Cybersecurity Engineer - Threat Hunting & Security Validation

Cognizant Technology Solutions Corporation
Providence, RI, United States
2 days ago
Apply on www.techcareers.com
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Experienced
Experience required
4 years minimum
Compensation
$114,500.0 - $134,000.0
Working hours
Regular working hours

Tech stack

Bash Shell Cyber Security Intrusion Detection and Prevention Python (Programming Language) Windows PowerShell Mitre Att&ck Cyber Threat Analysis Cybercrime Splunk

Job description

We are seeking a highly motivated Cybersecurity Analyst with expertise in Threat Hunting, Security Validation, and Breach & Attack Simulation (BAS) to strengthen the organization’s threat detection and response capabilities. This role will focus on proactively identifying threats, validating security controls, assessing detection effectiveness, and improving overall cyber resilience. The ideal candidate will possess strong analytical skills, hands-on experience with Splunk and security monitoring platforms, and a solid understanding of modern adversary tactics and the MITRE ATT&CK framework. This position requires close collaboration with Security Operations, Incident Response, and Engineering teams to continuously enhance security monitoring and threat defense capabilities., * Conduct proactive threat hunting activities to identify indicators of compromise, suspicious behaviors, and emerging threats across enterprise environments.

  • Perform Security Validation and Breach & Attack Simulation (BAS) exercises to evaluate the effectiveness of security controls and detection capabilities.
  • Analyze security events, logs, alerts, and telemetry data using Splunk and other security monitoring platforms.
  • Review, test, and validate detection rules, correlation searches, use cases, and alerting mechanisms to improve threat coverage.
  • Assess the effectiveness of security controls and identify detection gaps, blind spots, and opportunities for improvement.
  • Map threats, adversary behaviors, and attack techniques to the MITRE ATT&CK framework and support control validation efforts.
  • Develop and maintain automation scripts using Python, PowerShell, or Bash to enhance threat hunting and security validation processes.
  • Collaborate with SOC, Incident Response, Threat Intelligence, and Engineering teams to strengthen detection and response capabilities.
  • Document findings, recommendations, attack simulations, and remediation actions arising from threat hunting and validation activities.
  • Support continuous improvement initiatives related to detection engineering, threat intelligence, and security monitoring programs.

Requirements

  • 4-8 years of experience in Cybersecurity, Threat Hunting, Security Operations, Detection Engineering, or Security Validation roles.
  • Strong hands-on experience with Threat Hunting, Security Validation, Breach & Attack Simulation (BAS), or related cybersecurity disciplines.
  • Deep understanding of the MITRE ATT&CK framework, adversary tactics, techniques, and procedures (TTPs).
  • Experience using Splunk for security investigations, threat analysis, log correlation, and search query development.
  • Knowledge of security monitoring, detection engineering, security control validation, and threat intelligence concepts.
  • Proficiency in scripting and automation using Python (preferred), PowerShell, Bash, or similar technologies.
  • Familiarity with SOC operations, incident response processes, and attack simulation methodologies.
  • Strong analytical, troubleshooting, communication, and documentation skills.
  • Experience working in fast-paced security operations environments and collaborating across multiple cybersecurity functions.
  • Certifications such as Security+, CySA+, GCIH, GCFA, Splunk Certification, or equivalent cybersecurity credentials are preferred.

Benefits & conditions

The annual salary for this position is between $[114,500 - 134,000] depending on experience and other qualifications of the successful candidate.

This position is also eligible for Cognizant’s discretionary annual incentive program, based on performance and subject to the terms of Cognizant’s applicable plans.

Benefits: Cognizant offers the following benefits for this position, subject to applicable eligibility requirements:

  • Medical/Dental/Vision/Life Insurance
  • Paid holidays plus Paid Time Off
  • 401(k) plan and contributions
  • Long-term/Short-term Disability
  • Paid Parental Leave
  • Employee Stock Purchase Plan

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.techcareers.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

2:38 min

Establishing comprehensive monitoring and log management

Michael Eder +1 · LIVE

3:52 min

Avoiding remote code execution from unsanitized inputs

Alexander Pirker · World Congress 2022

4:34 min

Motivational categories behind modern cybercriminal activities

Mauro Verderosa · LIVE

4:01 min

Finding personal fulfillment in the cybersecurity industry

LIVE

3:10 min

Correlating dispersed logs using structured request tracing

Michael Eder +1 · LIVE

2:35 min

Exploring diverse resources for continuous security learning

Stefania Chaplin · World Congress 2022

Videos

See all

Related articles

See all