Detection Engineer - Machine Learning (Remote, East/Central)

CrowdStrike

United States

On-site

USD 90,000 - 125,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Benefits offered by this job

Health insurance
401k
Paid time off
Professional development

Job summary

CrowdStrike is seeking a Threat Analyst to join our Data Science, ML Operations and Response Team. You will analyze malware and detections by reviewing customer tickets, with a focus on improving detection capability and efficiency through investigation of threats.

The role combines response and proactive work, requiring experience in detections and/or reverse engineering, strong Python skills, and the ability to translate complex threat data into actionable insights for customers.

Qualifications

  • Experience with reverse engineering malware or malware operations.
  • Knowledge of programming and scripting languages, especially Python.
  • Understanding of binary file attributes such as imports/exports and packers.
  • Ability to analyze malware and threat detections for customer tickets.
  • Familiarity with multiple operating systems.
  • Experience applying AI to enhance decision-making and workflows.

Responsibilities

  • Analyze detection data to improve machine learning models.
  • Reduce false positives in detections.
  • Analyze binary files to assess legitimacy.
  • Review product detections against company standards.
  • Address internal questions about customer threat detections.

Skills

Python
Malware analysis
Reverse engineering
Threat intelligence
Analytical skills
Operating systems familiarity
AI/ML workflow optimization
C/C++/Java/Assembly

Tools

Git
Linux
MacOS
Threat-detection tools
Machine learning platforms

Job description

As a global leader in cybersecurity, CrowdStrike protects the people, processes and technologies that drive modern organizations. Since 2011, our mission hasn’t changed — we’re here to stop breaches, and we’ve redefined modern security with the world’s most advanced AI‑native platform. We work on large‑scale distributed systems, processing almost 3 trillion events per day and this traffic is growing daily. Our customers span all industries, and they count on CrowdStrike to keep their businesses running, their communities safe and their lives moving forward. We’re proud to work for a mission‑driven company leveraging AI to transform the way we work. CrowdStrikers drive their careers through flexibility and autonomy while also being expected to contribute to a culture of responsible AI adoption, experimentation, and innovation. We use an AI‑first mindset as a force multiplier to proactively and continuously accelerate execution, build expertise, uncover insights, and solve complex problems. We’re always looking to add talented CrowdStrikers to the team who have limitless passion, a relentless focus on innovation and a fanatical commitment to our customers, our community and each other. Ready to join a mission that matters? The future of cybersecurity starts with you.

About the Role

At CrowdStrike we’re on a mission—to stop breaches. Our groundbreaking technology, services delivery, and intelligence gathering together with our innovations in machine learning and behavioral‑based detection allow our customers to defend themselves and do so in a future‑proof manner. Our CrowdStrike Data Science Machine Learning Operations and Response Team is looking for a Threat Analyst who is both customer‑ and team‑focused. This role will include both response and proactive aspects. It is ideal for someone with experience in detections and/or reverse engineering. The primary responsibility of this role is to analyze malware and detections by investigating individual customer detection tickets. Our team is focused on improving detection capability and efficiency through analysis of malware or other threat detections impacting our customer base.

What You’ll Do
  • Analyze detection data, including customer reports, to determine which aspects of the machine learning models can be improved
  • Perform tasks to enable better management of false‑positive detections
  • Analyze binary files to determine their legitimacy
  • Review current product detections to ensure they are performing to the company standard
  • Address internal questions and concerns regarding customer threat detections
What You’ll Need
  • Exposure and understanding of different types and functionality of malware
  • Experience with reverse engineering malware or malware operations
  • Knowledge of programming and scripting languages, in particular Python
  • Fundamental understanding of attributes of binary files such as imports/exports and packers
  • Ability to demonstrate practical knowledge of research/collection skills and analytical methods
  • General understanding of threat/risk management and threat/risk assessment
  • Familiarity with various operating systems
  • Ability to break down complex problems into workable components
  • Proven experience utilizing AI technologies to enhance decision‑making, streamline workflows and processes, improve efficiency and drive business outcomes
Preferred
  • Experience in a security operations center or similar environment responding to incidents
  • A thorough understanding of Windows OS internals and the Windows API
  • Knowledge of MacOS and/or Linux
  • Familiarity with tools used in targeted and criminal cyber‑intrusions
  • A background in exploit and vulnerability analysis
  • Knowledge of a variety of programming languages including C, C++, Java, and assembly
  • Experience with threat detections by machine learning
Benefits
  • Market leader in compensation and equity awards
  • Comprehensive physical and mental wellness programs
  • Competitive vacation and holidays for recharge
  • Paid parental and adoption leaves
  • Professional development opportunities for all employees regardless of level or role
  • Employee Networks, geographic neighborhood groups, and volunteer opportunities to build connections
  • Vibrant office culture with world class amenities
  • Great Place to Work Certified
Compensation

The base salary range for this position for all U.S. candidates is $90,000 – $125,000 per year, with eligibility for bonuses, equity grants and a comprehensive benefits package that includes health insurance, 401k and paid time off.

Equal Opportunity

CrowdStrike is proud to be an equal opportunity employer. We are committed to fostering a culture of belonging where everyone is valued for who they are and empowered to succeed. We support veterans and individuals with disabilities through our affirmative action program. CrowdStrike is committed to providing equal employment opportunity for all employees and applicants for employment. The Company does not discriminate in employment opportunities or practices on the basis of race, color, creed, ethnicity, religion, sex (including pregnancy or pregnancy‑related medical conditions), sexual orientation, gender identity, marital or family status, veteran status, age, national origin, ancestry, physical disability (including HIV and AIDS), mental disability, medical condition, genetic information, membership or activity in a local human rights commission, status with regard to public assistance, or any other characteristic protected by law.

Requests for Assistance

If you need assistance accessing or reviewing the information on this website or need help submitting an application for employment or requesting an accommodation, please contact us at recruiting@crowdstrike.com for further assistance.

E‑Verify Participation

CrowdStrike participates in the E‑Verify program.

Right to Work.

Notice of E‑Verify Participation.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Sr. Analyst, Falcon Complete (Remote)
Sr. Analyst, Falcon Complete (Remote)

CrowdStrike Holdings, Inc. • Town of Texas (WI)

Hybrid
USD 125,000 - 180,000
Health insurance
401k matching
Paid time off
Sr. Analyst, Falcon Complete (Remote)
Sr. Analyst, Falcon Complete (Remote)

CrowdStrike Holdings, Inc. • Northern (KY)

Hybrid
USD 125,000 - 180,000
Competitive compensation and equity
Paid vacation and holidays
Professional development
+1
Analyst I, Falcon Complete (Hybrid)
Analyst I, Falcon Complete (Hybrid)

CrowdStrike, Inc. • Sunnyvale (CA)

On-site
USD 85,000 - 120,000
Market-leading compensation
Comprehensive wellness programs
Generous vacation and holidays
+3
Analyst I, Falcon Complete (Hybrid)
Analyst I, Falcon Complete (Hybrid)

CrowdStrike • United States

Hybrid
USD 85,000 - 120,000
Market-leading compensation
Comprehensive wellness programs
Professional development opportunities
Analyst I, Falcon Complete (Hybrid, San Antonio)
Analyst I, Falcon Complete (Hybrid, San Antonio)

Socket.dev • San Antonio (TX)

On-site
USD 85,000 - 120,000
Health insurance
401(k) plan
Paid time off
Analyst I, Falcon Complete (Hybrid, San Antonio)
Analyst I, Falcon Complete (Hybrid, San Antonio)

CrowdStrike • United States

Hybrid
USD 85,000 - 120,000
Market leader compensation
Comprehensive wellness programs
Paid parental and adoption leaves
Engineer II, Threat Detection - Windows (Hybrid)
Engineer II, Threat Detection - Windows (Hybrid)

Socket.dev • United States

Hybrid
USD 100,000 - 145,000
Professional development opportunities
Equity grants
Paid time off
+1
Analyst I, Falcon Complete (Hybrid)
Analyst I, Falcon Complete (Hybrid)

CrowdStrike Holdings, Inc. • St. Louis (MO)

Hybrid
USD 85,000 - 120,000
Market-leading compensation
Wellness programs
Generous vacation and holidays
+5
Analyst I, Falcon Complete (Hybrid)
Analyst I, Falcon Complete (Hybrid)

Socket.dev • St. Louis (MO)

On-site
USD 85,000 - 120,000
Market-leading compensation
Comprehensive wellness programs
Generous vacation and holidays
+5
Analyst I, Falcon Complete (Hybrid, San Antonio)
Analyst I, Falcon Complete (Hybrid, San Antonio)

CrowdStrike, Inc. • Sunnyvale (CA)

Hybrid
USD 85,000 - 120,000
Market-leading compensation
Comprehensive wellness programs
Generous vacation and holidays
+3