
Threat Hunter III
Posted 1 day ago

Posted 1 day ago
This is a fully remote position, open to applicants in Texas.
• Execute advanced threat hunting operations within customer environments.
• Analyze and respond to complex activities from sophisticated threat actors.
• Create and implement innovative detection methodologies.
• Present findings to both technical teams and executive stakeholders.
• Contribute to initiatives in threat intelligence and detection engineering.
• Investigate threat actor activities, identify intrusions, develop detections, and track campaigns across government cloud infrastructures.
• Perform proactive and active threat hunting operations aimed at identifying and thwarting advanced adversarial threats.
• Enhance detection capabilities of the Falcon platform.
• Work a night shift schedule: Saturday to Tuesday, from 23:00 to 09:00 ET.
• Regularly engage with sophisticated threat actors and advanced persistent threats.
• Bachelor's degree in a relevant field or equivalent professional experience.
• Strong command of English, both written and verbal.
• Proven experience in network/host-based intrusion analysis, digital forensics, or malware analysis.
• In-depth knowledge of Windows, MacOS, and Linux operating systems.
• Experience in cyber threat intelligence and open-source intelligence analysis.
• Proficient in programming/scripting, especially in Python or Go.
• Understanding of administrative tools and living-off-the-land techniques.
• Familiarity with the MITRE ATT&CK® framework and adversary tactics.
• Ability to articulate complex technical concepts to diverse audiences.
• Willingness to undergo government-mandated background checks and fingerprinting.
• Demonstrated experience in utilizing AI technologies to enhance decision-making, optimize workflows and processes, improve efficiency, and drive business results.
• Advanced knowledge of Linux and MacOS environments.
• Practical experience with eCrime and nation-state threat actors.
• Experience in SOC or incident response roles.
• Proficient with logging platforms such as LogScale, NGSIEM, Splunk, and Kibana.
• Familiarity with cloud technologies, preferably related to threat hunting and/or incident response (AWS, Azure, GCP).
• Published security research in conferences, blogs, or articles.
• Experience with identity and cloud security fundamentals.
• Proven track record in security research and analysis of emerging threats.
• Willingness to undergo and pass alcohol and/or drug tests during employment, if required.
• Competitive compensation and equity awards leading the market.
• Comprehensive wellness programs addressing both physical and mental health.
• Generous vacation and holiday policies for adequate rest and rejuvenation.
• Paid parental and adoption leave options.
• Opportunities for professional development available to all employees, regardless of their role or level.
• Employee Networks, local neighborhood groups, and volunteering opportunities to foster connections.
• Dynamic office culture accompanied by world-class amenities.
• Bonus opportunities.
• Equity grants available.
• Health insurance coverage.
• 401k plan.
• Paid time off.
Northrop Grumman
Fortress Information Security
Kodex
Choice Hotels International
Get handpicked remote jobs straight to your inbox weekly.