Security Threat Hunting Lead
Core
Building and leading a proactive threat hunting function to detect advanced threats evading traditional security controls within WPP's SOC transformation.
Role type
Senior IC Security Threat Hunting Lead
Builds
Hypothesis-driven threat hunts, detection pipelines, and automated hunting workflows for WPP's global enterprise environment.
Domain
Cybersecurity / Threat Intelligence / SOC Operations
Deliverable
production ML models | product features | dashboards & analysis | client delivery | infrastructure
Required skills
Threat hunting methodologies (MITRE ATT&CK, TaHiTI), SIEM/EDR/XDR proficiency, Python/PowerShell scripting, Threat intelligence integration, Behavioral analytics, Team leadership, Cross-functional collaboration
Preferred skills
GIAC GCTI/GCIH certifications, Advanced security certifications
Technologies
SIEM, EDR/XDR, NDR, SOAR platforms, Python, PowerShell
Responsibilities
Define and implement threat hunting program methodologies and KPIs; Lead team execution of hypothesis-driven hunts across endpoints, networks, and cloud; Develop hunting playbooks aligned with MITRE ATT&CK; Mentor and upskill team members; Conduct advanced hunts leveraging telemetry; Integrate threat intelligence into detection pipelines; Collaborate with Detection Engineering and IR teams; Drive automation of hunting workflows; Report on hunt outcomes and strategic improvements.
Seniority
Senior, hands-on IC with leadership responsibilities