Cyber Threat Hunter
Conduent
Through our dedicated associates, Conduent delivers mission-critical services and solutions on behalf of Fortune 100 companies and over 500 governments - creating exceptional outcomes for our clients and the millions of people who count on them. You have an opportunity to personally thrive, make a difference and be part of a culture where individuality is noticed and valued every day. The Cyber Threat Hunter will be responsible for proactively identifying, analyzing, and disrupting advanced threats within the organization’s enterprise and cloud environments. This role focuses on hypothesis‑driven hunting, detection engineering, and intelligence‑led investigations to uncover adversary activity that has evaded traditional security controls. As an offshore team member, this role will operate in close coordination with onshore Cyber Ops, SOC, Incident Response, and Security Engineering teams, providing continuous threat coverage and analytical depth across global time zones. Key Responsibilities Conduct proactive, hypothesis‑based threat hunts across endpoint, network, identity, cloud, and SaaS telemetry to identify unknown or emerging threats. Leverage MITRE ATT&CK to design and execute hunt scenarios aligned to known adversary tradecraft. Identify stealthy behaviors such as living‑off‑the‑land techniques, credential abuse, lateral movement, and command‑and‑control activity. Develop and refine detection logic, analytics, and queries within SIEM/XDR platforms (e.g., Cortex XSIAM or equivalent). Investigation & Response Support Perform deep‑dive investigations and escalates confirmed threat activity with clear evidence and recommendations. Partner with Incident Response teams during active incidents to provide threat context, scoping, and root cause analysis. Validate and tune alerts to reduce false positives while improving detection efficacy. Threat Intelligence Integration Correlate internal telemetry with threat intelligence feeds to identify active campaigns, exploited vulnerabilities, and adversary infrastructure. Track emerging threat actor techniques, malware families, and attack trends relevant to the organization’s industry. Translate intelligence into actionable hunts, detections, and defensive recommendations. Engineering, Automation & Program Maturity Contribute to the development of threat hunting playbooks, standard operating procedures, and knowledge repository in general. Support continuous improvement of the threat hunting program through metrics such as hunt coverage, findings quality, cyber posture enhancement identification. Produce clear, concise reports for both technical and non‑technical stakeholders. Qualifications Required 3+ years of experience in cybersecurity operations, with hands‑on experience in threat hunting. Strong understanding of adversary behaviors, attack chains, and common tactics across endpoint, network, identity, and cloud environments. Experience working with SIEM/XDR platforms, log analysis, and security telemetry at scale. Familiarity with threat intelligence lifecycle and MITRE ATT&CK framework. Strong analytical, investigative, and documentation skills. Ability to work independently in an offshore model and collaborate effectively with global teams across time zones. Preferred Hands‑on experience using Palo Alto Cortex XSIAM for threat hunting, detection engineering, investigation workflows, and alert tuning. Experience developing and operationalizing XSIAM analytics, queries, and investigation playbooks across endpoint, identity, cloud, and network telemetry. Strong experience hunting and investigating threats in Microsoft Azure environments, including Entra ID (Azure AD), Azure IaaS/PaaS workloads, and cloud identity logs. Familiarity with Azure security telemetry (Sign‑In Logs, Audit Logs, Defender for Cloud/Endpoint, Azure Activity Logs). Experience correlating cloud, endpoint, and identity signals to detect credential abuse, privilege escalation, lateral movement, and persistence techniques. Scripting and automation experience using Python, KQL, PowerShell, or Bash to support hunting, enrichment, and reporting. Exposure to malware analysis, OSINT, or threat intelligence platforms (TIPs) to inform hunt hypotheses and detections. Preferred Certifications GCED, GCIA, GCIH, or GCED OSCP, GPEN, or GWAPT Security+, CySA+, or equivalent industry certifications Conduent is an Equal Opportunity Employer and considers applicants for all positions without regard to race, color, creed, religion, ancestry, national origin, age, gender identity, gender expression, sex/gender, marital status, sexual orientation, physical or mental disability, medical condition, use of a guide dog or service animal, military/veteran status, citizenship status, basis of genetic information, or any other group protected by law. For US applicants: People with disabilities who need a reasonable accommodation to apply for or compete for employment with Conduent may request such accommodation(s) by submitting their request through this form that must be downloaded: click here to access or download the form ( Complete the form and then email it as an attachment to View email address on click.appcast.io. You may also click here to access Conduent's ADAAA Accommodation Policy ( #J-18808-Ljbffr
- A cybersecurity-focused company is seeking experienced cybersecurity professionals to evaluate AI-generated security content and solve technical problems. Responsibilities include designing security evaluations and providing feedback to enhance AI systems. Candidates should...CyberRemote workFlexible hours
- ...Required Experience Minimum 7 years of experience in cyber range or computer testbed environments. Minimum 7 years of experience in Program Management or SR level DoD experience or Defense Industry Civilian Professional working with SR level DoD personnel. Minimum 2 years...Cyber
- ...General and Operations Management) Location Muscatatuck Indiana Job Description IDS is seeking a skilled Operations Manager II to support cyber range and training operations within a Department of Defense (DoD) environment. This role requires a hands‑on leader with experience...CyberLocal area
- ...technology as assigned including initiative support, and technology rollouts.* Ensure system security by responding to and assisting with cyber security incidents, supporting desktop encryption solutions, and administering patching updates.* Assist with documenting Knowledge...CyberCasual workWork at officeRemote workRelocationMonday to FridayWeekend work
- ...Developer, Information Technology Carmel, IN $90,000.00-$125,000.00 2 weeks ago Indianapolis, IN $106,000.00-$197,000.00 1 week ago Cyber Full-Stack Technical Software Engineer Full Stack Developer - Coldfusion & Web Technologies Principal Software Engineer, Full Stack,...CyberFull timeRemote work
- ...time to focus on what they love to do best and with less headaches. Business Insurance products such as GL, workers' compensation, cyber liability, D&O, and key-person life insurance that help protect our clients and their employees from the bad sh*# that can happen to...CyberFull timePart timeInternshipWork at office
- ..., Investments & Capital Markets, Computer Science, Data/Quant Analytics, Economics, Finance, Risk Management, Technology (including Cyber and Software Development) and more. Join us to hear directly from our University Talent Advisors about: -Who we are and how we...CyberRemote jobFull timeSummer workInternshipSummer internship
- ...upon contract AwardAs the **Program Manager**, you will Provide overall management of the Muscatatuck Training Center (MuTC) Advanced Cyber Center - Testing, Training, and Experimentation (MACC-TTE) to include directing all contractor/subcontractor personnel and...CyberContract workFor contractorsFor subcontractorWork at office
- ...the cyclic inventory, accountability, and dispersion of all property associated with the Muscatatuck Training Center (MuTC) Advanced Cyber Center - Testing, Training, and Experimentation (MACC-TTE)**CORE RESPONISIBILITIES:*** Manage the procurement process using systems...CyberContract work
- ...customer requirements. Job Description IDS is seeking an Exercise Planner to support the planning, coordination, and execution of cyber training events and exercises. The selected candidate will work with stakeholders to develop exercise objectives, coordinate resources...CyberHourly payLocal areaFlexible hoursShift work
- ...program activities and staff to include operation, maintenance, and development of the Muscatatuck Training Center (MuTC) Advanced Cyber Center - Testing, Training, and Experimentation (MACC-TTE)**CORE RESPONISIBILITIES:*** Manage and provide MACC-TTE customer support...CyberContract workMonday to Friday
$45k - $55k
...monitor. Other Demands: Must comply with company policies including but not limited to those involving safety, protection of privacy, cyber security, and general conduct. Security Clearance: Must be able to secure and maintain a U.S. Customs and Border Protection...CyberFull timeWork at officeRemote work$40 per hour
...generated security content, solve technical cybersecurity problems, and provide feedback to improve how AI systems reason about real-world threats and defenses. Cybersecurity platforms are increasingly powered by AI, but these systems still require practitioners with real-...Hourly payFull timePart timeRemote work- ...evaluation activities. The selected candidate will provide technical leadership for developmental and operational test events involving cyber, electronic warfare, cyber-physical, and multi-domain capabilities. This role will support advanced training and test environments,...CyberHourly payFor contractorsLocal areaFlexible hoursShift work
$111.16k - $150.39k
...of innovation. We operate across over 50 countries worldwide, offering leading capabilities in digital modernization, AI/ML, cloud, cyber and application development. Together with our customers, we strive to create a safer, smarter world by harnessing the power of deep...CyberImmediate startWorldwide- ...Global Assistance (GGA): The primary Corporate brand in the United States for our travel insurance, travel assistance, identity and cyber protection, and beneficiary companion products. Learn more here. GMMI: the industry standard for global medical cost containment...CyberTemporary workWork at officeLocal areaWork from homeMonday to FridayFlexible hours2 days per week3 days per week
$65k - $85k
...expertise in routing, switching, and wireless technologies with the deployment and management of firewalls, security policies, and threat mitigation controls. The ideal candidate will have a strong foundation in both networking and cybersecurity, with the ability to troubleshoot...Work experience placement- Job Title: Network Engineer Effective Date: 06/23/2026 Employment Status: Full-Time Salary: Based on experience, education, and relevant certifications held. FLSA Status: Non-exempt Minimum Education Requirements: Associate's degree in Computer Information Systems or equivalent...Full timeWork at officeRemote workFlexible hours
- As Site IT Manager (IT/OT) , you act as the local technology leader and trusted business partner, combining strategic leadership with hands‑on execution. The role ensures secure, reliable, and business‑oriented IT and Operational Technology (OT) services, while driving...Local area
$40 per hour
A cybersecurity and AI training company is seeking experienced cybersecurity professionals for a remote role. Responsibilities include evaluating AI-generated security content, designing security challenges, and providing feedback to enhance AI models. The ideal candidate...Remote jobHourly payFlexible hours- About Keyfactor Our mission is to build a connected society, rooted in trust, with identity-first security for every machine and human. Keyfactor helps organizations move fast to establish digital trust at scale — and then maintain it. With decades of cybersecurity experience...Full timeRemote work
$40 per hour
A cybersecurity technology company is seeking experienced professionals to evaluate AI-generated security content. In this remote role, you'll tackle technical cybersecurity problems to enhance AI models. Ideal candidates should have at least 2 years of cybersecurity experience...Hourly payRemote work$40 per hour
A technology company in the United States is seeking experienced cybersecurity professionals to evaluate AI-generated security content and solve cybersecurity problems. This can be a full-time or part-time remote position with hourly pay starting at $40+. Candidates should...Hourly payFull timePart timeRemote work- Role Overview The Vulnerability Management Security Analyst plays a key role in helping the Office of Information Technology (OIT) and campus technology teams identify, understand, prioritize, and remediate vulnerabilities across various environments. This position supports...Work at officeRemote workVisa sponsorship
- ## IT Support AnalystApplylocations: Bienne, Switzerlandtime type: Full timeposted on: Posted Todayjob requisition id: JR00002862MGI Luxury Group, located in Bienne, Switzerland, is an international and innovative company of Movado Group, Inc. which is a prestigious manufacturer...ApprenticeshipWork at officeWork from homeHome officeFlexible hours2 days per week
- ## Senior AccountantApplylocations: Remote - Nationwidetime type: Full timeposted on: Posted Yesterdayjob requisition id: R-1081Schellman is a Top 50 CPA firm and a leading provider of attestation and compliance services. Our professional services focus on security and ...Work experience placementImmediate startRemote workFlexible hours
- Barbaricum is a rapidly growing government contractor providing leading-edge support to federal customers, with a particular focus on Defense and National Security mission sets. We leverage more than 17 years of support to stakeholders across the federal government, with...For contractors3 days per week
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Cyber Threat Hunter. Be the first to apply!


