{"id":1269771,"url":"https://alion.io/job/sisa-threat-hunter","title":"Threat Hunter","company":{"id":2144267,"name":"SISA","domain":"sisa.ai","url":"https://alion.io/company/sisa-ai","size_band":"51-200","is_staffing_agency":false,"employer_type":"direct","is_intermediary":false,"listed_via":null,"ats_vendor":"Keka","truth_index":{"grade":"B","score":75,"open_postings":7,"ghost_share":0,"stale_share":1,"repost_share":0,"time_to_fill_p50_days":null,"computed_at":"2026-09-30T05:45:00Z"}},"role":"Security","role_family":"Security","seniority":"middle","employment_type":"full_time","work_mode":"on_site","remote_scope":null,"remote_scope_basis":null,"remote_working_hours":null,"hiring_geo_confidence":"structured","locations":["Bengaluru, India"],"countries":["IN"],"hiring_countries":[],"hiring_countries_total":0,"salary":{"min":2500000,"max":3000000,"currency":"INR","period":"year","gross":null,"usd_annual":31446},"salary_estimate":null,"experience_years_min":3,"visa_sponsorship":false,"relocation_package":false,"has_equity":false,"technologies":[{"name":"IBM QRadar","optional":false},{"name":"PowerShell","optional":false},{"name":"Python","optional":false},{"name":"SIEM","optional":false},{"name":"MITRE ATT&CK","optional":true}],"status":"live","first_seen_at":"2026-01-27T08:52:00Z","employer_posted_date":"2026-01-27","last_verified_at":"2026-09-29T15:24:37Z","board_verified":true,"closed_at":null,"days_open":245,"trust":{"level":"stale","repost_count":0,"flags":["stale"],"days_open":245},"description":"Job Summary\nWe are seeking a skilled QRadar Threat Hunter to proactively detect, investigate, and respond to cybersecurity threats. The ideal candidate will leverage IBM QRadar SIEM, threat intelligence, and advanced analytics to uncover threats before they impact business operations. This role requires deep technical expertise, analytical thinking, and experience in security monitoring and incident response.\nKey Responsibilities\n\nConduct proactive threat hunting using IBM QRadar SIEM, including rules, use cases, and correlation searches.\nAnalyse security events, logs, and alerts from multiple sources (endpoints, networks, cloud, applications).\nInvestigate and respond to potential threats, anomalies, and suspicious behaviours.\nDevelop and tune SIEM use cases, correlation rules, and dashboards for improved threat detection.\nPerform threat intelligence integration, enrichment, and analysis to support detection efforts.\nCollaborate with SOC, Incident Response, Platform Support, Network, and Infrastructure teams to contain and remediate threats.\nConduct root cause analysis and provide post-incident threat reports.\nMaintain documentation for security monitoring, detection rules, and threat hunting methodologies.\nKeep abreast of the latest cyber threats, tactics, techniques, and procedures (TTPs).\nParticipate in security assessments, red/blue team exercises, and simulation of advanced attacks.\n\nRequired Skills & Qualifications\n\nHands-on experience with IBM QRadar SIEM (log sources, rules, dashboards, offense management).\nStrong knowledge of cybersecurity concepts, frameworks, and threat landscape.\nExperience with network protocols, endpoints, logs, cloud platforms, and security technologies (firewalls, IDS/IPS, EDR, vulnerability management).\nProficiency in log analysis, security event correlation, and forensic investigation.\nFamiliarity with threat intelligence platforms and OSINT.\nStrong analytical and problem-solving skills with attention to detail.\nKnowledge of scripting languages (Python, PowerShell, or Bash) is a plus.\nUnderstanding of MITRE ATT&CK framework, TTPs, and SOC operations.\nStrong communication skills and ability to write clear incident reports.\n\nEducation & Experience\n\nBachelor’s degree in Computer Science, Cybersecurity, Information Technology, or related field.\n3-5 years of experience in cybersecurity, SOC operations, or threat hunting.\nHands-on experience in threat hunting, incident detection, and response.\n Certifications preferred:\nIBM QRadar Certified Administrator / SIEM Professional\nCertified Ethical Hacker (CEH)\nGIAC Certified Incident Handler (GCIH)\nCompTIA Cybersecurity Analyst (CySA+)\n\nPreferred Attributes\n\nStrong investigative mindset and curiosity to hunt for unknown threats.\nAbility to work independently and as part of a collaborative SOC team.\nUp-to-date with the latest threat trends, malware, APT techniques, and attack vectors.\nDetail-oriented with excellent organizational and documentation skills.","description_format":"text","description_chars":2980,"description_truncated":false,"requirements":{"experience_years_min":3,"management_years_min":null,"team_size_min":null,"manages_managers":false,"education":{"level":"bachelor","optional":false},"security_clearance":false,"languages":[]},"benefits":[],"hiring_locations":[],"hiring_excludes":[],"relocation_offered":false,"industries":["Artificial Intelligence","Cybersecurity","Information Security","Incident Response"],"lifecycle":[{"event":"open","at":"2026-09-25T23:37:36Z"}],"liveness":{"score":6,"band":"cold","label":"Long shot","p_open":1,"p_active":0.222,"p_room":0.28,"age_days":245,"expected_fill_days":38,"reasons":["conf:14","velocity","win:tail","crowd:"],"computed_at":"2026-09-30T05:45:00Z"},"pay":{"stated_usd_annual":31446,"is_top_pay":false},"html_url":"https://alion.io/job/sisa-threat-hunter","json_url":"https://alion.io/job/sisa-threat-hunter.json","meta":{"generated_at":"2026-09-30T06:48:55Z","cache_seconds":300,"methodology":"https://alion.io/methodology","terms":"https://alion.io/terms","contact":"https://alion.io/contact","api":"https://alion.io/developers","usage":{"tier":"crawler","counted_by":"address","units_charged":1,"used_today":4885,"day_limit":5000,"remaining_today":115,"minute_limit":60,"resets_at":"2026-10-01T00:00:00Z"}}}