Security Monitoring and Threat Hunting Analyst
The Security Monitoring and Threat Hunting Analyst is responsible for monitoring cyber alerts, investigating suspicious activity, and conducting proactive threat hunts to identify malicious behavior, uncover detection gaps, and reduce enterprise cyber risk. This role combines alert triage, analytical investigation, and hypothesis-driven hunting to support early threat identification and informed escalation.
- Primary Responsibilities
- Monitor, triage, enrich, and investigate cyber alerts from SIEM, EDR/XDR, identity, cloud, network, email, and other security platforms.
- Correlate activity across telemetry sources to determine severity, scope, affected assets, user context, and appropriate escalation paths.
- Conduct hypothesis-driven threat hunts informed by threat intelligence, adversary behavior, incident trends, anomalies, and known detection gaps.
- Document alert analysis, hunt methodology, findings, timelines, evidence, conclusions, and recommended follow-up actions.
- Escalate confirmed or suspected threats to incident response or security operations teams with clear evidence, confidence level, and recommended next steps.
- Identify opportunities to improve detections, logging, enrichment, playbooks, and analyst workflows based on alert and hunt outcomes.
- Required Qualifications
- Experience in security monitoring, threat hunting, incident response, SOC operations, or a related cyber defense function.
- Hands-on experience analyzing alerts and telemetry from SIEM, EDR/XDR, identity, cloud, network, email, or endpoint security platforms.
- Ability to perform investigative analysis, correlate events, assess risk, and determine when activity should be escalated.
- Working knowledge of adversary tactics, techniques, and procedures across enterprise environments.
- Ability to write and execute analytical queries using SPL, KQL, SQL, EDR query languages, or similar tools.
- Strong written and verbal communication skills, including the ability to document findings and explain technical analysis clearly.
- Baseline proficiency in enterprise-approved AI tools. This includes, but is not limited to: Consistent Use, Applied Productivity, and Continuous Learning of AI Tools.
Mention you found this on Data First Jobs — it helps us bring you more roles like this.
Security Monitoring and Threat Hunting Analyst
Prudent Technologies and Consulting, Inc.
Similar Analytics Jobs
View all Analytics jobs→Stride, Inc.
Quality Assurance Analyst
Public Consulting Group
Apprentice Business Analyst
OSC Global
Cyber Security Analyst II (Developer)
Logistics Management Institute
Program Support Analyst
Capgemini Technology Services
Sr. ServiceNow Business Analyst
Sentara Health
Senior Business Systems Analyst - Remote
Like this role? Get carefully selected jobs like it, twice a week, straight to your inbox.
Free, no spam. Unsubscribe anytime.