The Role
Lead advanced threat hunting and DFIR investigations, escalate and resolve complex incidents, advise on architecture and operations across on‑prem and cloud, mentor junior analysts, and improve team technical standards and capabilities.
Summary Generated by Built In
As a Principal Security Consultant in the areas of Threat Hunting and Digital Forensics/Incident Response (DFIR), you will provide advanced technical judgment and advisory services. You will lead the investigation and analysis of complex incidents and threats, primarily escalating cases from junior analysts, and propose improvements to architecture and operations based on the client's entire IT environment. You will handle a wide range of environments, from on-premises to cloud, and contribute to improving the overall capabilities of the team through the advancement of technical standards and mentoring.
Required Skills and Experience
- Possesses strong technical judgment backed by many years of practical experience in the cybersecurity field.
- Has experience overcoming multiple high-difficulty cases in Threat Hunting, DFIR, or SOC environments.
- Can think from a holistic perspective across the entire IT and security landscape, not just individual tools.
- Continuously keeps up with new attack methods and threat trends and proactively shares knowledge.
- Can build trusted relationships with customers and internal stakeholders through technical expertise.
- Can respond to escalation cases calmly and logically.
- Can communicate technically across Windows, Linux, networks, and cloud environments.
- Understands operational constraints and can make realistic improvement recommendations.
- Finds value in providing optimal solutions where there is no single correct answer.
- Finds value in making the best proposals to customers based on advanced hands-on experience.
- Takes pride in supporting the technical growth of junior analysts.
- Can clearly articulate and structure technical experiences and communicate them effectively.
- Seeks an environment where quality, results, and output are fairly evaluated.
Preferred Qualifications
- Experience working on global projects.
- Experience communicating technical topics in English.
- Experience providing technical explanations and decision-making information to CISOs and senior management.
- Certifications such as GCFA, GCFE, GREM, GXPN, or equivalent practical expertise.
- Practical experience in malware analysis and reverse engineering.
- Experience in forensic investigations and incident response within cloud environments (AWS, Azure, GCP).
- Experience investigating and analyzing advanced threats such as APT attacks and ransomware (RaaS).
Skills Required
- Strong technical judgment backed by many years of practical cybersecurity experience.
- Experience resolving high-difficulty cases in Threat Hunting, DFIR, or SOC environments.
- Ability to think holistically across the entire IT and security landscape (not just individual tools).
- Keeps up with new attack methods and threat trends and proactively shares knowledge.
- Ability to build trusted relationships with customers and internal stakeholders through technical expertise.
- Ability to respond to escalation cases calmly and logically.
- Can communicate technically across Windows, Linux, network, and cloud environments.
- Understands operational constraints and can make realistic improvement recommendations.
- Ability to propose optimal solutions where no single correct answer exists.
- Experience making technical proposals to customers based on advanced hands-on experience.
- Willingness and ability to support the technical growth of junior analysts.
- Can clearly articulate and structure technical experiences and communicate them effectively.
- Experience working on global projects.
- Experience communicating technical topics in English.
- Experience providing technical explanations and decision-making information to CISOs and senior management.
- Certifications such as GCFA, GCFE, GREM, GXPN, or equivalent practical expertise.
- Practical experience in malware analysis and reverse engineering.
- Forensic investigations and incident response experience in cloud environments (AWS, Azure, GCP).
- Experience investigating and analyzing advanced threats such as APT attacks and ransomware.
Am I A Good Fit?
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.
Success! Refresh the page to see how your skills align with this role.
The Company
What We Do
NexusCorp LLC (operating as Nexus Corporation) helps businesses achieve their goals through custom software development, IT consulting, statement-of-work delivery, contingent workforce and direct-hire solutions, and payroll services. It designs, builds, tests, and maintains scalable digital applications; analyzes systems to improve technology use; and supplies specialized professionals and structured project delivery. Its client-first approach emphasizes compliance, integrity, innovation, and tailored business outcomes.
.png)








