Threat Hunting Sr. Analyst
Core
Proactively identify and investigate potential security threats by analyzing behavioral tactics, techniques, and procedures (TTPs) to protect the organization.
Role type
Senior Threat Hunting Analyst
Builds
New security detections, threat hunting hypotheses, and automated hunting processes
Domain
Cybersecurity / Threat Intelligence
Deliverable
production ML models | product features | dashboards & analysis | research | client delivery | infrastructure | physical/clinical work
Required skills
Threat hunting hypothesis formulation, TTP analysis, query languages (YARA, CrowdStrike QL/SPS), MITRE ATT&CK framework, SIEM/EDR/NDR tool proficiency, Windows/Linux/network protocols, data set manipulation
Preferred skills
Master's degree, CTIA/CREST PTIA/MITRE MAD/CySA+ certifications, MSSP experience, lab environment replication
Technologies
Google Chronicle SIEM, CrowdStrike EDR/EPP, Vectra NDR, Qualys VM, Recorded Future, STIX/TAXII
Responsibilities
Identify opportunities for and implement new detections from hunt results, research new attack behaviors and TTPs, develop threat hunting hypotheses with the intelligence team, define metrics to quantify risk surface area, cross-train and mentor analysts, represent threat hunting to stakeholders
Seniority
Senior, hands-on IC