FREE ACCESS
5,000–10,000 jobs/day
See all jobs on Scoutfield
Search thousands of fresh jobs every day.
Discover
- Fresh listings
- Fast filters
- No subscription required
Create a free account and start exploring right away.
Core Competencies
Role fitCore Competencies
Use this summary to align your resume positioning with the role.
Demonstrates expertise in threat hunting and incident response, utilizing advanced analytics and the MITRE ATT&CK framework to develop proactive defense strategies. Capable of leading teams, mentoring staff, and effectively communicating complex threat dynamics to executive leadership.
Highest-signal resume keywords
Threat HuntingIncident ResponseSIEM Tools (Splunk)KQL, AQL, PythonAdvanced Industry Certifications (CISSP, GCIH)
ATS Keywords
Tailor your resumeApplicant Tracking System Keywords
Tip: use these terms in your resume and cover letter to boost ATS matches.
Hard Skills
Threat IntelligenceAdversary Behavior AnalysisDetection Logic DevelopmentNetwork Protocol AnalysisIndicators of CompromiseScripting/AutomationData StructuresPacket AnalysisForensicsAnomalous Behavior Identification
Soft Skills
Technical DirectionMentoringExecutive CommunicationLeadershipCollaboration
Tools & Technologies
SIEMEDRData Lake PlatformsYARASIGMA
Certifications & Qualifications
CISSPGCIHGCFAGCFEGREMOSCP
Industry Keywords
CybersecurityCritical InfrastructureTelecommunicationsSecurity OperationsAdvanced Persistent Threats
Tech Stack
Tools & technologiesCyber SecurityFirewallsLinuxMacOSPythonSplunkUnixGo
About the role
Key responsibilities & impact- Lead and execute complex, high-priority threat-hunting missions using threat intelligence, multi-source telemetry, and adversary behavior analysis
- Architect and execute sophisticated threat-hunting strategies
- Identify anomalous behavior, insider risks, advanced persistent threats, and unknown threats
- Analyze adversary Tactics, Techniques, and Procedures using the MITRE ATT&CK framework
- Translate findings into proactive defense strategies and novel detection logic
- Provide technical direction and investigative leadership during major cybersecurity incidents and high-risk investigations
- Mentor and direct senior threat hunters and junior staff
- Synthesize investigative findings and threat telemetry into strategic summaries and operational metrics for executive leadership and stakeholders
- Mature hunting methodologies, detection capabilities, and automated workflows across SIEM, EDR, and data lake platforms
- Partner with Threat Intelligence, Incident Response, SOC, and Security Engineering teams on detection, response, and remediation
- Develop custom detection rules using YARA, SIGMA, KQL, and AQL
- Develop network- and host-based Indicators of Compromise and Indicators of Attack
- Maintain operational readiness for urgent security events or critical incidents off-hours as needed
- Brief executive leadership on threat landscapes and high-priority investigations
Requirements
What you’ll need- Bachelor’s degree or eight or more years of relevant work experience required, demonstrated through job-related work experience, military experience, or specialized training or education
- Six or more years of specialized experience in threat hunting, incident response, or advanced threat analytics
- Experience investigating network protocol anomalies and analyzing telemetry from firewalls, VPNs, routers, and proxies
- Experience mentoring, leading, or directing technical security staff and managing hunt engagements
- Advanced proficiency with SIEM tools such as Splunk
- Proficiency with KQL, AQL, Regular Expressions, and scripting/automation using Python, PowerShell, Bash, or Go
- Experience leading operations in a high-tempo Security Operations environment
- Experience supporting cyber defense in telecommunications, critical infrastructure, or large enterprise networks
- Technical knowledge of operating system internals, forensics, and data structures across Windows, Linux/Unix, and macOS
- Technical knowledge of network architecture, packet analysis, and adversary tactics targeting network infrastructure
- Executive presentation and communication skills for conveying complex threat dynamics to non-technical executive leadership
- Advanced industry certifications such as CISSP, GCIH, GCFA, GCFE, GREM, or OSCP are preferred ('Even better')
Benefits
Comp & perks- Medical, dental, and vision insurance
- Short- and long-term disability insurance
- Basic and supplemental life insurance
- AD&D insurance
- Identity theft protection
- Pet insurance
- Group home and auto insurance
- Matched 401(k) savings plan
- Up to 8 company-paid holidays per year
- Up to 6 personal days per year
- Paid parental leave
- Adoption assistance
- Tuition assistance
- Premium pay opportunities including overtime, shift differential, holiday pay, and allowances
- Up to 15 days of vacation per year for newly hired employees, increasing with additional service
- Remote work from home with occasional in-person trainings and meetings
