Keep IT Simple logo
Keep IT Simple

Keeping IT Simple Since 1988.

Cyber Threat Hunter

Threat Intelligence SpecialistSecurity AnalystFull TimeRemoteSeniorTeam 11-50Since 1988H1B No SponsorCompany SiteLinkedIn

Location

Brazil

Posted

70 days ago

Salary

0

Seniority

Senior

Bachelor Degree6 yrs expEnglishPortugueseCyber SecurityPythonGo

Job Description

Cyber Threat Hunter

Keep IT Simple

• Harness the power of automation and machine learning models to build scalable systems that can detect anomalies and potential threats within global environment. • Craft, implement, and continually refine hypothesis-driven hunting rules to unmask sophisticated cyber attacks. • Develop the capability to run continuous compromise assessments across all assets. • Foster strong relationships with other ACDC teams and external parties to share insights and intelligence on emerging threats. • Stay at the forefront of cybersecurity trends, constantly updating your knowledge of threats, vulnerabilities, and defensive techniques to enhance our hunting methodologies and tools.

Job Requirements

  • Experiência: Bring at least 6 years of relevant work experience in threat hunting within cybersecurity operations to the table.
  • Technical Expertise: Demonstrate strong technical prowess with a focus on security (incident response & threat hunting) and automation/agentic capabilities.
  • Education: A university degree in Computer Science, Cyber Security, or a related field is essential.
  • Threat Intelligence: Possess up-to-date knowledge of cyber threats and vulnerabilities, with the ability to identify, triage, and remediate threats based on thorough analysis of security events, log data, and network traOic.
  • Programming Skills: Be proficient in multiple programming languages (e.g., Python, Go) for developing and maintaining tools that will be at the heart of our scalable hunting operations.
  • Endpoint Protection: Have relevant experience with endpoint protection technologies such as Microsoft Defender and CrowdStrike Falcon, as well as SIEM technology.
  • Communication: Exhibit strong communication skills to interact eOectively with both technical colleagues and non-technical staO, ensuring clear collaboration during critical situations.
  • Problem Solving: Showcase a high degree of problem-solving skills and innovative thinking, with the ambition to become a recognized technical expert in your domain.
  • Language Skills: Be fluent in English, both spoken and written, capable of addressing stakeholders from diverse backgrounds and levels of technical expertise.

Benefits

  • 100% Remoto

Related Job Pages

More Threat Intelligence Specialist Jobs

ZeroFox logo

Intelligence Analyst

ZeroFox

Protect Today. Predict Tomorrow.

Full TimeRemoteTeam 501-1,000Since 2013H1B No Sponsor

• You'll own the intelligence cycle for a strategic enterprise account — collecting, evaluating, and synthesizing information from open, deep, and dark web sources into products that actually help security and risk leaders act. • That means daily and recurring deliverables: alerts, threat reports, trend assessments, and executive briefings. • You'll use ZeroFox's platform alongside your own research instincts to track threat actors, identify emerging patterns, and brief stakeholders who need clarity under pressure. • You'll work alongside ZeroFox analysts and engage directly with your client's security team — which means your communication has to be as sharp as your analysis.

United States
$60K - $80K / year
Job Closed
ZeroFox logo

Intelligence Analyst

ZeroFox

Protect Today. Predict Tomorrow.

Full TimeRemoteTeam 501-1,000Since 2013H1B No Sponsor

Role Description This role supports one of the world's most recognized consumer brands — a company with a global footprint, a high-profile executive population, and threat exposure that spans every timezone and threat landscape. You'll sit inside ZeroFox's Services and Analysis Team, producing intelligence that shapes real security decisions for a client whose brand is visible everywhere, all the time. You'll own the intelligence cycle for a strategic enterprise account — collecting, evaluating, and synthesizing information from open, deep, and dark web sources into products that actually help security and risk leaders act. This includes: - Daily and recurring deliverables: alerts, threat reports, trend assessments, and executive briefings. - Being the analyst who picks up the phone when something breaks outside of business hours. This isn't a passive monitoring role. You'll use ZeroFox's platform alongside your own research instincts to: - Track threat actors. - Identify emerging patterns. - Brief stakeholders who need clarity under pressure. In your first 90 days, you'd be expected to: - Get certified on ZeroFox's platform and methodology. - Take ownership of at least one recurring deliverable. - Begin building the threat landscape context specific to your client's geography and risk profile. Qualifications - Genuine geopolitical instincts — understanding how international dynamics translate to physical and reputational risk. - Experience in real OSINT work — multi-source collection across surface, deep, and dark web environments. - Produced written intelligence products — reports, assessments, briefings. - Ability to explain the BLUF model without Googling it. - Proficiency in a second language for research purposes. - Comfort with uncertainty in investigations. Requirements - 2–3 years of experience in open source research, investigations, or intelligence analysis. - Demonstrated ability to assess credibility and relevance across disparate data sources. - Strong written communication skills, specifically in report writing. - Comfort across social media platforms, paste sites, message boards, and entry-level dark web environments. - Proficiency with at least one investigative tool (Whois, Traceroute, Ping, or equivalent). - Working knowledge of Google Suite. Benefits - Generous time off. - Comprehensive health benefits & 401(k) plan with employer matching. - Respectful and nourishing work environment. - Total annual compensation range $60,000-$80,000. Company Description ZeroFox protects what's real by removing what isn't. We steadfastly safeguard organizations from fraud, abuse, misinformation, and attack by preemptively exposing, disrupting, and eliminating external threats across the public attack surface. ZeroFox uniquely fuses Cyber Threat Intelligence, Brand and Domain Protection, Attack Surface Intelligence, Executive Protection, and Physical Security Intelligence in one platform packed with intelligence you'll actually use. We're growing fast, investing deeply in AI, and building a team of people who are serious about results and never take themselves too seriously.

United States
$60K - $80K / year
Job Closed
SentinelOne logo

Senior Threat Intelligence Researcher

SentinelOne

Secure your enterprise with the autonomous cybersecurity platform. Endpoint. Cloud. Identity. XDR. Now.

Full TimeRemoteTeam 1,001-5,000Since 2013H1B Sponsor

Role Description As a Senior Threat Intelligence Researcher, you'll lead deep-dive investigations into both emerging & known threats, while maintaining a vigilant watch over malware developments to ensure defenses remain a step ahead of evolving attack methods. You'll put into use your ability to synthesize complex data into actionable intelligence, and to provide senior management with the clear briefings necessary to understand and mitigate potential risks. Furthermore, you'll be expected to develop refined hunting strategies and to track adversary infrastructure, effectively counteracting shifts in threat actor tactics through detail-oriented investigation. What Will You Do? - Drive External Threat Research: Triage and evaluate findings from OSINT and lead in-depth investigations into emerging threats. Systematically evaluate signals from the global OSINT community and dark web forums to determine their fidelity, relevance, and impact. - Synthesize Actionable Intelligence: Transform raw data from dark web forums, leak sites, and research repositories into high-level threat briefings and risk assessments for senior stakeholders. - Adversary Knowledge Management: Curate and expand our internal Knowledge Base and IOCs collections. - Track Actor Tradecraft (TTPs): Monitor adversary behaviors across the open and deep web to identify shifts in recruitment, target selection, and shifting of operations. - Pivot Across Infrastructure: Identify and map threat actor footprints by pivoting through domain registrations, SSL certificates, passive DNS. - Bridge Intelligence Gaps: Collaborate closely with Detection Engineering to translate validated OSINT findings into durable hunting logic. - Develop OSINT Tooling: Build and automate scrapers, monitors, and data-visualization tools to identify anomalies and track threats in external telemetry. Qualifications - A Threat Intelligence / Threat hunting background. - Knowledge of the cyber threat landscape, including actors and TTPs. - Strong analytical skills, with the ability to identify patterns and trends in large datasets. - Programming skills in Python and knowledge of databases (SQL, noSQL). - Strong knowledge of YARA to track new malware families and knowledge on validation best practices. - Knowledge of MITRE ATT&CK, CISA KEV, EPSS, AMITT, MISP Galaxy. Requirements - Strongly preferred: Knowledge of malware analysis tools and techniques, including static and dynamic analysis, sandboxing, and debugging. - Technical writing & content development skills. - Nice to have: Understanding software vulnerabilities, and ability to implement hunting strategies to track and discover them. - Knowledge about internal working of EDR products. - Relevant certifications, such as Certified Malware Analyst (CMA), Certified Reverse Engineering Analyst (CREA), or GIAC Certified Malware Reverse Engineer (GREM). Benefits - Permanent-fulltime collaboration (UoP). - Flexible working hours; this is a 100% remote role based within Poland; optional membership in major co-working spaces. - Currently for this role in Poland we are able to consider only candidates that are already eligible to work in the EU at the time of applying. - Optionally for those willing to relocate to the Czech Republic, relocation assistance is available for any candidates that are already eligible to work in the EU at the time of applying. - Generous employee stock plan in the form of grant of RSUs (restricted stock units); 4 years vesting with 1 year cliff and then quarterly, stock refresh yearly. - Yearly bonus depending on the performance of the company, paid out in 2 installments. - LuxMed, Life Insurance, Disability Insurance, PPK (4% employer contribution). - Flexible time off (up to 30 paid days off per annum!). - Volunteering paid day off & Additional paid Company holidays off (e.g. 4 days in 2022). - Monthly Wellness Allowance. - Monthly Working from Home allowance. - Global gender-neutral Parental Leave (16 weeks, beyond the leave provided by the local laws) & Grandparent Leave. - Global Employee Assistance Program (confidential counseling related to both personal and work life matters). - LinkedIn Learning platform for Hard/Soft skills Training & Support for your further educational activities/trainings. - Above-standard referral bonus & Additional Country-specific Benefits & Allowances To Poland.

Poland + 9 moreAll locations: Poland | Czechia | Ecuador | El Salvador | Equatorial Guinea | Eritrea | Ethiopia | Falkland Islands | Faroe Islands | Fiji
Job Closed
BlueCross BlueShield of Tennessee logo

Sr. Cyber Threat Hunter

BlueCross BlueShield of Tennessee

Bringing peace of mind through better health to our customers and communities

Full TimeRemoteTeam 5,001-10,000Since 1952H1B Sponsor

Role Description We're looking for an individual who has a deep interest in cybersecurity and will bring fresh perspectives and advanced techniques to identify and analyze potential threats. Your expertise will enhance our team’s ability to detect and respond to sophisticated cyber attacks; experience with cloud security is a plus! As Senior Cyber Threat Hunter, you'll help us stay ahead of emerging threats. As a key member of our team, you will play a crucial role in identifying, analyzing, and mitigating cyber threats to protect our organization’s assets and data. Our team is composed of individuals from various backgrounds and experiences, fostering a rich and inclusive culture where everyone’s voice is heard and valued. Every day brings new and exciting challenges. You’ll have the opportunity to tackle complex problems, think creatively, and push the boundaries of what’s possible in cybersecurity. Note: This is a fully remote role; however, no sponsorship is available. Qualifications - Bachelor's Degree in a Computer Sciences related field or equivalent work experience - 5 years of experience in Information Security required - 1 year of experience with information technology concepts, terminology, and standards required Requirements - Find possible vulnerabilities while using penetration testing tools and techniques, to ensure the security of computer systems, applications, servers, networks, etc. - Provides technical expertise on the development and support of all activities, processes, and tools needed to protect information security. - Identifies, analyzes, and reports threats or hidden events within the enterprise network, by using defensive measures and information collected from a variety of sources, to protect data, information systems, and networks. - Collects, analyzes, and presents digital-related evidence in support of computer criminal investigations. - Employees may be required to participate in a weekly on-call rotation. Company Description BCBST BlueCross BlueShield of Tennessee, Inc. is committed to recruiting, hiring, training, and promoting individuals in all job classifications without regard to race, religion, color, age, sex, national origin, citizenship, pregnancy, veteran status, sexual orientation, physical or mental disability, gender identity, or any other characteristic protected by applicable law. Further information regarding BCBST's EEO Policies/Notices may be found by reviewing the following page: BCBST's EEO Policies/Notices. BlueCross BlueShield of Tennessee is not accepting unsolicited assistance from search firms for this employment opportunity. All resumes submitted by search firms to any employee at BlueCross BlueShield of Tennessee via email, the Internet or any other method without a valid, written Direct Placement Agreement in place for this position from BlueCross BlueShield of Tennessee HR/Talent Acquisition will not be considered. No fee will be paid in the event the applicant is hired by BlueCross BlueShield of Tennessee as a result of the referral or through other means.

United States
Job Closed