
Threat Hunting Researcher
Posted 5 days ago

Posted 5 days ago
This is a fully remote position, open to applicants in California.
β’ Oversee essential threat hunting operations
β’ Collaborate with and advise clients on urgent hunting-related inquiries and suspected security incidents
β’ Implement threat hunting reports and workflows, analyze results, and assist in timely reporting to customers
β’ Investigate hunting leads based on Indicators of Compromise (IOCs), threat intelligence, and internal detections
β’ Monitor the threat landscape and prepare initial context for emerging campaigns
β’ Elevate significant or high-impact security events to leadership
β’ Assist the Managed Detection and Response (MDR) team with hunting-related tasks
β’ Provide continuous feedback on findings, reports, queries, and workflows for ongoing improvement
β’ A minimum of 3 years of relevant cybersecurity experience in threat hunting, incident investigation, SOC analysis, detection engineering, DFIR, or MDR
β’ Strong comprehension of the evolving threat landscape, attack tools, tactics, techniques, and networking/security fundamentals
β’ Experience in investigating suspicious activities, security incidents, or targeted threats across endpoints, networks, identity, and cloud
β’ Capability to work autonomously, make sound investigative decisions, and escalate findings that require further review
β’ Experience managing customer-facing security requests, including clear written communication, investigation summaries, and recommendations
β’ Understanding of attacker behaviors, including attack vectors, execution, persistence, privilege escalation, lateral movement, and exfiltration
β’ Background in writing, modifying, or executing detections, hunting queries, or log-based inquiries
β’ Familiarity with organizational cybersecurity measures, including protective tools, response actions, and remediation techniques
β’ Exceptional written and verbal communication skills in English, with a strong focus on detail for documenting investigation logic
β’ Experience in an Incident Response environment
β’ Proficiency in Python and SQL
β’ Familiarity with malware analysis
β’ Experience in writing technical reports, investigation summaries, or customer-oriented security analyses
β’ Ability to analyze and comprehend the infrastructure, behaviors, and objectives of malicious campaigns
β’ Must not require immigration sponsorship; the employer will not provide work visa sponsorship for this role
β’ Restricted stock units may be included
β’ Bonus may be included
β’ Reasonable accommodations for qualified individuals with a disability or special need
ALB Conciergerie
Meiks Affiliate Tipps
StanMindsetMomentum
LEARN Behavioral
Get handpicked remote jobs straight to your inbox weekly.