02 Oct
|
NIAD Group
|
India
Cyber Threat Hunt Specialist
Role Summary:
We are looking for a proactive
Threat Hunt Specialist to join our security operations team. You will be responsible for hypothesis-driven threat hunting across endpoint, identity, email, and network telemetry to uncover sophisticated, undetected adversary activity before it causes harm.
Key Responsibilities
- Hypothesis-Driven Hunting:
Design, build, and execute proactive hunting campaigns mapped to the MITRE ATT&CK; framework across enterprise endpoints, cloud environments, identity systems, and email channels.
- Advanced Threat Investigation:
Detect and analyze advanced persistence mechanisms, living-off-the-land binaries (LOLBins), credential abuse, and cloud security bypasses.
- Detection Engineering:
Translate hunt findings into actionable, high-fidelity detection rules and optimize existing logic in Splunk, CrowdStrike, and Microsoft Defender.
- Data & Analytics:
Perform deep-dive queries using SPL,
KQL, or LogScale to analyze high-volume log sources and telemetry.
- Investigation & Reporting:
Conduct evidence-based investigations, drive false-positive reduction, and author audit-ready hunt summaries and technical incident reports.
Candidate Requirements
- Proven track record in proactive threat hunting, detection engineering, or advanced SOC tier-3 analysis.
- Hands-on proficiency with SIEM/EDR solutions (Splunk, CrowdStrike Falcon, Microsoft Defender, LogScale).
- Robust analytical and query-writing skills (SPL, KQL, or equivalent).
- Deep understanding of adversary TTPs, Windows/Linux internals, and cloud infrastructure telemetry.
- Preferred:
Splunk Content Developer / Analyst experience or CrowdStrike certifications.
📌 Cyber Threat Hunt Specialist (India)
🏢 NIAD Group
📍 India