Threat Hunting Engineer Lead
Core
Technical leader in a Security Operations Center proactively investigating cyber threats using adversarial tactics to improve detection, response, and security controls.
Role type
Senior IC threat hunting engineer lead
Builds
Enhanced detection methodologies, security controls, and incident response capabilities for enterprise security platforms
Domain
Cybersecurity / Threat Intelligence / Security Operations
Deliverable
production ML models | product features | dashboards & analysis | research | client delivery | infrastructure | physical/clinical work
Required skills
Threat hunting, incident response, forensics, threat detection, SIEM/EDR/SOAR platform expertise, network protocols, OS internals (Windows/Linux/macOS), cloud security, MITRE ATT&CK frameworks, scripting/programming (Python/Go/PowerShell)
Preferred skills
Cloud forensics, network forensics, intrusion analysis, advanced threat defense, cyber threat intelligence
Technologies
SIEM, EDR, SOAR, MITRE ATT&CK, Python, Go, Powershell
Responsibilities
Conduct threat hunting to identify, classify, prioritize, and report on cyber threats; Research emerging security threats and correlate incident activity; Craft monitoring and detection methodologies for security platforms; Perform security gap analysis and effectiveness assessments; Collaborate on incident response, investigation, countermeasures, and recovery; Analyze security incidents to enhance alerting schemas; Provide security briefings on critical enterprise issues
Seniority
Senior, hands-on IC with leadership responsibilities