Cybersecurity Threat Hunter
Skills
Computer ScienceComputer ForensicsEDRMalware AnalysisMicrosoft SurfaceNetwork Traffic AnalysisObservation
What the job involves
The main requirements, responsibilities and hiring steps.
Requirements
- Hands-on experience hunting threat actor activity using EDR and/or SIEM platforms such as Microsoft Sentinel Splunk and CrowdStrike
- Ability to build and tune hunting and detection queries in KQL SPL or similar query languages
- Excellent written and verbal communication skills to explain technical findings clearly
- Working knowledge of threat actor techniques defense evasion and the current threat landscape
- Experience turning threat intelligence into deployable hunt and detection logic
- Familiarity with malware analysis techniques and ability to interpret results
- Network traffic analysis experience
- Experience with Windows environments and working familiarity with Linux and macOS
- Strong research and technical analysis skills
- Well-developed problem-solving interpersonal organizational skills and attention to detail
- Associate's degree or 2 or more years hands-on experience in a related field
Nice to have
- Analytical
- Client-facing
- Detail-oriented
- Research-driven
- Collaborative
- Mentoring
Day to day
- Track emerging threat actor techniques and turn threat intelligence into original research and actionable hunts
- Build and tune client-facing detection logic across EDR and SIEM platforms including Microsoft Defender Sentinel Splunk and CrowdStrike
- Perform static and dynamic malware analysis analyze telemetry across multiple operating systems and communicate clear findings to clients
