Jobgether

Endpoint Threat Hunting Consultant

Jobgether

PythonLinuxDigital ForensicsThreat Huntingthreat analysisIncident Responsecloud platformsnetwork protocolsActive Directory

About the Role

This position is listed on behalf of a partner company, who manages all applications and next steps. Our partner is looking for an Endpoint Threat Hunting Consultant based in United States. This fully remote role focuses on proactively identifying sophisticated cyber threats across enterprise environments. You will investigate historical and active adversary activity by analyzing endpoint data, logs, system artifacts, and threat intelligence. The role combines digital forensics, threat hunting, intelligence analysis, scripting, and security research to uncover meaningful indicators of compromise. You will translate complex technical findings into actionable remediation recommendations for technical teams, executives, and legal stakeholders. The position also contributes to the evolution of threat hunting methodologies, research practices, and automation capabilities. You’ll work in a highly technical cybersecurity environment focused on protecting organizations from advanced criminal and nation-state threats. The role offers substantial autonomy, remote flexibility, and opportunities to apply AI technologies to improve security workflows and decision-making. This position is listed on behalf of a partner company, who manages all applications and next steps. Our partner is looking for an Endpoint Threat Hunting Consultant based in United States. This fully remote role focuses on proactively identifying sophisticated cyber threats across enterprise environments. You will investigate historical and active adversary activity by analyzing endpoint data, logs, system artifacts, and threat intelligence. The role combines digital forensics, threat hunting, intelligence analysis, scripting, and security research to uncover meaningful indicators of compromise. You will translate complex technical findings into actionable remediation recommendations for technical teams, executives, and legal stakeholders. The position also contributes to the evolution of threat hunting methodologies, research practices, and automation capabilities. You’ll work in a highly technical cybersecurity environment focused on protecting organizations from advanced criminal and nation-state threats. The role offers substantial autonomy, remote flexibility, and opportunities to apply AI technologies to improve security workflows and decision-making. Accountabilities Conduct proactive threat hunting across enterprise environments, analyzing logs, endpoint telemetry, and system artifacts for evidence of historical or active adversary activity. Investigate Windows and Linux forensic artifacts, including program execution, persistence mechanisms, file systems, event logs, processes, and other indicators of suspicious activity. Perform hypothesis-driven threat analysis using IOC searches, correlation, long-tail analysis, investigative pivots, and timeline development. Apply threat intelligence related to targeted attacks, eCrime, and nation-state activity to identify relevant indicators and adversary tradecraft. Produce clear, high-quality written reports, presentations, findings, and remediation recommendations for technical stakeholders, management, and legal counsel. Develop and refine threat hunting methodologies, research approaches, search queries, and supporting scripts. Create practical automation and scripting solutions using Python or other scripting languages to improve investigative efficiency. Analyze endpoint, identity, operating system, and network activity to identify patterns associated with compromise or malicious behavior. Contribute to customized tactical and strategic remediation recommendations for organizations affected by targeted attacks. Apply AI technologies to enhance investigative decision-making, streamline workflows, improve efficiency, and support security outcomes. Collaborate with clients and internal stakeholders to communicate findings, explain technical risks, and support appropriate remediation strategies. Where applicable, contribute expertise to large-scale incident response investigations involving sophisticated cybercriminal or nation-state actors. Requirements Demonstrated experience in threat hunting, cybersecurity investigations, digital forensics, threat analysis, or a closely related discipline. Strong understanding of Windows and Linux operating systems, including file systems, registry, memory management, kernel and user-mode functions, identity, and process handling. Solid knowledge of threat analysis methodologies, including hypothesis-driven investigations, IOC searching, correlation, pivoting, anomaly detection, and threat activity timelines. Understanding of targeted attack techniques and adversary tradecraft associated with eCrime and nation-state actors. Ability to use threat intelligence to develop targeted searches and identify relevant indicators of compromise. Programming or scripting experience, particularly the ability to create search queries and develop practical scripts using Python or another scripting language. Practical understanding of network protocols and how data is transmitted and processed across the layers of the OSI model. Familiarity with identity and authentication concepts, including Active Directory and protocols such as Kerberos. Strong written and verbal communication skills, with the ability to present complex investigative findings to technical, executive, and legal audiences. Demonstrated experience using AI technologies to improve decision-making, workflows, processes, or operational efficiency. Experience with incident response and large-scale investigations involving sophisticated adversaries is beneficial. Familiarity with one or more major cloud platforms, such as AWS, Azure, or Google Cloud Platform, is advantageous. Experience developing tactical and strategic remediation plans for compromised environments is preferred. Bachelor’s or master’s degree in Computer Science, Computer Engineering, Mathematics, Information Security, Cybersecurity, Intelligence Studies, or a related discipline is preferred. Relevant professional experience and/or training may be considered in lieu of a degree. Strong analytical thinking, curiosity, self-direction, and ability to operate effectively in complex and evolving cybersecurity environments. Benefits Fully remote position within the United States. Base salary range of $115,000–$160,000 per year , depending on experience, skills, certifications, job level, and location. Eligibility for bonuses and equity grants. Comprehensive health insurance and benefits. 401(k) retirement plan. Paid time off and competitive vacation policies. Paid parental and adoption leave. Physical and mental wellness programs. Professional development opportunities across career levels and roles. Employee networks, geographic communities, and volunteer opportunities. Opportunity to work on advanced threat hunting and cybersecurity challenges. Collaborative environment focused on innovation, responsible use of AI, and continuous learning. How Jobgether works: We use an AI-powered matching process to ensure your application is reviewed quickly, objectively, and fairly against the role's core requirements. Our system identifies the top-fitting candidates, and this shortlist is then shared directly with the hiring company. The final decision and next steps (interviews, assessments) are managed by their internal team. We appreciate your interest and wish you the best! Why Apply Through Jobgether? Data Privacy Notice: By submitting your application, you acknowledge that Jobgether will process your personal data to evaluate your candidacy and share relevant information with the hiring employer. This processing is based on legitimate interest and pre-contractual measures under applicable data protection laws (including GDPR). You may exercise your rights (access, rectification, erasure, objection) at any time. #LI-CL1

You'll be redirected to Jobgether's application page

Job Details

Salary

$115K–$160K

Location

United States

Job type

Full-time

Category

Cybersecurity

Experience

Mid

Posted

Today

Job Highlights

  • $115K–$160K salary
  • Mid level role
  • 100% Remote — open to candidates in United States

About Jobgether

This job is hosted by Jobgether. Clicking Apply opens their site.

More jobs from Jobgether on RC9

Remote Work Style

Mixed

Mix of flexible and scheduled meetings

Your Match

See how well your skills line up with this role, and what you're missing.

AI Cover Letter

Generate a cover letter tailored to this job from your profile.