Why Mizuho
At Mizuho, we provide the stability of an international industry leader with the career trajectory of a growing business. Our steady, strategic growth gives our people at all levels rewarding degrees of responsibility and richer work experience than a boutique firm or an established giant could offer alone.
It’s the local expertise of our employees that makes our global network so powerful. By collaborating with colleagues and clients who share the same ambition and drive, you can amplify your sphere of influence and base of knowledge as part of one of the largest banks in the world.
Summary:
Mizuho Global Services (MGS) is seeking a senior, hands-on Threat Hunting Lead to build and mature proactive threat hunting capabilities supporting Mizuho's global cybersecurity operations. This role is responsible for identifying previously undetected adversary activity, improving threat visibility, and strengthening cyber resilience through intelligence-led and hypothesis-driven hunting programs.
As a key member of the Cyber Fusion Center, you will partner with Threat Intelligence, DFIR, Detection Engineering, Security Operations, Vulnerability Management, and Security Engineering teams to improve detection effectiveness and reduce cyber risk.
Key Responsibilities:
- Lead the enterprise threat hunting program, including strategy, methodologies, governance, metrics, and capability roadmaps aligned to cyber defense objectives.
- Conduct intelligence-led and hypothesis-driven threat hunts across endpoint, identity, cloud, network, application, and email environments to identify advanced threats and malicious activity.
- Investigate adversary behavior, attack techniques, and emerging threats by leveraging threat intelligence, behavioral analytics, and environmental context.
- Support incident response and DFIR investigations through attack-path analysis, threat validation, incident scoping, and remediation recommendations.
- Translate hunt findings into production-ready detections,
ATT&CK-aligned; analytics, investigation procedures, and automated response workflows.
- Identify visibility, telemetry, and control gaps affecting threat detection effectiveness, and partner with technology teams to improve coverage.
- Provide technical leadership, mentoring, executive reporting, and strategic recommendations to strengthen the organization's cyber defense maturity.
Required Qualifications:
- 12-15 years of experience in Threat Hunting, Security Operations, DFIR, Incident Response, Detection Engineering, Threat Intelligence, or related cyber defense disciplines.
- Proven experience building, leading, or maturing enterprise threat hunting capabilities within large-scale environments.
- Deep expertise in intelligence-led threat hunting, intrusion analysis, adversary tradecraft, MITRE ATT&CK;, threat intelligence, and hunt-to-detection methodologies.
- Strong experience investigating endpoint, cloud, network, identity, application, and email security events and conducting post-compromise analysis.
- Solid knowledge of threat actor TTPs, attack-path analysis, cyber defense operations, and detection engineering principles.
- Strong leadership, communication, stakeholder management, mentoring, analytical, and decision-making skills.
- Bachelor's degree in Cybersecurity, Computer Science, Information Technology, Engineering, or equivalent experience.
- Security Technologies: Splunk Enterprise Security, Microsoft Sentinel, Palo Alto Cortex XSOAR, CrowdStrike Falcon, Palo Alto Cortex XDR, Microsoft Defender XDR, MITRE ATT&CK;, threat intelligence platforms, cloud security technologies, Active Directory,
Microsoft Entra ID, Windows, Linux, Python, PowerShell, KQL, REST APIs, security automation, behavioral analytics, SIEM, SOAR, and EDR/XDR technologies.
Preferred Qualifications:
- Certifications such as GCTI, GCFA, GNFA, GCIA, GCIH, CISSP, SC-200, Splunk Enterprise Security Certified Admin, or equivalent.
- Experience supporting financial services or other highly regulated industries.
- Experience in digital forensics, malware analysis, adversary emulation, threat hunting, detection validation, cloud-native investigations, and SIEM/SOAR/EDR integration programs.
- Familiarity with NIST, MITRE ATT&CK;, CIS Controls, FFIEC, and cybersecurity regulatory frameworks.
Company Overview:
Mizuho Pune is an integral part of Mizuho Financial Group, one of the world’s leading financial institutions with a strong global presence across the Americas, EMEA, and Asia. Based in India, Mizuho Pune supports Mizuho’s international businesses by delivering high-quality, scalable, and resilient services across multiple functions.
Mizuho Pune plays a critical role in driving operational excellence, standardization, and innovation for Mizuho Americas. By combining deep domain expertise with strong process, technology, and analytical capabilities, it partners closely with regional and global teams to support corporate and investment banking, capital markets, and corporate services functions, while adhering to the highest standards of risk management, regulatory compliance, and control.
Mizuho Pune offers competitive compensation and benefits package aligned with industry standards and local market practices.
Mizuho Pune is an equal opportunity employer and is committed to fostering an inclusive and diverse workplace.
Employment is subject to applicable background verification checks in accordance with Indian laws and company policies.
https://www.mizuhogroup.com/asia-pacific/mizuho-global-services/careers
📌 Cyber Fusion Center Threat Hunting Lead (Pune)
🏢 Mizuho
📍 Pune