ND
Security Analysis Threat Hunter
NTT DATA
🇺🇸 United States
Hybrid
3 days ago
- Vulnerability Management
- SIEM
- Incident Response
- Threat Intelligence
- EDR
- GCIH
- CySA+
- CEH
- AI
- Pension
3 days ago
Req ID: 381681
NTT DATA strives to hire exceptional, innovative and passionate individuals who want to grow with us. If you want to be part of an inclusive, adaptable, and forward-thinking organization, apply now.
NTT DATA's Client is currently seeking a Security Analysis Threat Hunter - Addison, TX Hybrid to join their team in Addison, Texas (US-TX), United States (US).
Job Description:
- The Threat Hunting function is responsible for identifying and validating suspicious or malicious activity. Ownership of vulnerability remediation tracking and patch management remains with the Vulnerability Management teams. Threat Hunters focus on detection, validation, and enablement of defensive controls.
- This role focuses on hypothesis-driven, intelligence-led, and MITRE Telecommunication&CK–aligned threat hunting. The specialist works closely with SOC, SIEM, Vulnerability Management, and Incident Response teams to improve detection coverage, reduce attacker dwell time, and continuously enhance NTT DATA's managed security services capabilities.
- This position will be on-site at the client site 4 days per week. Only local candidates will be considered.
- Conduct hypothesis-driven and tactic-based threat hunts aligned to the MITRE Telecommunication®&CK framework.
- Identify low-and-slow, post-compromise attacker behavior not detected through automated alerts.
- Ingest and operationalize internal and external threat intelligence into hunting hypotheses.
- Develop and execute advanced threat hunting queries across SIEM, EDR, and security analytics platforms.
- Collaborate with SOC, SIEM, and Incident Response teams to escalate confirmed threats and support containment.
- Identify telemetry gaps and work with engineering teams to improve visibility and logging.
- Feed validated hunt results into detection engineering, threat briefs, and use-case improvements.
- Participate in threat hunt working sessions, operational reviews, and customer-facing discussions as required.
- SIEM platforms and log analytics tools
- Endpoint Detection and Response (EDR/XDR) solutions
- MITRE Telecommunication&CK Navigator and DETT&CT
- Threat hunting notebooks, scripts, and automation frameworks
- Internal and open-source threat intelligence feeds
- 10+ years' experience in Cyber Security
- Strong understanding of adversary tactics, techniques, and procedures (TTPs).
- Hands-on experience performing structured threat hunts in enterprise environments.
- Proficiency with SIEM query languages and endpoint telemetry analysis.
- Ability to translate threat intelligence into actionable security detections.
- Strong written and verbal communication skills for technical and executive audiences.
- Preferred Certifications
- GIAC Certified Threat Intelligence (GCTI)
- GIAC Certified Incident Handler (GCIH)
- CompTIA CySA+
- Certified Ethical Hacker (CEH)
- Key Performance Indicators (KPIs) & Metrics
- Number of proactive threat hunts executed per reporting period
- High-confidence threats identified without prior alerts
- Reduction in attacker dwell time through proactive discovery
- Percentage of hunt findings operationalized into detection rules
- Coverage improvement against MITRE Telecommunication&CK techniques
- Mean time to escalate verified threats to Incident Response
- Quality and clarity of threat hunt reports and recommendations
About NTT DATA:
NTT DATA is a $30 billion trusted global innovator of business and technology services. We serve 75% of the Fortune Global 100 and are committed to helping clients innovate, optimize and transform for long term success. As a Global Top Employer, we have diverse experts in more than 50 countries and a robust partner ecosystem of established and start-up companies. Our services include business and technology consulting, data and artificial intelligence, industry solutions, as well as the development, implementation and management of applications, infrastructure and connectivity. We are one of the leading providers of digital and AI infrastructure in the world. NTT DATA is a part of NTT Group, which invests over $3.6 billion each year in R&D to help organizations and society move confidently and sustainably into the digital future. Visit us at us.nttdata.com
NTT DATA endeavors to make https://us.nttdata.com accessible to any and all users. If you would like to contact us regarding the accessibility of our website or need assistance completing the application process, please contact us at https://us.nttdata.com/en/contact-us. This contact information is for accommodation requests only and cannot be used to inquire about the status of applications. NTT DATA is an equal opportunity employer. Qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability or protected veteran status. For our EEO Policy Statement, please click here. If you'd like more information on your EEO rights under the law, please click here. For Pay Transparency information, please click here.
Security Analysis Threat Hunter · NTT DATA