Adversary Threat Hunter

Southern CompanyAtlanta, GA

About The Position

Southern Company is seeking a knowledgeable, hands-on Adversary Threat Hunter to join our Cyber Security team. This role leads proactive threat hunting engagements to identify suspicious behavior, adversary activity, and unauthorized access across Southern Company networks and systems. The position also supports incident response, detection engineering, investigative processes, and recommendations for security technologies and controls that improve the company’s defensive posture. The ideal candidate will have a strong cybersecurity and security operations background, with forensic, investigative, analytical, threat intelligence, and technical skills.

Requirements

  • Bachelor’s degree or equivalent experience
  • 7 or more years of information technology security experience
  • Broad knowledge of information security principles, including access control, least privilege, data integrity, and core security capabilities
  • Strong understanding of network design principles, including topology, protocols, network components, and virtualized infrastructure
  • Practical experience with Splunk, Gravwell, or other Security Information and Event Management (SIEM) platforms
  • Demonstrated experience in security operations, including security monitoring, incident response, host or network forensics, penetration testing, cyber threat intelligence, malware analysis, or security consulting
  • Experience performing forensic analysis on Windows and Linux/Unix systems
  • Experience using Endpoint Detection and Response (EDR), Network Detection and Response (NDR), Security Orchestration, Automation, and Response (SOAR), and related cybersecurity tools to support threat hunting, investigation, and response
  • Experience with memory analysis, disk artifact collection, endpoint telemetry, and forensic acquisition methods used to identify malicious or evasive activity
  • Basic understanding of YARA, Snort, Sigma, or similar detection logic
  • Familiarity with the threat intelligence lifecycle and adversary tactics, techniques, and procedures, including cybercrime, malware, botnets, hacktivism, social engineering, advanced persistent threats, and insider threats
  • Familiarity with Operational Technology (OT) networks and processes
  • Understanding of how threat hunting differs between Information Technology (IT) and Operational Technology (OT) environments, including safety considerations, specialized protocols, logging limitations, and coordination with operational teams
  • Strong written and verbal communication skills

Responsibilities

  • Lead proactive threat hunting engagements to identify suspicious behavior, adversary activity, and unauthorized access across Southern Company networks and systems.
  • Support incident response.
  • Support detection engineering.
  • Support investigative processes.
  • Provide recommendations for security technologies and controls that improve the company’s defensive posture.
  • Develop threat hunting hypotheses from cyber threat intelligence, incident response findings, adversary tradecraft, vulnerability information, and business risk priorities.
  • Evaluate available data sources, identify visibility gaps, and determine whether logs, telemetry, or security tooling are sufficient to validate a hunt hypothesis.
  • Use data analysis methods such as searching, filtering, grouping, stacking, baselining, anomaly detection, visualization, and trend analysis to identify suspicious behavior.
  • Map adversary behaviors to MITRE ATT&CK, MITRE ATT&CK for ICS, Cyber Kill Chain, Diamond Model, or similar analytical frameworks to prioritize hunt activity and detection improvements.
  • Draft security operations processes and procedures.
  • Organize tasks, manage multiple priorities, meet schedules, and deliver on commitments.
  • Document hunt plans, analytical methods, evidence, findings, limitations, recommendations, and lessons learned in a repeatable format.

Benefits

  • Competitive base salary
  • Annual incentive awards for eligible employees
  • Health, welfare and retirement benefits designed to support physical, financial, and emotional/social well-being
  • Additional compensation, such as an incentive program
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service