Job Details

Information Security
Senior
Remote
Full time
Apr 17

Threat Hunting Expert

Threat Hunting Expert at Лоция. Location: Moscow (Remote option available). Salary: Discussed during interview. Proactive threat hunting, security incident analysis, and automation.

• Proactively search for threats; • Analyze monitoring data; • Implement new threat hunting tools and methodologies; • Integrate Threat Intelligence into SOC processes; • Develop correlation rules/incident detection scenarios; • Analyze identified incidents; • Participate in the development of response scenarios (playbook).

• Deep understanding of cyber attack models, tactics, and techniques (MITRE ATT&CK, Cyber Kill Chain); • Understanding of the HMM (Hunting Maturity Model); • Experience with SIEM, EDR, Threat Intelligence platforms; • Skills in analyzing network traffic and OS logs; • Knowledge of scripting (Python, PowerShell) for task automation; • Understanding of malware principles and evasion techniques; • Ability to formulate and test hypotheses about hidden threats; • Analytical thinking and attention to detail.

Cyber Kill Chain
Python
HMM
Threat Intelligence
SIEM
PowerShell
EDR
MITRE ATT&CK

Don't miss a single job

Subscribe to our Telegram channel

Subscribe

Similar jobs

Perimeter Protection Expert (WAF)

Perimeter Protection Expert (WAF) at Cloud.ru in Moscow. Responsibilities include WAF rule configuration, security analysis, and incident response. Salary discussed during interview.

Russia
c
cloud.ru

Information Security Expert

RUB 217,000

Information Security Expert at Gazpromneft-Regional Sales. Key task: Improving the security level in existing and new systems. Salary from 190,000 to 217,000 rubles.

Russia
Г
Газпромнефть-Региональные продажи