> Markdown version of [/jobs/ext/2720071-cybersecurity-engineer-threat-hunting-security-validation](https://www.wearedevelopers.com/jobs/ext/2720071-cybersecurity-engineer-threat-hunting-security-validation). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Cybersecurity Engineer - Threat Hunting & Security Validation - **Company:** Cognizant Technology Solutions Corporation - **Location:** Providence, RI, United States - **Experience:** Experienced - **Salary:** $114,500.0 - $134,000.0 - **Contract:** Permanent contract - **Skills:** Bash Shell, Cyber Security, Intrusion Detection and Prevention, Python (Programming Language), Windows PowerShell, Mitre Att&ck, Cyber Threat Analysis, Cybercrime, Splunk - **Published:** September 4, 2026 - **Apply:** https://www.techcareers.com/job.asp?id=3377258188&tx=UT5652TYD&pt=1&aff=0B19D771-A501-4A5E-8338-2A822B784D54&utm_source=Job%20Feed&utm_medium=textkernel&utm_campaign=DE&utm_term=0B19D771-A501-4A5E-8338-2A822B784D54 ## About the Role * 4-8 years of experience in Cybersecurity, Threat Hunting, Security Operations, Detection Engineering, or Security Validation roles. * Strong hands-on experience with Threat Hunting, Security Validation, Breach & Attack Simulation (BAS), or related cybersecurity disciplines. * Deep understanding of the MITRE ATT&CK framework, adversary tactics, techniques, and procedures (TTPs). * Experience using Splunk for security investigations, threat analysis, log correlation, and search query development. * Knowledge of security monitoring, detection engineering, security control validation, and threat intelligence concepts. * Proficiency in scripting and automation using Python (preferred), PowerShell, Bash, or similar technologies. * Familiarity with SOC operations, incident response processes, and attack simulation methodologies. * Strong analytical, troubleshooting, communication, and documentation skills. * Experience working in fast-paced security operations environments and collaborating across multiple cybersecurity functions. * Certifications such as Security+, CySA+, GCIH, GCFA, Splunk Certification, or equivalent cybersecurity credentials are preferred. ## Description We are seeking a highly motivated Cybersecurity Analyst with expertise in Threat Hunting, Security Validation, and Breach & Attack Simulation (BAS) to strengthen the organization's threat detection and response capabilities. This role will focus on proactively identifying threats, validating security controls, assessing detection effectiveness, and improving overall cyber resilience. The ideal candidate will possess strong analytical skills, hands-on experience with Splunk and security monitoring platforms, and a solid understanding of modern adversary tactics and the MITRE ATT&CK framework. This position requires close collaboration with Security Operations, Incident Response, and Engineering teams to continuously enhance security monitoring and threat defense capabilities., * Conduct proactive threat hunting activities to identify indicators of compromise, suspicious behaviors, and emerging threats across enterprise environments. * Perform Security Validation and Breach & Attack Simulation (BAS) exercises to evaluate the effectiveness of security controls and detection capabilities. * Analyze security events, logs, alerts, and telemetry data using Splunk and other security monitoring platforms. * Review, test, and validate detection rules, correlation searches, use cases, and alerting mechanisms to improve threat coverage. * Assess the effectiveness of security controls and identify detection gaps, blind spots, and opportunities for improvement. * Map threats, adversary behaviors, and attack techniques to the MITRE ATT&CK framework and support control validation efforts. * Develop and maintain automation scripts using Python, PowerShell, or Bash to enhance threat hunting and security validation processes. * Collaborate with SOC, Incident Response, Threat Intelligence, and Engineering teams to strengthen detection and response capabilities. * Document findings, recommendations, attack simulations, and remediation actions arising from threat hunting and validation activities. * Support continuous improvement initiatives related to detection engineering, threat intelligence, and security monitoring programs. ## Related Videos - [Cyber Sleuth: Finding Hidden Connections in Cyber Data](https://www.wearedevelopers.com/videos/893-cyber-sleuth-finding-hidden-connections-in-cyber-data) - [Fighting the Next Wave of Cybercrime](https://www.wearedevelopers.com/videos/100331-fighting-the-next-wave-of-cybercrime) - [Old tools, new tricks](https://www.wearedevelopers.com/videos/1916-old-tools-new-tricks) - [Our journey with Spring Boot in a microservice architecture](https://www.wearedevelopers.com/videos/511-our-journey-with-spring-boot-in-a-microservice-architecture) - [Deep Fakes: The Lies We Can’t See](https://www.wearedevelopers.com/videos/1187-deep-fakes-the-lies-we-can-t-see) - [MCP doesn’t suck — your agent does](https://www.wearedevelopers.com/videos/100202-mcp-doesn-t-suck-your-agent-does) ## Related Articles - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Understanding and Mitigating Common Web Vulnerabilities](https://www.wearedevelopers.com/magazine/565-understanding-and-mitigating-common-web-vulnerabilities) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [Walking Into The Era of Supply Chain Risks](https://www.wearedevelopers.com/magazine/106-walking-into-the-era-of-supply-chain-risks) - [The Overflow: Security and Privacy](https://www.wearedevelopers.com/magazine/715-the-overflow-security-and-privacy) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed)