Sr./Principal Consultant, Red TeamApply Job ID R4601 Date posted 08/14/2021
At CrowdStrike we’re on a mission - to stop breaches. Our groundbreaking technology, services delivery, and intelligence gathering together with our innovations in machine learning and behavioral-based detection, allow our customers to not only defend themselves, but do so in a future-proof manner. We’ve earned numerous honors and top rankings for our technology, organization and people – clearly confirming our industry leadership and our special culture driving it. We also offer flexible work arrangements to help our people manage their personal and professional lives in a way that works for them. So if you’re ready to work on unrivaled technology where your desire to be part of a collaborative team is met with a laser-focused mission to stop breaches and protect people globally, let’s talk.
About the Role:
The Sr./Principal Consultant will lead a team dedicated to performing Red Team activities simulating known threat actor, to help CrowdStrike customers determine the impact and likelihood of threat actor to accomplish objective across the Kill Chain and MITRE ATT&CK Framework. The Sr./Principal Red Team Consultant is expected to be able to coordinate with senior leadership, plan, and oversee execution of assessments and assist the other CrowdStrike Services’ functions to help improve customers security defense. This person should be capable of supporting, managing, and mentoring less experienced red team members.
Act as a primary contact for coordination of Red Team activities as well as coordinating and leading all penetration testing activities.
Develop reporting including mitigations strategies of results of Red Team activities for both management and technical audiences.
Must be able to effectively communicate at all levels (executive leadership and technical support teams) within CrowdStrike.
Organize resources to perform penetration assessments of operating systems, applications, databases and network infrastructure components to detect, enumerate threats.
Work with a diverse team and lead/assist in developing and improving an information security program and information security resources.
Provide guidance using specialized knowledge and toolsets to operational teams during enterprise wide crisis scenarios, e.g. large-scale production service outages, outside of the routine change management process.
Must be able to work as an operator and project manager on various types of penetration testing offerings.
Minimum 5 years of experience in a Red Team/Penetration Testing activities is highly preferred
Minimum 1 year of experience in a Leadership role is highly preferred
Security community participation (conference speaker, tool development contributor, …) is highly preferred
Advanced experience with Security Assessment Toolsets (Metasploit, NMAP, Cobalt Strike, Nessus, Burp Suite, etc.)
Comprehensive understanding of the security methodologies, technologies, and best practices
Windows / Linux / UNIX / Mac operating systems
Advanced experience with Networking components (routers, switches, load balancers, wireless access points, etc.)
Comprehensive knowledge of firewalls, proxies, mail servers and web servers
Advanced experience with operational support for operating systems, applications and networks
Advanced experience with Red Teaming (vulnerability/penetration testing/adversary emulation assessments)
Advanced experience in automation and scripting of applications and systems
Desirable Certifications: OSCP, GPEN, OSCE, GCIH, GXPN
Occasional travel may be required (<25%)
Benefits of Working at CrowdStrike:
- Market leader in compensation and equity awards
- Competitive vacation policy
- Comprehensive health benefits
- Paid parental leave, including adoption
- Flexible work environment
- Wellness programs
- Stocked fridges, coffee, soda, and lots of treats
We are committed to building an inclusive culture of belonging that not only embraces the diversity of our people but also reflects the diversity of the communities in which we work and the customers we serve. We know that the happiest and highest performing teams include people with diverse perspectives and ways of solving problems so we strive to attract and retain talent from all backgrounds and create workplaces where everyone feels empowered to bring their full, authentic selves to work.