Job Closed

This listing is no longer active.

Databricks logo
Databricks

Specializing in data and artificial intelligence, Databricks describes itself as the leader in unified data analytics helping companies equip their data for ana

Senior Staff Threat Hunter – Intelligence Engineer

Location

California

Posted

178 days ago

Salary

$209.6K - $293.4K / year

Seniority

Senior

Job Description

Senior Staff Threat Hunter – Intelligence Engineer

Databricks

• Define the strategic vision and roadmap for a structured, repeatable threat hunting program using hypothesis-driven methodologies aligned with industry frameworks. • Develop Databricks-based hunting capabilities and logic to analyse security telemetry at a massive scale across our multi-cloud environment. • Build reusable hunting notebooks and automated intelligence pipelines using Databricks workflows. • Serve as the technical authority for threat hunting across Security, influencing detection strategy and incident response capabilities. • Mentor and develop threat hunting capabilities across the security organization. • Operationalize threat intelligence from multiple sources into actionable hunting hypotheses. • Work with internal partners to develop and maintain Priority Intelligence Requirements (PIRs). • Build automated enrichment pipelines using Databricks to correlate intelligence with internal telemetry. • Produce intelligence assessments on threats relevant to our business. • Represent Databricks in external security communities and industry working groups on advanced threat topics. • Architect scalable hunting infrastructure using Databricks notebooks, Delta Lake, and Unity Catalog. • Develop libraries of reusable detection logic and hunting queries optimized for distributed computing. • Build automated workflows for threat intelligence ingestion, enrichment, and correlation. • Create dashboards and visualizations for threat exposure and hunt findings. • Integrate security tools with Databricks platform.

Job Requirements

  • 12+ years in cybersecurity with 6+ years focused on threat hunting, threat intelligence, or detection engineering.
  • Deep expertise with nation-state and e-crime threat actors’ TTPs, trends, and historical targets.
  • Experience working with large-scale security datasets and big data platforms.
  • Strong Python programming experience with a background in PySpark, distributed computing frameworks, or Databricks’ platform.
  • Deep understanding of cloud security across AWS, Azure, and GCP—including cloud-native logging, security controls, and container/Kubernetes security.
  • Strong knowledge of OS internals across macOS, Linux, and containerized environments.
  • Experience with enterprise-scale software development practices including infrastructure-as-code, code review, and large codebase management.
  • Demonstrated experience conducting hypothesis-driven threat hunts with measurable outcomes.
  • Experience defining and driving multi-year security program strategy.
  • Thought leadership around the application of cybersecurity frameworks, such as MITRE ATT&CK and D3FEND.
  • Applied CTI skills including consuming and operationalizing IOCs/TTPs, tracking campaigns, and conducting research.
  • Experience influencing technical decisions beyond your immediate team.
  • A track record of mentoring Staff+ engineers.

Benefits

  • Health insurance
  • 401(k) matching
  • Flexible work hours
  • Paid time off
  • Remote work options

Related Job Pages

More Threat Intelligence Specialist Jobs

OtherRemoteTeam 51-200H1B No Sponsor

We're looking for a Fare Strategy & Supply Lead — a builder, not a bureaucrat. Someone who combines deep fare expertise with the ability to build repeatable systems that scale margin, improve pricing competitiveness, and unlock massive leverage for the sales organization. Develop and execute fare strategy — including advanced fare construction (e.g. inbound–outbound combinations, ex-EU, throwaway, segment-by-segment) and private fare programs. Lead and grow a small team of fare strategists (3–5 experts), setting clear processes, standards, and operational rhythm. Build and manage a diversified supplier portfolio — consolidators, private fares, net fares, and negotiated deals. Partner with Product & Engineering to integrate fare intelligence directly into the platform — increasing quote speed, deal conversion, and gross profit per passenger. Own margin and risk management across fare categories, including ADM exposure, IRROPS handling, and refund scenarios. Continuously identify opportunities to improve GP uplift, sourcing resilience, and pricing competitiveness.

United States
Job Closed

Departmental Analyst 9-12 - Legislative Affairs

State of Michigan

Located in the American Midwest, the State of Michigan is home to more than 10 million residents. Part of the Great Lakes region, Michigan has over 11,000 inlan

This position functions as a legislative analyst in the Legislative Affairs Division. This position analyzes standard legislative requests pertinent to the department. Responsible for research, coordination, and drafting of legislative analysis for proposed or introduced legislation. This position also functions as the senior level analyst responsible for providing legislative and policy support to the MDHHS Legislative Affairs Division. Perform complex research and analysis assignments that are politically sensitive. Monitor relevant legislative activities. Write bill analyses. Conduct in-depth research on complex policy issues. Track and ensure timely submission of legislative reports. Attend legislative meetings and hearings on behalf of MDHHS.

United States
Job Closed
BAE Systems logo

Storage & COMMVAULT Engineer

BAE Systems

The London, England, United Kingdom-based BAE Systems is the world’s preeminent provider of defense, security, and aerospace solutions. The company’s produc

Knowledge of Linux kernel; Windows Server administration; Understanding of File and Folder Permissions in Windows; Experience in synchronization concepts as related specifically to data management; Knowledge of multi-site storage methods and synchronization; Knowledge of Cloud Object Storage. Internal Storage Admin: Monitor, troubleshoot, maintain Internal storage solution for the HUB and Districts Develop, configure, integrate and secure complex backup, recovery and storage products over wide area network (WAN) in a multi-enterprise, complex, geographically dispersed solution, ranging from single servers to multi-tier, multi-platform solutions utilizing the Commvault enterprise backup solutions. Troubleshoot complex backup and recovery problems to include networking, application, hardware, and appliance related backup issues. Provide analytics, usage, capacity planning and reporting within the Commvault management and monitoring solution. Implement regular security updates and patches to related backup application servers and appliances in accordance with Federal Information and Information Systems requirements. Work with operation teams to develop and support enterprise infrastructure processes, tools, and environments to ensure a timely response to backup, restore, and data replication requests. Possess a strong knowledge of Commvault data protection application. Knowledge of other technologies a plus (LAN, WAN, Microsoft Windows Servers, Linux, SQL database). Experience with DISA STIGs and applying to Commvault related systems. Performs security related tasks which include documentation, vulnerability scan review, assessment support, patch management, and auditing as required. Provide onsite troubleshooting support within local datacenters in the Richardson, TX area. HP: ProLiant DL380 Gen11, Gen 10, Dell: PowerEdge R730 Commvault Version 11.28.102 IBMCos, Panzura OS 7.1.9.3/8.0.1, CTERA VM OS 7.8.4300.23, vSphere, ESXi, HP OneView, DFS Management EMC Unity (Unity 400, 600 480XT) --code 9.5.0.3 Pure Storage Array (X20, X50) – code 6.3.14 Pure Storage Array (C60, C70, C90) – code 6.5.4 Pure FlashBlade (S200) –code 4.5.2 EMC ISILON (PowerScale) (A200, H400) -- code 9.7.1.2 CISCO MDS switch (9996, 9709, 9148XT)-- 9.3.2 EMC NetWorker-specific Specialist CommVault Certified Professional CommVault Certified Specialist – Disaster Recovery EMC Unity, PURE Storage, Cloud storage CompTIA Cloud+ Certificate of Cloud Security Knowledge (CCSK) AWS Certified Solutions Architect - Associate (CSAA)

United States
$86.5K - $146K / year
Job Closed