Threat Hunter Jobs

Threat hunters proactively search for adversaries that already slipped past automated detection - forming hypotheses from threat intelligence, querying telemetry at scale, and turning each hunt into new detections. It sits between SOC analysis and detection engineering, and it is one of the clearest promotion paths out of a senior SOC seat.

18 live Threat Hunter roles across the cybersecurity employers we track - updated hourly, apply directly.

Get weekly alerts for new Threat Hunter jobs:

Latest Threat Hunter roles

Share:XLinkedIn
dragos logo

DragosUnited States

Detection EngineeringRemote
Posted Sep 10
sentinellabs logo

SentinelOneUnited States

$108,000 - $130,000Detection Engineering
Posted Sep 8
twilio logo

TwilioUnited States

$155,520 - $194,400Detection EngineeringRemote
Posted Sep 4
crowdstrike logo
Posted Aug 14
crowdstrike logo
Posted Jul 30
mitiga logo

MitigaUnited States

Detection EngineeringRemote
Posted Jul 8
censys logo

CensysAnn Arbor, MI

Detection Engineering
Posted May 8
tanium logo

TaniumTokyo, Japan

Detection EngineeringHybrid
Posted Mar 26

Explore related searches

Frequently asked questions

What does a Threat Hunter do?
Threat hunters proactively search for adversaries that already slipped past automated detection - forming hypotheses from threat intelligence, querying telemetry at scale, and turning each hunt into new detections. It sits between SOC analysis and detection engineering, and it is one of the clearest promotion paths out of a senior SOC seat.
How many Threat Hunter jobs are there right now?
We are tracking 18 live Threat Hunter roles across the cybersecurity employers we monitor, updated hourly. Each listing links straight to the employer's own application page.
Are Threat Hunter jobs remote?
Some are. Many Threat Hunter roles are hybrid or on-site because of tooling and data-sensitivity, but fully-remote listings appear regularly - filter the board or browse our remote cybersecurity jobs page.
What certifications help you get a Threat Hunter job?
GCIH or CySA+ is the credential most often named in Threat Hunter postings. Beyond a certificate, hands-on evidence - a home lab, CTF write-ups, or public detections - carries the most weight in screening.

Related cybersecurity searches

Stay ahead of the curve. Get new infosec jobs in your inbox.