Security Threat Hunting Specialist
Core
Proactively identify advanced threats evading traditional security controls using hypothesis-driven investigations and telemetry analysis.
Role type
Security Threat Hunter (IC)
Builds
Detection pipelines, hunting queries, and automation scripts for the Autonomic Security Operations model.
Domain
Cybersecurity / Threat Intelligence / Cloud & Endpoint Security
Deliverable
production ML models | dashboards & analysis | client delivery
Required skills
Threat hunting methodologies (MITRE ATT&CK, TaHiTI), SIEM/EDR/XDR analysis, Python/PowerShell scripting, behavioral analytics, adversary emulation
Preferred skills
GIAC GCTI/GCIH certifications, AI/ML analytics for anomaly detection
Technologies
SIEM, EDR/XDR, NDR, SOAR, Python, PowerShell, MITRE ATT&CK
Responsibilities
Execute hypothesis-driven hunts based on adversary TTPs, analyze telemetry from hybrid environments, develop hunting queries and automation scripts, validate detection coverage via purple team exercises, document findings for detection engineering
Seniority
Mid-Senior, hands-on IC