Endpoint Threat Hunting Consultant
Core
Proactively identify sophisticated cyber threats across enterprise environments by analyzing endpoint data, logs, and system artifacts to uncover indicators of compromise.
Role type
Senior Endpoint Threat Hunting Consultant
Builds
Actionable remediation recommendations, threat hunting methodologies, and automation scripts for security teams and executives
Domain
Cybersecurity / Threat Intelligence / Digital Forensics
Deliverable
Dashboards & analysis
Required skills
Threat hunting, digital forensics, hypothesis-driven analysis, IOC searching, correlation, timeline development, threat intelligence analysis, Python scripting, Windows/Linux forensic artifacts analysis, network protocol understanding, identity/authentication concepts (Active Directory, Kerberos), AI technology application
Preferred skills
Incident response, large-scale investigation experience, cloud platform familiarity (AWS, Azure, GCP), tactical/strategic remediation planning
Technologies
Python, Windows, Linux, Active Directory, Kerberos, AWS, Azure, Google Cloud Platform
Responsibilities
Conduct proactive threat hunting across enterprise environments; Investigate Windows and Linux forensic artifacts; Perform hypothesis-driven threat analysis using IOC searches and correlation; Apply threat intelligence related to targeted attacks and nation-state activity; Produce clear written reports and remediation recommendations; Develop and refine threat hunting methodologies and supporting scripts; Create automation solutions using Python; Analyze endpoint, identity, OS, and network activity; Contribute to customized remediation recommendations; Apply AI technologies to enhance investigative decision-making; Collaborate with stakeholders to communicate findings; Contribute expertise to large-scale incident response investigations
Seniority
Senior, hands-on IC