AI Cyber Threat Hunter

DevApps IT
Richardson, TX, United States
about 2 months ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
3 years minimum
Working hours
Regular working hours
Job source

Tech stack

Artificial Intelligence Amazon Web Services Microsoft Azure Bash Shell Intrusion Detection and Prevention Python (Programming Language) Machine Learning Network Forensics Windows PowerShell Security Information and Event Management Scripting Cloud Platform System
+7 more
Cyber Threat Analysis Cybercrime Data Analytics Drilldown Machine Learning Operations Cyber Warfare Service Stack

Job description

Cyber Defense Team is seeking an advanced Cyber Threat Hunter to proactively identify sophisticated adversaries lurking within our network. You will leverage AI/ML algorithms to sift through massive datasets, identifying anomalies, weak signals, and malicious activities that evade standard automated defenses. The role involves rapid pivoting through data, conducting deep-dive forensics, and partnering with detection engineers to turn hunts into automated detection rules. Responsibilities:

  • Proactive Hunting: Conduct advanced, hypothesis-driven threat hunting campaigns to uncover hidden malicious activity, utilizing AI-based behavioral analytics.
  • AI/ML Integration: Apply machine learning models and data science techniques to analyze large-scale security telemetry (logs, endpoint, network, cloud) to surface anomalous patterns.
  • Adversary Simulation: Analyze emerging threat actor tactics, techniques, and procedures (TTPs) using threat intelligence to guide hunts.
  • Detection Engineering: Work closely with engineering teams to convert manual investigative findings into durable SIEM alerts and automated detections.
  • Forensics & Analysis: Perform deep-dive analysis of malware and indicators of compromise (IOCs), reverse-engineering exploits to understand scope and impact.
  • Documentation: Meticulously document hunt approaches, findings, and actionable insights to improve long-term resilience.

Requirements

  • Experience: 5+ years in cybersecurity, with at least 3 years specifically in threat hunting or incident response.
  • AI/ML Knowledge: Demonstrated experience applying machine learning or statistical analysis to cybersecurity data.
  • Scripting: Proficient in Python for parsing logs, data correlation, and automation (PowerShell/Bash a plus).
  • Technology Stack: Strong understanding of SIEM platforms, EDR tools, network traffic analysis, and cloud environments (AWS/Azure).
  • Analytical Skills: Ability to analyze large, disparate datasets and pivot through forensic trails.

Preferred Skills & Qualifications:

  • Certifications: Active GCIH, GCDA, GCTI, or similar advanced security certifications preferred.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on dice.com

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

1:04 min

Introduction to Bitcoin script parsing tools

Steve Shadders · LIVE

3:52 min

Avoiding remote code execution from unsanitized inputs

Alexander Pirker · WWC 2022

1:31 min

Dual usage of machine learning in cybersecurity

Wolfgang Ettlinger +1 · WWC 2023

1:53 min

Evaluating traditional scripting languages for modern development tasks

Jens Knipper Jens Knipper · Europe 2026 Virtual

1:44 min

Coordinating security mitigations with the CISA clearinghouse

Adrian Mouat Adrian Mouat · WWC Europe 2026

54 sec

Interpreting complex terminal commands safely using external explanation utilities

Dan Cranney +2 · LIVE

Videos

See all

Related articles

See all