The Threat Hunting Intern assists cybersecurity teams in actively and proactively searching for hidden threats or attacker footprints that get past automated security controls. It is a hands-on learning role designed to build technical skills in digital forensics, network defense, and incident response.
Responsibilities
· Proactive Hunting: Assist senior hunters in running searches across endpoints (computers and devices) and networks to uncover hidden threats, unusual behavior, and stealthy malware.
· Data & Log Analysis: Review and analyze security logs and telemetry to identify anomalies or potential indicators of compromise (IOCs).
· Hunt Logic & Rules: Help create, test, and write new threat detection rules (such as YARA or SQL-based logic) to improve the company's security visibility.
· Emerging Threat Research: Keep up to date on major global cyber threats. Assist in mapping attacker Tactics, Techniques, and Procedures (TTPs).
· Triage & Reporting: Help review search findings, separate benign events from actual threats, and draft technical reports for senior analysts.
· Education: Currently pursuing a bachelor’s degree or master’s degree in Cybersecurity, Computer Science, or Information Technology.
· Core Knowledge: Basic understanding of networking principles, operating systems (Windows, Linux, or macOS), and common cyber-attack methods.
· Technical Skills: Familiarity with scripting languages (like Python) and basic query languages.
· Soft Skills: Strong analytical thinking, curiosity, a drive to learn, and the ability to explain technical findings.
· Frameworks: Familiarity with cybersecurity frameworks like MITRE ATT&CK is highly preferred.
Common Tools Used:
· SIEM/Data Platforms: Tools used to collect and analyze security data, such as Splunk or Elastic.
· EDR (Endpoint Detection and Response): Tools used to monitor computers and servers, such as CrowdStrike, SentinelOne, or Microsoft Defender.
· Threat Intelligence Platforms (TIP): Services that provide data on known cyber threats
About Binary Defense
Binary Defense is a leading Managed Detection and Response (MDR) provider, trusted by hundreds of organizations to protect what matters most. Our team of SOC analysts, threat hunters, detection engineers, and threat researchers work around the clock to deliver proactive, risk-focused security outcomes. We bring the attacker's mindset to defense, helping clients detect threats earlier, respond faster, and continuously improve their security posture.
For more information, visit our website, check out our blog, or follow us on LinkedIn.
Binary Defense offers competitive medical, dental and vision coverage for employees and dependents, a 401k match which vests every payroll, a flexible and remote friendly work environment, as well as training opportunities to expand your skill set (to name a few!). If you’re interested in joining a growing team with great perks, we encourage you to apply!