Role summary: The (USA) Staff, Dynamic Defense Engineer plays a critical role by leading proactive efforts to identify cyber threats that evade traditional security controls. This role requires deep technical expertise, strong judgment under uncertainty and the ability to influence teams without formal authority. The role requires expertise in programming languages, applying ML/AI and behavioral analytics to surface anomalous activity and mentoring other associates. This role is expected to operate at the intersection of detection engineering and incident response, drive structured threat hunting hypotheses, partner closely with SOC to validate threat hunt findings and measurably decrease threat actor dwell time. About the team: The Threat Hunting Team conducts hypothesis-driven hunts using comprehensive telemetry across identity, endpoints, network and cloud systems. The team's mission is to transform uncertainty into actionable risk awareness by correlating signals and validating adversary behavior throughout the attack lifecycle. The team employs advanced techniques, adversary-focused strategies and data-driven methods that are enhanced by automation, analytics and machine learning. This team plays an important role in continuous integration of lessons learned from threat hunts to ensure evolving threats are addressed proactively and supporting the organization’s strategic commitment to defend the environment against cyber threats. What you'll do: Conduct in-depth analysis of cyber threats and attack mechanisms to inform defense strategies. Develop and test threat hypotheses based on adversary tradecraft and observed environmental gaps. Translate adversary techniques into repeatable detections, analytics, tune and improve detections to reduce false positives and improve signal quality. Build and maintain hunting playbooks, workflows and documentation to scale hunting operations. Leverage automation, scripting and ML/AI assisted tools to accelerate analysis and reduce manual effort. Communicate findings clearly through hunt reports, briefings and actionable recommendations for stakeholders. Apply architectural principles to design and evaluate system components for security, performance and reliability. Lead proactive threat hunts, escalation and mitigation following established protocols.
Stand Out From the Crowd
Upload your resume and get instant feedback on how well it matches this job.
Job Type
Full-time
Career Level
Mid Level