Quick Overview
Seniority
Mid Senior
Work mode
Hybrid
Location
Plano, TX, United States
Posted
3 weeks ago
SplunkPython
Job Description
Job Description
A major financial institution in Plano, Texas is looking for a Threat Hunter to investigate emerging cyber risks and respond to suspicious activity identified across enterprise systems. This position will leverage SIEM data, endpoint security tooling, centralized logs, and automated security intelligence to uncover threats that may not be identified through traditional alerting alone.
You'll be responsible for taking security findings from initial detection through investigation and response. This includes analyzing unusual activity, validating potential vulnerabilities, identifying malicious patterns, and coordinating corrective action with cybersecurity and engineering teams.
Required Skills & Experience
Applicants must be currently authorized to work in the United States on a full-time basis now and in the future.
A major financial institution in Plano, Texas is looking for a Threat Hunter to investigate emerging cyber risks and respond to suspicious activity identified across enterprise systems. This position will leverage SIEM data, endpoint security tooling, centralized logs, and automated security intelligence to uncover threats that may not be identified through traditional alerting alone.
You'll be responsible for taking security findings from initial detection through investigation and response. This includes analyzing unusual activity, validating potential vulnerabilities, identifying malicious patterns, and coordinating corrective action with cybersecurity and engineering teams.
Required Skills & Experience
- Strong background working within SOC or cyber defense environments
- Hands-on knowledge of Splunk and comparable SIEM technologies
- Experience analyzing centralized and aggregated log data
- Strong EDR experience
- Ability to investigate security alerts and determine root cause
- Understanding of cyber threats, attack techniques, and anomalous behavior
- Experience handling security findings through investigation and resolution
- Strong written documentation and communication skills
- Prior threat-hunting experience
- Knowledge of vulnerability analysis
- Familiarity with web security testing findings
- Understanding of certificate and authentication misuse
- Exposure to MITRE ATT&CK techniques
- Experience with security automation or AI-enabled cybersecurity tools
- Python scripting knowledge
- Experience analyzing high-volume security datasets
- Understanding of cloud and application security
- Search enterprise security data for indicators of malicious activity
- Review Splunk events and other SIEM information for suspicious patterns
- Analyze EDR telemetry to investigate endpoint activity
- Review security issues discovered through automated AI scanning processes
- Determine the validity, impact, and severity of identified threats
- Investigate vulnerabilities and web security findings
- Identify potentially unauthorized certificate or credential activity
- Correlate security information across endpoints, applications, and infrastructure
- Escalate confirmed incidents to response teams when appropriate
- Coordinate remediation with DevSecOps, engineering, and cybersecurity groups
- Maintain clear investigation records and supporting evidence
- 12+ month contract
- Competitive hourly compensation
- Medical Insurance
- Dental Benefits
- Vision Benefits
- Paid Time Off (PTO)
- 401(k)
Applicants must be currently authorized to work in the United States on a full-time basis now and in the future.
Similar jobs
- LM
Cyber Software Engineer Staff (Embedded) with Security Clearance
Lockheed Martin
Orlando, FL🇺🇸On-site6 weeks agoShellEmbedded SystemsC+++3Technology - SA
Information Systems Security Engineer (ISSE) Edge
NewSAIC
Springfield, VA🇺🇸$120.0k - $160k/yrRemote10 hours agoSQLSQL ServerEncryption+3Technology - WY
Target Digital Network Analyst 2 (Pipeline) with Security Clearance
NewWyetech
Annapolis Junction, MD🇺🇸$48 - $74/hrHybridYesterdayTechnology - BO
Network Security Engineer with Security Clearance
NewBoeing
Colorado Springs, CO🇺🇸$102k - $138k/yrOn-site10 hours agoTCP/IPAnsibleMicrosoft PowerPoint+3Technology - SA
Cyber Network Defense (CND) Analyst
NewSAIC
Springfield, VA🇺🇸$120.0k - $160k/yrRemote10 hours agoOracleSQLSQL Server+2Technology - SA
Information Systems Security Engineer (ISSE) Architect
NewSAIC
Springfield, VA🇺🇸$80.0k - $120k/yrRemote10 hours agoSQLSQL ServerEncryption+3Technology