Threat Hunting Specialist Job Req ID: 45899 Posting Date: 7 Apr 2025 Function: Cyber Security Unit: Networks Location: Assembly, Bristol, United Kingdom Salary: Competitve with Great Benefits Why this job matters BT Group is one of the most critical of all UK Critical National Infrastructure. Our job is simple - defend it from Cyber Attack. Your role at BT is pivotal in helping us achieve this. You will have access to an unparalleled level of data and security tooling to help us achieve our goal of being the world's most trusted connector of people, devices and machine by 2030. This role follows hybrid working & requires 3 days in the office - choice of Bristol, Ipswich or Manchester What you'll be doing - Conduct proactive threat hunting activities to identify and mitigate potential security threats. Aligning with the MITRE ATT&CK Framework to put at the core of threat hunting activities. - Analyse and interpret security data from various sources, including logs, network traffic, and endpoint data. - Develop and implement advanced threat detection techniques and tools. - Collaborate with the incident response team to investigate and respond to security incidents. - Create and maintain detailed documentation of threat hunting activities and findings. - Stay up-to-date with the latest threat intelligence and cybersecurity trends. - Provide recommendations for improving security posture and threat detection capabilities. - Lead an intelligence-led vulnerability management process. - Domain knowledge to fill the role of CTI SME within wide range of Security engagements. - Leading collaboration activities with internal teams across the organisation in order to provide further internal understanding of potential adversaries and attack vectors. - Delivery of verbal presentations and threat briefs, in-person and virtually, to internal and external stakeholders at all seniority levels - Relationship management within the wider Information Security community. Representation of BT in a wide range of fore, to ensure impactful collaboration across the Telco and National Security communities including direct engagement with NCSC and the NCA. - Ownership of Vendor relationships - ensuring effective integration and usage of vendor platforms, in order to drive best value and effect for BT. Skills & Experience Required for the Role Must Have - Proven experience in threat hunting, incident response, malware analysis or a similar role. - Holds current relevant professional qualifications in Threat Hunting and/or Information Security (Relevant certifications (e.g., CEH, GCIH, GCFA) are a plus- or willing to work towards - Strong knowledge of cybersecurity principles, threat landscapes, and attack vectors. - Experience with Crowdstrike and Microsoft Defender hunting methodologies - Familiarity with the MITRE ATT&CK framework. - Knowledge of security tools and technologies such as SIEM, EDR, and IDS/IPS. - Excellent analytical and problem-solving skills. - Strong oral and written communication skills - Proactive Team Player - Demonstrable experience of operational delivery in a fast-paced security environment - Knowledge and understanding of current security threats, threat models, frameworks and common mitigations - People skills, with an ability to communicate effectively Nice to Have - Experience of intelligence-led vulnerability management processes. - Experience of vulnerability management - Experience with scripting and automation (e.g., Python, PowerShell). - Experience within another Telecommunications/CNI environment - Good written reporting skills - Management/Leadership experience - Network analysis skills About us BT Group was the world's first telco and our heritage in the sector is unrivalled. As home to several of the UK's most recognised and cherished brands - BT, EE, Openreach and Plusnet, we have always played a critical role in creating the future, and we have reached an inflection point in the transformation of our business. Over the next two years, we will complete the UK's largest and most successful digital infrastructure project - connecting more than 25 million premises to full fibre broadband. Together with our heavy investment in 5G, we play a central role in revolutionising how people connect with each other. While we are through the most capital-intensive phase of our fibre investment, meaning we can reward our shareholders for their commitment and patience, we are absolutely focused on how we organise ourselves in the best way to serve our customers in the years to come. This includes radical simplification of systems, structures, and processes on a huge scale. Together with our application of AI and technology, we are on a path to creating the UK's best telco, reimagining the customer experience and relationship with one of this country's biggest infrastructure companies. Change on the scale we will all experience in the coming years is unprecedented. BT Group is committed to being the driving force behind improving connectivity for millions and there has never been a more exciting time to join a company and leadership team with the skills, experience, creativity, and passion to take this company into a new era. A FEW POINTS TO NOTE: Although these roles are listed as full-time, if you're a job share partnership, work reduced hours, or any other way of working flexibly, please still get in touch. We will also offer reasonable adjustments for the selection process if required, so please do not hesitate to inform us. DON'T MEET EVERY SINGLE REQUIREMENT? Studies have shown that women and people who are disabled, LGBTQ, neurodiverse or from ethnic minority backgrounds are less likely to apply for jobs unless they meet every single qualification and criteria. We're committed to building a diverse, inclusive, and authentic workplace where everyone can be their best, so if you're excited about this role but your past experience doesn't align perfectly with every requirement on the Job Description, please apply anyway - you may just be the right candidate for this or other roles in our wider team.