Cybersecurity Threat Hunter

Skills
Computer ScienceComputer ForensicsEDRMalware AnalysisMicrosoft SurfaceNetwork Traffic AnalysisObservation
Role

What the job involves

The main requirements, responsibilities and hiring steps.

Requirements

  • Hands-on experience hunting threat actor activity using EDR and/or SIEM platforms such as Microsoft Sentinel Splunk and CrowdStrike
  • Ability to build and tune hunting and detection queries in KQL SPL or similar query languages
  • Excellent written and verbal communication skills to explain technical findings clearly
  • Working knowledge of threat actor techniques defense evasion and the current threat landscape
  • Experience turning threat intelligence into deployable hunt and detection logic
  • Familiarity with malware analysis techniques and ability to interpret results
  • Network traffic analysis experience
  • Experience with Windows environments and working familiarity with Linux and macOS
  • Strong research and technical analysis skills
  • Well-developed problem-solving interpersonal organizational skills and attention to detail
  • Associate's degree or 2 or more years hands-on experience in a related field

Nice to have

  • Analytical
  • Client-facing
  • Detail-oriented
  • Research-driven
  • Collaborative
  • Mentoring

Day to day

  • Track emerging threat actor techniques and turn threat intelligence into original research and actionable hunts
  • Build and tune client-facing detection logic across EDR and SIEM platforms including Microsoft Defender Sentinel Splunk and CrowdStrike
  • Perform static and dynamic malware analysis analyze telemetry across multiple operating systems and communicate clear findings to clients