
Threat Hunter, FedCloud
Posted 19 hours ago

Posted 19 hours ago
This is a fully remote position, open to applicants in United States.
• Perform advanced threat hunting activities across client environments.
• Analyze and react to complex threat actor behaviors.
• Create and execute innovative detection strategies.
• Present findings to both technical and executive stakeholders.
• Participate in threat intelligence and detection engineering projects.
• Examine threat actor actions, detect intrusions, develop detections, and monitor campaigns within government cloud infrastructure.
• Carry out proactive and reactive threat hunting operations to identify and counter advanced adversaries.
• Improve the detection capabilities of the Falcon platform.
• Work Tuesday to Friday from 23:00 to 09:00 ET (03:00 to 13:00 UTC).
• Frequently engage with threat actors and advanced persistent threats.
• A Bachelor’s degree in a relevant field or equivalent work experience.
• Strong command of English, both written and spoken.
• Proven experience in network or host-based intrusion analysis, digital forensics, or malware analysis.
• Extensive knowledge of Windows, MacOS, and Linux operating systems.
• Background in cyber threat intelligence and open-source intelligence analysis.
• Programming or scripting skills, especially in Python or Go.
• Familiarity with administrative tools and living-off-the-land tactics.
• Understanding of the MITRE ATT&CK framework and adversary tactics.
• Capability to convey complex technical concepts to diverse audiences.
• Demonstrated experience using AI technologies to improve decision-making, optimize workflows, enhance efficiency, and achieve business objectives.
• Willingness to undergo required government background checks and fingerprinting.
• Position available to US Citizens and Green Card Holders.
• Periodic alcohol and/or drug testing may be mandated during employment.
• Additional background and fingerprint checks may be required periodically.
• Bonus: Advanced knowledge of Linux and MacOS systems.
• Bonus: Practical experience with eCrime and nation-state threat actors.
• Bonus: Experience in a SOC or incident response role.
• Bonus: Proficiency with LogScale, NGSIEM, Splunk, or Kibana.
• Bonus: Familiarity with AWS, Azure, or GCP cloud technologies.
• Bonus: Published security research.
• Bonus: Knowledge of cloud security fundamentals.
• Bonus: Proven history of security research and analysis of emerging threats.
• Leading compensation and equity awards in the market.
• Comprehensive programs for physical and mental well-being.
• Generous vacation and holiday time for rejuvenation.
• Paid parental and adoption leave policies.
• Opportunities for professional development for all employees, regardless of their level or role.
• Employee Networks, local neighborhood groups, and volunteer opportunities to foster connections.
• Dynamic office culture with top-notch amenities.
• Performance bonuses.
• Equity grants.
• Health insurance coverage.
• 401k retirement plan.
• Paid time off.
CrowdStrike
Ziff Davis
Ookla
FiveBy Solutions
Get handpicked remote jobs straight to your inbox weekly.