TL;DR
Threat Hunting Security Professional (Cybersecurity): Managing threat intelligence lifecycles and executing threat hunting campaigns within the Cyber Security Defense Center with an accent on AI-supported threat ingestion and validating threat hypotheses. Focus on improving security detection rules, collaborating with CERT and SOC teams, and driving continuous improvement in the defense roadmap.
Location: Must be based in or able to commute to Amadora, Portugal for hybrid work
Company
hirify.global is a B2B technology innovation leader pioneering the future where networks meet cloud.
What you will do
- Identify relevant threat intelligence feeds and manage ingestion into the MISP platform.
- Execute full-lifecycle threat hunts based on defined hypotheses and document findings.
- Develop and refine SIEM detection rules based on hunt results and security gaps.
- Integrate AI-supported processes for automated threat intelligence enrichment.
- Collaborate with internal teams like CERT and CDC Operations to strengthen security posture.
- Translate complex threat modeling data into actionable security improvements.
Requirements
- BSc or MSc degree in computer science or a related technical field.
- 5+ years of experience in cyber security.
- Practical hands-on experience in threat intelligence and information security.
- Active understanding of cybersecurity terminology (CIA, SIEM, SOC, APT, TTPs, MITRE ATT&CK).
- Fluency in English (oral and written).
- Proficiency in scripting or programming languages such as Python or PowerShell.
Nice to have
- Experience as a SOC analyst.
- Security certifications such as CEH, CHFI, or CTIA.
Culture & Benefits
- Inclusive culture that empowers risk-taking and authentic self-expression.
- Opportunity to influence global cyber security policies and standards.
- Exposure to 5G/6G security architecture and innovation.
- Support for ongoing professional development and security certifications.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →