Haystack
← Back to Jobs
Other

Threat Hunter - Plano, Tx

Motion Recruitment Partners, LLCPlano, TX🇺🇸United StatesPosted 7 Aug 2026

Quick Overview

Work Type
Hybrid
Level
Mid Senior

Job Description

Job Description
A major financial institution in Plano, Texas is looking for a Threat Hunter to investigate emerging cyber risks and respond to suspicious activity identified across enterprise systems. This position will leverage SIEM data, endpoint security tooling, centralized logs, and automated security intelligence to uncover threats that may not be identified through traditional alerting alone.

You'll be responsible for taking security findings from initial detection through investigation and response. This includes analyzing unusual activity, validating potential vulnerabilities, identifying malicious patterns, and coordinating corrective action with cybersecurity and engineering teams.
Required Skills & Experience
  • Strong background working within SOC or cyber defense environments
  • Hands-on knowledge of Splunk and comparable SIEM technologies
  • Experience analyzing centralized and aggregated log data
  • Strong EDR experience
  • Ability to investigate security alerts and determine root cause
  • Understanding of cyber threats, attack techniques, and anomalous behavior
  • Experience handling security findings through investigation and resolution
  • Strong written documentation and communication skills
Desired Skills & Experience
  • Prior threat-hunting experience
  • Knowledge of vulnerability analysis
  • Familiarity with web security testing findings
  • Understanding of certificate and authentication misuse
  • Exposure to MITRE ATT&CK techniques
  • Experience with security automation or AI-enabled cybersecurity tools
  • Python scripting knowledge
  • Experience analyzing high-volume security datasets
  • Understanding of cloud and application security
What You Will Be Doing Daily Responsibilities
  • Search enterprise security data for indicators of malicious activity
  • Review Splunk events and other SIEM information for suspicious patterns
  • Analyze EDR telemetry to investigate endpoint activity
  • Review security issues discovered through automated AI scanning processes
  • Determine the validity, impact, and severity of identified threats
  • Investigate vulnerabilities and web security findings
  • Identify potentially unauthorized certificate or credential activity
  • Correlate security information across endpoints, applications, and infrastructure
  • Escalate confirmed incidents to response teams when appropriate
  • Coordinate remediation with DevSecOps, engineering, and cybersecurity groups
  • Maintain clear investigation records and supporting evidence
The Offer
  • 12+ month contract
  • Competitive hourly compensation
You Will Receive the Following Benefits
  • Medical Insurance
  • Dental Benefits
  • Vision Benefits
  • Paid Time Off (PTO)
  • 401(k)

Applicants must be currently authorized to work in the United States on a full-time basis now and in the future.

Skills

Splunk
Python

Similar jobs