TC EnergyToronto Stock Exchange: TRP: Operates energy infrastructure including natural gas pipelines and power plants.
10+ YOE10+ years in threat intelligence, intelligence, security, or related risk discipline; relevant degree or technical certification; experience aggregating cyber/physical/geopolitical intelligence and producing finished intelligence for senior leaders.
Cincinnati or Atlanta or Hopkins or Cupertino or Charlotte or Chicago or Gresham or Englewood or Brookfield or Saint Louis or Irving
$127k-$149k/yrHybridFull Time
U.S. BankNYSE: USB: Provider of personal, business, and institutional financial services.
8+ YOEBachelor's degree or equivalent, 8+ years information security experience, 4+ years incident response, 2+ years threat hunting, expertise with Python, Jupyter notebooks, cloud (AWS/Azure/GCP), log/packet analysis, MITRE ATT&CK, and AI/automation tooling.
Binary Defense: Managed detection, response, and threat hunting cybersecurity services.
2+ YOEHunt threat actor activity across EDR/SIEM, build and tune detection queries, perform malware analysis and telemetry review, and communicate findings to clients.
Microsoft Defender, Microsoft Sentinel, Splunk, CrowdStrike, KQL, SPL, Python, PowerShell, Bash
CloudflareNYSE: NET: Provides security and performance services for internet properties.
5+ YOE5+ years in technical security with 2+ years focused on insider threat/forensics; experience with forensic tools, SIEM/EDR, scripting, cloud investigations, and cross-functional collaboration.
Hartford or Indianapolis or Providence or Raleigh or Richardson or Tempe
OnsiteFull Time
InfosysNYSE: INFY: Provides IT consulting, software development, and business outsourcing services.
Collect and analyze threat intelligence, develop detections in SIEM/SOAR/EDR, support SOC triage and incident response, maintain threat intelligence platform, and produce intelligence briefings.
Huntsville or Suffolk or Virginia or Maryland or Florida or Texas
OnsiteFull Time
Command Post Technologies: Providing cybersecurity and engineering services to government defense agencies.
20+ YOEBachelor's in a technical discipline, 20+ years supporting threat intelligence/cyber/EW or related missions, active Top Secret/SCI clearance, expertise in adversary TTPs and translating intelligence into threat emulation requirements.
Chicago or Texas or Los Angeles or New York or San Francisco or Raleigh or Seattle or Atlanta
$170k-$230k/yrRemoteFull Time
JLLNYSE: JLL: Global commercial real estate and investment management services.
5+ YOE5+ years in cybersecurity with ≥3 years in threat intelligence, operational security experience, AI analytic knowledge, intel tradecraft, briefing skills, and familiarity with security tooling and frameworks.
Louisville or Washington or Dallas or Fort Lauderdale or Tampa or New York City or Chicago or Boston or Atlanta or Nashville
$98k-$134k/yrRemoteFull Time
HumanaNYSE: HUM: Provides health insurance plans and clinical healthcare services.
5+ YOE5+ years cybersecurity experience focused on insider threat, Purview and Proofpoint tuning, eDiscovery support, KQL and PowerShell scripting, SIEM/EDR correlation, strong communication and investigative skills.
Microsoft Purview Insider Risk Management, Communication Compliance, Microsoft Purview eDiscovery, Proofpoint Insider Threat Management (ITM), Splunk, Microsoft Defender XDR, KQL, PowerShell, Microsoft Graph API, Claude Code
VulnCheck: Provides real-time vulnerability and exploit intelligence data.
Experience analyzing threat intelligence, evaluating exploit PoCs, identifying IOCs, familiarity with CVEs/CPE/scoring, working with JSON and OSINT, scripting ability (Python preferred), and knowledge of package ecosystems and developer tooling.
JSON, Visual Studio Code, NPM, NuGet, PyPI, Python
MacquarieASX: MQG: Global financial group providing investment, banking, and advisory services.
3+ YOE3–5 years in detection engineering or incident response; strong SIEM and threat hunting experience; detection-as-code, Git and CI/CD experience; knowledge of MITRE ATT&CK and cloud/security tooling.
MITRE ATT&CK, Splunk ES, Google SecOps, Sumo Logic, Git, GitHub, Bitbucket, CloudBees, AWS, Azure, GCP, GitHub Copilot, Claude Code
DTCC: Provides post-trade infrastructure for the global financial services industry
3+ YOE3+ years threat hunting/detection/IR experience, Bachelor's or equivalent, hands-on log analysis across endpoint/identity/network/cloud, experience with KQL/SPL/EQL, scripting (Python/PowerShell/Bash), familiarity with MITRE ATT&CK and detection engineering.
Microsoft Defender for Endpoint, CrowdStrike Falcon, SentinelOne, Microsoft Sentinel, Splunk, Splunk SPL, Elastic, EQL, KQL, Lucene, Chronicle/Google SecOps, Microsoft Azure, AWS, Microsoft Entra ID, Microsoft Azure AD, Okta, CloudTrail, Kubernetes, Sigma, YARA, ATT&CK, SOAR, Python, PowerShell, Bash, jq, osquery, CyberChef, EDR/XDR, SIEM
Security Analysis Threat Hunter - Plano, TX Hybrid
Plano, Texas, United States
$107k-$178k/yrHybridFull Time
NTT DATA: Global provider of IT and business consulting services.
10+ YOE10+ years in cybersecurity with hands-on threat hunting, SIEM/EDR proficiency, strong TTP knowledge, ability to translate intelligence into detections, and strong written/verbal skills.
Harris County: Provides public services and governance for Harris County, Texas residents.
2+ YOEPerform vulnerability scanning and analysis, investigate SOC alerts, coordinate remediation, monitor threat intelligence, and produce reports. Requires high school/GED and 2+ years IT/cybersecurity or systems analysis experience.
Microsoft Defender Vulnerability Management, Rapid7, SIEM, Windows, Linux
7+ YOE2+ Mgmt7+ years in cybersecurity/threat intelligence or related, 2+ years leading a team; strong analytics, measurement, and editorial skills; bachelor's degree.
Hewlett Packard EnterpriseNYSE: HPE: Providing global edge-to-cloud infrastructure and IT solutions for businesses.
10+ YOE10+ years in incident response, threat hunting, forensics, malware analysis, and incident management; expertise with SIEM/EDR, cloud (AWS/Azure/GCP), MITRE ATT&CK, scripting (Python/PowerShell/Bash), and leading complex APT/ransomware investigations.
Hewlett Packard EnterpriseNYSE: HPE: Provides edge-to-cloud IT infrastructure and platform services.
10+ YOE10+ years in incident response, threat hunting, digital forensics, malware analysis and incident management; expertise with APTs/ransomware, MITRE ATT&CK, cloud (AWS/Azure/GCP), SIEM/EDR, scripting (Python/PowerShell/Bash), and leading investigations.
Abacus Technology: Provides IT and engineering services for government and defense.
5+ YOE5+ years security experience, active Secret clearance, Security+ and ITIL Foundations, Bachelor's in related field (or equivalent experience), Windows Server and networking experience, ability to support 24/7 operations and travel to CONUS sites.
Microsoft Windows Server, User Activity Monitoring (UAM), DNS, DHCP