CrowdStrike is looking for a highly motivated, self-driven Sr. Consultant, Incident Response dedicated to making a difference in global security by protecting organisations against the most advanced attackers in the world. You will lead technical investigations, develop new hunting methods, and deliver high-quality reports.
What You'll Do
- Work on incident response engagements as both an analyst and project manager.
- Develop and use new methods to hunt for adversaries across large data sets.
- Conduct privileged intrusion investigations under the direction of outside counsel.
- Perform host and/or network-based forensics across Windows, Mac, and Linux platforms.
- Perform basic malware analysis.
- Produce high-quality written and verbal reports, presentations, and findings for key stakeholders in English and German.
- Demonstrate industry thought leadership through blog posts, CrowdCasts, and other public speaking events.
What We're Looking For
- Capability to complete technical tasks without supervision.
- A desire to grow and expand both technical and soft skills.
- Strong project management skills.
- A thought leader within the incident response industry.
- Ability to foster a positive work environment and attitude.
- Ability to travel within EU, UK, and US for team meetings and internal events, with required on-site customer travel on short notice (likely once or twice per year).
- Fluent English and German speaker.
- Based in EMEA (ideally Austria, Switzerland, or Germany).
- For Senior Consultant: Substantial industry experience.
- For Consultant: Minimum 3 years of professional experience.
Nice to Have
- Project management experience in a matrixed consulting environment.
- Experience conducting or managing incident response investigations for targeted threats like e-crime and nation-state activities.
- A background using forensic analysis tools in investigations to determine the extent of compromise.
- Strong understanding of targeted attacks and ability to create customized tactical and strategic remediation plans.
- Strong understanding of secure network architecture and performing network operations.
- Knowledge in cloud incident response methodologies for AWS, Azure, or GCP.
- Strong ability to communicate executive and detailed findings to clients and internal teams.
Technical Stack
- Windows, Mac, Linux
- AWS, Azure, GCP
Benefits & Compensation
- Market leader in compensation and equity awards.
- Comprehensive physical and mental wellness programs.
- Competitive vacation and holidays.
- Paid parental and adoption leaves.
- Professional development opportunities for all employees.
- Employee Networks, geographic groups, and volunteer opportunities.
- Vibrant office culture with world class amenities.
Work Mode
This is a remote position for candidates based in EMEA, ideally in Austria, Switzerland, or Germany.
CrowdStrike is proud to be an equal opportunity employer committed to fostering a culture of belonging. We support veterans and individuals with disabilities through our affirmative action program.

