> Markdown version of [/jobs/ext/2977514-cyber-threat-hunter](https://www.wearedevelopers.com/jobs/ext/2977514-cyber-threat-hunter). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Cyber Threat Hunter - **Company:** Montash - **Location:** Cantabria, Spain - **Contract:** Permanent contract - **Skills:** Artificial Intelligence, Cyber Security, Computer Programming, Intrusion Detection and Prevention, Python (Programming Language), Log Analysis, Machine Learning, Security Information and Event Management, Systems Integration, Cyber Threat Analysis, Cybercrime, Cyber Warfare - **Published:** September 18, 2026 - **Apply:** https://www.buscojobs.com.es/cyber-threat-hunter-en-ribamontan-al-mar-ID-372186456 ## About the Role If you're passionate about uncovering advanced cyber threats and thinking like an attacker to stay one step ahead, this role is for you. You'll join a global Cyber Defense Center, protecting a major international organization. As part of a brand-new hunting team, you'll play a key role in building next-generation threat hunting capabilities, leveraging automation, machine learning, and innovative approaches to detect what traditional detections might miss. This is a unique opportunity to shape a new capability from the ground up within an AI-driven Cyber Defense Center, and have a direct impact on safeguarding millions of users and systems globally. What You'll Be Doing Designing and executing hypothesis-driven threat hunting activities to uncover advanced, previously undetected threats Building and evolving automated, scalable hunting capabilities using machine learning and agent-based approaches Conducting continuous compromise assessments across the organization's systems, identifying suspicious activity across endpoints, identities, and networks Analyzing security events, logs, and network data to detect anomalies and derive actionable insights Collaborating closely with Detection Engineering, Incident Response, and Threat Intelligence teams to enhance overall security coverage Integrating threat intelligence into hunting workflows, continuously adapting strategies based on emerging threats Contributing to the continuous improvement of tools, methodologies, and automation capabilities within the team What You Bring Strong experience (6+ years) in threat hunting, security operations, or incident response within complex environments Hands-on experience with security technologies such as EDR (e.G. Crowd Strike, Defender), SIEM platforms, and log analysis Solid understanding of attacker behaviour, TTPs, and the ability to apply this knowledge in real-world hunting scenarios Programming and automation skills (e.G. Python, Go) to develop scalable detection and hunting solutions Strong analytical mindset with the ability to correlate data from multiple sources and identify meaningful patterns Experience working in collaborative, international environments and coordinating with multiple stakeholders Fluent English communication skills, with the ability to clearly present technical findings to both technical and non-technical audiences Why Join? ## Description If you're passionate about uncovering advanced cyber threats and thinking like an attacker to stay one step ahead, this role is for you.You'll join a global Cyber Defense Center, protecting a major international organization.As part of a brand-new hunting team, you'll play a key role in building next-generation threat hunting capabilities, leveraging automation, machine learning, and innovative approaches to detect what traditional detections might miss.This is a unique opportunity to shape a new capability from the ground up within an AI-driven Cyber Defense Center, and have a direct impact on safeguarding millions of users and systems globally.What You'll Be Doing Designing and executing hypothesis-driven threat hunting activities to uncover advanced, previously undetected threats Building and evolving automated, scalable hunting capabilities using machine learning and agent-based approaches Conducting continuous compromise assessments across the organization's systems, identifying suspicious activity across endpoints, identities, and networks Analyzing security events, logs, and network data to detect anomalies and derive actionable insights Collaborating closely with Detection Engineering, Incident Response, and Threat Intelligence teams to enhance overall security coverage Integrating threat intelligence into hunting workflows, continuously adapting strategies based on emerging threats Contributing to the continuous improvement of tools, methodologies, and automation capabilities within the team What You Bring Strong experience (6+ years) in threat hunting, security operations, or incident response within complex environments Hands-on experience with security technologies such as EDR (e.G. Crowd Strike, Defender), SIEM platforms, and log analysis Solid understanding of attacker behaviour, TTPs, and the ability to apply this knowledge in real-world hunting scenarios Programming and automation skills (e.G. Python, Go) to develop scalable detection and hunting solutions Strong analytical mindset with the ability to correlate data from multiple sources and identify meaningful patterns Experience working in collaborative, international environments and coordinating with multiple stakeholders Fluent English communication skills, with the ability to clearly present technical findings to both technical and non-technical audiences Why Join? ## Related Videos - [Fighting the Next Wave of Cybercrime](https://www.wearedevelopers.com/videos/100331-fighting-the-next-wave-of-cybercrime) - [Cyber Sleuth: Finding Hidden Connections in Cyber Data](https://www.wearedevelopers.com/videos/893-cyber-sleuth-finding-hidden-connections-in-cyber-data) - [Progressive Delivery in Kubernetes](https://www.wearedevelopers.com/videos/949-progressive-delivery-in-kubernetes) - [Deep Fakes: The Lies We Can’t See](https://www.wearedevelopers.com/videos/1187-deep-fakes-the-lies-we-can-t-see) - [Leveraging Large Language Models for Legacy Code Translation: Challenges and Solutions](https://www.wearedevelopers.com/videos/1157-leveraging-large-language-models-for-legacy-code-translation-challenges-and-solutions) - [You can’t hack what you can’t see](https://www.wearedevelopers.com/videos/41-you-can-t-hack-what-you-can-t-see) ## Related Articles - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Top 6 Hackathons for Developers in 2023](https://www.wearedevelopers.com/magazine/263-top-6-hackathons-for-developers-in-2023) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [Is Software Engineering Over-Saturated?](https://www.wearedevelopers.com/magazine/418-is-software-engineering-over-saturated) - [Jobs in Tech: The State of the European Market](https://www.wearedevelopers.com/magazine/575-jobs-in-tech-the-state-of-the-european-market) - [6 Emerging Technologies We’ll Learn About in 2025](https://www.wearedevelopers.com/magazine/381-6-emerging-technologies-we-ll-learn-about-in-2025)