[Remote] Senior Hunt & Response Analyst - West Coast

Remote, USA Full-time
Note: The job is a remote job and is open to candidates in USA. Huntress is a fully remote cybersecurity company dedicated to protecting businesses with enterprise-grade solutions. The Senior Hunt & Response Analyst will be responsible for threat hunting, incident response, and developing detections while working closely with the Security Operations Center team to manage tactical incident response scenarios. Responsibilities • Perform a cadenced review of hunting data to identify compromises not found during standard SOC workflows • Research, develop, and test new hunting hypotheses in the form of new detections or analytics • Lead or support tactical incident response engagements for customers who already utilize Huntress MDR. Perform live analysis on systems to determine the root cause of an intrusion, and craft reports that summarize the intrusion, with the next steps to be taken • Perform intermediate malware analysis as part of hunting and response efforts • Perform OSINT as part of hunting and response efforts • Contribute to content creation efforts such as blogs, videos, podcasts, and webinars • Contribute to community-driven projects and frameworks, such as MITRE ATT&CK, HijackLibs, and the LOLBAS Project • Speak with customers to explain or summarize findings from investigations Skills • 3-5 years working in one or more of the following: SOC, MDR, Threat Hunting, or Incident Response roles • Experience leading or participating in Incident Response engagements for external customers • Experience with tools such as osquery, Velociraptor, or leveraging EDRs to perform forensic artifact analysis on systems • Confident command of forensic tools - such as Ericzimmerman's EZ tools, RegRipper, Hayabusa, or Chainsaw - and forensic artifacts - such as prefetch, jumplists, shellbags, and more • Deep understanding of offensive security tradecraft, particularly persistence, lateral movement, credential theft, and remote access • Confidently able to track threat actors across an organization and timeline the activity • Strong familiarity with one or more detection languages such as Sigma, Suricata, Snort, or Yara • Familiarity with OSINT sources and how they can help answer questions relating to threat actor activity and infrastructure • Strong familiarity with various query languages such as KQL, EQL, ES|QL, Splunk SPL • Intermediate malware analysis skills • Intermediate knowledge of Windows internals • Intermediate knowledge of Linux and macOS internals is a bonus • Strong understanding of the current threat landscape, initial access brokers, and ransomware actors • Passionate and involved with the community through blogs, social media, conferences, etc • Experience with scripting (such as PowerShell, Python, Bash, PHP, JavaScript, or Ruby) • Demonstrable experience providing written and/or verbal customer-facing deliverables • Experience with detection and response in cloud environments such as Microsoft M365/Azure • Comfortable using Git to contribute to internal projects Benefits • 100% remote work environment - since our founding in 2015 • Generous paid time off policy, including vacation, sick time, and paid holidays • 12 weeks of paid parental leave • Highly competitive and comprehensive medical, dental, and vision benefits plans • 401(k) with a 5% contribution regardless of employee contribution • Life and Disability insurance plans • Stock options for all full-time employees • One-time $500 reimbursement for building/upgrading home office • Annual allowance for education and professional development assistance • $75 USD/month digital reimbursement • Access to the BetterUp platform for coaching, personal, and professional growth Company Overview • Huntress is the enterprise-grade, people-powered cybersecurity solution for all businesses, not just the 1%. It was founded in 2015, and is headquartered in Columbia, Maryland, USA, with a workforce of 501-1000 employees. Its website is Company H1B Sponsorship • Huntress has a track record of offering H1B sponsorships, with 1 in 2024. Please note that this does not guarantee sponsorship for this specific role. Apply tot his job
Apply Now

Similar Jobs

[Remote] Principal Incident Response Analyst

Remote, USA Full-time

Sr. SOC Analyst | Incident Response (Contract to Hire/Remote)

Remote, USA Full-time

Advanced Cyber Security Engineer/Architect

Remote, USA Full-time

Industrial Engineer II

Remote, USA Full-time

Industrial Designer in North Olmsted, OH – (job id: 1683617193)

Remote, USA Full-time

Industrial Designer – OPD; Oxford Product Design OPD; Oxford Product Design Harwell

Remote, USA Full-time

Industrial Engineer Technician (Onsite) HIA32: Cedar Rapids, IA 400 Collins Rd NE , Cedar Rapids, IA, 52498-0505 USA

Remote, USA Full-time

Lead Industrial Engineer, Supply Chain Operations(Remote Or Hybrid)

Remote, USA Full-time

Industrial Engineer 2

Remote, USA Full-time

Industrial Engineer/Operations Analyst (Remote)

Remote, USA Full-time

**Experienced Mail Processing Clerk – Remote Opportunity with USPS**

Remote, USA Full-time

**Experienced Remote Data Entry Clerk – Flexible Work from Home Opportunities for Teens at arenaflex**

Remote, USA Full-time

Remote Data Analytics Consultant

Remote, USA Full-time

**Experienced Part-Time Remote Data Entry Specialist (Virtual Assistant) – Data Management and Organization**

Remote, USA Full-time

German Speaking Command and Control Center Agent (7/24)

Remote, USA Full-time

Research Assistant, European Art

Remote, USA Full-time

Customer Service Representative - Work From Home Opportunity with CVS Health in South East Region - Flexible Schedule, Career Growth, and Comprehensive Benefits

Remote, USA Full-time

**Experienced Remote Administrative Assistant – Business Development and Operations Support**

Remote, USA Full-time

Experienced Customer Support Specialist - Delivering Exceptional Experiences and Driving Customer Success with blithequark

Remote, USA Full-time

Compliance Manager, Audit and Oversight

Remote, USA Full-time
Back to Home