Operate BloodHound Enterprise as an identity threat exposure management capability, analyzing attack paths, Tier Zero relationships, excessive privilege, nested group membership, delegated ...
Operate BloodHound Enterprise as an identity threat exposure management capability, analyzing attack paths, Tier Zero relationships, excessive privilege, nested group membership, delegated ...
Operate BloodHound Enterprise as an identity threat exposure management capability, analyzing attack paths, Tier Zero relationships, excessive privilege, nested group membership, delegated ...
Operate BloodHound Enterprise as an identity threat exposure management capability, analyzing attack paths, Tier Zero relationships, excessive privilege, nested group membership, delegated ...
Operate BloodHound Enterprise as an identity threat exposure management capability, analyzing attack paths, Tier Zero relationships, excessive privilege, nested group membership, delegated ...
Operate BloodHound Enterprise as an identity threat exposure management capability, analyzing attack paths, Tier Zero relationships, excessive privilege, nested group membership, delegated ...
Operate BloodHound Enterprise as an identity threat exposure management capability, analyzing attack paths, Tier Zero relationships, excessive privilege, nested group membership, delegated ...
Operate BloodHound Enterprise as an identity threat exposure management capability, analyzing attack paths, Tier Zero relationships, excessive privilege, nested group membership, delegated ...
Internal Network Penetration Tester
San Bernardino, CA · On-site
$107K - $147K/yr
... BloodHound, Responder, or equivalent). Preferred Qualifications • OSCP or GPEN certification. • Experience testing in HIPAA-regulated or government network environments. Travel Onsite travel ...
Internal Network Penetration Tester
San Bernardino, CA · On-site
$107K - $147K/yr
... BloodHound, Responder, or equivalent). Preferred Qualifications • OSCP or GPEN certification. • Experience testing in HIPAA-regulated or government network environments. Travel Onsite travel ...
Internal Network Penetration Tester
San Bernardino, CA · On-site
$107K - $147K/yr
Experience with internal recon and lateral movement tooling (BloodHound, Responder, or equivalent). Preferred Qualifications * OSCP or GPEN certification. * Experience testing in HIPAA-regulated or ...
Quick apply
Internal Network Penetration Tester
San Bernardino, CA · On-site
$107K - $147K/yr
Experience with internal recon and lateral movement tooling (BloodHound, Responder, or equivalent). Preferred Qualifications * OSCP or GPEN certification. * Experience testing in HIPAA-regulated or ...
Senior IT Penetration Tester
Oak Brook, IL · On-site
For internal and Active Directory engagements, maps and demonstrates feasible attack paths, for example, using BloodHound or equivalent, including privilege escalation and lateral movement, validates ...
Senior IT Penetration Tester
Oak Brook, IL · On-site
For internal and Active Directory engagements, maps and demonstrates feasible attack paths, for example, using BloodHound or equivalent, including privilege escalation and lateral movement, validates ...
Cyber Penetration Tester SME- Active (TS/SCI with CI Poly)
Reston, VA · On-site
$150K - $185K/yr
Hands-on experience with tools such as Kali Linux, Metasploit, Burp Suite Pro, Cobalt Strike, Nmap, Nessus, BloodHound, Impacket, and other offensive security platforms used for enumeration ...
Quick apply
Cyber Penetration Tester SME- Active (TS/SCI with CI Poly)
Reston, VA · On-site
$150K - $185K/yr
Hands-on experience with tools such as Kali Linux, Metasploit, Burp Suite Pro, Cobalt Strike, Nmap, Nessus, BloodHound, Impacket, and other offensive security platforms used for enumeration ...
Cyber Penetration Tester SME- Active TS (SCI and CI/Poly Eligible)
Reston, VA · On-site
$150K - $185K/yr
Hands-on experience with tools such as Kali Linux, Metasploit, Burp Suite Pro, Cobalt Strike, Nmap, Nessus, BloodHound, Impacket, and other offensive security platforms used for enumeration ...
Cyber Penetration Tester SME- Active TS (SCI and CI/Poly Eligible)
Reston, VA · On-site
$150K - $185K/yr
Hands-on experience with tools such as Kali Linux, Metasploit, Burp Suite Pro, Cobalt Strike, Nmap, Nessus, BloodHound, Impacket, and other offensive security platforms used for enumeration ...
For internal and Active Directory engagements, maps and demonstrates feasible attack paths, for example, using BloodHound or equivalent, including privilege escalation and lateral movement, validates ...
For internal and Active Directory engagements, maps and demonstrates feasible attack paths, for example, using BloodHound or equivalent, including privilege escalation and lateral movement, validates ...
Hands-on experience with tools such as Kali Linux, Metasploit, Burp Suite Pro, Cobalt Strike, Nmap, Nessus, BloodHound, Impacket, and other offensive security platforms used for enumeration ...
Hands-on experience with tools such as Kali Linux, Metasploit, Burp Suite Pro, Cobalt Strike, Nmap, Nessus, BloodHound, Impacket, and other offensive security platforms used for enumeration ...
Security assessment and analysis tools such as BloodHound. * Healthcare or other highly regulated industry experience. * Backup and recovery platform administration. * Audit support, compliance ...
Security assessment and analysis tools such as BloodHound. * Healthcare or other highly regulated industry experience. * Backup and recovery platform administration. * Audit support, compliance ...
Experience with industry-standard offensive tools (Burp Suite, Cobalt Strike / Sliver / Mythic, Metasploit, BloodHound, nuclei, etc.) and ability to operate beyond them * Excellent written and verbal ...
New
Experience with industry-standard offensive tools (Burp Suite, Cobalt Strike / Sliver / Mythic, Metasploit, BloodHound, nuclei, etc.) and ability to operate beyond them * Excellent written and verbal ...
New
Senior IT Security Engineer - Full Time, Days (Remote) 11492
Bellflower, CA · On-site +1
$145K/yr
Experience with BloodHound CE, Impacket, or similar AD security audit tooling Pay Rate: Min - $145,000 l Max - $145,000 Job Listing ID: 1790308
Senior IT Security Engineer - Full Time, Days (Remote) 11492
Bellflower, CA · On-site +1
$145K/yr
Experience with BloodHound CE, Impacket, or similar AD security audit tooling Pay Rate: Min - $145,000 l Max - $145,000 Job Listing ID: 1790308
Penetration Tester
Washington, DC · On-site
Proficiency with common offensivesecurity tools (e.g., Burp Suite, Cobalt Strike, Metasploit, BloodHound). * Ability to produce highquality technical documentation, findings reports, and remediation ...
Penetration Tester
Washington, DC · On-site
Proficiency with common offensivesecurity tools (e.g., Burp Suite, Cobalt Strike, Metasploit, BloodHound). * Ability to produce highquality technical documentation, findings reports, and remediation ...
Member of Technical Staff (Offensive Security Engineer)
New York, NY · On-site +1
$220K - $405K/yr
Experience with industry-standard offensive tools (Burp Suite, Cobalt Strike / Sliver / Mythic, Metasploit, BloodHound, nuclei, etc.) and ability to operate beyond them * Excellent written and verbal ...
Member of Technical Staff (Offensive Security Engineer)
New York, NY · On-site +1
$220K - $405K/yr
Experience with industry-standard offensive tools (Burp Suite, Cobalt Strike / Sliver / Mythic, Metasploit, BloodHound, nuclei, etc.) and ability to operate beyond them * Excellent written and verbal ...
Adjunct Faculty - Cybersecurity (Scripting, Penetration Testing & Web Security)
Manhattan, NY · On-site
$6.5K/wk
Teach tool usage (e.g., Nmap, Metasploit, BloodHound, credential attacks) alongside methodology and decision-making * Emphasize operational tradecraft, reporting, risk assessment, and communication ...
Adjunct Faculty - Cybersecurity (Scripting, Penetration Testing & Web Security)
Manhattan, NY · On-site
$6.5K/wk
Teach tool usage (e.g., Nmap, Metasploit, BloodHound, credential attacks) alongside methodology and decision-making * Emphasize operational tradecraft, reporting, risk assessment, and communication ...
OSS/BSS Architect Location:- Philadelphia, PA Duration:- Full Time
Philadelphia, PA · On-site
$63.50 - $83.75/hr
Proven experience with Bloodhound Enterprise and related security tools. * Strong knowledge of Active Directory, Azure AD, AWS and cloud-based infrastructure. * Experience with server management ...
Quick apply
OSS/BSS Architect Location:- Philadelphia, PA Duration:- Full Time
Philadelphia, PA · On-site
$63.50 - $83.75/hr
Proven experience with Bloodhound Enterprise and related security tools. * Strong knowledge of Active Directory, Azure AD, AWS and cloud-based infrastructure. * Experience with server management ...
Penetration Tester
Plano, TX · Remote
$60 - $70/hr
Experience with industry-standard tools such as Burp Suite, Metasploit, Nmap, BloodHound, and command-and-control frameworks. * Proficiency in Python and scripting (Bash or PowerShell). Apply today!
Quick apply
Penetration Tester
Plano, TX · Remote
$60 - $70/hr
Experience with industry-standard tools such as Burp Suite, Metasploit, Nmap, BloodHound, and command-and-control frameworks. * Proficiency in Python and scripting (Bash or PowerShell). Apply today!
Assess Active Directory attack paths using tools such as BloodHound. * Security Assessments : * Assessing Coast Guard's cyber security posture of operational networks through adversary emulation.
Assess Active Directory attack paths using tools such as BloodHound. * Security Assessments : * Assessing Coast Guard's cyber security posture of operational networks through adversary emulation.
Bloodhound information
See salary details
$86.30 - $87.13
8% of jobs
$87.13 - $87.96
8% of jobs
$88.71 is the 25th percentile. Wages below this are outliers.
$87.96 - $88.79
11% of jobs
$88.79 - $89.62
8% of jobs
$89.62 - $90.45
11% of jobs
The median wage is $91.04 / hr.
$90.45 - $91.28
8% of jobs
$91.28 - $92.11
11% of jobs
$92.11 - $92.94
8% of jobs
$93.27 is the 75th percentile. Wages above this are outliers.
$92.94 - $93.77
11% of jobs
$93.77 - $94.60
8% of jobs
$94.60 - $95.43
11% of jobs
$86
$91
$95
How much do bloodhound jobs pay per hour?
What is a bloodhound?
A Bloodhound job typically involves tracking and locating people, objects, or information using investigative skills, research, and sometimes technology. It may refer to roles in law enforcement, cybersecurity, private investigation, or even talent scouting. The term is often associated with someone skilled in uncovering hidden details and following leads meticulously. Responsibilities vary by industry but usually focus on persistence, attention to detail, and problem-solving.
What are some common challenges faced by bloodhound handlers on the job?
Bloodhound handlers often encounter challenging environments, such as rough terrain, inclement weather, and unpredictable search conditions during tracking assignments. Maintaining the dog's focus and motivation over long periods can also be demanding, especially when searches are prolonged or in areas with many distractions. Handlers must be prepared to adapt quickly and make critical decisions to ensure the safety and effectiveness of the search operation. Collaboration with law enforcement or search-and-rescue teams is frequent, so strong communication and coordination skills are essential. Overcoming these challenges requires a combination of physical fitness, experience, and commitment to the well-being of both the dog and the mission.
What jobs do bloodhounds do?
What are the key skills and qualifications needed to thrive as a bloodhound?
To thrive as a Bloodhound handler, you need expertise in canine handling and training, animal behavior, and scent detection, often supported by certifications in law enforcement or search and rescue. Familiarity with GPS tracking systems, radio communication equipment, and animal first aid is important in this role. Strong observational skills, patience, and effective teamwork are key soft skills that help handlers excel. These competencies are essential for accurate scent tracking, efficient operations, and ensuring the safety of both the handler and the bloodhound in demanding field conditions.
What cities are hiring for Bloodhound jobs?
Cities with the most Bloodhound job openings:
What are the most commonly searched types of Bloodhound jobs?
The most popular types of Bloodhound jobs are:
What states have the most Bloodhound jobs?
States with the most job openings for Bloodhound jobs include:
What job categories do people searching Bloodhound jobs look for?
The top searched job categories for Bloodhound jobs are:

Full-time
Medical, Dental, Vision, Life, Retirement
Posted 4 days ago
Job description
Company Overview
Every firm has a culture - the values, beliefs, methodology, attitudes and standards that reflect an organization's DNA. But the truly inspiring firms - the game-changers, the industry leaders and the disruptors - have cultures that propel them to innovate and stand out. At Brown Advisory, we aim to be one of those inspired firms. Over the years, we have purposefully built and nurtured our client-first culture.
Brown Advisory is an independent investment management and strategic advisory firm committed to delivering a combination of first-class performance, strategic advice and the highest level of client service. The firm's clients-including individuals, families, family offices, endowments, foundations, charities, institutions, consultants, and financial intermediaries-are served by over 1,000 colleagues worldwide, all of whom are equity owners of the firm.
Brown Advisory is currently seeking an Identity and Access Security Engineer to lead and mature the firm's identity security controls across Okta, Microsoft Entra ID, Active Directory, CyberArk, BloodHound Enterprise, multifactor authentication, privileged access, application integrations, and access governance. This blended role is designed for a hands-on security professional who understands identity as both a business-enablement workflow and a critical security control plane.
The engineer will be responsible for reducing identity-related risk across workforce, privileged, service, application, and machine identities. The role combines identity engineering, privileged-access management, identity threat exposure management, access governance, attack-path remediation, and operational control assurance.
As part of a lean Information Security team within a mid-sized financial services organization, this individual will partner with Infrastructure, Enterprise Applications, Compliance, Human Resources, Operations, and business system owners. The role will help ensure that access is appropriately granted, reviewed, monitored, and removed while enabling secure adoption of SaaS, cloud, and on-premises platforms.
Blended Role CoveragePrimary emphasis: Identity security engineering and governance across IAM, PAM, identity threat exposure management, MFA, privileged access, access reviews, and identity-related risk.
Blended coverage: Okta and Entra ID integration, CyberArk platform operations and privileged-account onboarding, service-account governance, BloodHound Enterprise analysis and attack-path remediation, Active Directory privilege hygiene, SaaS access controls, identity lifecycle automation, and selected security-engineering support.
Duties and Responsibilities
Own the day-to-day security governance and engineering of identity controls across Okta, Microsoft Entra ID, Active Directory, MFA, Conditional Access, privileged access, and identity lifecycle workflows.
Design, implement, operate, and continuously improve privileged-access controls using CyberArk, including account discovery, vault onboarding, credential rotation, access workflows, session controls, privileged-account monitoring, break-glass access, and evidence collection.
Govern the lifecycle of privileged human and non-human identities, including administrator accounts, service accounts, application credentials, scheduled-task accounts, emergency accounts, and other machine identities.
Identify privileged and service accounts that are unmanaged, improperly configured, inactive, or outside established CyberArk controls, and coordinate their onboarding, remediation, or retirement.
Develop and maintain CyberArk safes, platforms, policies, account ownership models, reconciliation processes, access permissions, operational procedures, and recovery documentation.
Operate BloodHound Enterprise as an identity threat exposure management capability, analyzing attack paths, Tier Zero relationships, excessive privilege, nested group membership, delegated permissions, and other identity-control weaknesses.
Translate BloodHound findings into prioritized and actionable remediation plans, working with Infrastructure and application owners to remove unnecessary privilege while preserving required business and system functionality.
Validate identity-risk remediation through rescanning, attack-path analysis, ticket evidence, exception documentation, and measurable reduction in identity exposure.
Maintain a defined Tier Zero and critical-identity model across Active Directory, Entra ID, privileged platforms, administrative systems, and supporting infrastructure.
Assess and improve Active Directory security, including privileged groups, delegated administrative rights, nested group relationships, service accounts, stale privileges, domain and forest trust exposure, and administrative-tier separation.
Partner with Infrastructure to reduce standing privilege and implement secure administrative patterns for domain, server, workstation, application, and help-desk administration.
Integrate applications with Okta and Entra ID using secure authentication, authorization, SSO, provisioning, deprovisioning, and lifecycle-management patterns.
Lead access review routines for critical systems, privileged roles, SaaS platforms, and regulated business processes, ensuring exceptions are documented and remediated.
Partner with HR, Compliance, Operations, and application owners to improve joiner, mover, leaver, contractor, vendor, service-account, and application-identity workflows.
Strengthen identity detection and response by integrating telemetry from Okta, Entra ID, Active Directory, CyberArk, BloodHound Enterprise, and other identity systems into SIEM and investigation workflows.
Support investigations involving suspicious authentication, credential misuse, privileged-account activity, unauthorized role changes, risky OAuth grants, anomalous service-account behavior, and potential identity-based lateral movement.
Support security configuration for SaaS applications where identity, authorization, administrative roles, and data-access controls are central to risk management.
Define and report identity-security metrics, including privileged-account coverage, service-account onboarding, password-rotation compliance, standing privileged access, attack-path exposure, Tier Zero findings, stale access, review completion, and remediation aging.
Maintain identity standards, procedures, control evidence, risk documentation, metrics, and leadership reporting in partnership with GRC.
Drive remediation of identity-related audit findings, penetration-test findings, policy exceptions, BloodHound findings, and access-control gaps.
Provide practical guidance to application, infrastructure, and business teams on secure identity patterns that meet control requirements without slowing delivery unnecessarily.
Preferred Qualifications
Bachelor's degree in cyber security, computer science, information systems, engineering, or a relevant field, or equivalent professional experience.
4-8 years of experience in information security, identity and access management, infrastructure security, cloud security, or related technical work.
Hands-on experience administering or engineering identity controls in Microsoft Entra ID and Active Directory; experience with Okta or another enterprise identity provider strongly preferred.
Hands-on experience with a privileged-access management platform; CyberArk administration or engineering experience strongly preferred.
Experience identifying and remediating Active Directory or cloud identity attack paths using BloodHound Enterprise, BloodHound Community Edition, or a comparable identity threat exposure management platform.
Demonstrated experience governing service accounts, application identities, privileged accounts, secrets, and other non-human identities.
Experience with access reviews, MFA, SSO, provisioning, deprovisioning, Conditional Access, and identity governance in a regulated environment.
Experience with PowerShell, Microsoft Graph, REST APIs, or other automation methods used to analyze identity data and automate control workflows.
Experience working with infrastructure teams to remediate complex privilege relationships without disrupting business-critical systems.
CISSP, Microsoft identity/security certifications, CyberArk certifications, Okta certifications, or other relevant professional designations preferred.
Technical Skills
Identity platforms and protocols: Okta, Microsoft Entra ID, Active Directory, Microsoft 365, MFA, Conditional Access, SSO, SCIM, SAML, OAuth 2.0, OpenID Connect, lifecycle automation, group governance, enterprise applications, managed identities, and application registrations.
Privileged-access management: CyberArk administration and engineering, including vaulting, safes, platforms, credential rotation, reconciliation, privileged session controls, account discovery, onboarding, access workflows, reporting, service accounts, emergency access, and operational recovery.
Identity threat exposure management: BloodHound Enterprise or comparable attack-path management platforms; Tier Zero analysis; transitive privilege; nested group analysis; delegated permissions; attack-path prioritization; Active Directory privilege hygiene; remediation validation; and exposure metrics.
Identity governance: Joiner, mover, leaver workflows; access certification; role and entitlement governance; segregation of duties; exception handling; contractor and vendor access; evidence collection; and control reporting.
Automation and analysis: PowerShell, Microsoft Graph, REST APIs, structured data analysis, identity inventory reconciliation, workflow automation, and integration with ticketing, SIEM, and reporting platforms.
Identity detection and response: Analysis of authentication, privilege, administrative, and access telemetry from Okta, Entra ID, Active Directory, CyberArk, SaaS platforms, and related identity systems.
SaaS access-control models for platforms such as Microsoft 365, Salesforce, Box, and other business-critical applications.
Strong communication skills and comfort working across technical teams, business owners, Compliance, HR, and Operations.
Demonstrates curiosity and a continuous improvement mindset by identifying opportunities to enhance processes, improve efficiency, and thoughtfully leverage new technologies and tools, including AI-enabled productivity solutions
Personal Attributes
Take ownership and move initiatives forward without constant oversight.
Balance technical depth, process discipline, and sound business judgment.
Approach risk management pragmatically rather than theoretically.
Demonstrate sufficient technical judgment to distinguish an exploitable identity path from a theoretical configuration concern.
Work carefully through complex privilege remediation where seemingly minor changes may affect applications, service accounts, administrative workflows, or production systems.
Thrive in collaborative, high-accountability environments.
Communicate clearly with technical and non-technical colleagues.
Bring an entrepreneurial mindset to building and improving security capabilities.
Applicants must be authorized to work in the United States without the need for current or future employer-sponsored work authorization (e.g., H-1B , O-1, F-1 (OPT), TN, or any other non-immigrant visa classifications that require employer support or sponsorship).
MD Salary: $110-$135k. Commensurate with experience and location. Does not include bonus or long term incentive eligibility (if applicable).
DC Salary: $121K-$148.5K. Commensurate with experience and location. Does not include bonus or long-term incentive eligibility (if applicable).
Benefits
At Brown Advisory we offer a competitive compensation package, including full benefits.
Medical
Dental
Vision
Wellness program participation incentive
Financial wellness program
Fitness event fee reimbursement
Gym membership discounts
Colleague Assistance Program
Telemedicine Program (for those enrolled in Medical)
Adoption Benefits
Daycare late pick-up fee reimbursement
Basic Life & Accidental Death & Dismemberment Insurance
Voluntary Life & Accidental Death & Dismemberment Insurance
Short Term Disability
Paid parental leave
Group Long Term Disability
Pet Insurance
401(k) (50% employer match up to IRS limit, 4 year vesting)
Brown Advisory is an Equal Employment Opportunity Employer.
About Brown Advisory
Sourced by ZipRecruiter
Industry
Finance and insurance
Company size
201 - 500 Employees
Headquarters location
Baltimore, MD, US
Year founded
1993