Paloaltonetworks logo
Paloaltonetworks3 days ago
EXPIRED

Cyber Threat Intelligence Hunter (Unit 42)

On-site · Tel Aviv, Tel Aviv, Israel

Type
Full Time
Level
Mid Level
Education
Not Specified
Company size
Enterprise

Job Summary

Cyber Threat Intelligence Hunter within Unit 42 Managed Threat Hunting combines hands-on threat hunting with cyber threat intelligence analysis to help multinational organizations stay ahead of adversaries. Responsible for analyzing public/private threat intelligence, translating findings into actionable hunting hypotheses and detection logic, executing hunting workflows, generating customer-facing reports, investigating detections and leads, monitoring the threat landscape, and collaborating with threat hunters, detection engineers, incident responders, MDR, and Unit 42 researchers to operationalize intelligence and improve security posture. Requires 4+ years in threat hunting/CTI/DFIR or related security operations, strong ability to map attacker behaviors across endpoints, networks, cloud, and identity, experience in translating intelligence into high-fidelity hunting hypotheses and log-based queries, and proficiency in delivering clear technical findings to customers. Preferred: experience in Incident Response or Managed Services; Python and SQL skills; familiarity with malware analysis; published security research.

Required Qualifications

  • 4+ years of experience in tactical threat hunting, cyber threat intelligence (CTI), DFIR, or advanced security operations
  • Strong background in tactical threat intelligence, specifically identifying discrete traces, artifacts, and behavioral fingerprints left by adversaries across endpoint, network, cloud, and identity
  • Experience capturing and modelling incident data to map out intrusions and understand attacker behaviours
  • Proven ability to develop & deliver verbal & written technical findings of attacker behaviour into clear, high-impact notifications for customers
  • Experience translating threat intelligence into high-fidelity hunting hypotheses, detection logic, and log-based queries
Sorce

This role has closed. Sorce can match you with similar open roles and apply on your behalf.

Hiring someone like this?

Get your role in front of qualified candidates on Sorce.

Get started

Paloaltonetworks

Cyber Threat Intelligence Hunter (Unit 42)

Find similar roles