Security Analysis Threat Hunter - Plano, TX Hybrid
Plano, Texas, United States
$107k-$178k/yrHybridFull Time
NTT DATA: Global provider of IT and business consulting services.
10+ YOE10+ years in cybersecurity with hands-on threat hunting, SIEM/EDR proficiency, strong TTP knowledge, ability to translate intelligence into detections, and strong written/verbal skills.
Hartford or Indianapolis or Providence or Raleigh or Richardson or Tempe
OnsiteFull Time
InfosysNYSE: INFY: Provides IT consulting, software development, and business outsourcing services.
Collect and analyze threat intelligence, develop detections in SIEM/SOAR/EDR, support SOC triage and incident response, maintain threat intelligence platform, and produce intelligence briefings.
Crunchyroll: Operates a global streaming platform for anime and manga.
8+ YOE8+ years in information security/IT, hands-on SIEM/EDR integrations, detection engineering, incident response, identity and SaaS security, scripting (Python/Bash), and AI security experience.
Splunk, Google Chronicle, SIEM, SOAR, EDR, Crowdstrike, Microsoft Defender for Endpoint, Okta, Python, Bash, AWS, GCP, LLM
Purple Team Manager (Defense Improvement Analysis)
McLean or Plano or Richmond
$179k-$225k/yrOnsiteFull Time
Capital OneNYSE: COF: A diversified financial services providing banking and credit products.
4+ YOERequires 4+ years in information security, 3+ years in threat hunting or detection engineering, and 2+ years analyzing EDR telemetry; high school diploma or GED required.
CelaneseNYSE: CE: Global manufacturer of chemicals and specialty material solutions.
10+ YOE10+ years in cybersecurity operations with leadership in SOC/IR, vulnerability management, BC/DR, and security awareness; experience with SIEM/EDR/SOAR; bachelor's degree; industry certs preferred.
Stamford or Atlanta or Chicago or Boston or Minneapolis or Charlotte or New York City or Philadelphia or Austin or Dallas or McLean
OnsiteFull Time
KPMG: Global professional services network providing audit, tax, and advisory.
5+ YOE5+ years incident response experience, bachelor\u0002s degree or equivalent, hands-on SIEM/EDR/DLP experience, strong stakeholder management, ability to lead investigations and present to executives.
SIEM, EDR, DLP, threat intelligence platforms, NIST, SANS
Bank of AmericaNYSE: BAC: Provides banking, investment, and financial risk management services.
3+ YOERequires 3+ years in malware analysis, incident response, or digital forensics; expertise in web and email threats, SIEM, sandboxing, EDR, IoCs, browser exploitation, and cloud detection tools.
CitiNYSE: C: Global diversified financial services holding.
5+ YOEBachelor's in CS/InfoSec, 5+ years cybersecurity experience with threat hunting/incident response, expertise with SIEM/EDR/Splunk, networking and OS knowledge, strong analytical and communication skills.
CitiNYSE: C: Providing global banking, investment, and wealth management services.
5+ YOEBachelor's in CS/Information Security, 5+ years in cybersecurity (threat hunting/IR), expert networking/OS/security tech, proficiency with SIEM/EDR/Splunk, strong analytical and communication skills.
Atlanta or Louisville or Las Vegas or Seattle or Indianapolis or New York City or Grand Prairie or Chicago or Arlington
$103k-$185k/yrHybridFull Time
Elevance HealthNYSE: ELV: Provides health insurance plans and integrated healthcare services.
3+ YOEBachelor's or equivalent and minimum 3 years in support/operations or design with experience across multiple information security domains; SOC, SIEM, EDR, incident response, and technical leadership experience preferred.
Netrio: Provides managed IT and cybersecurity services for mid-market enterprises.
2+ YOERequires 2–5 years in SOC, incident response, or threat hunting; SIEM/XDR and EDR experience; U.S. citizenship; background investigation eligibility; and CompTIA CySA+ or GIAC GCIH certification.
Trintech: Provider of AI-powered financial close and reconciliation software solutions.
2+ YOE2+ years information security or related experience preferred; knowledge of SIEM, EDR, DLP, TCP/IP, multiple OS; certifications such as SEC+, CYSA+, GSEC, GCIH, GCFE, GCFA, or CISSP preferred.
8+ YOE8+ years Windows platform security experience; design and maintain OS hardening, endpoint protection (EDR/XDR), IAM, network and cloud security; strong communication and ability to influence technical teams.
EDR/XDR, Group Policy (GPO), Security Baselines, Benchmarks, Secure Web Gateway, Network Security Groups (NSGs), SSO, Kerberos, NTLM, SAML, OAuth, OpenID Connect, Privileged Identity Management (PIM), Multi-Factor Authentication (MFA), SASE, Zero Trust, CSPM
Island: Secure enterprise browser for managed, protected work environments.
3+ YOE3+ years in security operations/incident response; hands-on with SIEM, EDR, cloud security (Wiz, Coralogix), scripting and automation (Torq/Tines/SOAR); strong IR, detection engineering, and threat-hunting skills.
7+ YOE7+ years in security operations/engineering with SIEM, SOAR, SOC, XDR/EDR experience; cloud (GCP/AWS/Azure); Linux administration; Python/JavaScript scripting; strong communication and customer-facing experience.
Boston or Chicago or Dallas or Houston or New York City or Oakland or Washington
$100k-$127k/yrHybridFull Time
Charles River AssociatesNasdaq: CRAI: Provides global economic, financial, and management consulting services.
3+ YOERequires 3–5 years in incident response, digital forensics, or security engineering; enterprise ransomware, BEC, or intrusion experience; Active Directory and Entra ID expertise; EDR proficiency; PowerShell scripting; and strong writing.
Windows, Linux, VMware, Hyper-V, Azure, Microsoft 365, Google Workspace, CrowdStrike Falcon, Active Directory, Entra ID, Entra Connect, Conditional Access, PowerShell, Graph SDK, Python, EDR, VMware vSAN, iSCSI, OAuth, Kerberos, ADCS
ExperianLondon Stock Exchange: EXPN: Provides data and analytical tools to manage credit risk.
3+ YOE3+ years information security experience in SOC/IR, Bachelor's or equivalent, knowledge of incident response lifecycle, MITRE ATT&CK and cyber kill chain, OS/network/cloud fundamentals, SIEM/EDR experience.
Allied Universal: Global provider of security guard and facility management services.
2+ YOEBachelor's in related field or 2+ years intelligence analysis experience; 3+ years vulnerability management preferred; hands-on SIEM/EDR/DLP; research, report writing, and communication skills; able to work flexible/on-call schedule.
Tenable, Nexpose, SIEM, EDR, Data Loss Prevention (DLP), Splunk, Darktrace, Microsoft Office Suite, Microsoft SharePoint