Nowa
Senior Threat Hunting Specialist (+AI)
Brak informacji o wynagrodzeniu
SeniorFull-time
#355383·Dodano dziś·0
Źródło: EPAM SystemsTech Stack / Keywords
SecurityAINetworkScripting
Wymagania
- Bachelor's degree in Information Security, Computer Science, Cybersecurity or equivalent
- 5+ years of experience in cybersecurity, with strong focus on threat hunting, incident response or security operations
- Expertise in hypothesis-driven threat hunting across endpoints, networks and cloud platforms
- Proficiency in analyzing attacker tactics, techniques and procedures (TTPs), IOCs and APT behavior
- Skills in developing custom detection logic, queries and use cases for SIEM, EDR and XDR platforms
- Competency in malware analysis, reverse engineering and analysis of adversary artifacts
- Background in memory analysis, log correlation and network forensics
- Capability to analyze large datasets including logs, endpoint telemetry and threat intelligence feeds
- Familiarity with red/purple team activities, breach and attack simulations and detection validation exercises
- Flexibility to work within, or very close to, UAE business hours
- Upper-Intermediate English language proficiency (B2)
Nice to have:
- Certified Information Systems Security Professional (CISSP)
- GIAC Certified Incident Handler (GCIH) or GIAC Certified Forensic Analyst (GCFA)
- Certified Threat Intelligence Analyst (CTIA)
- Certified Ethical Hacker (CEH) or Certified Reverse Engineering Analyst (CREA)
- CompTIA Security+
Obowiązki
- Conduct proactive threat hunting across endpoints, networks, cloud platforms and security data sources to identify hidden threats and anomalous behavior
- Develop and execute threat hunting hypotheses based on intelligence, indicators of compromise (IOCs) and attacker TTPs
- Analyze large datasets including logs, endpoint telemetry, network traffic and threat intelligence feeds to detect malicious activity
- Identify advanced persistent threats (APT), insider threats and sophisticated attack patterns that bypass traditional security controls
- Perform deep-dive investigations into suspicious activities and support incident response teams during active incidents
- Reverse-engineer attack behavior and analyze malware artifacts where required to understand adversary activity
- Develop custom detection logic, queries and use cases (e.g., SIEM, EDR, XDR) to enhance visibility and detection coverage
- Refine and improve threat hunting methodologies, playbooks and standard operating procedures on a continuous basis
- Leverage threat intelligence to identify emerging relevant threats and align hunting activities accordingly
- Conduct memory analysis, log correlation and network forensics to validate potential threats
- Collaborate with SOC, Incident Response, Digital Forensics and Threat Intelligence teams to strengthen detection and response capabilities
- Document threat hunting findings, including identified threats, detection gaps and remediation recommendations, and maintain dashboards and reporting for stakeholders
Oferta
- Engineering community of industry professionals
- Friendly team and enjoyable working environment
- Flexible schedule and opportunity to work remotely within Poland
- Chance to work abroad for up to 60 days annually
- Business-driven relocation opportunities
- Outstanding career roadmap
- Leadership development, career advising, soft skills, and well-being programs
- Certification (GCP, Azure, AWS)
- Unlimited access to LinkedIn Learning, Get Abstract, Cloud Guru
- English classes
- Stable income (Employment Contract or B2B)
- Participation in the Employee Stock Purchase Plan
- Benefits package (health insurance, multisport, shopping vouchers)
- Strategically located offices featuring entertainment and relaxation zones, table tennis and football, free snacks, fantastic coffee, and more
- Referral bonuses
- Corporate, social and well-being events
Elastyczne godziny
Płatny urlop
Kursy językowe
Budżet konferencyjny
Dofinansowanie szkoleń
Karta sportowa
Opieka zdrowotna
Ubezpieczenie
Darmowe przekąski
Premie
Udziały pracownicze
EPAM Systems
302 aktywne oferty