Skip to main content
Uni Systems

Senior Cybersecurity Threat Hunter

RemoteBelgium only
Published
Role
Security
Experience
Senior
Employment
Full-time
Salary not disclosed
Check eligibility

Open to BE only. Set where you work from to check your eligibility.

No BS summary

Senior cybersecurity threat hunter based in Brussels, with a Master's in Computer Science/Cybersecurity and 2+ years leading threat hunting in SOC/CSOC. Needs threat intelligence operationalisation, detection engineering, SIEM/Splunk ES, EDR, and OpenTIDE or equivalent.

Core skills

Splunk Enterprise SecurityEDRThreat Hunting

Required skills

OpenTIDESIEM

What you'll do

  • Lead and manage the threat hunting program, including campaign planning, prioritization, execution, and reporting.
  • Conduct threat research, develop hunting hypotheses, and identify detection gaps to improve security monitoring.
  • Analyze security telemetry from SIEM, EDR, data lakes, and other sources to identify advanced threats.
  • Develop and enhance threat detection use cases, detection models, and engineering frameworks (e.g., OpenTIDE).
  • Design, automate, and maintain threat hunting workflows, playbooks, integrations, and IoC retro-hunting capabilities.
  • Support incident response investigations, purple team exercises, and validation of new detection capabilities.
  • Collaborate with Incident Response, Threat Detection, Threat Intelligence, Malware Analysis, Red/Purple Teams, and external partners (e.g., CERT-EU).
  • Prepare executive briefings, campaign reports, and investigation summaries for senior management.
  • Mentor and train junior threat hunters while promoting threat-informed detection practices.
  • Continuously improve detection coverage by incorporating lessons learned from incidents, red teaming, and threat intelligence.

What they require

  • Master's Degree in Computer Science, with a focus on Cybersecurity.
  • Minimum 2 years of experience leading Threat Hunting activities in a SOC/CSOC or equivalent environment.
  • Proven experience in operationalising threat intelligence to support proactive hunting and detection engineering.
  • Proven experience in developing and improving detection coverage to ensure that intelligence driven priorities are converted into timely and relevant detection use cases aligned with CSOC operational needs.
  • Hands on experience with OpenTIDE or an equivalent detection content management platform.
  • Strong practical experience with SIEM platforms, in particular Splunk Enterprise Security, Risk. Based Alerting, or equivalent technologies, for detection engineering, alerting, and use case development.
  • Strong practical experience with EDR solutions.
  • Ability to produce clear, structured, and actionable reporting, including threat assessments and strategic or operational reports, for both technical and non technical audiences.
  • Strong coordination skills with internal teams, business representatives, and external partners.

Uni Systems is hiring for its UniQue team to provide Level 3 support for complex enterprise routing and switching environments.

Technology
Salary not disclosed