> Markdown version of [/jobs/ext/2203831-threat-hunting-consultant](https://www.wearedevelopers.com/jobs/ext/2203831-threat-hunting-consultant). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Threat Hunting Consultant - **Company:** Siri InfoSolutions Inc - **Location:** Austin, TX, United States (Remote available) - **Experience:** Expert - **Contract:** Permanent contract - **Skills:** Microsoft Windows, Data Analysis, Application Integration Architecture, Cyber Security, Disaster Recovery, Intrusion Detection and Prevention, Kusto Query Language, Security Information and Event Management, Data Ingestion, Mitre Att&ck, Malware, Cyber Threat Analysis, Azure Security Center, Optimization Algorithms, Cybercrime, Splunk - **Published:** August 23, 2026 - **Apply:** https://www.careerjet.com/jobad/us3515bf401372039d40e9bb54bdb0428e ## About the Role Extensive hands-on experience with Microsoft Defender for Endpoint (MDE) Proficiency with Microsoft 365 Defender (XDR) unified security operations Advanced knowledge of Kusto Query Language (KQL) for threat hunting and detection Deep understanding of MDE investigation capabilities, automated response features, and integration architecture SIEM and Analytics Expert-level Splunk Enterprise Security experience Proficiency in Splunk Processing Language (SPL) for complex correlation and hunting queries Experience with Splunk User Behavior Analytics (UBA) or similar behavioral detection platforms Knowledge of SIEM architecture, data onboarding, and optimization techniques Threat Hunting and Detection Engineering Demonstrated experience conducting hypothesis-driven threat hunts Strong understanding of MITRE ATT&CK framework and its practical application Ability to translate threat intelligence and attack research into actionable hunting queries Experience developing high-fidelity detection rules with low false positive rates Knowledge of adversary tactics, techniques, and procedures (TTPs) across multiple threat actor groups Incident Response Proven track record in hands-on incident response and investigation Expertise in endpoint forensics and malware analysis Familiarity with incident response frameworks (NIST, SANS) and playbook development Experience with containment, eradication, and recovery procedures for complex security incidents Understanding of forensic evidence preservation and chain of custody requirements ## Description Title: Security Consultant Location - Austin, TX Cyber Security assessment Analyst conducts and supports the cyber security controls risk assessment and management process acro… + 14 hours ago + Apply easily ## Related Videos - [Fighting the Next Wave of Cybercrime](https://www.wearedevelopers.com/videos/100331-fighting-the-next-wave-of-cybercrime) - [Cyber Sleuth: Finding Hidden Connections in Cyber Data](https://www.wearedevelopers.com/videos/893-cyber-sleuth-finding-hidden-connections-in-cyber-data) - [Our journey with Spring Boot in a microservice architecture](https://www.wearedevelopers.com/videos/511-our-journey-with-spring-boot-in-a-microservice-architecture) - [Enhancing Workload Security in Kubernetes](https://www.wearedevelopers.com/videos/356-enhancing-workload-security-in-kubernetes) - [The Developer Workstation Blind Spot: Why Your Security Stack Can't See What Matters Most](https://www.wearedevelopers.com/videos/100254-the-developer-workstation-blind-spot-why-your-security-stack-can-t-see-what-matters-most) - [Deep Fakes: The Lies We Can’t See](https://www.wearedevelopers.com/videos/1187-deep-fakes-the-lies-we-can-t-see) ## Related Articles - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [Walking Into The Era of Supply Chain Risks](https://www.wearedevelopers.com/magazine/106-walking-into-the-era-of-supply-chain-risks) - [Dev Digest 191: Malware interviews, EU ❤️ Open Source and Skilled Agents](https://www.wearedevelopers.com/magazine/645-dev-digest-191-malware-interviews-eu-open-source-and-skilled-agents) - [Understanding and Mitigating Common Web Vulnerabilities](https://www.wearedevelopers.com/magazine/565-understanding-and-mitigating-common-web-vulnerabilities)