Senior Threat Hunter

UST

Bengaluru

On-site

INR 1,800,000 - 2,800,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

CyberProof, part of the UST Global family, is seeking a Senior Threat Hunter to design and operate advanced Jupyter-based hunting environments. You will develop reusable Python modules, automate large-scale investigations, and integrate threat-hunting workflows with cloud and on-prem telemetry sources.

You will collaborate with Threat Intelligence and Detection Engineering teams to improve detection gaps, while producing weekly and monthly hunting reports.

Qualifications

  • Bachelor's degree in Cybersecurity, IT, CS or related field (or equivalent experience).
  • 5+ years as Cyber Threat Hunter/Detection Eng./IR with forensics and investigation of network, endpoint, and cloud logs.
  • Deep knowledge of TTPs, MITRE ATT&CK, and advanced threat actors.
  • Experience with security apps such as data lake, SIEM and EDR platforms.
  • Linux/Unix and Windows OS fundamentals; network traffic and log data analysis.

Responsibilities

  • Research threat trends, APT campaigns, and MITRE ATT&CK mappings to develop hunt packages.
  • Hunt across network, endpoint, and cloud data from multiple sources for indicators of breaches.
  • Develop Jupyter notebook frameworks for hunt execution, data enrichment and validation.
  • Create Python modules/APIs to extend Jupyter for hunting automation at scale.
  • Build data pipelines and automate hunting workflows with telemetry and threat intel sources.

Skills

Threat Intelligence
Threat Hunting
AWS
CI/CD

Education

Bachelor's degree in Cybersecurity/IT/CS

Tools

SIEM tools
EDR platforms
Data lake

Job description

Role Description Senior Threat Hunter CyberProof is a cyber security services and platform company whose mission is to help our customers react faster and smarter - and stay ahead of security threats, by creating secure digital ecosystems. CyberProof automates processes to detect and prioritize threats early and respond rapidly and decisively. CyberProof is part of the UST Global family. Some of the world s largest enterprises trust us to create and maintain secure digital ecosystems using our comprehensive cyber security platform and mitigation services. CyberProof is looking for a talented Senior Threat Hunter with strong expertise in development (Jupyter Notebook, Python) who will be part of our growing managed services group, which monitors, investigates, and resolves security incidents, violations, and suspicious activities. This role is ideal for someone who approaches threat hunting not only as an investigation, but also should be able to develop customized tools, data enrichment and automated frameworks. The candidate will be responsible for developing, optimizing, and maintaining custom Jupyter based hunting environments that enable scalable, repeatable, and automated investigations across large telemetry datasets.

Responsibilities
  • Continuously research latest threat trends, APT campaigns, and emerging TTPs to develop hypothesis-driven hunt packages mapped to MITRE ATT&CK.
  • Proactively drive hunting and analysis against the available dataset from various sources including, network, endpoint, and cloud environments to look for indicators of security breaches.
  • Develop advanced Jupyter Notebook frameworks that supports hunt execution, data enrichment and validation.
  • Develop reusable Python modules and APIs that extend Jupyter s capabilities for hunting automation in large scale, enrichment and result processing.
  • Build and maintain data pipelines and automation logic to integrate threat hunting workflows with multiple telemetry and threat intel sources.
  • Automate and schedule hunting notebooks through Azure ML pipelines, jobs, or equivalent orchestration frameworks, ensuring regular execution of hunting tasks.
  • Implement data validation, normalization, and correlation layers to ensure hunting accuracy.
  • Create structured reporting and visualization components using python libraries like pandas, jinja2.
  • Collaborate closely with the Use Case Management, Threat Intelligence and Detection Engineering teams to identify detection gaps observed during hunts.
  • Generate weekly, monthly, and ad-hoc threat hunting reports summarizing hypotheses, observations, and notable findings.
Requirements
  • Bachelor s degree in Cybersecurity, Information Technology, Computer Science, or a related field (or equivalent experience).
  • Proven experience of 5+ years as Cyber Threat Hunter, Detection Engineering, or Incident Response, including high skills in forensics and investigation of network, endpoint and cloud logs.
  • Deep and proven knowledge and understanding of TTPs, attack frameworks (e.g., MITRE ATT&CK), and advanced threat actors.
  • Experience with security applications such as datalake, SIEM tools and EDR platforms.
  • Deep and proven knowledge of operating systems essentials including Linux/Unix and Windows.
  • Experience analyzing network traffic, packet captures, and log data.
  • Proven skills on Hunting on Cloud assets - AWS, GCP, Azure.
  • Proven ability to design, develop and maintain threat hunting notebooks along with analyzing and identifying anomalies from the hunt outcome.
  • Strong understanding of Python libraries commonly used in data science, such as Pandas, and MsticPY.
  • Advantageous to have in-depth knowledge of Jupyter Notebooks and experience in utilizing them for data analysis, visualization and prototyping.
  • Understanding modern software development lifecycles and CI/CD pipeline technologies to effectively hunt for threats and analyze security risks within automated environments.
  • Experience building tooling or automation layers around detection content validation, rule deployment, or telemetry analysis pipelines.
  • Critical thinking, problem-solving skills and innovative way of thinking.
  • Excellent communication skills to explain technical findings to both technical and non-technical audiences.
  • Excellent organization, time management, and attention to detail.
  • Prior experience integrating Jupyter workflows with Cybereason, Sentinel, Defender, Crowdstrike,or other telemetry sources is a plus.
  • Relevant certification (e.g., GIAC GCIH, GCFA, GREM, OSCP, CEH) is an advantage.
Skills
  • Threat Intelligence
  • Threat Hunting
  • AWS
  • CI/CD
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Cyber Threat Hunter Professional
Cyber Threat Hunter Professional

Conduent • Navi Mumbai

On-site
INR 1,000,000 - 1,500,000
Threat Hunting Specialist
Threat Hunting Specialist

Terralogic • Bengaluru

On-site
INR 1,200,000 - 1,800,000
Advanced Threat Hunting
Advanced Threat Hunting

PwC India • Mumbai

Hybrid
INR 1,200,000 - 2,400,000
Senior Security Engineer
Senior Security Engineer

Providence India • Hyderabad

On-site
INR 1,500,000 - 2,400,000
Threat Hunter
Threat Hunter

JUARA IT SOLUTIONS • Chennai District

On-site
INR 900,000 - 1,300,000
Threat Hunting Analyst
Threat Hunting Analyst

Network Intelligence India • Bengaluru

On-site
INR 800,000 - 1,500,000
Senior Cyber Threat Hunter [T500-28455]
Senior Cyber Threat Hunter [T500-28455]

ADM • Bengaluru

On-site
INR 4,000,000 - 7,000,000
Senior Associate - Threat Hunting
Senior Associate - Threat Hunting

NPCI International • Hyderabad

On-site
INR 1,200,000 - 1,800,000
Comprehensive medical, accidental, and life insurance
On-site medical center and mental wellness support
Inclusive parental leave
+3
Threat Hunting Sr. Analyst
Threat Hunting Sr. Analyst

METRO Global Solution Center IN • Maharashtra

On-site
INR 1,200,000 - 1,800,000
Lead Threat Intelligence Analyst
Lead Threat Intelligence Analyst

Providence India • Hyderabad

On-site
INR 3,000,000 - 6,000,000