Threat Hunter – Hypothesis-Driven Cyber Defense Expert

NCC Group

Manchester

Hybrid

GBP 70,000 - 95,000

Full time

5 days ago
Be an early applicant
Application generator

Don’t send a generic resume — generate a resume and cover letter tailored to this exact role.

Get past ATS filters

Benefits offered by this job

Flexible Working
Generous Holiday Allowance
Medicash & Critical Illness Scheme
Pension & Life Assurance
Share Save Scheme
Community & Volunteering Programmes
Green Car Scheme
Cycle Scheme
Special Time Off
Family Planning

Job summary

NCC Group in Manchester is seeking a hands-on Threat Hunter to join the Cyber Services and Capabilities team. You will proactively hunt, analyse advanced threats across customer environments using our proprietary framework, and ensure threat models align to client needs.

The role involves hypothesis-driven analysis, collaboration with SOC, detection engineers, and engineering teams to improve visibility and detections in hybrid and cloud environments.

Qualifications

  • Experience in threat hunting and incident response.
  • Strong knowledge of the MITRE ATT&CK framework.
  • Experience with SIEM/EDR tooling and detection engineering.
  • Ability to present findings to stakeholders.
  • Autonomous worker in fast-moving environments.

Responsibilities

  • Hunt for threats using HITS framework and MITRE ATT&CK.
  • Automate hunts, visualise results, create reusable artifacts.
  • Collaborate with detection engineering to operationalise detections.
  • Utilise internal and external threat intel to surface detections.
  • Map threat models to monitoring use cases with teams.
  • Document methodologies and maintain hunting repository.
  • Provide regular reports and stakeholder presentations.

Skills

Hypothesis-driven hunting
MITRE ATT&CK
Threat hunting
Cross-functional collaboration
Python / KQL

Tools

GitLab
Sigma
Jupyter Notebooks
Splunk
Microsoft Defender
SentinelOne
CrowdStrike

Job description

NCC Group in Manchester is seeking a hands-on Threat Hunter to join the Cyber Services and Capabilities team. You will proactively hunt, analyse advanced threats across customer environments using our proprietary framework, and ensure threat models align to client needs.

The role involves hypothesis-driven analysis, collaboration with SOC, detection engineers, and engineering teams to improve visibility and detections in hybrid and cloud environments.

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Hypothesis-Driven Threat Hunter
Hypothesis-Driven Threat Hunter

nccgroup • Manchester

On-site
GBP 60,000 - 90,000
Hypothesis-Driven Threat Hunter — MITRE & Automation
Hypothesis-Driven Threat Hunter — MITRE & Automation

NCC Group • Manchester

On-site
GBP 70,000 - 110,000
Flexible Working
Holiday allowance
Pension
+7
Threat Hunter
Threat Hunter

nccgroup • Manchester

On-site
GBP 60,000 - 90,000
Threat Hunter
Threat Hunter

NCC Group • Manchester

On-site
GBP 70,000 - 110,000
Flexible Working
Holiday allowance
Pension
+7
Cyber Threat Hunter & Incident Response Specialist
Cyber Threat Hunter & Incident Response Specialist

Cyber UK • Stevenage

Remote
GBP 83,000 - 120,000
Cyber Threat Operations Lead – Threat Hunting & Detection
Cyber Threat Operations Lead – Threat Hunting & Detection

Morson Human Resources Limited • England

On-site
GBP 60,000 - 90,000
Cyber Threat Operations Lead: Threat Hunting & Detection
Cyber Threat Operations Lead: Threat Hunting & Detection

Morson Edge • Stevenage

On-site
GBP 65,000 - 90,000
Senior Cyber Threat Hunter - Hybrid, National Impact
Senior Cyber Threat Hunter - Hybrid, National Impact

Women in Data® • Wigan

Hybrid
GBP 58,500 - 71,500
28 days annual leave plus bank holidays
Flexible working hours
Employee Assistance Program (EAP)
Senior Cyber Threat Detection & Response Lead (Hybrid UK)
Senior Cyber Threat Detection & Response Lead (Hybrid UK)

weServed • Portsmouth

Hybrid
GBP 70,000 - 100,000
Generous holiday allowance
Pension with life assurance
Digital GP and health checks
Senior Cyber Threat Intelligence Analyst Threat Hunting Lead
Senior Cyber Threat Intelligence Analyst Threat Hunting Lead

Cyber UK • City of Edinburgh

On-site
GBP 55,000 - 75,000
40 days annual leave
16% employer pension contribution
Private healthcare
+1