Cyber Security Threat Hunter - 11832SR1

Proactive.IT Appointments Ltd.
Southampton, UK
15 days ago
Apply on www.apply4u.co.uk
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Compensation
£60,000.0 - £68,000.0
Working hours
Regular working hours

Tech stack

Query Performance Microsoft Windows Active Directory User Authentication Microsoft Azure Cloud Computing Security Cyber Security Kerberos (Protocol) NT LAN Manager OAuth Parsing Windows PowerShell
+4 more
Red Team (Cyber Security) Kusto Query Language Microsoft SharePoint Windows Security

Requirements

networking and digital forensicsMicrosoft Azure and Microsoft 365 cloud technologiesThreat intelligence-driven hunting: Demonstrated use of threat intelligence to plan hunts, enrich detections, and block malicious infrastructureWindows and identity fundamentals: Strong understanding of Windows security concepts and Microsoft identity (Active Directory and Entra ID), including authentication and token flows (Kerberos/NTLM/OAuth), device join states, MFA/Conditional Access concepts, and common identity attack pathsEndpoint telemetry literacy: Ability to interpret process trees and command lines, PowerShell activity, scheduled tasks/services, registry and file changes, WMI usage, persistence techniques, and LOLBins and to connect these artifacts to Defender alerts and timelinesMicrosoft 365 and cloud security foundations: Familiarity with email security and message flow (Exchange Online), and investigation pivots across SharePoint/OneDrive/Teams activity and Azure logs where relevant to XDR incidentsDetection engineering mindset: Experience translating hunts and red team findings into practical detections and improvements (signal selection, tuning, suppression/thresholding, entity mapping, documentation, and operational handoff)KQL depth and query performance: Comfortable using joins/unions, parsing, time-windowing, summarisation, Essential baselining, and performance-aware query patterns for large datasetsCyber Security Threat Hunter - Remote Due to the volume of applications received for positions, it will not be possible to respond to all applications and only applicants who are considered suitable for interview will be contacted. Proactive Appointments Limited operates as an employment agency and employment business and is an equal opportunities organisationWe take our obligations to protect your personal data very seriously. Any information provided to us will be processed as detailed in our Privacy Notice, a copy of which can be found on our website

Benefits & conditions

PermanentHampshire, UKPosted 1 week ago11832SR1 60k - 68k per year + Bonus + Brilliant BenefitsCyber Security Threat Hunter - RemoteOur client is urgently looking for an experienced Cyber Security Threat Hunter to join their team on a permanent basis.Please note, the role is 100% remote, but a hybrid/on-site working arrangement can be made if you prefer this.You will be well versed in Threat Hunting within the Cyber Security arena, including Ethical Hacking (CEH is advantageous).You will be rewarded with an excellent salary, as well as a brilliant benefits package including bonus (up to 15%), remote working, private healthcare, medicash, income protection, death in service x4 salary, cycle to work scheme and many, many more perks!Cyber Security Threat Hunter - Key Skills:Incident response processes/methodologies and SIEM operationsSecurity tooling, reporting, and delivering work in a structured/project-based wayIT/networking/security fundamentals including operating systems

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.apply4u.co.uk
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

6:00 min

LinkedIn recruiters using coding tests to deploy hidden backdoors

Chris Heilmann Chris Heilmann +1 · LIVE

2:49 min

Adopting OAuth best practices and removing outdated grants

Alexander Schwartz Alexander Schwartz · World Congress 2026 Europe

2:56 min

Open-sourcing a complex parsing library for game data

Johan Hutting Johan Hutting · World Congress 2024

4:11 min

Introduction to cloud-native application developer security

Micah Silverman · World Congress 2022

2:27 min

Identifying malware threats in fake job interview repositories

Chris Heilmann Chris Heilmann +2 · LIVE

1:34 min

Analyzing vulnerabilities in standard OAuth 2.0 authorization flows

Alexander Schwartz Alexander Schwartz · World Congress 2026 Europe

Videos

See all

Related articles

See all