Support proactive threat analysis and hunt activities using established hypotheses, queries, procedures, and data sources. Proactively analyze security telemetry to identify indicators of compromise, anomalous behavior, and adversary activity that has not met an incident threshold or has evaded automated security controls. Assess and correlate data from multiple sources, including network, endpoint, identity, SIEM, threat intelligence, vulnerability, and other available security data. Document hunt activity, findings, evidence, and recommended follow-on actions in authorized systems and initiate or support incident-response processes when malicious activity is identified. Provide relevant findings and trends for SOC operational reporting, significant-activity reporting, and defensive awareness. Research indicators, adversary behaviors, and suspicious activity under guidance from senior threat personnel. Maintain clear hunt notes and document negative as well as positive findings to support repeatability and knowledge development. Escalate suspicious activity and potential detection gaps to senior threat analysts and watch operations.
Stand Out From the Crowd
Upload your resume and get instant feedback on how well it matches this job.
Job Type
Full-time
Career Level
Entry Level