2

Full Time Threat Hunting Jobs (NOW HIRING)

Threat Hunting Consultant Remote Fulltime Microsoft Security Stack Expertise * Extensive hands-on experience with Microsoft Defender for Endpoint (MDE) * Proficiency with Microsoft 365 Defender (XDR ...

New

*This is a full-time onsite role at our Tampa Headquarters. About the Role At Digital Hands, we ... In this role, you'll focus on hypothesisdriven threat hunting across customer environments ...

This is a full-time onsite role at our Tampa Headquarters. About the Role At Digital Hands, we ... In this role, you'll focus on hypothesis-driven threat hunting across customer environments ...

Job Details The Threat Hunting Engineer Lead is a technical leader in the Cencora Security ... For details, visit Full time Equal Employment Opportunity Cencora is committed to providing equal ...

New

Threat Hunt Analyst

Lakewood, CO · Hybrid

$99K - $225K/yr

You will lead and execute sophisticated threat hunting operations, transforming emerging ... Full-time and part-time employees working at least 20 hours a week on a regular basis are eligible ...

Cyber Threat Hunter

Mclean, VA · On-site

$114K - $190K/yr

... Full time Description & Requirements Unlock the secrets of intelligence with MANTECH! Join a ... Conducting proactive threat hunting using the HMM-4 approach and MITRE ATT&CK framework.

next page

Showing results 1-20

Full Time Threat Hunting information

See salary details

$47

$60

$72

How much do full time threat hunting jobs pay per hour?

As of Aug 21, 2026, the average hourly pay for full time threat hunting in the United States is $60.46, according to ZipRecruiter salary data. Most workers in this role earn between $55.77 and $65.87 per hour, depending on experience, location, and employer.

What is a full time threat hunter?

A Full Time Threat Hunter is a cybersecurity professional who proactively searches for hidden threats and vulnerabilities within an organization’s networks and systems. Unlike traditional security roles that respond to alerts, threat hunters actively seek out signs of cyberattacks or malicious activities that may have bypassed automated defenses. Their work involves analyzing data, identifying patterns of suspicious behavior, and collaborating with other IT and security teams to mitigate risks. This role is critical for organizations aiming to stay ahead of sophisticated cyber threats and minimize potential damage.

What are some common challenges faced by full time threat hunters, and how can they be addressed?

Full-time threat hunters often encounter challenges such as staying ahead of evolving threats, managing large volumes of security data, and maintaining effective communication with other security teams. To address these, threat hunters regularly update their knowledge through continuous learning, leverage advanced threat detection tools, and document findings clearly to support incident response teams. Collaborating closely with SOC analysts and IT staff also helps ensure threats are quickly identified and mitigated.

What are the key skills and qualifications needed to thrive as a full time threat hunter, and why are they important?

To thrive as a Full Time Threat Hunter, you need a strong foundation in cybersecurity principles, network protocols, and incident response, often supported by a degree in computer science or information security. Familiarity with SIEM platforms, endpoint detection and response (EDR) tools, scripting languages like Python, and certifications such as GIAC or OSCP are highly valued. Critical thinking, attention to detail, and effective communication are vital soft skills for identifying threats and articulating findings to technical and non-technical stakeholders. These skills ensure proactive detection and mitigation of cyber threats, protecting organizational assets and maintaining security resilience.

What is the difference between Full Time Threat Hunting vs Security Analyst?

AspectFull Time Threat HuntingSecurity Analyst
CertificationsGCTI, GIAC GCT, CISSPCISSP, Security+
Work EnvironmentProactive threat detection, hunting for threatsMonitoring, incident response, vulnerability management
Employer & Industry UsageCybersecurity firms, large enterprisesOrganizations across industries, including finance, healthcare
Search & Comparison IntentUnderstanding proactive threat detection rolesUnderstanding roles in security operations

Full Time Threat Hunting focuses on proactively identifying hidden threats within networks, requiring specialized skills and certifications. Security Analysts typically monitor security systems and respond to incidents. While both roles are vital in cybersecurity, threat hunters are more proactive, whereas analysts are reactive. Understanding these differences helps in choosing the right career path or job role.

What are the most commonly searched types of Threat Hunting jobs?

The most popular types of Threat Hunting jobs are:

What states have the most Full Time Threat Hunting jobs?

States with the most job openings for Full Time Threat Hunting jobs include:

Threat Hunting Consultant

Northern Base

San Jose, CA • Remote

Full-time

Posted 2 days ago

New


Job description

Threat Hunting Consultant
Remote
Fulltime
 
Job Description
Microsoft Security Stack Expertise
• Extensive hands-on experience with Microsoft Defender for Endpoint (MDE)
• Proficiency with Microsoft 365 Defender (XDR) unified security operations
• Advanced knowledge of Kusto Query Language (KQL) for threat hunting and detection
• Deep understanding of MDE investigation capabilities, automated response features, and integration architecture
SIEM and Analytics
• Expert-level Splunk Enterprise Security experience
• Proficiency in Splunk Processing Language (SPL) for complex correlation and hunting queries
• Experience with Splunk User Behavior Analytics (UBA) or similar behavioral detection platforms
• Knowledge of SIEM architecture, data onboarding, and optimization techniques
Threat Hunting and Detection Engineering
• Demonstrated experience conducting hypothesis-driven threat hunts
• Strong understanding of MITRE ATT&CK framework and its practical application
• Ability to translate threat intelligence and attack research into actionable hunting queries
• Experience developing high-fidelity detection rules with low false positive rates
• Knowledge of adversary tactics, techniques, and procedures (TTPs) across multiple threat actor groups
Incident Response
• Proven track record in hands-on incident response and investigation
• Expertise in endpoint forensics and malware analysis
• Familiarity with incident response frameworks (NIST, SANS) and playbook development
• Experience with containment, eradication, and recovery procedures for complex security incidents
• Understanding of forensic evidence preservation and chain of custody requirements
Technical Foundations
• Deep understanding of Windows internals, process behaviors, and security architecture
• Knowledge of network protocols, traffic analysis, and common attack vectors
• Familiarity with authentication protocols (Active Directory, Azure AD, Kerberos, NTLM)
• Understanding of scripting and automation (PowerShell, Python, or similar)
 
Knowledge Transfer and Teaching Ability
• Proven ability to explain complex technical concepts to varied technical audiences
• Experience developing and delivering technical training or mentorship programs
• Patience and commitment to building team capability, not just completing tasks
• Ability to adapt teaching style to different learning preferences and skill levels
Communication and Collabo ration
• Excellent written communication skills for documentation and reporting
• Strong verbal communication skills for training delivery and incident collaboration
• Ability to work effectively with cross-functional teams (IR, detection engineering, IT operations)
• Comfort operating in a fully remote environment with distributed team members
Problem Solving and Initiative
• Self-directed work style with ability to identify priorities independently
• Creative problem-solving approach to novel security challenges
• Intellectual curiosity and continuous learning mindset
• Ability to translate theoretical threat research into practical defensive measures
• Minimum 5-7 years of experience in cybersecurity with focus on detection, threat hunting, and/or incident response
• At least 2 years of hands-on experience with Microsoft Defender for Endpoint in an enterprise environment
• Demonstrated experience conducting threat hunts that led to actionable security improvements
• Previous experience supporting or leading security tool migrations or implementations (highly valued)
• Certifications (Preferred)
 
Highly Valued:
• GIAC Cyber Threat Intelligence (GCTI)
• GIAC Certified Incident Handler (GCIH)
• GIAC Certified Forensic Analyst (GCFA)
• Certified Threat Intelligence Analyst (CTIA)
 
• Relevant:
• Microsoft Certified: Security Operations Analyst Associate (SC-200)
• Splunk Enterprise Security Certified Admin
• CISSP, CISM, or equivalent security management certification
• Offensive Security certifications (OSCP, OSCE) demonstrating adversarial perspective
 
 Knowledge Transfer and Teaching Ability
• Proven ability to explain complex technical concepts to varied technical audiences
• Experience developing and delivering technical training or mentorship programs
• Patience and commitment to building team capability, not just completing tasks
• Ability to adapt teaching style to different learning preferences and skill levels
Communication and Collaboration
• Excellent written communication skills for documentation and reporting
• Strong verbal communication skills for training delivery and incident collaboration
• A bility to work effectively with cross-functional teams (IR, detection engineering, IT operations)
• Comfort operating in a fully remote environment with distributed team members
Problem Solving and Initiative
• Self-directed work style with ability to identify priorities independently
• Creative problem-solving approach to novel security challenges
• Intellectual curiosity and continuous learning mindset
• Ability to translate theoretical threat research into practical defensive measures