Principal Threat Hunter

Reposted 15 Hours Ago
Be an Early Applicant
Hiring Remotely in United States
Remote
Senior level
Cloud • Cybersecurity
The Role
Lead proactive threat hunts and complex incident investigations across cloud and SaaS (AWS, Azure, GCP, Okta, M365). Convert intelligence into hunt leads, detections, and customer narratives; triage alerts, mentor peers, and act as Incident Commander when needed. Leverage automation and AI to scale detection and response and drive improvements to processes and tooling.
Summary Generated by Built In
Description

We’re looking for Principal Threat Hunter to join our Cyber Security team.

Why Mitiga? 

Mitiga provides Agentic Runtime Security for the modern infrastructure (which includes cloud, SaaS, identity, AI and third-party services).

EDR protects the endpoint; Mitiga protects everything else.

Mitiga's platform anticipates and disrupts attacks and stops them before they reach the business. By delivering the runtime detection and response that security teams already rely on for endpoints, extended to the infrastructure endpoint tools can’t see, Mitiga provides Zero-Impact Breach Prevention - attackers may get past preventive tools, but with Mitiga they get nothing.

The Role

We're looking for a Senior Principal Threat Hunter to serve as a senior technical leader within our Cyber Defense Team team.

This is a high impact individual contributor role, you won't manage people, but you'll influence how we hunt, investigate

and respond to threats across cloud and SaaS environments at scale.

You'll be the person who takes a weak signal, a piece of emerging intelligence, or an unusual customer activity pattern and turns it into a meaningful investigation, a proactive hunt, or a new detection opportunity.

You'll lead the most complex investigations, drive threat intelligence initiatives, and help define the hunting methodologies that guide our customers' security outcomes.

As one of the team's most senior practitioners, you'll act as a force multiplier across hunting, intelligence, and incident response functions, elevating technical standards, mentoring peers, and helping shape the future of our detection and response capabilities.



What You'll Do

- Design and execute proactive threat hunts across cloud and SaaS environments (AWS, Azure, GCP, Okta, M365), grounded in current intelligence and ATT&CK-mapped adversary behavior.

- Mature and operate a recurring threat intelligence reporting function, turning intel into hunt leads, detection opportunities, and customer-facing narratives.

- Lead incident response investigations during US business hours, from scoping through root cause; step into the Incident Commander role when required.

- Continuously monitor threat detections and deliver responsive services with thorough event analysis and judgement.

- Triage and investigate security alerts across cloud and SaaS environments, separating true threats from noise and surfacing detection gaps to the detection engineering team.

- Leverage automation and AI tooling to scale impact, and propose improvements for processes, workflows, products, and policies.

- PLUS: Exposure to detection engineering, tooling and automation development, or prior managed services (MSSP) experience.



Requirements

Who You Are

- 5+ years of experience in a security operations role, with a focus on threat hunting and/or threat intelligence

- Proven experience building or contributing to a structured threat hunt and/or threat intelligence program

- Incident response experience with the ability to lead investigations independently; Incident Commander experience a plus

- Working knowledge of cloud and SaaS environments (AWS, Azure, GCP, Okta, M365)

- Hands-on use of automation or AI tooling in security operations; demonstrated use, not just awareness

- Strong written and verbal communication, excellent analytical and problem-solving skills, highly independent and self-driven, and comfortable in a fast-paced and virtual environment

Some More Details and Perks

Benefits package including health insurance (medical, dental, vision), 401k plan with match, unlimited PTO, cell phone charges reimbursement, top-of-the-line equipment, and more.

For more information, visit us at www.mitiga.io. 

Mitiga is an equal opportunity employer, committed to diversity and inclusiveness and aim to attract, retain, and engage a diverse workforce. We consider all qualified applicants without regard to race, color, nationality, gender, gender identity, sexual orientation, religion, disability, age or any other characteristic protected by law. 

Skills Required

  • 5+ years in a security operations role focused on threat hunting and/or threat intelligence
  • Proven experience building or contributing to a structured threat hunt and/or threat intelligence program
  • Incident response experience with ability to lead investigations independently
  • Incident Commander experience
  • Working knowledge of cloud and SaaS environments (AWS, Azure, GCP, Okta, M365)
  • Hands-on use of automation or AI tooling in security operations
  • Strong written and verbal communication, analytical and problem-solving skills, highly independent and self-driven
  • Exposure to detection engineering, tooling and automation development, or prior MSSP experience
Am I A Good Fit?
beta
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.

The Company
HQ: New York, NY
87 Employees
Year Founded: 2019

What We Do

Mitiga’s cloud-oriented technology platform and its dynamic-readiness approach enable customers not only to rapidly complete the investigation, response, and recovery stages when a cloud security incident occurs, but also to increase their resiliency for a future attack. Mitiga Cloud Incident Response gets you back to business-as-usual right away. In the middle of an incident you need situational awareness, transparency in communications, and fast results. Mitiga provides quick and rapid recovery from any type of cyber breach. Mitiga Cloud Incident Readiness uses technology and services to build the cybersecurity resiliency of an organization. This prevents a breach from becoming a crisis, helping business continue as usual. During an active incident, subscribers to Mitiga Incident Readiness have unlimited active Incident Response.

Similar Jobs

DraftKings Logo DraftKings

Customer Experience Specialist

Digital Media • Gaming • Information Technology • Software • Sports • Esports • Big Data Analytics
Remote or Hybrid
United States
6400 Employees
52K-65K Annually

DraftKings Logo DraftKings

Software Architect

Digital Media • Gaming • Information Technology • Software • Sports • Esports • Big Data Analytics
Remote or Hybrid
United States
6400 Employees
185K-232K Annually

Bankrate Logo Bankrate

Head of Brand & Communications

Artificial Intelligence • Consumer Web • Digital Media • Fintech • Marketing Tech • Software • Financial Services
Easy Apply
Remote
United States
160 Employees
230K-350K Annually

Bankrate Logo Bankrate

Head of Organic Growth

Artificial Intelligence • Consumer Web • Digital Media • Fintech • Marketing Tech • Software • Financial Services
Easy Apply
Remote
United States
160 Employees
230K-350K Annually

Similar Companies Hiring

NetBox Labs Thumbnail
Cloud • Software
US
125 Employees
Toro TMS Thumbnail
Cloud • Enterprise Web • Sales • Software • Transportation
Chicago, IL
80 Employees
Amplify Platform Thumbnail
Fintech • Financial Services • Consulting • Cloud • Business Intelligence • Big Data Analytics
Scottsdale, AZ
62 Employees

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account