+ Post Job +
Remote Cybersecurity Threat Hunter
Home Cybersecurity

Remote Cybersecurity Threat Hunter

📍 Anywhere 🏷️ Cybersecurity 💰 $122,000 / year

Remote Cybersecurity Threat Hunter

Most attackers don't announce themselves. They sit quietly in a network for weeks, moving carefully enough that standard detection tools never flag them. Finding that kind of threat takes someone who goes looking instead of waiting for an alert to fire. We're hiring a Remote Cybersecurity Threat Hunter to do exactly that — dig through logs, traffic, and endpoint data to catch what automated defenses miss. The role pays $122,000 annually and is fully remote.

What the Work Looks Like

You'll build and run threat-hunting hypotheses based on current intelligence and known adversary tactics, then dig into network traffic, event logs, and endpoint telemetry to test them. Some hunts turn up nothing. Others surface an indicator of compromise that's been sitting undetected for weeks. Either outcome is useful, since ruling threats out matters almost as much as finding them. When something real turns up, you won't just hand it off. You'll work alongside the SOC and incident response teams through investigation, containment, and recovery, since threat hunters who disappear after detection lose most of the value they added in the first place. Threat intelligence feeds into this constantly — understanding an adversary's likely motives and methods sharpens your focus on where to look next.
  • Run proactive threat hunts using current intelligence and adversary TTPs
  • Analyze network traffic, logs, and endpoint data for signs of compromise
  • Support incident response through investigation and containment
  • Build and maintain scripts or automation that improve hunting efficiency
  • Document findings and maintain a knowledge base of threats and indicators
There's also a documentation side that's easy to underrate. A threat you found and quietly fixed without writing it up helps nobody the next time something similar happens. Reports for stakeholders need to be clear enough that non-technical leadership understands the actual risk, not just the technical detail.

Tools You'll Be Working In

Expect daily use of SIEM platforms and EDR solutions, alongside dedicated threat-hunting tools built on frameworks such as MITRE ATT&CK. Python or PowerShell comes up regularly for automation — writing a one-off script to speed up a repetitive hunt is a normal part of the week, not a special project.

What We're Looking For

Required

  • Bachelor's degree, minimum, in Computer Science, Information Security, or a related field
  • At least 5 years in cybersecurity, with 3 or more years specifically in threat hunting, threat analysis, or security operations
  • Working knowledge of the MITRE ATT&CK framework and common adversary TTPs
  • Scripting proficiency in Python or PowerShell for automation
  • Strong analytical ability to spot patterns in large volumes of security data
  • Clear written and verbal skills, with the ability to explain technical findings to non-technical stakeholders

Good to Have

  • Master's degree in a related technical field
  • GCIH, CTIA, or CEH certification
  • Experience building automated detection or response workflows
  • Background working across SOC, incident response, and threat-hunting functions
This role is with Naukri Mitra, and it's built for someone who wants real ownership over threat detection strategy, not a checklist role reacting to whatever the SIEM flags that day.

Pay and Benefits

  • $122,000 USD annual salary
  • Fully remote work, from wherever you're based
  • Ongoing professional development, including support for certifications and continued training
  • A collaborative team environment where findings actually get acted on, not filed away

What Makes Someone Good at This

Attention to detail matters more here than almost anywhere else in security, since the whole point is to catch what automated tools miss. Beyond that, the strongest hunters tend to think somewhat like an adversary — anticipating where an attacker would go next rather than only reacting to what's already visible. The threat landscape shifts constantly, so being willing to adjust methods as new techniques emerge matters as much as current expertise.

Applying

Send your resume along with an example of a threat you've hunted down or investigated, including how you approached it and what you found. We're more interested in how you think through an investigation than a list of tools you've used. Open to remote applicants worldwide, including the United States, India, and other eligible regions.

Frequently Asked Questions

The role involves running proactive threat hunts using current intelligence and adversary tactics, analyzing network traffic and endpoint data for signs of compromise, and supporting incident response through investigation and containment.
A Bachelor's degree, minimum, in Computer Science, Information Security, or a related field is required, along with at least 5 years in cybersecurity, including 3 or more years specifically in threat hunting or security operations.
Yes, this is a fully remote position that can be done from anywhere, with a collaborative team environment supporting ongoing investigations.
Working knowledge of the MITRE ATT&CK framework, experience with SIEM and EDR platforms, and scripting proficiency in Python or PowerShell for automation are all required.
The role pays $122,000 USD annually. Certifications like GCIH, CTIA, or CEH aren't required but are considered a strong plus.
Apply Now