2

Remote Threat Hunting Jobs (NOW HIRING)

Centurion is looking for multiple Threat Hunting Analyst for a remote opportunity Role Title: Threat Hunting Analyst Department: Cyber Security - Threat Detection and Response Reports To: Associate ...

Threat Hunting Consultant Remote Fulltime Microsoft Security Stack Expertise * Extensive hands-on experience with Microsoft Defender for Endpoint (MDE) * Proficiency with Microsoft 365 Defender (XDR ...

New

Senior Manager, Threat Hunting

Raritan, NJ · On-site +1

$113K - $153K/yr

The primary location for this position is Raritan, NJ and can be remote in the U.S. This role will ... Threat Hunting, Forensics, and Incident Response * Review intelligence feeds and reports from a ...

Senior Manager, Threat Hunting

Raritan, NJ · On-site +1

$113K - $153K/yr

The primary location for this position is Raritan, NJ and can be remote in the U.S. This role will ... Threat Hunting, Forensics, and Incident Response * Review intelligence feeds and reports from a ...

Conduct advanced threat hunting operations across customer environments * Analyze and respond to ... Fast-paced, dynamic team environment * 100% remote position based in the United States * Night ...

Threat Hunter, FedCloud (Remote)

$362K - $409K/yr

Conduct advanced threat hunting operations across client environments * Analyze and respond to ... remote position based in the United States Night shift schedule (Tuesday - Friday 23:00-09:00 ET)

Remote Employment Type: Full‑Time Salary Range: $100,000 - $116,000 Work Schedule: 12x5 coverage ... The ideal candidate is highly technical, analytical, and experienced in threat hunting, malware ...

Sr. Cloud Threat Hunter - AWS (Remote)

$57 - $76.25/hr

The ideal candidate will have 3-5 years of hands-on threat hunting experience in cloud environments ... What matters is that the knowledge is solid and the skills are demonstrable. #LI-AC1 #LI-Remote ...

New

Threat Hunting - perform hunting activities * Vulnerability Management - Generate reports using ... This is a Remote position, but prefer candidates in the Eastern timezone Cellebrite is an equal ...

next page

Showing results 1-20

Remote Threat Hunting information

See salary details

$47

$60

$72

How much do remote threat hunting jobs pay per hour?

As of Aug 23, 2026, the average hourly pay for remote threat hunting in the United States is $60.46, according to ZipRecruiter salary data. Most workers in this role earn between $55.77 and $65.87 per hour, depending on experience, location, and employer.

What is remote threat hunting?

Remote threat hunting is a proactive cybersecurity practice where experts search for signs of malicious activity or potential threats within an organization's network, often working from offsite locations. Unlike traditional security teams that rely on automated alerts, remote threat hunters actively investigate and analyze systems to detect hidden threats that might evade standard security tools. This approach helps organizations identify and respond to sophisticated cyberattacks more quickly, even when their security professionals are not physically present in the office.

What are the key skills and qualifications needed to thrive as a remote threat hunter, and why are they important?

To excel as a Remote Threat Hunter, you need strong analytical skills, deep knowledge of cybersecurity concepts, and experience with incident response, often supported by a degree in computer science or information security. Familiarity with SIEM platforms, intrusion detection systems, scripting languages like Python, and certifications such as CEH or GIAC are commonly expected. Exceptional problem-solving abilities, attention to detail, and effective communication are vital soft skills for this role. These competencies enable professionals to identify, analyze, and respond to cyber threats proactively, ensuring robust organizational security in a distributed work environment.

What are some common challenges faced by remote threat hunters, and how can they be overcome?

Remote threat hunters often face challenges such as limited visibility into network environments, coordinating with distributed teams, and ensuring secure access to sensitive data. To overcome these, it's important to use advanced tooling that provides centralized logging and real-time monitoring, maintain open communication channels with IT and security teams, and follow strict access management protocols. Regular virtual meetings and documentation can also help keep everyone aligned and ensure effective collaboration.

What is the difference between Remote Threat Hunting vs Remote Security Analyst?

AspectRemote Threat HuntingRemote Security Analyst
CertificationsGCTI, GIAC certifications, CISSPCompTIA Security+, CISSP, GIAC certifications
Work EnvironmentProactively searches for threats across networks and systemsMonitors security alerts, investigates incidents, maintains security tools
Industry UsageUsed in cybersecurity teams to identify hidden threatsUsed in security operations centers (SOCs) for incident response

Remote Threat Hunting and Remote Security Analyst roles share certifications and work environments but differ in focus. Threat hunters proactively seek out threats, while security analysts monitor and respond to alerts. Both are vital in cybersecurity but serve distinct functions within security teams.

More about Remote Threat Hunting jobs

What cities are hiring for Remote Threat Hunting jobs?

Cities with the most Remote Threat Hunting job openings:

What are the most commonly searched types of Threat Hunting jobs?

The most popular types of Threat Hunting jobs are:

What states have the most Remote Threat Hunting jobs?

States with the most job openings for Remote Threat Hunting jobs include:

Infographic showing various Remote Threat Hunting job openings in the United States as of August 2026, with employment types broken down into 92% Full Time, 6% Part Time, and 2% Contract. Highlights an 88% Physical, 4% Hybrid, and 8% Remote job distribution, with an average salary of $125,752 per year, or $60.5 per hour.

Full-time

Re-posted 18 days ago


Job description

Job Description Centurion is looking for multiple Threat Hunting Analyst for a remote opportunity Role Title: Threat Hunting Analyst Department: Cyber Security - Threat Detection and Response Reports To: Associate Director, Threat Hunting Role Purpose The Threat Hunting Analyst is responsible for proactively identifying malicious activity and emerging threats across the organization's global technology environment before they result in material incidents. This role focuses on hypothesis-driven hunts, advanced analysis of security telemetry, and development of high-fidelity detections that enhance the organisation's ability to detect and respond to sophisticated adversaries. Threat Hunting Analyst works closely with Security Incident Response, SOC analysts, and Threat Intelligence to turn attacker tradecraft and knowledge of the environment into actionable hunts, detections, and security improvements.

Key Responsibilities Proactive Threat Hunting Plan and execute hypothesis-driven hunts across endpoints, network, cloud, and identity platforms using SIEM, EDR, NDR, and other security telemetry sources. Use the MITRE ATT&CK framework and knowledge of adversary TTPs to design and prioritise hunt campaigns. Identify anomalous behaviours, stealthy attack patterns, and indicators of compromise that evade standard alerting.

Detection Engineering and Continuous Improvement Translate successful hunts into robust, high-quality detections, alert logic, and playbooks for SOC and Incident Response teams. Tune existing rules and playbooks to reduce false positives and improve signal-tonoise ratio. Contribute to documentation of hunt playbooks, detection use cases, and detection coverage maps.

Threat Intelligence Consumption Integrate internal and external threat intelligence into hunt hypotheses and detection logic. Monitor relevant threat actor activity, campaigns, and malware families targeting the organization and its sector. Provide feedback to Threat Intelligence teams on observed behaviors and collection gaps.

Incident Support Support Incident Response activities by assisting in scoping, impact assessment, and root cause identification when threats are discovered during hunts. Provide detailed analysis, timeline reconstruction, and artefact review to support containment and eradication actions. Data Analysis and Tool Usage Use advanced search and query languages (e.g

KQL, SPL, SQL) to interrogate large volumes of security telemetry. Apply basic scripting or automation (e.g. Python, PowerShell) to support data enrichment, correlation, and hunt execution

Collaborate with platform owners (e.g. SIEM, EDR, cloud security platforms) to ensure appropriate data sources and visibility for effective hunting. Reporting and Collaboration Document hunt plans, methodologies, findings, and detection improvements in a clear and repeatable format

Present hunt outcomes and insights to SOC, Incident Response, and other security stakeholders. Work with infrastructure, application, and cloud teams to validate findings and remediate root causes. Qualifications, Skills and Experience Required: Experience (typically 2-4 years) in at least one of the following areas: threat hunting, SOC operations, incident response, malware analysis, digital forensics, or security engineering.

Practical experience with at least one enterprise SIEM (e.g. Splunk, Microsoft Sentinel) and one endpoint protection/EDR solution. Strong understanding of: Network and endpoint security concepts (Windows, Linux; identity/Active Directory/Azure AD; common network protocols)

The MITRE ATT&CK framework and common adversary techniques (e.g. lateral movement, credential access, persistence). Detection and alerting concepts, including correlation rules and playbooks

Ability to query and analyse large data sets using search / query languages (e.g. KQL, SPL, SQL). Strong analytical thinking, pattern recognition, and problem-solving skills

Clear written and verbal communication skills in English, with the ability to explain complex technical issues to both technical and non-technical audiences. Preferred: Experience working in a global or highly regulated environment (e.g. healthcare, pharmaceuticals, financial services, critical infrastructure)

Exposure to cloud platforms (e.g. Azure, AWS, GCP) and cloud security telemetry. Familiarity with UEBA, NDR, or identity security tools

Experience with scripting and automation (e.g. Python, PowerShell) to support hunts and data enrichment. Familiarity with digital forensics and incident response (DFIR) concepts (e.g.timelines, artefact analysis, memory/disk forensics)

Relevant security certifications (e.g. GIAC GCDA, GCIA, GCIH, GCFR, Azure/AWS security certifications, or equivalent). Key Competencies Strong investigative mindset and curiosity, with a focus on uncovering unknown threats rather than only responding to alerts

High attention to detail and rigor in documenting methods, assumptions, and findings. Collaborative approach to working with other cyber security teams, IT, and business stakeholders. Ability to manage multiple concurrent hunts and tasks, and to prioritize based on risk and business impact.

Commitment to continuous learning about new threats, tools, and hunting techniques