Cyber Threat Investigator

2 weeks ago


Bengaluru, Karnataka, India ColorTokens Inc. Full time

About ColorTokens

At ColorTokens, we empower businesses to stay operational and resilient in an increasingly complex cybersecurity landscape. Breaches happen—but with our cutting-edge ColorTokens Xshield platform, companies can minimize the impact of breaches by preventing the lateral spread of ransomware and advanced malware. We enable organizations to continue operating while breaches are contained, ensuring critical assets remain protected.

Our innovative platform provides unparalleled visibility into traffic patterns between workloads, OT/IoT/IoMT devices, and users, allowing businesses to enforce granular micro-perimeters, swiftly isolate key assets, and respond to breaches with agility. Recognized as a Leader in the Forrester Wave: Microsegmentation Solutions (Q3 2024), ColorTokens safeguards global enterprises and delivers significant savings by preventing costly disruptions.

Join us in transforming cybersecurity. Learn more at

Our culture

We foster an environment that values customer focus, innovation, collaboration, mutual respect, and informed decision-making. We believe in alignment and empowerment so you can own and drive initiatives autonomously.

Self-starters and highly motivated individuals will enjoy the rewarding experience of solving complex challenges that protect some of the world's impactful organizations - be it a children's hospital, or a city, or the defense department of an entire country.

Job Summary:

The Senior Threat Hunter will be responsible for proactively identifying and mitigating advanced threats across enterprise environments. The role involves leveraging behavioural analytics, threat intelligence, and hypothesis-driven hunting to detect stealthy adversaries that evade traditional security controls.

Job Title:
Senior Threat Hunter

Location:
Bangalore (on site)

Experience Level:
5 to 6 years

Key Responsibilities:

  • Conduct proactive threat hunting across endpoints, network, cloud, and identity systems using telemetry and behavioral indicators.
  • Develop hunting hypotheses based on current threat landscape, TTPs (MITRE ATT&CK), and internal observations.
  • Perform deep-dive investigations into anomalies and suspicious activity detected by SIEM, EDR, NDR, or XDR platforms.
  • Collaborate with incident response, SOC analysts, and threat intelligence teams to validate and escalate findings.
  • Create and tune detection rules (e.g., in SIEM/XDR) to improve coverage and reduce false positives.
  • Maintain and evolve hunting playbooks and analytical methodologies.
  • Utilize threat intelligence to identify new indicators of compromise (IOCs) and behavioral patterns.
  • Lead post-hunt reviews, documenting findings, root cause, and recommendations.
  • Provide mentorship and training to junior analysts and hunters.
  • Participate in purple team exercises and collaborate with red teams to validate defenses.

Required Skills & Experience:

  • 5–6 years of hands-on experience in threat hunting, incident response, or advanced SOC analysis.
  • Strong knowledge of Windows, Linux, and Active Directory internals.
  • Expertise in one or more SIEM/XDR tools (e.g., Stellar Cyber).
  • Proficiency in analyzing network traffic, endpoint logs, and cloud telemetry.
  • Understanding of MITRE ATT&CK, Cyber Kill Chain, and Diamond Model frameworks.
  • Scripting skills in Python, PowerShell, or Bash for automation and data analysis.
  • Experience with threat intelligence feeds, IOC management, and correlation.
  • Strong analytical, problem-solving, and communication skills.

Why Join Us?

  • Work on a cutting-edge cybersecurity product in a fast-paced startup environment.
  • Collaborate with a world-class team of engineers and security experts.
  • Opportunity to learn, grow, and make a real impact from day one


  • Bengaluru, Karnataka, India, Karnataka Mashreq Full time

    Description :Manage security event monitoring and incident response using SIEM platforms, with preference for Azure Sentinel and ArcSight. Analyze and respond to security events from diverse sources such as firewalls, IDS/IPS, antivirus solutions, DAM systems, web servers, proxies, and banking applications. Develop and maintain alert rules and logic within...


  • Bengaluru, Karnataka, India CloudSEK Full time

    Are you a cybersecurity enthusiast who enjoys detective work and applying it to real-world threat tracking? Do you thrive on correlating rapidly evolving cybersecurity incidents and tech innovations, aspiring to build an AI-proof career? I just wanted to let you know that this position is for you.What are your Day-to-Day Responsibilities?You will be pivotal...


  • Bengaluru, Karnataka, India dentsu Full time ₹ 4,00,000 - ₹ 12,00,000 per year

    The purpose of this role is to work as part of a team to implement an organised approach to addressing and managing security requests,breaches or cyberattacks. Performing investigations, providing reports with recommendations and root cause analysis.Job Description:Key responsibilities:Performs response analytics during and after an incident, determine root...


  • Bengaluru, Karnataka, India CloudSek Full time ₹ 6,00,000 - ₹ 18,00,000 per year

    WHO ARE WE?We are a bunch of super enthusiastic, passionate, and highly driven people, working to achieve a common goal We believe that work and the workplace should be joyful and always buzzing with energyCloudSEK, one of India's most trusted Cyber security product companies, is on a mission to build the world's fastest and most reliable AI technology that...


  • Bengaluru, Karnataka, India thehivecareers Full time

    About the job Cyber Security AnalystThe Cyber Security Analyst will be responsible for protecting all of the company's hardware, software, and networks from cybercriminals. The analyst's primary role will be to understand the company IT infrastructure in detail in order to detect, evaluate and respond to threats that could potentially breach the network. The...


  • Bengaluru, Karnataka, India Commonwealth Bank of Australia Full time

    Organization: At CommBank, we never lose sight of the role we play in other people's financial wellbeing. Our focus is to help people and businesses move forward to progress. To make the right financial decisions and achieve their dreams, targets, and aspirations. Regardless of where you work within our organisation, your initiative, talent, ideas, and...


  • Bengaluru, Karnataka, India Cyble Full time ₹ 8,00,000 - ₹ 12,00,000 per year

    About Cyble:Cyble is revolutionizing the landscape of cybersecurity intelligence. Founded in 2019, Cyble began as a visionary college project and has quickly transformed into a leading force in proactive cyber threat detection and mitigation, that is now globally significant, with people in 20 countries - Headquartered in Alpharetta, Georgia, and with...


  • Bengaluru, Karnataka, India CloudSEK Full time ₹ 5,00,000 - ₹ 15,00,000 per year

    WHO ARE WE?We are a bunch of super enthusiastic, passionate, and highly driven people, working to achieve a common goal We believe that work and the workplace should be joyful and always buzzing with energyCloudSEK, one of India's most trusted Cyber security product companies, is on a mission to build the world's fastest and most reliable AI technology that...


  • Bengaluru, Karnataka, India, Karnataka CloudSEK Full time

    WHO ARE WE?We are a bunch of super enthusiastic, passionate, and highly driven people, working to achieve a common goal! We believe that work and the workplace should be joyful and always buzzing with energy!CloudSEK, one of India’s most trusted Cyber security product companies, is on a mission to build the world’s fastest and most reliable AI technology...

  • Threat Hunter

    2 weeks ago


    Bengaluru, Karnataka, India ColorTokens Inc. Full time ₹ 7,00,000 - ₹ 14,00,000 per year

    About ColorTokensAt ColorTokens, we empower businesses to stay operational and resilient in an increasingly complex cybersecurity landscape. Breaches happen—but with our cutting-edge ColorTokens Xshield platform, companies can minimize the impact of breaches by preventing the lateral spread of ransomware and advanced malware. We enable organizations to...