Match Score
Against your primary resumeLogin to See Your Match Score
Create a free account or log in to unlock your CV match score across:
Protocol Intelligence
Data-driven signals on your job's competitivenessNiche cybersecurity specialization reduces candidate pool despite WPP brand and metro hybrid setting.
Strong security operations and threat-hunting expertise required, making skills less transferable across unrelated domains.
Requires specific SIEM/EDR/XDR and scripting skills with preferred advanced certifications, enforcing moderate filtering.
Job Description
Structured overview of role & requirementsAbout This Role
Proactively hunt for advanced cybersecurity threats using hypothesis-driven investigations based on threat intelligence and telemetry analysis across endpoints, networks, and cloud environments.
Develop and maintain automated hunting queries and scripts; validate detection coverage through adversary emulation and purple team exercises.
Document findings and collaborate with detection engineering and SOC teams to improve detection workflows, reduce dwell time, and strengthen organizational security resilience.
Minimum Requirements
Strong expertise in threat hunting methodologies and frameworks (e.g., MITRE ATT&CK, TaHiTI).
Proficiency with SIEM, EDR/XDR, NDR, and cloud-native security platforms, including log aggregation and telemetry analysis.
Scripting skills in Python and/or PowerShell for automation and data analysis.
Work Experience Required: Not explicitly mentioned in the JD.
Ideal Candidate Profile
Experienced in implementing hypothesis-driven hunting workflows and integrating emerging threat intelligence into detection pipelines.
Comfortable collaborating with SOC, IR, and engineering teams and skilled at documenting and communicating complex hunt outcomes.
Familiar with automation-first approaches using scripting and SOAR platforms, with advanced security certifications (GIAC GCTI, GCIH, or equivalent) preferred.
