
Threat Hunter
- Pune, Maharashtra
- Permanent
- Full-time
- Proactive Threat Hunt:
- Understand attack motivations and techniques by correlating threat data from various sources to simulate and validate hunt coverage (e.g., MITRE ATT&CK, red team findings, threat simulation)
- Operationalize threat intelligence into actionable hunts and utilize various data analysis methods to identify unknown risks within our clients' network infrastructure.
- Apply scientific and technical knowledge to hunt problems to produce and communicate intelligence on the cyber threat landscape, including cyber threat actors, malware, vulnerabilities, and adversarial TTPs to cater different stakeholders
- Detection Strategies: Continuously improve the service by identifying gaps in knowledge and correcting them. Like collaborating with internal data science team to translate hunt findings into detection rules, analyzing disparate data sources to understand its value, developing dashboards, and automation playbooks in partnership with SOC.
- Investigate: Investigate and analyze security incidents to determine the root cause, scope, and impact of potential cyber threats.
- Mitigation Strategies: Develop and recommend mitigation strategies, countermeasures, and best practices to enhance clients' cybersecurity posture and resilience against cyber threats.
- Collaborate with Stakeholders: Work closely with cross-functional teams, including IT, security operations, incident response, threat intelligence, and management, to communicate findings, provide recommendations, and ensure timely response to cyber threats.
- Stay Current with Cybersecurity Trends: Continuously monitor and research emerging cybersecurity threats, vulnerabilities, and industry best practices to stay ahead of evolving cyber threats.
- Technical Proficiency: Knowledge of network, endpoint, cloud platforms (AWS, Azure, GCP), containers technology and their telemetry to identify “when to start worrying and sound alarm”
- Knowledge on hunt methodologies, adversary TTPs, threat intelligence, and frameworks such as MITRE ATT&CK, Cyber Kill Chain, and Diamond Model.
- Ability to adapt to varying-scale enterprise environments to conduct threat hunts.
- Ability to use at least one popular programming language (Python, Go) and one data query language (KQL, SQL)
- Experience in conducting research on either APTs or cybercrime with the ability to adapt to focus on broader threat landscape
- Detection Engineering: Experience in building and utilizing analytical rules/queries from hunts, ability to create data visualizations and document new procedures/runbooks/playbooks to assist other analysts.
- Analytical Skills: Analytical and problem-solving skills with the ability to analyze large datasets, identify patterns, and correlate disparate events to identify potential opportunities.
- Communication Skills: Effective communication skills with the ability to articulate complex technical concepts to both technical and non-technical stakeholders.
- Education: Bachelor's degree in computer science, Information Technology, Cybersecurity, or a related field. Relevant certifications such as Certified Ethical Hacker (CEH), Certified Information Systems Security Professional (CISSP), or GIAC Certified Incident Handler (GCIH) are preferred.
- Experience: Minimum of 3-5 years of experience in cybersecurity roles, with specific experience in threat hunting, incident response, DFIR, or security operations. Experience in a SOC (Security Operations Center) environment is highly desirable.
- Nice to have:
- Experience with machine learning or statistical modeling
- Experience with developing agentic frameworks
- Cyber Obsessed - We are curious about technology, and we are innovative and passionate about solving big programs.
- Customer Driven - We listen, we learn, and we make it right.
- Collaborative, without Ego - No one succeeds alone. We strive to be the humble person that people want to work with.
- Relentless - We're smart, determined, and find a way. We figure stuff out.
- One Team - We all work together, and we all win together.