Cyber Security Threat Hunter
- Discuss this with your agent
- Open in Claude
- Open in ChatGPT
Prepare application
- Draft this with your agent
- Open in Claude
- Open in ChatGPT
Role details
Tech stack
+9 more
Requirements
- Incident response processes/methodologies and SIEM operations
- Security tooling, reporting, and delivering work in a structured/project-based way
- IT/networking/security fundamentals including operating systems, networking and digital forensics
- Microsoft Azure and Microsoft 365 cloud technologies
- Threat intelligence-driven hunting: Demonstrated use of threat intelligence to plan hunts, enrich detections, and block malicious infrastructure
- Windows and identity fundamentals: Strong understanding of Windows security concepts and Microsoft identity (Active Directory and Entra ID), including authentication and token flows (Kerberos/NTLM/OAuth), device join states, MFA/Conditional Access concepts, and common identity attack paths
- Endpoint telemetry literacy: Ability to interpret process trees and command lines, PowerShell activity, scheduled tasks/services, registry and file changes, WMI usage, persistence techniques, and LOLBins and to connect these artifacts to Defender alerts and timelines
- Microsoft 365 and cloud security foundations: Familiarity with email security and message flow (Exchange Online), and investigation pivots across SharePoint/OneDrive/Teams activity and Azure logs where relevant to XDR incidents
- Detection engineering mindset: Experience translating hunts and red team findings into practical detections and improvements (signal selection, tuning, suppression/thresholding, entity mapping, documentation, and operational handoff)
- KQL depth and query performance: Comfortable using joins/unions, parsing, time-windowing, summarisation, Essential baselining, and performance-aware query patterns for large datasets
Benefits & conditions
Our client is urgently looking for an experienced Cyber Security Threat Hunter to join their team on a permanent basis.
Please note, the role is 100% remote, but a hybrid/on-site working arrangement can be made if you prefer this.
You will be well versed in Threat Hunting within the Cyber Security arena, including Ethical Hacking (CEH is advantageous).
You will be rewarded with an excellent salary, as well as a brilliant benefits package including bonus (up to 15%), remote working, private healthcare, medicash, income protection, death in service x4 salary, cycle to work scheme and many, many more perks!
About the company
Proactive Appointments Limited operates as an employment agency and employment business and is an equal opportunities organisation
Apply for this position
This job is hosted externally. Click below to view the full posting and apply.
Prepare application
- Draft this with your agent
- Open in Claude
- Open in ChatGPT
Good distractions
Talks and stories from around this role — technically off-topic, practically not.
Moments
Explore playlistsVideos
See allRelated articles
See all
Dev Digest 134 - Where pixels sing?
Understanding and Mitigating Common Web Vulnerabilities
Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.
What Are The Top Skills Required For Azure Developers?