribute proof-of-concept automation and tooling to demonstrate new ideas and accelerate analysis.
Continuously research and integrate new threat detection and analysis techniques.
Provide actionable intelligence to improve Falcon’s defense capabilities.
What You'll Need:
8+ years’ experience in threat research, with a focus on malware analysis and cloud threat actor tradecraft.
Experience in reverse engineering, disassembly, and analyzing file-based threats and exploits.
Experience with AWS tradecraft, IaaS, IaC, and threat actor use of cloud IAM.
Strong understanding of OS internals and behavior-based detection systems.
Familiarity with MITRE ATT&CK for describing threat behaviors.
Proficiency in at least one scripting or programming language - Python, C/C++, or Go.
Experience producing and handing off proof-of-concept tools and automation to engineering.
Excellent interpersonal skills with the ability to collaborate cross-functionally and influence priorities.
CrowdStrike is proud to be an equal opportunity employer. We are committed to fostering a culture of belonging where everyone is valued for who they are and empowered to succeed. We support veterans and individuals with disabilities through our affirmative action program.
CrowdStrike is committed to providing equal employment opportunity for all employees and applicants for employment. The Company does not discriminate in employment opportunities or practices on the basis of race, color, creed, ethnicity, religion, sex (including pregnancy or pregnancy-related medical conditions), sexual orientation, gender identity, marital or family status, veteran status, age, national origin, ancestry, physical disability (including HIV and AIDS), mental disability, medical condition, genetic information, membership or activity in a local human rights commission, status with regard to public assistance, or any other characteristic protected by law. We base all employment decisions--including recruitment, selection, training, compensation, benefits, discipline, promotions, transfers, lay-offs, return from lay-off, terminations and social/recreational programs--on valid job requirements.
If you need assistance accessing or reviewing the information on this website or need help submitting an application for employment or requesting an accommodation, please contact us at recruiting@crowdstrike.com for further assistance.
Find out more about your rights as an applicant.
CrowdStrike participates in the E-Verify program.
Notice of E-Verify Participation
PI274693189