Intrusion Analyst (Remote, GBR)

🏢 Crowdstrike · all 170 jobs
📍 United Kingdom
📅 Posted Sep 19, 2026 · via Himalayas
🏷 Threat Hunting, Intrusion Analysis, Cybersecurity, Threat Intelligence, Security Operations, Senior Incident Response Analyst +1 more
Apply on original site ↗

As a global leader in cybersecurity, CrowdStrike protects the people, processes and technologies that drive modern organizations. Since 2011, our mission hasn’t changed — we’re here to stop breaches, and we’ve redefined modern security with the world’s most advanced AI-native platform. We work on large scale distributed systems, processing almost 3 trillion events per day and this traffic is growing daily. Our customers span all industries, and they count on CrowdStrike to keep their businesses running, their communities safe and their lives moving forward. We're proud to work for a mission-driven company leveraging AI to transform the way we work. CrowdStrikers drive their careers through flexibility and autonomy while also being expected to contribute to a culture of responsible AI adoption, experimentation, and innovation. We use an AI-first mindset as a force multiplier to proactively and continuously accelerate execution, build expertise, uncover insights, and solve complex problems. We’re always looking to add talented CrowdStrikers to the team who have limitless passion, a relentless focus on innovation and a fanatical commitment to our customers, our community and each other. Ready to join a mission that matters? The future of cybersecurity starts with you.

About the Role:

CrowdStrike is looking for a passionate Threat Hunter to join our rapidly growing team of Intrusion Analysts tasked with defending CrowdStrike customers and understanding their adversaries. As part of our remote close-knit team, you will bring with you your experience in cybersecurity or threat intelligence to help evolve how we do threat hunting at CrowdStrike.

After a period of learning our custom-built tool suite, workflows, and methodologies you will join other OverWatch analysts protecting our customer's networks by identifying and understanding intrusions using Falcon Endpoint data and the broader CrowdStrike product suite. When the pressure is off you will be involved in building tools, and working with other CrowdStrike teams across a broad range of topics and projects.

As you grow in your role there will be plenty of opportunities for you to expand and shape the sort of detection and threat hunting you do within OverWatch, as well as career and professional development opportunities for the enthusiastic.
What You’ll Do:

-
Analyze adversary activity and communicate findings to customers as part of our fast-paced time sensitive mission to help stop breaches.

-
Undertake research to improve our detection capabilities and increase our understanding of our adversaries.

-
Leverage network/host-based intrusion analysis, digital forensics, and cyber threat intelligence to uncover and analyze intrusions.

-
Gain fast-paced experience in dealing with state-sponsored threat actors.

-
Take on responsibilities for hunting specific nation-state adversaries in our immense data set.

What You'll Need:
Required:

-
Demonstrated experience in either network/host-based intrusion analysis, digital forensics or cyber threat intelligence.

-
Experience conducting threat hunting and/or intrusion analysis using endpoint telemetry.

-
An understanding of nation-state adversary motivations and TTPs.

-
Ability to convey complex or technical concepts to various stakeholders.

-
An excellent understanding of at least one major operating system type.

-
Understanding of current and emerging threats and ability to demonstrate practical knowledge of security research.

-
Proven experience utilizing AI technologies to enhance decision-making, streamline workflows and processes, improve efficiency and drive business outcomes.

Preferred:

-
Knowledge of identity and/or cloud security fundamentals.

-
Knowledge of operating systems other than Windows (Linux, Mac).

-
Experience in a security operations center or similar environment tracking threat actors or responding to incidents.

-
Published research or findings at conferences or through

Flights + hotels

This role requires you to be in the United Kingdom. If that means relocating or flying in, it is worth checking fares before you commit to a start date.

Compare flights and hotels →

← All remote jobs

Get new remote jobs like this by email
Daily email, only when there's something new. One click to stop.

Get remote jobs like this by email

10 hand-picked jobs, one email a day. No spam, unsubscribe anytime.

Similar for you