- Company Name
- Vector Synergy
- Job Title
- Cyber Security Threat Hunting Tools Administrator
- Job Description
-
Job title: Cyber Security Threat Hunting Tools Administrator
Role Summary:
Design, deploy, and maintain a suite of threat hunting and monitoring tools (THOR, Asgard, Sysmon, Corelight, Microsoft Defender, Splunk, Sentinel). Ensure secure integration, compliance with IT service management policies, and documentation of deployments. Automate processes using scripting and workflow tools (Bash, Python, Ansible, N8N, Magnet Automate).
Expectations:
* 2+ years' experience as Security Engineer or related role, or 5+ years post‑secondary experience with equivalent responsibilities.
* Demonstrated ability to automate repetitive tasks and integrate security solutions into an enterprise network.
* Proven track record managing and tuning cyber security monitoring environments.
Key Responsibilities:
* Architect, configure, and manage threat hunting tools (THOR, Asgard, Sysmon, Corelight, Microsoft Defender, Splunk, Sentinel).
* Ensure deployments meet stringent security standards and IT service management policies.
* Produce and maintain documentation, test environments, and operational procedures.
* Create and maintain Bash, Python, or Ansible scripts for automation.
* Apply workflow automation best practices using N8N, Ansible, Magnet Automate to improve efficiency and reliability.
Required Skills:
* Proficiency in Bash, Python, or Ansible scripting.
* Hands‑on experience with Sysmon deployment and management.
* Practical knowledge of Nextron Asgard/THOR solutions.
* Strong background in cyber security monitoring and incident response.
* Ability to integrate multiple security technologies into a cohesive platform.
Required Education & Certifications:
* Bachelor’s degree in Computer Science, Cyber Security, or related field—OR
* Advanced vocational education with ≥5 years of related experience—OR
* Demonstrated experience of ≥8 years in equivalent duties if lacking formal degree.
* Relevant certifications (e.g., CISSP, CEH, CompTIA Security+) are advantageous but not mandatory.