CBO - Tier 3 / Threat Hunter
United States - Remote
R
USD 107K-173K (estimate) Senior-level Full Time
Tasks
- Analyze logs from Microsoft Defender and AWS and network sources
- Collaborate with analysts to improve triage and escalation
- Conduct proactive threat hunting across telemetry
- Correlate multi source telemetry with MITRE ATTACK
- Develop and tune detection logic in Microsoft Sentinel
- Develop threat hunting hypotheses
- Identify security gaps and recommend mitigations
- Lead advanced incident investigations
- Perform root cause analysis and forensic analysis
- Produce incident reports with timelines and remediation recommendations
- Support Red Team and Purple Team exercises
- Support incident containment eradication and recovery
- Validate and refine detection use cases
- Write Kusto Query Language queries
Perks/Benefits
Skills/Tech-stack
AWS | Defender XDR | Defender for Endpoint | Defender for Identity | Digital forensics | Incident Response | KQL | Kusto Query | Kusto Query Language | Log Analysis | Malware analysis | Microsoft Defender | Microsoft Defender XDR | Microsoft Defender for Endpoint | Microsoft Defender for Identity | Microsoft Sentinel | Mitre Attack | Network Security | Query Language | SOC Monitoring | SOC Operations | Threat hunting
Education
Related jobs
-
Information Security Systems Analyst USD 84K-131KAccess Control | Authentication | Authorization | Documentation | HIPAA401k matching | Dental insurance | Employee assistance program | Health insurance | Life insuranceMid-level Full Time100% Remote, United States R1d ago
-
Cyber Threat Hunter USD 82K-133KAnomaly Detection | Binary Analysis | Capture analysis | Data Parsing | Event analysisMid-level Full TimeRemote, United States R1d ago
-
All-source intelligence | Basic IT | Basic IT troubleshooting | Geopolitical Analysis | IT troubleshootingRemote work | Training and development | Weekend shift coverageSenior-level Full TimeBoca Raton, FL, US R1d ago
-
Bash | Incident Response | JSON | MITRE ATT CK | PowershellFully remoteSenior-level Full TimeColumbia, SC, United States R1d ago
-
Cybersecurity Analyst - Remote USD 80K-133KCorrelation rules | Detection and Response | Endpoint Detection and Response | Endpoint detection | Forensics401k 403b employer match | Certification reimbursement | Emergency backup care | Legal Resources Plan | Life insuranceMid-level Full TimeVirginia Remote, United States R2d ago
-
Staff Threat Hunter USD 173K-173KAmazon Web Services | Cisco Firepower | CloudTrail | CloudWatch | ElasticsearchOccasional travel | Remote work | Team training sessionsSenior-level Full TimeREMOTE - UT - Utah, United … R2d ago
-
Threat Detection & Response Analyst (Tier 1) USD 80K-106KAnti-Malware | Antivirus | Cloud Security | Cyber Kill Chain | Database securityEducational assistance and training programs | Health and wellness benefits | Income replacement for qualified employees with disabilities | Paid Holidays | Paid maternity and parental bonding leaveEntry-level Full TimeWatermark - 410 North Scottsdale Road, … R2d ago
-
Cyber Threat Detection and Hunting, AVP USD 112K-153KAutopsy | Bash | Detection engineering | EDR | EnCaseEducational assistance | Flexible work schedule | Health and wellness benefits | Income replacement for qualified employees with disabilities | Paid HolidaysExecutive-level Full TimeNew Jersey Office - 210 Hudson … R2d ago
-
Summer Internship - Security Engineering USD 50K-50KAWS | Access Control | Authentication | Azure | BashCollaborative team environment | Hands On Security Engineering Experience | Remote-first cultureEntry-level InternshipRemote, United States R2d ago
-
Sr. Blue Team Analyst USD 166K-333KAlerting | Cyber Threat | Cyber Threat Intelligence | Detection engineering | Event managementMentoring | Ongoing training | Remote workSenior-level Full TimeUnited States R2d ago
-
Classified Cyber Security Asc/ISSO/Grand Prairie, TX USD 62K-125K800-53 | ACAS | Configuration Management | EMASS | ESTIG401k match | Dental insurance | Education assistance | Employee assistance program | Flexible spending accountsMid-level Full TimeTexas, Grand Prairie-TX R3d ago
-
Classified Cyber Security Asc/ISSO/Grand Prairie USD 62K-125K800-53 | ACAS | Compliance Management | Configuration Management | ESTIGViewer401k match | Education assistance | Holidays | Medical/Dental/Vision insurance | Paid time offMid-level Full TimeTexas, Grand Prairie-TX R3d ago
-
Sr. Security Trust & Assurance Analyst USD 135K-198K800-53 | Application Security | Audit management | Awareness Training | CRISCHybrid work environment | Remote work option | Work-life balanceSenior-level Full TimeRaleigh, NC R3d ago
-
Sr. Security Trust & Assurance Analyst USD 135K-198K800-53 | Awareness Training | CISA | CISM | CISSPHybrid workplace | Remote work flexibility | Work-life balanceSenior-level Full TimeSalt Lake City, UT R3d ago
-
Senior AI Red Team Analyst USD 94K-176KAI tools | AWS | Active Directory | Adversary Emulation | AutomationAccess to employee assistance program | Career development | Flexible work options | Hybrid work model | Mental health days offSenior-level Full TimeUnited States of America, Richmond, Virginia R4d ago
-
AWS EC2 | AWS IAM | AWS S3 | Elasticsearch | Endpoint Detection and Response401k | Dental insurance | Discretionary time off | Health insurance | Life insuranceEntry-level InternshipRemote - United States R6d ago
-
Information Security Analyst USD 47K-67KDetection Systems | Encryption | Event management | Information security | Intrusion Detection10 paid holidays per year | Career Advancement and Employee Development Opportunities | Paid parental leave | Paid vacation and sick time | Remote work within ArizonaMid-level Full TimeREMOTE OPTIONS, PHOENIX R6d ago
-
Incident Response Analyst USD 127K-140KBehavioral Analysis | Case management | CrowdStrike | Detection and Response | Endpoint Detection and Response401k retirement plan | Dental insurance | Disability insurance | Flexible time off | Medical insuranceMid-level Full TimeTampa, FL Hybrid, Remote R6d ago
-
Information Security Analyst I USD 71K-100KCloud Security | Cybersecurity | Cybersecurity Framework | Data Privacy | Email Security401k plan | Birthday time off | Dental insurance | Employee assistance program | Medical insuranceMid-level Full TimeRemote Work Site - Maine, United … R7d ago
-
Alert Monitoring | Analytical Thinking | Data Analysis | Incident Response | LinuxEntry-level Internship Part TimeRemote - Virginia, United States R7d ago
-
Sr. Intelligence Analyst | Remote, USA USD 116K-159KAutomation | Command Line | Cyber Kill Chain | Diamond Model | EDRProfessional training | Remote work | Volunteer opportunities | Work-life balanceSenior-level Full TimeOverland Park, KS, United States R7d ago
-
Sr. Threat Analyst | Remote, USA USD 116K-159KActive Directory | Advanced persistent threat | Anti-virus | Application Firewall | ArcSightProfessional training resources | Remote work flexibility | Volunteer opportunities | Work-life balanceSenior-level Full TimeKansas, United States R7d ago
-
Senior Engineer (Sr. Data Security Analyst) USD 153K-166KAWS | Access Control | Anomaly Detection | Audit Support | AzureFully remote | Hybrid option | Office days Tuesday and WednesdaySenior-level Full TimeRemote - Virginia, United States R7d ago
-
Sr. Threat Hunting Intelligence Analyst (Hybrid) USD 100K-155KAPI | CrowdStrike Query Language | Cyber Threat | Cyber Threat Intelligence | Dark WebEmployee networks | Employee volunteer opportunities | Paid adoption leave | Paid parental leave | Professional development opportunitiesSenior-level Full TimeUSA NJ Remote, United States R7d ago
-
Information Security Analyst USD 100K-130K800-53 | ATO | AWS | Audit Support | Authority to Operate401k plan | Dental insurance | Disability insurance | Employee assistance program | Employee stock purchase planMid-level Full TimeUS - CA - Work From … R7d ago