Incident Response Principal Consultant

NEPSE Trading

Northern (KY)

Hybrid

USD 150,000 - 210,000

Full time

14 days+
Application generator

Don’t send a generic resume — generate a resume and cover letter tailored to this exact role.

Get past ATS filters

Benefits offered by this job

Market-leading compensation
Comprehensive wellness programs
Paid parental and adoption leave
Professional development opportunities

Job summary

CrowdStrike is seeking highly motivated consultants to lead incident response engagements for全球 customers, including Fortune 100-level organizations. You will guide teams, interact with clients, and produce clear, actionable findings while advancing your own expertise in forensic and threat-hunting techniques.

Applicants should have an Incident Response background, strong leadership, and the ability to travel up to 30% on short notice.

Qualifications

  • Experience leading incident response investigations for organizations.
  • Strong background in computer forensics and network forensics.
  • Ability to communicate findings clearly to executives and clients.

Responsibilities

  • Lead incident response engagements across multiple client environments.
  • Develop and apply new methods to hunt for threats across large data sets.
  • Coordinate investigations with outside counsel and produce written reports.
  • Perform host and network-based forensics on Windows, Mac, and Linux.
  • Deliver high-quality findings to stakeholders and mentors to junior staff.

Skills

Incident Response
Team Leadership
Forensic Analysis
Network Forensics
Reverse Engineering
Threat Hunting
Cloud Incident Response
Executive Communications
AI in Security
Project Management

Education

BA/BS in Computer Science or related field

Tools

Bro/Zeek
Suricata
Malware Analysis Tools
Forensic Toolset

Job description

As a global leader in cybersecurity, CrowdStrike protects the people, processes and technologies that drive modern organizations. Since 2011, our mission hasn’t changed — we’re here to stop breaches, and we’ve redefined modern security with the world’s most advanced AI-native platform. We work on large scale distributed systems, processing almost 3 trillion events per day and this traffic is growing daily. Our customers span all industries, and they count on CrowdStrike to keep their businesses running, their communities safe and their lives moving forward. We're proud to work for a mission-driven company leveraging AI to transform the way we work. CrowdStrikers drive their careers through flexibility and autonomy while also being expected to contribute to a culture of responsible AI adoption, experimentation, and innovation. We use an AI-first mindset as a force multiplier to proactively and continuously accelerate execution, build expertise, uncover insights, and solve complex problems. We’re always looking to add talented CrowdStrikers to the team who have limitless passion, a relentless focus on innovation and a fanatical commitment to our customers, our community and each other. Ready to join a mission that matters? The future of cybersecurity starts with you.

About the Role

CrowdStrike is looking for highly motivated, self-driven, technical consultants dedicated to making a difference in global security by protecting organizations against the most advanced attackers in the world. Our CrowdStrike Services team offers opportunities to expand your skill set through a wide variety of engagements including front page incident response investigations for organizations you’ll find on the annual Fortune 100 list.

Am I a Principal Consultant Candidate? Do you find yourself interested in and keeping up with the latest vulnerabilities and breaches? Are you self-motivated and looking for an opportunity to rapidly accelerate your skills? Do you crave new and innovative work that actually matters to your customer? Do you have an Incident Response or Information Security background that you’re not fully utilizing? Are you capable of leading teams and interacting with customers? Do you love working around like-minded, smart people who you can learn from and mentor on a daily basis?

What You'll Do
  • Lead incident response engagements
  • Develop and use new methods to hunt for bad actors across large sets of data.
  • Work under the direction of outside counsel to conduct intrusion investigations
  • Perform host and/or network-based forensics across Windows, Mac, and Linux platforms.
  • Perform basic malware analysis.
  • Produce high-quality written and verbal reports, presentations, recommendations, and findings to key stakeholders including customer management, regulators, and legal counsel.
  • Demonstrate industry thought leadership through blog posts, CrowdCasts, and other public speaking events.
What You'll Need
  • Team leadership experience in a matrixed consulting environment
  • Incident Response: experience conducting or managing incident response investigations for organizations, investigating targeted threats such as the Advanced Persistent Threat, Organized Crime, and Hacktivists.
  • Computer Forensic Analysis: a background using a variety of forensic analysis tools in incident response investigations to determine the extent and scope of compromise.
  • Network Forensic Analysis: strong knowledge of network protocols, network analysis tools like Bro/Zeek or Suricata, and ability to perform analysis of associated network logs.
  • Reverse Engineering: ability to understand the capabilities of static and dynamic malware analysis.
  • Incident Remediation: strong understanding of targeted attacks and able to create customized tactical and strategic remediation plans for compromised organizations.
  • Network Operations and Architecture/Engineering: strong understanding of secure network architecture and strong background in performing network operations.
  • Cloud Incident Response: knowledge in any of the following areas: AWS, Azure, GCP incident response methodologies.
  • Communications: strong ability to communicate executive and/or detailed level findings to clients; ability to effectively communicate tasks, guidance, and methodology with internal teams.
  • Proven experience utilizing AI technologies to enhance decision-making, streamline workflows and processes, improve efficiency and drive business outcomes.
  • Capable of completing technical tasks without supervision.
  • Desire to grow and expand both technical and soft skills.
  • Strong project management skills.
  • Contributing thought leader within the incident response industry.
  • Ability to foster a positive work environment and attitude.
  • Ability to travel on short notice, up to 30% of the time.
Education
  • BA or BS / MA or MS degree in Computer Science, Computer Engineering, Math, Information Security, Information Assurance, Information Security Management, Intelligence Studies, Cybersecurity, Cybersecurity Policy, or a related field. Applicants without a degree but with relevant work experience and/or training will be considered.
  • This role may require the candidate to periodically undergo and pass alcohol and/or drug test(s) during the course of employment.
Benefits of Working at CrowdStrike
  • Market leader in compensation and equity awards
  • Comprehensive physical and mental wellness programs
  • Competitive vacation and holidays for recharge
  • Paid parental and adoption leaves
  • Professional development opportunities for all employees regardless of level or role
  • Employee Networks, geographic neighborhood groups, and volunteer opportunities to build connections
  • Vibrant office culture with world class amenities
  • Great Place to Work Certified™ across the globe

CrowdStrike is proud to be an equal opportunity employer. We are committed to fostering a cultu

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Incident Response Principal Consultant (Remote)
Incident Response Principal Consultant (Remote)

CrowdStrike • United States

On-site
USD 115,000 - 160,000
Market-leading compensation
Wellness programs
Vacation & holidays
+5
Incident Response Senior Consultant
Incident Response Senior Consultant

Visa Hunt • United States

On-site
USD 95,000 - 140,000
Wellness programs
Vacation & holidays
Parental leave
+2
Incident Response Principal Consultant (Remote)
Incident Response Principal Consultant (Remote)

CrowdStrike Holdings, Inc. • Northern (KY)

Hybrid
USD 115,000 - 160,000
Market-leading compensation
Comprehensive wellness programs
Generous vacation & holidays
+5
Incident Response Senior Consultant (Remote)
Incident Response Senior Consultant (Remote)

CrowdStrike Holdings, Inc. • Northern (KY)

Hybrid
USD 95,000 - 140,000
Health insurance
401k
Paid time off
+1
Sr. Strategic Advisory Services Consultant (Remote)
Sr. Strategic Advisory Services Consultant (Remote)

CrowdStrike Holdings, Inc. • Northern (KY)

Hybrid
USD 115,000 - 160,000
Market leading compensation
Wellness programs
Paid parental leaves
+1
Strategic Advisory Services Consultant (Remote)
Strategic Advisory Services Consultant (Remote)

CrowdStrike Holdings, Inc. • Town of Texas (WI), Northern (KY)

Hybrid
USD 95,000 - 140,000
Professional development
Paid parental leave
Vacation & holidays
+1
Strategic Advisory Services Consultant (Remote)
Strategic Advisory Services Consultant (Remote)

CrowdStrike • Town of Texas (WI)

On-site
USD 95,000 - 140,000
Market leader compensation and equity
Wellness programs
Paid parental leave
+2
Strategic Advisory Services Consultant (Remote)
Strategic Advisory Services Consultant (Remote)

CrowdStrike • United States

On-site
USD 95,000 - 140,000
Health insurance
401k matching
Paid time off
+1
Associate Security Engineer (Remote)
Associate Security Engineer (Remote)

CrowdStrike • Town of Texas (WI)

On-site
USD 70,000 - 95,000
Market-leading compensation
Comprehensive wellness programs
Paid time off and holidays
Sr. Strategic Advisory Services Consultant (Remote)
Sr. Strategic Advisory Services Consultant (Remote)

CrowdStrike, Inc. • Sunnyvale (CA)

Remote
USD 115,000 - 160,000
Competitive compensation
Wellness programs
Vacation and holidays
+5