What We Do:
Huntress is a fully remote, global team focused on cybersecurity, founded in 2015 by former NSA cyber operators. They protect over 4 million endpoints and 7 million identities worldwide with enterprise-grade cybersecurity products designed alongside their Security Operations Center (SOC).
What You’ll Do:
- Triage, investigate, respond, and remediate various intrusions daily.
- Review EDR telemetry, log sources, and forensic artifacts to determine root causes and provide remediation.
- Perform tactical malware analysis.
- Investigate suspicious Microsoft M365 activity and provide remediations.
- Assist in escalations from Product Support for threat-related and SOC questions.
- Contribute to detection engineering creation and tuning.
- Participate in projects to improve outcomes for analysts and partners.
- Collaborate in a mentored team environment.
What You Bring To The Team:
- 4+ years experience in SOC or Digital Forensics (DFIR).
- Experience with Windows, Linux, and MacOS attack surfaces.
- Knowledge of Threat Actor tools and techniques including MITRE ATT&CK Framework, PowerShell, Command Prompt, WMIC, Scheduled Tasks, SCM, Windows Domain and host enumeration, lateral movement, persistence, defense evasion, and other offensive TTPs.
- Experience with static and dynamic malware analysis.
- Working knowledge of Windows Administration or Enterprise Domain Administration including Active Directory, Group Policy, Domain Trusts.
- Working knowledge of core networking concepts such as common ports/protocols, NAT, Public/Private IPs, VLANs.
- Working knowledge of web technologies including web servers/applications and OWASP top 10.
- Effective communication skills to explain complex events to less technical audiences.
- Customer-focused decision making.
- Strong curiosity and eagerness to learn.
Preferred Qualifications:
- Experience in MSP/MSSP/MDR roles.
- Linux and MacOS investigative experience.
- Experience with scripting languages like PowerShell, Python, Bash, PHP, JavaScript, or Ruby.
- Experience with platforms like HackTheBox, TryHackMe, Blue Team Labs Online.
- Experience with cloud investigations (M365, Azure, AWS, GCP).
- Participation in cybersecurity competitions.
- Familiarity with MSP tools such as RMMs.
What We Offer:
- 100% remote work environment.
- Generous paid time off including vacation, sick time, and holidays.
- 12 weeks paid parental leave.
- Comprehensive medical, dental, and vision benefits.
- 401(k) with 5% company contribution.
- Life and disability insurance.
- Stock options for full-time employees.
- $500 one-time home office reimbursement.
- Annual education and professional development allowance.
- $75/month digital reimbursement.
- Access to BetterUp coaching platform.
Accommodations:
- Reasonable accommodations available for application and selection process upon request.
Huntress is committed to inclusivity and non-discrimination, except against hackers exploiting businesses.
Контакты работодателя доступны по кнопке «Откликнуться» после входа.