2 дня назад
Senior Cyber Threat Hunter
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
Текст:
TL;DR
Senior Cyber Threat Hunter (Cybersecurity/Threat Intelligence): Proactively uncovering advanced and hidden cyber threats through intelligence-led hunting, adversary emulation, and hypothesis-driven investigations with an accent on attack-chain analysis, detection gaps, and MITRE ATT&CK mapping. Focus on validating evasive activity, automating threat analysis, simulating breach paths, and translating findings into improvements for detection, prevention, and defensive architecture.
Location: Madrid, Spain; hybrid work model with days at MAD
Company
is a global bank and technology organization build scalable, secure technological and operational solutions through its Hubs network.
What you will do
- Conduct intelligence-led threat hunt and adversary emulation based on emerg threats, attack activity, and major external cyber incidents.
- Develop and test hypothesis-driven investigations to identify unknown or evasive malicious activity.
- Analyze adversary behavior across the full attack chain and identify detection and control gaps.
- Translate investigation finds into improvements for detection, prevention, defensive architecture, and resilience.
- Map finds to MITRE ATT&CK and prepare clear, executive-ready reports for risk-based decision-mak.
- Use automation, AI-assisted analytics, and Breach & Attack Simulation to validate hypotheses and prioritize high-risk attack paths.
Requirements
- Several years of hands-on experience in hypothesis-based threat hunt, purple team, or security research.
- Experience with threat hunt methodologies such as TaHiTi or PEAK.
- Experience in large enterprise environments us CI/CD, multi-cloud, and containers.
- Ability to translate threat intelligence into high-impact investigations and identify meanful security gaps.
- Ability to reason like an adversary, emulate attack scenarios, and improve detection, controls, or resilience.
- Clear communication skills for explain complex threats to technical and non-technical stakeholders.
Nice to have
- Certifications or experience in cyber threat hunt, detection engineer, adversary simulation, GIAC, MITRE ATT&CK, cloud security, or BAS.
Culture & Benefits
- Flexible hybrid work model with shared accountability for choos office and home-work days.
- Health insurance for employees and family members, life insurance, and a pension plan.
- Restaurant card, transport allowance, and flexible remuneration options.
- Access to office facilities includ a gym, doctor, hairdresser, electric mobility solutions, and personal assistance services.
- International, agile, technology-focused environment with an emphasis on collaboration, inclusion, sustainability, and continuous learn.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →