We’re looking for Principal Threat Hunter to join our Cyber Security team.
Why Mitiga?
Mitiga provides Agentic Runtime Security for the modern infrastructure (which includes cloud, SaaS, identity, AI and third-party services).
EDR protects the endpoint; Mitiga protects everything else.
Mitiga's platform anticipates and disrupts attacks and stops them before they reach the business. By delivering the runtime detection and response that security teams already rely on for endpoints, extended to the infrastructure endpoint tools can’t see, Mitiga provides Zero-Impact Breach Prevention - attackers may get past preventive tools, but with Mitiga they get nothing.
The Role
We're looking for a Senior Principal Threat Hunter to serve as a senior technical leader within our Cyber Defense Team team.
This is a high impact individual contributor role, you won't manage people, but you'll influence how we hunt, investigate
and respond to threats across cloud and SaaS environments at scale.
You'll be the person who takes a weak signal, a piece of emerging intelligence, or an unusual customer activity pattern and turns it into a meaningful investigation, a proactive hunt, or a new detection opportunity.
You'll lead the most complex investigations, drive threat intelligence initiatives, and help define the hunting methodologies that guide our customers' security outcomes.
As one of the team's most senior practitioners, you'll act as a force multiplier across hunting, intelligence, and incident response functions, elevating technical standards, mentoring peers, and helping shape the future of our detection and response capabilities.
What You'll Do
- Design and execute proactive threat hunts across cloud and SaaS environments (AWS, Azure, GCP, Okta, M365), grounded in current intelligence and ATT&CK-mapped adversary behavior.
- Mature and operate a recurring threat intelligence reporting function, turning intel into hunt leads, detection opportunities, and customer-facing narratives.
- Lead incident response investigations during US business hours, from scoping through root cause; step into the Incident Commander role when required.
- Continuously monitor threat detections and deliver responsive services with thorough event analysis and judgement.
- Triage and investigate security alerts across cloud and SaaS environments, separating true threats from noise and surfacing detection gaps to the detection engineering team.
- Leverage automation and AI tooling to scale impact, and propose improvements for processes, workflows, products, and policies.
- PLUS: Exposure to detection engineering, tooling and automation development, or prior managed services (MSSP) experience.
RequirementsWho You Are
- 5+ years of experience in a security operations role, with a focus on threat hunting and/or threat intelligence
- Proven experience building or contributing to a structured threat hunt and/or threat intelligence program
- Incident response experience with the ability to lead investigations independently; Incident Commander experience a plus
- Working knowledge of cloud and SaaS environments (AWS, Azure, GCP, Okta, M365)
- Hands-on use of automation or AI tooling in security operations; demonstrated use, not just awareness
- Strong written and verbal communication, excellent analytical and problem-solving skills, highly independent and self-driven, and comfortable in a fast-paced and virtual environment
Some More Details and PerksBenefits package including health insurance (medical, dental, vision), 401k plan with match, unlimited PTO, cell phone charges reimbursement, top-of-the-line equipment, and more.
For more information, visit us at www.mitiga.io.
Mitiga is an equal opportunity employer, committed to diversity and inclusiveness and aim to attract, retain, and engage a diverse workforce. We consider all qualified applicants without regard to race, color, nationality, gender, gender identity, sexual orientation, religion, disability, age or any other characteristic protected by law.
Skills Required
- 5+ years in a security operations role focused on threat hunting and/or threat intelligence
- Proven experience building or contributing to a structured threat hunt and/or threat intelligence program
- Incident response experience with ability to lead investigations independently
- Incident Commander experience
- Working knowledge of cloud and SaaS environments (AWS, Azure, GCP, Okta, M365)
- Hands-on use of automation or AI tooling in security operations
- Strong written and verbal communication, analytical and problem-solving skills, highly independent and self-driven
- Exposure to detection engineering, tooling and automation development, or prior MSSP experience
What We Do
Mitiga’s cloud-oriented technology platform and its dynamic-readiness approach enable customers not only to rapidly complete the investigation, response, and recovery stages when a cloud security incident occurs, but also to increase their resiliency for a future attack. Mitiga Cloud Incident Response gets you back to business-as-usual right away. In the middle of an incident you need situational awareness, transparency in communications, and fast results. Mitiga provides quick and rapid recovery from any type of cyber breach. Mitiga Cloud Incident Readiness uses technology and services to build the cybersecurity resiliency of an organization. This prevents a breach from becoming a crisis, helping business continue as usual. During an active incident, subscribers to Mitiga Incident Readiness have unlimited active Incident Response.


.jpg)



