Senior Incident Response & Threat Hunt Lead (Remote)

Huntress

United States

Remote

USD 125,000 - 135,000

Full time

9 days ago
Application generator

Turn this role into an interview — a resume and cover letter built around what this employer wants.

Get past ATS filters

Benefits offered by this job

Remote work environment
Paid time off
Parental leave
Medical, dental, vision benefits
401(k) with company contribution
Stock options
Home-office stipend

Job summary

Huntress is seeking an experienced Threat Hunter/Incident Response specialist to lead and support complex investigations across endpoints, identity, cloud, and network telemetry. You will build clear, evidence-based timelines, provide remediation guidance, and ensure effective communication with technical teams and executives.

You will leverage tools like OSQuery, Velociraptor, YARA, Sigma, and SIEM telemetry to uncover attacker activity, craft reusable playbooks, and mentor junior responders.

Qualifications

  • 3–5+ years of experience in SOC, MDR, threat hunting, digital forensics, or incident response.
  • Experience leading or participating in external-customer incident response engagements.
  • Demonstrated ability to investigate complex intrusions with limited oversight.
  • Strong understanding of initial access, persistence, lateral movement, and ransomware activity.
  • Experience with Microsoft 365, Azure, identity, VPN, firewall, SIEM, or cloud telemetry.
  • Familiarity with OSINT and attacker infrastructure research.
  • Proficiency in KQL, EQL, ES|QL, Splunk SPL, Sigma, YARA, Suricata, or Snort.

Responsibilities

  • Lead or support cases involving confirmed active adversaries and complex intrusions.
  • Investigate across endpoint, identity, cloud, SIEM, VPN, firewall, and telemetry sources.
  • Build evidence-based timelines and narratives of incidents and remediation steps.
  • Develop and improve scripts, automations, dashboards, and playbooks.
  • Mentor responders and represent Tactical Response in cross-functional discussions.
  • Communicate findings clearly to technical teams and executives.

Skills

Incident response
Threat hunting
SOC
Communications
External-customer engagements
Automation scripting
OSINT
Forensics
Cloud telemetry
Windows/Linux/macOS
Digital forensics
SQL/Logs analysis

Tools

osquery
Velociraptor
EDR platforms
RegRipper
Hayabusa
Chainsaw
Sigma
YARA
Suricata
Snort
KQL
EQL
SPL
Python
PowerShell
Bash

Job description

Huntress is seeking an experienced Threat Hunter/Incident Response specialist to lead and support complex investigations across endpoints, identity, cloud, and network telemetry. You will build clear, evidence-based timelines, provide remediation guidance, and ensure effective communication with technical teams and executives.

You will leverage tools like OSQuery, Velociraptor, YARA, Sigma, and SIEM telemetry to uncover attacker activity, craft reusable playbooks, and mentor junior responders.

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Remote Senior Threat Response Lead
Remote Senior Threat Response Lead

Huntress • Northern (KY)

Hybrid
USD 125,000 - 135,000
Remote work
Paid time off
Parental leave
+2
Senior CSIRT Lead — Remote Incident Response & Strategy
Senior CSIRT Lead — Remote Incident Response & Strategy

Hidden Jobs • United States

Remote
USD 180,000 - 240,000
Remote US-wide
Generous paid time off
Medical, dental & vision benefits
+4
Remote SOC Analyst: Threat Hunting & Incident Response
Remote SOC Analyst: Threat Hunting & Incident Response

Huntress • United States

On-site
USD 100,000 - 125,000
Remote work
Paid time off
Parental leave 12 weeks
+8
Remote Senior Detection & Threat Hunting Engineer
Remote Senior Detection & Threat Hunting Engineer

Huntress • United States

Remote
USD 150,000 - 170,000
Remote work
Paid time off
Parental leave
+7
Remote Security Operations Analyst - Threat Hunting & IR
Remote Security Operations Analyst - Threat Hunting & IR

Huntress • Northern (KY)

Hybrid
USD 100,000 - 125,000
Remote work
Paid time off
12 weeks parental leave
+6
Senior Detection Engineer & Threat Hunter (Remote)
Senior Detection Engineer & Threat Hunter (Remote)

Linuxconfig • Northern (KY)

Hybrid
USD 150,000 - 170,000
100% remote work
Paid time off
Parental leave
+6
Senior Manager, Threat Detection & Hunting (Remote)
Senior Manager, Threat Detection & Hunting (Remote)

Huntress • Northern (KY)

Hybrid
USD 220,000 - 240,000
Bonus
Equity
Senior Threat Hunter & Incident Response Lead
Senior Threat Hunter & Incident Response Lead

ShorePoint, LLC • Albuquerque (NM)

On-site
USD 140,000 - 170,000
144 hours PTO
11 holidays
Health insurance
+2
Lead, Detection Engineering & Threat Hunting — Remote
Lead, Detection Engineering & Threat Hunting — Remote

Huntress • United States

Remote
USD 220,000 - 240,000
Remote work
Generous PTO
Parental leave
+2
Senior Threat Hunter — Lead MITRE-Driven Hunt & SOC
Senior Threat Hunter — Lead MITRE-Driven Hunt & SOC

Peraton • Chandler (AZ)

On-site
USD 104,000 - 166,000