Senior Threat Hunter
Core
Lead high-severity security investigations, validate adversary behavior, and guide SOC technical direction in a managed security services environment.
Role type
Senior Threat Hunter / SOC Analyst
Builds
Incident response playbooks, detection content, SOAR automation workflows, and AI-assisted analysis pipelines.
Domain
Cybersecurity, Managed Security Services, Cloud & Endpoint Security
Deliverable
production ML models | product features | dashboards & analysis | client delivery
Required skills
Advanced incident investigation, root cause analysis, MITRE ATT&CK mapping, SIEM/EDR/XDR tuning, SOAR automation, AI/LLM prompt engineering, threat hunting, technical reporting
Preferred skills
GCIH/GCFA/GCDA certifications, Elastic/Splunk experience, MITRE ATT&CK framework expertise, scripting for automation
Technologies
SIEM, EDR, XDR, SOAR platforms, Elastic, Splunk, LLM-based analysis tools, KQL, SPL, Sigma
Responsibilities
Lead complex, high-severity investigations across endpoint, network, cloud, and identity telemetry; Identify detection gaps and collaborate on developing/refining detection content; Leverage SOAR platforms to automate enrichment, triage, and response actions; Utilize AI copilots and LLM tools to support case triage and investigation; Mentor junior analysts and conduct quality reviews of case handling; Produce clear technical reports and executive communications
Seniority
Senior, hands-on IC with mentorship responsibilities