Security Analyst -Threat Hunter
Role details
Job location
Tech stack
Job description
Incident Response Windows PowerShell Business Valuation Offensive Security Workflow Management Cyber Threat Hunting Constructive Feedback Full Stack Development Artificial Intelligence Business Transformation Cyber Security Policies Cyber Security Standards Cyber Threat Intelligence Critical Illness Insurance Python (Programming Language) Continuous Improvement Process Security Information And Event Management (SIEM), What You Will Do: * Conduct proactive threat hunting across Cloud and On-Prem enterprise environments to identify malicious activity, anomalies, and emerging threats. * Perform in-depth investigations using SIEM technologies, leveraging strong query and analysis skills to detect adversary behaviors and indicators of compromise. * Analyze authentication flows, access patterns, and system telemetry to uncover potential compromise or advanced attacker techniques. * Utilize cyber threat intelligence, the MITRE ATT&CK framework, and emerging threat research to inform hunting strategies and detection engineering. * Investigate and respond to high-impact security incidents, collaborating closely with CSIRT and cross-functional teams to contain and remediate threats. * Partner with SIEM administrators, vendors, and offensive cybersecurity teams to enhance threat visibility and detection capabilities. * Develop and maintain detection logic, contributing to the full detection development, Use of Artificial Intelligence (AI): We may use Artificial Intelligence (AI) to support parts of our hiring process, including sourcing, screening, and evaluating candidates. AI helps assess applications and qualifications, but final decisions are made by our hiring team. By applying, you acknowledge and agree that your application may be reviewed using AI tools. Related Jobs Security Analyst -Threat Hunter TEKsystems Nashville, TN*On-Site Writing Planning Coaching Research Curiosity Scripting Operations Leadership Consulting Innovation Adaptability Communication Investigation Collaboration Cyber Security Authentications Incident Response Windows PowerShell Business Valuation Offensive Security Workflow Management Cyber Threat Hunting Constructive Feedback Full Stack Development Artificial Intelligence Business Transformation Cyber Security Policies Cyber Security Standards Cyber Threat Intelligence Critical Illness Insurance Python (Programming Language) Continuous Improvement Process Security Information And Event Management (SIEM) +0
Requirements
Planning Coaching Research Curiosity Scripting Operations Leadership Consulting Innovation Adaptability Communication Investigation Collaboration Cyber Security, lifecycle and identifying opportunities for detection improvements. * Apply offensive knowledge to strengthen hunting methodologies and validate detection coverage. * Document findings, investigations, and procedures with strong writing, communication, and operational discipline. * Support continuous improvement efforts, including planning, operational procedure refinement, and readiness activities within the CSIRT. * Provide after-hours support as part of a rotating on-call schedule, including responding to high-priority alerts and security incidents. What You Have: * Experience in cybersecurity within a global enterprise environment. * Experience performing Cybersecurity Threat Hunting across Cloud and On-Prem environments. * Experience with offensive security techniques and applying that knowledge to improve detection and hunting. * Strong understanding of incident response operations, tools, methodologies, and investigation workflows. * Knowledge of threat hunting methodologies, cyber threat intelligence, and the MITRE ATT&CK framework. * Experience working within SIEM platforms, including building and tuning queries and analyzing diverse log sources. * Ability to develop and enhance detection logic and contribute to the detection engineering lifecycle. * Strong documentation, writing, and communication skills for both technical and non-technical audiences. Ability to collaborate effectively across SIEM administrators, vendors, offensive security teams, and CSIRT.
Skills
Python, Powershell, Scripting
Top Skills Details
Python, Powershell, Scripting
Additional Skills & Qualifications
- Communicating Complex Concepts: Ability to clearly articulate complex threat scenarios, detection logic, and investigation results in concise, audience-appropriate language. * Consulting: Experience providing technical guidance and security expertise to internal partners, vendors, or cross-functional teams. * Cybersecurity Standards and Policies: Knowledge of developing, interpreting, and applying cybersecurity policies, standards, and procedures across diverse operational environments. * Adaptability: Comfort adapting to new cybersecurity challenges, emerging threats, and evolving technologies. * Collaboration: Works effectively with SOC, engineering, offensive security, vendors, and leadership teams. * Problem-Solving: Demonstrated ability to identify, analyze, and resolve advanced cybersecurity issues and attacker behaviors. * Coachability: Ability to coach team members while remaining open to receiving coaching and constructive feedback. * Curiosity: A persistent desire to explore new attack vectors, emerging threat techniques, and innovative detection strategies. * Goal-Driven: A results-focused mindset centered on improving defenses, maturing detection capabilities, and driving measurable cybersecurity outcomes.
Benefits & conditions
Eligibility requirements apply to some benefits and may depend on your job classification and length of employment. Benefits are subject to change and may be subject to specific elections, plan, or program terms. If eligible, the benefits available for this temporary role may include the following:
- Medical, dental & vision
- Critical Illness, Accident, and Hospital
- 401(k) Retirement Plan - Pre-tax and Roth post-tax contributions available
- Life Insurance (Voluntary Life & AD&D for the employee and dependents)
- Short and long-term disability
- Health Spending Account (HSA)
- Transportation benefits
- Employee Assistance Program
- Time Off/Leave (PTO, Vacation or Sick Leave) Workplace Type