Cyber Security – Senior Threat Hunter
This role operates beyond alert-driven SOC operations, focusing on hypothesis-based threat hunting, adversary behaviour analysis, and closing detection gaps across Microsoft Sentinel, Microsoft Defender for Endpoint, and Defender for IoT.
Conduct hypothesis-driven, TTP-centric threat hunts using telemetry from Microsoft Sentinel and Microsoft Defender platforms.
Perform advanced KQL-based threat hunting across large data volumes in Microsoft Sentinel.
Identify detection blind spots, noisy analytics, and data quality issues.
Correlate endpoint telemetry with SIEM data to reconstruct end-to-end kill chains.
Perform threat hunting across IoT/OT and IC environments using Microsoft Defender for IoT telemetry where applicable.
Hunt Hypothesis, Data Sources, Findings, evidence, MITRE ATT&CK; mapping and recommended remediation.
Proven experience performing proactive threat hunting (not tool monitoring).
~ Strong skills in Endpoint telemetry analysis, Network traffic analysis, Log correlation across multiple security layers.
~ Curiosity-driven, attacker-mindset analysis.
~ Bachelor’s degree or a master’s degree in computer engineering, IT security, Computer Science, Information Systems or other related fields.
Highly proficient in English with good written and oral communication.
Unlock your potential with tailored training and development programs designed to elevate your skills and propel your career forward. Adaptable Work-Life Integration: Enjoy the freedom of our hybrid work model, allowing you to blend professional responsibilities with personal passions. Recognized Performance and Rewards: EY GDS Spain office is located at Malaga Technology Park and currently employs over 1000 people.
📌 Threat Hunter - Senior - EY GDS Spain - Hybrid (Málaga)
🏢 Ey
📍 Málaga