US Jobs US Jobs     UK Jobs UK Jobs     EU Jobs EU Jobs

   

Threat Hunter - Email Security, Detection, User Analysis

-

We are seeking a Threat Hunter to join our Security team.

This role will focus on enhancing email security posture, proactive threat hunting and detection, developing and tuning detections, and analyzing user behavior to identify and mitigate threats.

The ideal candidate will have experience in threat hunting, detection engineering, and user behavioral analytics, with a strong understanding of phishing, business email compromise (BEC), and adversary tactics. 

Key Accountabilities/Deliverables:


* Conduct daily email-security-based threat hunts  


* Synthesize real-world detections based on IOCs and other threat intelligence 


* Tune detection rules based on alerts and follow-up investigations 


* Analyze login activity, MFA resets, endpoint alerts, and communication patterns to detect brute force, social engineering, and insider threats. 


* Leverage behavioral indicators (e.g., privilege escalation, anomalous file access, MFA resets) to correlate suspicious activity across email, identity, and endpoint data. 


* Collaborate with the Threat Intelligence and Security Operation teams to integrate findings into daily reports and dashboards. 


* Participate in incident response and remediation efforts.   


* Contribute to SOP development and automation workflows for threat intel feeds and reporting. 

Technical Knowledge and Understanding:


* Ability to translate potential Indicators of Compromise and threat intelligence into actionable detections 


* Ability to think like an attacker – hacker mindset 


* Familiarity with MITRE ATT&CK framework and adversary simulation techniques 


* Intuitive understanding of systems and the ability to spot potential patterns 


* Excellent communication and collaboration skills 

Experience:


* 3+ years of experience in threat hunting, detection engineering, and email security required 


* Must have Proficiency writing KQL queries  


* Systems administration and/or IT support experience are a plus 

Applicants must be authorized to work for any employer in the U.S.

We are unable to sponsor or take over sponsorship of an employment Visa for this position.

#LI-Hybrid
 

-

At Core Specialty, you will receive a competitive salary and opportunities for professional development and advancement.  We offer medical, dental, vision, and life insurances; short and long-term disability; a Company-match of 100% of a 6% contribution 401(k) plan; an Employee Assistance Plan; Health Savings Account, Flexible Spending Account, Health Reimbursement Account, and a wellness program





Share Job