Threat Hunter

UnitedHealth GroupRaleigh, NC
$91,700 - $163,700Remote

About The Position

The Enterprise Information Security (EIS) team is responsible for cybersecurity across our organization. We support our business and members by reducing risk, rapidly responding to threats, focusing on business resiliency and securing new acquisitions. The primary mission of the Cyber Threat Hunting team is to proactively identify tactics and techniques leveraged by attackers to identify security incidents. Additionally, this position is also expected to participate in other areas within Cyber Defense Operations such as Digital Forensics, detection engineering, Hunt Plan development, etc. The Senior Cybersecurity Analyst will serve as a Subject Matter Expert (SME) in multiple areas of Incident Response and Security Operations. You’ll enjoy the flexibility to work remotely from anywhere within the U.S. as you take on some tough challenges. For all hires in the Minneapolis or Washington, D.C. area, you will be required to work in the office a minimum of four days per week.

Requirements

  • 3 years of experience in Threat Hunting or Incident response
  • 3 years of experience with application protocols (HTTP, DNS, FTP, etc.) and networking protocols (TCP, UDP, ARP, ICMP, etc.), and be comfortable analyzing packet capture (pcap) files in tools such as Wireshark
  • 3 years experience with digital forensics as applied to host-based forensics, memory forensics, network forensics, and cloud forensics
  • 3 years experience with operating system internals (virtual memory, paging, etc.) and techniques employed by malware to evade detection
  • Due to FISMA US Citizenship is required

Nice To Haves

  • Industry certifications such as CISSP or GCIH
  • 5+ years of cybersecurity, digital forensics, incident response, or red teaming experience
  • Experience in healthcare and/or government.
  • Proven solid communication skills to translate complex technical concepts into plain English for consumption by non-technical audiences

Responsibilities

  • Analysis of network data (packets, logs) and endpoint data (logs, malicious artifacts) in both structured and unstructured methods
  • Analysis of malware (executables, scripts, etc.) to determine indicators of compromise, and create signatures for future detection of similar samples
  • Creating Threat Hunting Playbooks and Use Cases to proactively identify threats affecting UHG networks
  • Participate in exercises to simulate attacks and determine responsiveness of processes and procedures
  • Creating a feedback loop with security control owners to help tune systems based on the results of investigations
  • Acting as a high tier escalation point for security incidents to provide technical expertise to the incident response process
  • Develop content within tools to detect anomalous activity (SIEM Content, Custom Signatures, etc.)
  • Identify and understand new environments and tooling.
  • Leverage enterprise-approved AI tools to streamline workflows, automate tasks, and drive continuous improvement

Benefits

  • a comprehensive benefits package
  • incentive and recognition programs
  • equity stock purchase
  • 401k contribution
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service