remote
Senior Threat Hunter Information Security Specialist I - UST
Software Engineer
Senior Threat Hunter with deep Python and Jupyter expertise, driving hypothesis‑driven hunting across endpoint, network and cloud data, building automated, scalable frameworks aligned to MITRE ATT&CK.
About the role
Key Responsibilities
- Conduct proactive, hypothesis‑driven threat hunting using MITRE ATT&CK techniques across enterprise‑wide data sets.
- Analyze security telemetry from endpoints, network flows, and cloud platforms to uncover indicators of compromise and emerging threats.
- Design, implement, and maintain automated, repeatable hunting frameworks in Python and Jupyter Notebooks for large‑scale investigations.
- Collaborate with SOC analysts, incident responders, and engineering teams to translate findings into actionable detection rules and mitigations.
- Document hunting methodologies, findings, and recommendations in clear, technical reports for stakeholders.
Requirements
- 5+ years of hands‑on experience in threat hunting, incident response, or related security operations.
- Advanced proficiency in Python scripting and Jupyter Notebook development for data analysis and automation.
- Strong knowledge of MITRE ATT&CK framework and its application to endpoint, network, and cloud environments.
- Experience working with security data sources such as EDR, SIEM, NetFlow, and cloud logs (AWS, Azure, GCP).
- Excellent analytical, problem‑solving, and communication skills, with a track record of delivering actionable security insights.
Skills
pythonnetwork security