2

Remote Threat Hunting Jobs in Indiana (NOW HIRING)

Threat Hunting * Conduct proactive hunts across endpoints, identity, cloud, and network telemetry ... Volatility 3 * Velociraptor for remote memory dumps * Experience with enterprise SIEM platforms ...

New

Threat Hunting * Conduct proactive hunts across endpoints, identity, cloud, and network telemetry ... Volatility 3 * Velociraptor for remote memory dumps * Experience with enterprise SIEM platforms ...

New

Threat Hunting * Conduct proactive hunts across endpoints, identity, cloud, and network telemetry ... Volatility 3 * Velociraptor for remote memory dumps * Experience with enterprise SIEM platforms ...

New

Remote Threat Hunting information

What is remote threat hunting?

Remote threat hunting is a proactive cybersecurity practice where experts search for signs of malicious activity or potential threats within an organization's network, often working from offsite locations. Unlike traditional security teams that rely on automated alerts, remote threat hunters actively investigate and analyze systems to detect hidden threats that might evade standard security tools. This approach helps organizations identify and respond to sophisticated cyberattacks more quickly, even when their security professionals are not physically present in the office.

What are the key skills and qualifications needed to thrive as a remote threat hunter, and why are they important?

To excel as a Remote Threat Hunter, you need strong analytical skills, deep knowledge of cybersecurity concepts, and experience with incident response, often supported by a degree in computer science or information security. Familiarity with SIEM platforms, intrusion detection systems, scripting languages like Python, and certifications such as CEH or GIAC are commonly expected. Exceptional problem-solving abilities, attention to detail, and effective communication are vital soft skills for this role. These competencies enable professionals to identify, analyze, and respond to cyber threats proactively, ensuring robust organizational security in a distributed work environment.

What are some common challenges faced by remote threat hunters, and how can they be overcome?

Remote threat hunters often face challenges such as limited visibility into network environments, coordinating with distributed teams, and ensuring secure access to sensitive data. To overcome these, it's important to use advanced tooling that provides centralized logging and real-time monitoring, maintain open communication channels with IT and security teams, and follow strict access management protocols. Regular virtual meetings and documentation can also help keep everyone aligned and ensure effective collaboration.

What is the difference between Remote Threat Hunting vs Remote Security Analyst?

AspectRemote Threat HuntingRemote Security Analyst
CertificationsGCTI, GIAC certifications, CISSPCompTIA Security+, CISSP, GIAC certifications
Work EnvironmentProactively searches for threats across networks and systemsMonitors security alerts, investigates incidents, maintains security tools
Industry UsageUsed in cybersecurity teams to identify hidden threatsUsed in security operations centers (SOCs) for incident response

Remote Threat Hunting and Remote Security Analyst roles share certifications and work environments but differ in focus. Threat hunters proactively seek out threats, while security analysts monitor and respond to alerts. Both are vital in cybersecurity but serve distinct functions within security teams.

What are the most commonly searched types of Threat Hunting jobs in Indiana?

The most popular types of Threat Hunting jobs in Indiana are:

What are popular job titles related to Remote Threat Hunting jobs in Indiana?

For Remote Threat Hunting jobs in Indiana, the most frequently searched job titles are:

What cities in Indiana are hiring for Remote Threat Hunting jobs?

Cities in Indiana with the most Remote Threat Hunting job openings:

Digital Forensics Analyst

Rolls-Royce

Indianapolis, IN • On-site, Remote

Full-time

Medical, Dental, Vision, Life, Retirement, PTO

Posted 3 days ago

New


Rolls-Royce rating

9.0

Company rating: 9.0 out of 10

Based on 14 frontline employees who took The Breakroom Quiz

29th of 499 rated machine equipment manufacturers


Job description


Job Description

Job Title: Digital Forensics Analyst

Working Pattern: Fulltime - hybrid

Working location: Indianapolis, IN

Relocation assistance will be provided if applicable

Why Rolls-Royce?

At Rolls-Royce we are proud to be a business that has truly helped to shape the modern world and are committed to always being a force for progress; powering, protecting and connecting people everywhere.

By joining Rolls-Royce, you'll have the opportunity to create world-class power and propulsion solutions, pushing your problem-solving and ingenuity, to deliver real impact that puts safety first.

You'll be given responsibility and the opportunity to grow in our high-performance culture. This is Infinite Potential. And it's your chance to really shine and contribute to one of the world's most recognized brands and a beacon for engineering excellence.

Position Summary:

We are seeking a highly motivated DFIR Specialist to join our Purple Team. This role bridges offensive and defensive security operations by combining incident response, threat hunting, digital forensics, adversary emulation, and detection engineering.
The ideal candidate enjoys investigating real-world attacks, understanding adversary behavior, improving detection capabilities, and working collaboratively with red and blue teams to strengthen security posture.

What you will be doing:

Incident Response
  • Lead or support investigations involving malware, ransomware, insider threats, and advanced persistent threats.
  • Perform endpoint, memory, disk, and cloud forensics.
  • Conduct triage activities during security incidents.
  • Coordinate containment, eradication, and recovery efforts.
  • Develop incident response playbooks and procedures.
  • Produce executive and technical incident reports.
Threat Hunting
  • Conduct proactive hunts across endpoints, identity, cloud, and network telemetry.
  • Develop hypotheses based on emerging adversary techniques.
  • Analyze attack patterns using frameworks such as MITRE ATT&CK.
  • Identify gaps in visibility and logging.
Purple Team Operations
  • Collaborate with red team operators to emulate adversary tactics.
  • Validate detections against simulated attacks.
  • Assist in planning and executing purple team exercises.
  • Measure and improve detection coverage.
  • Map detections and hunting content to ATT&CK techniques.
Detection Engineering
  • Develop and tune detections within SIEM and EDR platforms.
  • Reduce false positives while improving fidelity.
  • Create custom analytics, dashboards, and monitoring content.
  • Automate repetitive investigation tasks through scripting.
Forensics
  • Acquire and analyze forensic artifacts from:
    • Windows systems
    • Linux systems
    • Cloud environments
    • Containers
    • Identity providers
  • Perform timeline reconstruction.
  • Analyze persistence mechanisms.

Basic Qualifications:

  • Associate's degree in Cybersecurity, Computer Science, Information Technology, Mathematics and 2 + years of relevant experience OR;
  • Bachelor's degree in Cybersecurity, Computer Science, Information Technology, Mathematics and 2 + years of relevant experience OR;
  • Master's degree in Cybersecurity, Computer Science, Information Technology, Mathematics OR;
  • PhD in Cybersecurity, Computer Science, Information Technology, Mathematics OR;
  • In lieu of a degree must have 6+ years' experience in Cyber Security or Information Technology
  • Must be a US Citizen

Preferred Qualifications:

  • 3+ years focused on incident response, threat hunting, or DFIR.
  • 6+ years' experience in Cyber Security or Information Technology
  • Experience with various memory acquisition techniques/tools:
    • FTK Imager
    • Volatility 3
    • Velociraptor for remote memory dumps
  • Experience with enterprise SIEM platforms such as:
    • Microsoft Sentinel
    • Splunk Enterprise Security
    • Elastic Security
  • Experience with EDR technologies including:
    • Microsoft Defender XDR
    • CrowdStrike Falcon
    • SentinelOne Singularity
  • Familiarity with:
    • Windows Event Logs
    • Sysmon
    • KQL
    • Sigma rules
    • YARA
    • PowerShell
    • Python
    • Memory analysis
    • Malware triage
  • Understanding of:
    • Attack chains
    • Identity-based attacks
    • Cloud attack techniques
    • Detection engineering principles
  • Experience with adversary emulation frameworks.
  • Familiarity with:
    • Caldera
    • Prelude Operator
    • Velociraptor
    • TheHive
  • Cloud security investigation experience in:
    • Microsoft Azure
    • Amazon AWS
    • Google Cloud

Certifications:

  • GIAC certifications such as GCFA, GCIH, GCFE, etc.
  • Microsoft certifications such as SC-200, SC-400, AZ-500
  • CISSP, CCSP

Our vision is to ensure that the quality and dynamism that shaped our history continues into our future. It's a bold pursuit, and we never stop striving to go further, faster, and better. We lead progress, creating the technologies that move us forward. If you're driven to grow, to learn, and to make a lasting difference, this is where you belong.

Rolls-Royce is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to any protected characteristics. We are committed to providing a respectful and non-discriminatory workplace where individuality is valued and everyone can thrive.

Infinite Potential

#CLOLI

#CLOPROF


Job Category
Information Technology

Job Posting Date
04 Sept 2026; 00:09
Pay Range

Pay ranges for remote employees are based on the state where the employee resides and may vary from the posted range.


$98,566-$160,169-Annually


Location:

Indianapolis, IN


Benefits

Rolls-Royce provides a comprehensive and competitive Total Rewards package that includes base pay and a discretionary bonus plan. Eligible employees may have the opportunity to enroll in other benefits, including health, dental, vision, disability, life and accidental death & dismemberment insurance; a flexible spending account; a health savings account; a 401(k) retirement savings plan with a company match; Employee Assistance Program; Paid Time Off; certain paid holidays; paid parental and family care leave; tuition reimbursement; and a long-term incentive plan. The options available to an employee may vary depending on eligibility factors such as date of hire, employment type, and the applicability of collective bargaining agreements.


What Rolls-Royce employees say

Pay

Benefits

Hours and flexibility

Workplace

Get the full story on Breakroom


Rolls-Royce logo

About Rolls-Royce

Sourced by ZipRecruiter

Industry

Aerospace product and parts manufacturing and engine, turbine, and power transmission equipment manufacturing

Company size

10,000+ Employees

Headquarters location

London, ENG, GB