SOC Threat Hunter jobs in United States
cer-icon
Apply on Employer Site
company-logo

TP · 1 month ago

SOC Threat Hunter

TP is a company focused on cybersecurity, and they are seeking a SOC Threat Hunter to proactively research and hunt for active threats within their environments. The role involves analyzing security events, developing countermeasures, and enhancing existing security processes and tools.

CRMCustomer ServiceOutsourcingTechnical Support
check
Growth Opportunities
badNo H1Bnote

Responsibilities

Track threat actors, their tactics, techniques, and procedures (TTPs), and their associated Indicators of Compromise (IOCs)
Capture intelligence on threat actor TTPs/IOCs and coordinate with SecOps pods to develop countermeasures
Provide forensic analysis of network packet captures, DNS, proxy, netflow, malware, host-based security and application logs, as well as logs from a variety of security sensors
Perform Root Cause Analysis of security incidents to develop enhancements to existing alerting tools
Compile detailed investigation and analysis reports for internal SecOps consumption and delivery to management
Assist in incident response activities such as host triage and retrieval, malware analysis, remote system analysis, end-user interviews, and remediation efforts
Develop advanced queries and alerts to detect adversary actions
May perform other relevant duties as requested

Qualification

Information SecurityIncident ResponsePacket AnalysisCyber Kill Chain ModelEDR/SOAR SolutionsMalware AnalysisCommunicationDetail-orientedCritical Thinking

Required

Bachelor's degree in computer science, Information Security, or a related field
3+ years of experience in Information Security
1+ years of experience with the incident response process, including detecting advanced adversaries, log analysis using SIEM, and malware triage
Excellent communication skills (both written and verbal)
Detail-oriented
Critical thinking

Preferred

Experience with packet analysis and usage of deep packet inspection toolsets
Knowledge and experience working with the Cyber Kill Chain Model, Diamond Model or MITRE ATT&CK Matrix
Familiarity with EDR/SOAR/Anomaly detection solutions
Prior experience working with in the following areas: Computer Incident Response Team (CIRT), Computer Security Incident Response Center (CSIRC), Security Operations Center (SOC)
Experience with APT/crimeware ecosystems
Industry certification such as the following: SANS (GCIH, GPEN, GWAT, GXPN, GCFA, GCFE, GREM), Offensive Security (OSCP, OSWE, OSCE, OSEE)

Company

TP is a global digital business services company.

Funding

Current Stage
Public Company
Total Funding
$2.03B
2025-01-15Post Ipo Debt· $514.85M
2023-11-16Post Ipo Debt· $1.52B
2007-01-18IPO

Leadership Team

leader-logo
Daniel Julien
Chairman and CEO
linkedin
leader-logo
Miranda Collard
Chief Executive Officer- Americas | ExCom | Founder & Chair of TP Women | Board Member |
linkedin
Company data provided by crunchbase