740,080open jobs
44,473companies
105,813added this week
Browse all
Salary
≈ $90k – $203k per year (Estimated)
Location
Remote (United States, Australia)
Seniority
Senior · 2+ years exp

Confirmed on the employer's own hiring board on Sep 24, 2026. First seen by Alion on Sep 24, 2026. Huntress scores B on the Alion truth index.

Overview
Company
Impact
Profile match
Huntress is a cybersecurity software company focused on helping organisations detect and respond to threats that traditional preventative tools can miss. Its products are built around identifying suspicious activity in real environments, investigating what is happening, and supporting remediation, which is particularly important for teams that do not have the time or specialist resources to run a full security operations centre. For job seekers, that means the work is closely tied to real incident patterns, attacker behaviour, and the practical challenges of securing modern business systems.

Reports to: Senior Manager, Detection Engineering & Threat Hunting

Location: Remote Australia

Compensation Range: $150,000 to $170,000 AUD base plus bonus and equity

What We Do:

Cybercrime is growing, and more businesses are getting hit by threats that used to target only the biggest organizations. That pushes defenders like us to operate at the highest level, and it deepens our need for good people who want to make a meaningful impact.

Founded in 2015 by former NSA cyber operators, Huntress is a remote-first team working to make enterprise-grade cybersecurity accessible to businesses of all sizes. We work closely with security teams and service providers protecting complex environments, often without the time or headcount to handle it all. That’s why we build our technology in-house and back it with a 24/7 human-led Security Operations Center (SOC). As a result, our platform is never disconnected from the experts who manage it, ensuring our customers' protection.

Huntress now secures more than 5M+ endpoints and 15M+ identities worldwide. Those numbers keep growing because more businesses rely on us to help carry the load and operate with more confidence. Every day, you can see that commitment in how we stand with our customers and how we show up for each other.

What You’ll Do: 

Members of the Huntress DE&TH team wake up every morning with the honor of impeding threat actors through a combination of detection engineering and threat hunting. This team sits alongside our 24x7 Security Operations Center, and our Adversary Tactics & Tactical Response function, and plays a pivotal role in detecting threats actors before they get a chance to impact our partner environments. 

As a Senior Detection Engineering and Threat Hunting (DE&TH) Analyst you should be drawn to the hard problems: detecting stealthy intrusions, managing false positives and false negatives at scale, and uncovering clues that may expose an evolving campaign across Huntress partners. In this role you will turn threat intelligence, or a hypothesis, into detections that help the SOC find real intrusions faster. While the SOC is responding to alerts within minutes, this team is developing detections and reviewing more ambiguous signs of attacker activity on a daily & weekly basis.

On the Detection Engineering side of the role, you will play a part in designing, building, and maintaining a resilient, scalable, and high-fidelity detection portfolio that enables the SOC to rapidly identify and respond to adversary activity. This will involve working with engineering and other adjacent teams to achieve a shared goal across multiple domains which includes identities and endpoints.

On the Threat Hunting side of the role, you will get to research new attacker tradecraft, test new theories, and review hunting data at scale for millions of endpoints to proactively hunt for, and disrupt, stealthy threat actor techniques that evade initial defenses.

If you love Detection Engineering and Threat Hunting at scale, whilst in the environment and energy of a SOC, this is the role for you!

Responsibilities:  

  • Contribute to all parts of the detection lifecycle by creating new rules, testing them before deployment, monitoring efficacy, and tuning, promoting, or retiring rules based on their performance.
  • Develop rules across a variety of Huntress products and operating systems such as: Identity Threat Detection and Response (ITDR), Security Information and Event Management (SIEM), Endpoint Detection and Response (EDR), Windows, Linux, and MacOS.
  • Manage any DE&TH requests raised internally or escalated from our partners.
  • Undertake hypothesis-driven hunts across Huntress telemetry, prioritising techniques and tradecraft that may evade high-fidelity detections and initial SOC review.
  • Consume threat intelligence and translate IOCs, TTPs, and internal findings into new or refined detections through Git-based workflows.
  • Build and refine hunting dashboards or queries required to surface potential intrusions.
  • Review ambiguous signs of attacker activity across Huntress products, and surface likely intrusions that require deeper investigation.
  • Investigate or escalate likely intrusions identified to ensure partners receive clear incident reports with accurate advice.
  • Contribute findings to community-driven projects and create Huntress content such as blogs, social posts, videos, podcasts, and webinars.
  • Use AI-assisted workflows to prototype queries, enrich analysis, and develop a scaffolding for detection rules, ensuring you apply sound judgment to validate the AI output. We expect everyone at Huntress to be able to use AI as a real part of how they work, not occasionally, but genuinely embedded in core workflows.

What You Bring To The Team: 

  • 2+ years of experience in detection engineering, threat hunting, SOC, MDR, or incident response.
  • Intermediate knowledge of Windows internals.
  • Working knowledge of Linux, macOS, Microsoft 365, Azure, and Google Workspace.
  • Experience developing, testing, tuning, and documenting detections or analytics from threat intelligence, IOCs, hypotheses, or real-world investigations.
  • Ability to communicate findings through clear written reports.
  • Strong familiarity with detection languages such as Sigma, Suricata, Snort, or YARA, and query languages such as KQL, EQL, ES|QL, or Splunk SPL.
  • A sound understanding of adversary tradecraft, including techniques used for persistence, privilege escalation, defense impairment, lateral movement, discovery, and collection on a system.
  • A sound understanding of the roles different threat actors play and their associated goals, such as: initial access brokers, ransomware affiliates, and state-sponsored entities.
  • Ability to orchestrate reusable AI workflows that improve threat hunting, detection development, or analysis, and can verify AI-generated outputs before they reach production environments.

Bonus points for: 

  • Intermediate knowledge of Linux and MacOS internals.
  • Hands-on experience using tools to remotely discover evidence of compromise such as OSquery, Velociraptor, and EDR/MDR/XDR platforms.
  • Previous use of forensic tooling such as Eric Zimmerman's EZ Tools, RegRipper, Hayabusa, or Chainsaw to analyze endpoint artifacts.
  • Intermediate malware analysis skills.

What We Offer: 

  • Fully remote work
  • At least one annual trip to the US for Summer Summit, with additional local events in Australia!
  • New starter home office set up reimbursement ($800 AUD)
  • 12 weeks paid parental leave for both primary and secondary carers
  • Monthly digital allowance for personal phone and internet costs ($185 AUD)
  • Monthly home office tech stipend to upgrade or replace equipment ($40 AUD)
  • Subsidised private health insurance through our preferred provider
  • Stock options for all full-time employees
  • Access to the BetterUp platform for coaching, personal, and professional growth

Huntress is committed to creating a culture of inclusivity where every single member of our team is valued, has a voice, and is empowered to come to work every day just as they are.

We do not discriminate based on race, ethnicity, color, ancestry, national origin, religion, sex, sexual orientation, gender identity, disability, veteran status, genetic information, marital status, or any other legally protected status. 

People from all culturally diverse backgrounds, including Aboriginal & Torres Strait Islander Peoples, are encouraged to apply.

We do discriminate against hackers who try to exploit businesses of all sizes.

Accommodations:

If you require reasonable accommodation to complete this application, interview, or pre-employment testing or participate in the employee selection process, please direct your inquiries to [email protected]. Please note that non-accommodation requests to this inbox will not receive a response.

Huntress uses artificial intelligence tools to assist in reviewing and evaluating job applications, including resume screening, skills assessment, and candidate matching and comparisons. These AI tools support our human recruiters in the initial review process, but do not make final hiring decisions without human involvement. By submitting your application, you acknowledge this use of AI in our recruitment process. Please review our Candidate Privacy Notice for more details on our practices and your data privacy rights.

Free account
Stop reading job ads. Get the ones that fit.
One free account turns this page into a shortlist built around your stack, your level and your pay.
Match on every job. Stack, seniority, pay and location, scored against your profile.
740,080 open roles. Read straight off company career pages, refreshed every day.
Unlimited applications. Every one you send is tracked in one place, on-site or on a company board.
3 tailored CVs a month. Rewritten for the exact job you are applying to. Included free.
Create a free account Continue with Google
Free forever. No card. Under a minute.

Your match

How well do you fit this role?
Two answers are enough for a real match. No account needed.
Check my fit
Answers stay in this browser until you create an account.

Recommended for you based on this role

Security
Similar stack
Same company
In your city
$115k – $150k per year • Equity • Remote (North America, PT hours) • PhD
DevOps
CI/CD
GitLab
Cybersecurity
OWASP Top 10
CVE
CWE
CVSS
OWASP
Apply
≈ $124k – $227k per year (Estimated) • Remote (United States) • Full-Time • Bachelor's Degree
Python
Web3
DeFi
Management
Agile
Apply
≈ $125k – $229k per year (Estimated) • Remote (United States) • Full-Time • 5+ years exp
Python
Python
FastAPI
AI/ML
LangChain
AI Agents
Red Teaming
LLM Guardrails
DevOps
CI/CD
Cybersecurity
OWASP Top 10
HIPAA
Threat Modeling
Apply
≈ $115k – $211k per year (Estimated) • Remote (United States)
DevOps
Azure
Cybersecurity
Microsoft Sentinel
Microsoft Defender
Zero Trust
Microsoft Entra ID
SIEM
Apply
≈ $63k – $150k per year (Estimated) • Remote (Spain) • Full-Time • 10+ years exp • Madrid
AI/ML
AI Agents
LLM
DevOps
Azure
AWS
Cybersecurity
Okta
CyberArk
ISO 27001
MITRE ATT&CK
NIST CSF
Zero Trust
Least Privilege
Microsoft Entra ID
Active Directory
OWASP
Apply
≈ $24k – $66k per year (Estimated) • In office • Bangkok
Python
SQL
Databases
Databricks
AI/ML
Spark
Airflow
DevOps
Azure
CI/CD
Git
AWS
Grafana
Amazon CloudWatch
Linux
Analytics
ETL/ELT
Azure Data Factory
Management
Jira
Apply
$44k – $56k per year • In office • Milan
JavaScript
SQL
Apex
Apex
MuleSoft
DevOps
Rest API
Splunk
Azure DevOps
Datadog
Dynatrace
GitLab CI
Azure
CI/CD
Jenkins
SLI/SLO/SLA
SOAP
Apply
In office • 2+ years exp • Bachelor's Degree
Python
Verilog
C++
SystemVerilog
Bash
DevOps
Git
Linux
Chips/EDA
UVM
Xilinx Vivado
Vitis
Apply
≈ $26k – $65k per year (Estimated) • Hybrid • Full-Time • 12+ years exp • Bachelor's Degree • Hyderabad
Python
JavaScript
Java
Node JS
DevOps
Terraform
Ansible
Azure
CI/CD
AWS
Kubernetes
Management
Agile
Scrum
Apply
≈ $98k – $185k per year (Estimated) • In office • Full-Time • Australia
JavaScript
Java
Kotlin
Node JS
Databases
Redis
Apache Kafka
AI/ML
Copilot
AI Agents
RAG
Frontend
React.js
DevOps
Rest API
Azure
CI/CD
AWS
Docker
Kubernetes
Management
Agile
Apply
≈ $116k – $213k per year (Estimated) • Equity • Remote (United States) • 2+ years exp
YARA
DevOps
Splunk
Azure
Git
Linux
Windows
Cybersecurity
Suricata
YARA
Velociraptor
osquery
Eric Zimmerman Tools
SIEM
Management
Google Workspace
Apply
≈ $53k – $129k per year (Estimated) • Equity • Remote (United States, Australia) • 2+ years exp
PowerShell
AI/ML
Agentic Workflows
DevOps
Linux
Windows
Cybersecurity
Active Directory
SIEM
Management
Google Workspace
Apply
$50k – $65k per year • Equity • Remote (United States, CT hours)
Cybersecurity
SIEM
Apply
≈ $84k – $162k per year (Estimated) • Equity • Remote (United States, United Kingdom, Ireland) • 4+ years exp
Python
JavaScript
PHP
Ruby
PowerShell
Bash
AI/ML
Red Teaming
DevOps
GCP
Azure
AWS
Linux
Windows
Cybersecurity
OWASP Top 10
Active Directory
Apply
$50k – $65k per year • Equity • Remote (United States, ET hours)
Cybersecurity
SIEM
Apply
See all jobs
This is one of many
740,080 more open roles from verified company boards, updated every day.