Senior Capabilities Hunter

Hidden Jobs

United States

Remote

USD 137,000 - 167,000

Full time

8 days ago
Application generator

An application made for this job — a tailored resume and cover letter that speak straight to the posting.

Get past ATS filters

Benefits offered by this job

Equity package
Remote-first
Comprehensive benefits

Job summary

Hidden Jobs in the United States is seeking a Senior Threat Hunter to lead adversary capability analysis focusing on industrial control systems and OT networks. You will hunt for and analyze threat tools, techniques, and tradecraft to inform detection strategies and customer advisories.

You will develop tools, scripts, and workflows, collaborate with threat hunt, research, intelligence, product, and engineering teams, and present findings through webinars, partnerships, and reviews.

Qualifications

  • 2-3 years of experience in capabilities development, threat hunting, network-based intrusion analysis, vulnerability analysis, and/or detections development.
  • Familiarity with the Diamond Model, the full Kill Chain, and MITRE ATT&CK as analytic frameworks.
  • Demonstrated knowledge of adversary threat groups, including their tactics, techniques, procedures, and lifecycle.
  • Strong report-writing skills for internal technical teams and external customer-facing audiences.
  • Understanding of network analysis and common malware functionality and operations.

Responsibilities

  • Develop and maintain tools, scripts, and documentation for capability identification and analysis, collaborating with threat hunt, research, intelligence, product, and engineering teams.
  • Hunt for and analyze adversary capabilities across assigned threat groups, contributing to threat assessments, intelligence reporting, and customer-facing advisories.
  • Apply analytical tooling such as NetFlow, Censys, VirusTotal, Joe Sandbox, and Shodan alongside query languages like Synapse and Storm to support tracking and investigation.
  • Identify automation opportunities in analysis workflows and recommend solutions for telemetry or data-visibility gaps.
  • Uphold engineering quality through robust code, testing frameworks, and independent debugging on complex defects.
  • Represent the team externally through webinars, industry partnerships, and annual review initiatives.
  • Provide hunting and triage support during surge events and incident response engagements.

Skills

C#
Python
Threat hunting
Report writing
Network analysis
Cross-functional collaboration

Tools

NetFlow
Censys
VirusTotal
Joe Sandbox
Shodan
Synapse
Storm

Job description

Role overview

This role focuses on adversary capability analysis targeting industrial control systems and operational technology networks. As a senior member of a threat hunt and research function, the position hunts for and analyzes the tools, techniques, and methodologies used by threat actors against critical infrastructure, building the analysis capability and tradecraft that inform detection strategies and customer advisories.

Responsibilities
  • - Develop and maintain tools, scripts, and documentation for capability identification and analysis, working with threat hunt, research, intelligence, product, and engineering teams
  • - Hunt for and analyze adversary capabilities across assigned threat groups, contributing to threat assessments, intelligence reporting, and customer-facing advisories
  • - Apply analytical tooling such as NetFlow, Censys, VirusTotal, Joe Sandbox, and Shodan alongside query languages like Synapse and Storm to support tracking and investigation
  • - Identify automation opportunities in analysis workflows and recommend solutions for telemetry or data-visibility gaps
  • - Uphold engineering quality through robust code, testing frameworks, and independent debugging on complex defects
  • - Represent the team externally through webinars, industry partnerships, and annual review initiatives
  • - Provide hunting and triage support during surge events and incident response engagements
Requirements
  • - 2-3 years of experience in capabilities development, threat hunting, network-based intrusion analysis, vulnerability analysis, and/or detections development
  • - Software development experience in C#, Python, or similar languages
  • - Familiarity with the Diamond Model, the full Kill Chain, and MITRE ATT&CK as analytic frameworks
  • - Demonstrated knowledge of adversary threat groups, including their tactics, techniques, procedures, and lifecycle
  • - Strong report-writing skills for both internal technical teams and external customer-facing audiences
  • - Understanding of network analysis and common malware functionality and operations
  • - Experience contributing to cross-functional projects with internal and external collaborators
Benefits and work setup
  • - Base salary of $152,000, plus a competitive equity package and comprehensive benefits plan
  • - Remote-first working model
Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Senior Threat Hunter - Capabilities Lead (Remote)
Senior Threat Hunter - Capabilities Lead (Remote)

Hidden Jobs • United States

Remote
USD 137,000 - 167,000
Equity package
Remote-first
Comprehensive benefits
Cybersecurity Threat Hunter
Cybersecurity Threat Hunter

electro soft • Columbus (OH)

On-site
USD 150,000 - 160,000
Senior Threat Hunter
Senior Threat Hunter

SentinelOne • United States

On-site
USD 140,000 - 210,000
Medical cover
Assistance program
Gym reimbursement
+7
Senior Cybersecurity Threat Hunter III
Senior Cybersecurity Threat Hunter III

Invictus International Consulting, LLC • Alexandria (VA)

On-site
USD 149,000 - 203,000
Senior Cybersecurity Threat Hunter III
Senior Cybersecurity Threat Hunter III

invictusic • Alexandria (VA)

On-site
USD 120,000 - 160,000
Senior Cybersecurity Threat Hunter III
Senior Cybersecurity Threat Hunter III

Invictus International • Colorado Springs (CO)

On-site
USD 130,000 - 190,000
Cyber Hunt Senior Analyst
Cyber Hunt Senior Analyst

ecsfederal • Virginia (MN)

Hybrid
USD 165,000 - 185,000
Senior Cybersecurity Threat Hunter III
Senior Cybersecurity Threat Hunter III

Invictus International Consulting, LLC • Colorado Springs (CO)

On-site
USD 158,000 - 193,000
Senior Incident Responder / Threat Hunter
Senior Incident Responder / Threat Hunter

ShorePoint, LLC • Albuquerque (NM)

On-site
USD 140,000 - 170,000
144 hours PTO
11 holidays
Health insurance
+2
CYBERSECURITY THREAT HUNTER
CYBERSECURITY THREAT HUNTER

iP-Plus Consulting, Inc. • Columbus (OH)

On-site
USD 110,000 - 150,000