Threat Hunting / Cyber Threat Hunting Analyst L2

Capgemini

España

On-site

PHP 3,013,864 - 3,918,023

Full time

14 days+
Application generator

Don’t send a generic resume — generate a resume and cover letter tailored to this exact role.

Get past ATS filters

Job summary

Capgemini is looking for a Threat Hunting Analyst in Romblon, Philippines. This role involves proactively hunting for hidden malicious activities within organizations' environments, leveraging advanced technologies and methodologies.

The ideal candidate will have 18 months of experience in cybersecurity operations and a strong understanding of the MITRE ATT&CK framework. Join Capgemini to be part of a community that emphasizes innovation and inclusivity.

Qualifications

  • Over 18 months of experience in cybersecurity operations.
  • Experience in proactively identifying malicious activities.
  • Knowledge of the MITRE ATT&CK framework.

Responsibilities

  • Proactively conduct threat hunts to identify malicious activity.
  • Develop hypothesis-driven hunts using adversary tactics.
  • Investigate suspicious activities involving credential misuse.

Skills

Cybersecurity operations
Threat hunting
Malicious behavior analysis
MITRE ATT&CK framework

Job description

# Threat Hunting / Cyber Threat Hunting Analyst L2LangreoApply for this job* Permanente* Profesionales con experiencia* Cybersecurity* ID 435112-es\\_ES## Job DescriptionChoosing Capgemini means choosing a company where you will be empowered to shape your career in the way you’d like, where you’ll be supported and inspired by a **collaborative community**of colleagues around the world, and where you’ll be able to reimagine what’s possible.Join us and help the world’s leading organizations unlock the value of technology and build a **more sustainable**, more **inclusive** world.## Job Description - Grade SpecificA dedicated and detail-oriented **Threat Hunting Analyst** with over 18 months of experience in cybersecurity operations, specializing in proactively looking for signs of attackers inside an organization’s environment—before alerts, incidents, or damage occur. Unlike traditional security roles that react to alarms, threat hunters assume compromise and actively search for hidden or stealthy threats.A **Threat Hunting Analyst** must focus on searching for malicious behaviour that automated tools may miss, using human intuition, context, and hypotheses rather than waiting for alerts, in order to find advanced, persistent, and stealthy attackers.Key responsibilities:* Proactively conduct threat hunts to identify malicious activity that bypassed automated detections, reducing attacker dwell time.* Develop hypothesis-driven hunts based on adversary tactics, techniques, and procedures (TTPs) using the MITRE ATT&CK framework.* Analyse endpoint, network, authentication, and log telemetry to detect indicators of compromise (IOCs) and anomalous behaviour.* Investigate suspicious activity involving credential misuse, lateral movement, persistence mechanisms, and living-off-the-land techniques.* Correlate data across SIEM, EDR/XDR, and network security tools to validate potential threats and scope impact.* Leverage threat intelligence reports and internal telemetry to identify emerging attacker behaviours relevant to the environment.* Escalate confirmed malicious activity to incident response teams with detailed findings, timelines, and supporting evidence.* Support incident investigations by providing root cause analysis and attacker activity reconstruction.* Identify detection and logging gaps and collaborate with detection engineering teams to improve alert coverage and visibility.* Tune existing security detections to reduce false positives and improve signal quality.* Document hunt methodologies, findings, and lessons learned to enable repeatable and scalable threat hunting processes.* Collaborate with SOC analysts, incident responders, and infrastructure teams to improve overall security posture.Capgemini is a global leader in partnering with companies to transform and manage their business by harnessing the power of technology. The Group is guided everyday by its purpose of unleashing human energy through technology for an inclusive and sustainable future. It is a responsible and diverse organization of over 360,000 team members in more than 50 countries. With its strong 55-year heritage and deep industry expertise, Capgemini is trusted by its clients to address the entire breadth of their business needs, from strategy and design to operations, fuelled by the fast evolving and innovative world of cloud, data, AI, connectivity, software, digital engineering and platforms. The Group reported in 2022 global revenues of €22 billion.
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Threat Hunter (Ciberseguridad)
Threat Hunter (Ciberseguridad)

ALTEN Spain • España

On-site
PHP 3,268,000 - 4,720,000
Beneficios sociales y plan de compensa
Threat Hunting Analyst L2 - Proactive Cyber Defense
Threat Hunting Analyst L2 - Proactive Cyber Defense

Capgemini • España

On-site
PHP 3,013,000 - 3,919,000
Cyber Threat Intelligence Analyst (Threat Research & Classification)
Cyber Threat Intelligence Analyst (Threat Research & Classification)

Allot Communications • España

Hybrid
PHP 3,997,000 - 6,177,000
SOC L2 Analyst – Google SecOps & Threat Hunting
SOC L2 Analyst – Google SecOps & Threat Hunting

Accenture in the Philippines • Quezon City

Hybrid
PHP 900,000 - 1,200,000
Competitive salary package
Performance bonus
Day 1 HMO and Life Insurance
Senior SOC Analyst
Senior SOC Analyst

Ciena Corporation • Philippines

Remote
PHP 1,200,000 - 1,600,000
GDS Consulting_Cyber Detection And Response Senior
GDS Consulting_Cyber Detection And Response Senior

EY • Taguig

On-site
PHP 1,200,000 - 2,400,000
Cyber Threat Intelligence Analyst – Spain based.
Cyber Threat Intelligence Analyst – Spain based.

Group-IB • España

Remote
PHP 3,541,000 - 5,904,000
Flexible schedule
Professional development opportunities
Training courses funded by the company
+1
Threat Hunter Remoto — Ciberseguridad y Detección Avanzada
Threat Hunter Remoto — Ciberseguridad y Detección Avanzada

ALTEN Spain • España

On-site
PHP 3,268,000 - 4,720,000
Beneficios sociales y plan de compensa
Infrastructure Security Engineer
Infrastructure Security Engineer

Capgemini • España

On-site
PHP 700,000 - 900,000
Wellbeing HUB
Flexible Compensation Plan
Continuous Learning programs
+3
Implementation Engineer - Fraud Protection
Implementation Engineer - Fraud Protection

Group-IB • España

On-site
PHP 5,643,000 - 8,150,000