SOC Threat Hunter
Portland, OR, United States
USD 100K-141K (estimate) Mid-level Full Time
Tasks
- Analyze anomalous behavior and attacker TTPs
- Contribute to continuous SOC process improvement
- Coordinate with SOC tier 2 and tier 3 during escalations
- Correlate security events and user behavior for investigations
- Develop and execute hypothesis driven hunts
- Document investigative steps and evidence
- Identify logging and detection coverage gaps
- Incorporate threat intelligence into investigations
- Map threat activity to MITRE ATT&CK
- Produce hunt reports and recommendations
- Research emerging threats and adversary behaviors
- Support post incident hunt activities
- Support repeatable hunt playbooks and dashboards
- Track hunt outcomes and operational metrics
- Translate hunt findings into detection logic
- Tune alerts and improve analytic requirements
- Use SIEM and EDR to identify compromise
- Validate hunt findings and determine escalation need
Perks/Benefits
- N/A
Skills/Tech-stack
Cloud logging | Detection engineering | EDR | Endpoint telemetry | Event Correlation | Incident Response | Log Analytics | Mitre Attack | Network Security | SIEM | Security Event Correlation | Security analytics | Security monitoring | Threat Intelligence | Threat hunting
Education
N/A
Related jobs
-
IT Security Analyst USD 60K-75KAccess Management | DLP | Email Security | Endpoint Security | Google WorkspaceMentorship | TrainingEntry-level Full TimeAnaheim, CA, United States5h ago
-
Mid. Cyber Incident Coordinator USD 133K-160KComputer Networking | Computer fundamentals | Cybersecurity | Detection engineering | Incident ResponseOn-site workSenior-level Full TimeARLINGTON, VA, United States5h ago
-
Comptroller - Enterprise Security Analyst I USD 75K-79KAntivirus | Application Security | Cybersecurity | DLP | Digital forensicsFlexible work schedule | Insurance | On-the-job training | Retirement plan | Teambuilding exercisesMid-level Full TimeTexas-Austin9h ago
-
Security Engineer III, Cyber Threat Hunter USD 107K-188KAmazon Web Services | Analytic Rules | Cloud Security | Cloud security monitoring | Detection and ResponseSenior-level Full TimeArlington/Rosslyn, Virginia, United States; Baltimore, Maryland, …9h ago
-
Lead Cyber Defense Center Analyst USD 90K-157KAD | AV | Access Management | Active Directory | AntivirusEmployee assistance program | Family care support | Flexible work/life support | Insurance coverage | On-call rotationSenior-level Full TimeQuincy, Massachusetts, United States22h ago
-
Cybersecurity Engineer and Risk Analyst USD 61K-141KApplication Firewall | Assessment and Authorization | Big Data | Big data analytics | Cloud ComputingMid-level Full TimeUSA, CA, San Diego (4301 Pacific …22h ago
-
Specialist, Security Operations Center USD 70K-118KAlarm investigation | Incident Analysis | Incident Response | Open Source | Open-source intelligenceEntry-level Full TimePA - West Chester, 1354 Boot …22h ago
-
Cybersecurity Incident Response Analyst USD 85K-115KCloud Security | Digital forensics | Dynamic malware analysis | Firewalls | Incident ResponseOn-call rotationMid-level Full TimeLos Angeles, CA, United States22h ago
-
Cybersecurity Incident Response Analyst USD 85K-115KCloud Security | Dynamic malware analysis | Firewall | Forensics | Incident ResponseOn-call supportMid-level Full TimeLos Angeles, CA, United States22h ago
-
Cyber Security Architecture Analyst II USD 131K-202KAPI Security | Application Security | Architecture assessment | Cloud Security | Enterprise SecuritySenior-level Full TimeGlobal Resource Center, United States22h ago
-
Cybersecurity Purple Team Analyst USD 104K-154KAdversary simulation | Breach simulation | Cyber Deception | EDR | Incident ResponseOn-call rotationMid-level Full TimeBoca Raton, FL, United States1d ago
-
Analyst, Security Operations Center (SOC) USD 82K-138KAntivirus | Cybersecurity | Detection Systems | Firewalls | Incident ManagementNo employer sponsorship required | Office work flexibility | Travel up to 5 percentMid-level Full TimeKnoxville, TN, United States1d ago
-
Analyst, Security Operations Center (SOC) USD 82K-138KAntivirus | Best practices | Cyber Threat | Cyber Threat Intelligence | Cybersecurity Best PracticesMid-level Full TimeRoswell, GA, United States1d ago
-
Active Directory | Citrix | Firewalls | Microsoft Office | Microsoft WindowsSenior-level Full TimeColumbia, SC, United States1d ago
-
Cyber Defense Analyst (Threat Hunt) USD 120K-130K800-53 | Access Control | Computer Network Defense | Computer network | Content Filtering401k | Dental insurance | Education assistance | Health insurance | InsuranceMid-level Full TimeQuantico, VA, 22134, US1d ago
-
Cyber Security Operations Analyst USD 100K-133KAuthentication Protocols | Azure Security | DNS | Detection and Response | Endpoint Detection and ResponseFlexible schedule | Hybrid work environment | Learning and development | Paid practical assessment supportMid-level Full TimeOrlando, FL, United States1d ago
-
Threat Hunter / Security Analyst USD 100K-180KApplication Security | Attack Surface Analysis | Attack surface | Cyber Threat | Cyber Threat IntelligenceEquity incentives | Medical/Dental/Vision | Relocation assistanceMid-level Full TimeSeattle, WA1d ago
-
Cyber Analyst, SME USD 135K-216KCryptology | Cyber Defense | Cybersecurity | Device Configuration | Incident ResponseCI polygraph eligibility | Career growth opportunities | Professional development | Top Secret/SCI clearance support | Travel up to 15%Senior-level Full TimeHampton, VA, United States1d ago
-
Sr. Cyber Security Analyst USD 108K-189K800-53 | Access Control | Asset Management | Cyber incident response | CybersecuritySenior-level TemporaryDC, United States1d ago
-
Cyber Security Analyst USD 45K-84KCause analysis | Compliance | Incident Response | Information security | Problem SolvingDental insurance | Hybrid workstyle | Life insurance | Medical insurance | Paid time offMid-level Full TimeFL - Saint Petersburg - 880 …1d ago
-
Cybersecurity Analyst (Elevate) USD 61K-113KAgile | Automation | Cybersecurity | Data Loss Prevention | Data ProtectionFlexible work arrangement | Work from home optionsMid-level Full TimeEaston Ops Cols C Oh, United …1d ago
-
Cybersecurity Analyst (Elevate) USD 61K-113KAgile | Cybersecurity | Dashboards | Data Protection | Incident ResponseFlexible work arrangement options | Rotational on-call supportMid-level Full TimeEaston Ops Cols C Oh, United …1d ago
-
Cybersecurity Analyst (Elevate) USD 61K-113KAgile | Automation and orchestration | Dashboard Development | Data Loss Prevention | Data ProtectionFlexible work arrangement | On-call rotationMid-level Full TimeEaston Ops Cols C Oh, United …1d ago
-
Cybersecurity Analyst (Elevate) USD 61K-113KAgile | Automation and orchestration | Cybersecurity | Dashboarding | Data ProtectionFlexible work arrangement | Rotational on-call supportMid-level Full TimeEaston Ops Cols C Oh, United …1d ago
-
Senior Cyber Threat Hunter USD 127K-191KAWS | Bash | CI/CD | Cloud Security | Endpoint SecurityDental insurance | Disability coverage | Discounted tuition | Flexible paid time off | Flexible spending accountSenior-level Full TimeWGU North Carolina, United States1d ago