Back to Jobs

SOC Tier III Analyst / Threat Hunter | WINTrio LLC

Remote, USA Full-time Posted 2026-06-06

Company Overview WINTrio LLC (WINTrio) is a leading provider of Cyber/DevSecOps, Cloud, Artificial Intelligence (AI)/Machine Learning (ML), and Agile Software Development solutions. We collaborate closely with federal and commercial clients to solve complex technical challenges by delivering innovative, agile, and cost-effective solutions. Our team is empowered to think creatively and deliver impactful results that drive measurable value. Role: SOC Tier III Analyst / Threat Hunter Location: Remote Client: Long-term Federal/Public Sector Work Authorization: US Citizen or Green Card preferred; must be able to pass federal background and suitability requirements. Job Summary: As a SOC Tier III Analyst / Threat Hunter, you will handle complex incident investigations, proactive threat hunting, detection validation, advanced adversary behavior analysis, and purple team support for a federal vSOC program. This role requires expert-level KQL, Microsoft Sentinel, Defender XDR, MITRE ATT&CK, and incident response experience. Key Responsibilities:

  • Lead complex incident investigations and support high-severity escalations.
  • Conduct monthly proactive threat hunting across identity, endpoint, cloud, network, email, GitHub, SQL, and backup telemetry.
  • Develop and refine hunting hypotheses aligned to MITRE ATT&CK.
  • Build and tune advanced KQL queries, detection logic, analytics rules, and workbooks.
  • Support purple team exercises and adversary simulation validation.
  • Identify gaps in detection coverage and recommend new use cases.
  • Support forensic triage, root cause analysis, containment recommendations, and recovery validation.
  • Provide technical mentorship to Tier I and Tier II analysts.
  • Produce threat hunting reports, detection improvement recommendations, and executive summaries.

Required Qualifications:

  • Bachelor’s degree in Cybersecurity, Computer Science, Digital Forensics, Information Technology, or related field.
  • 8+ years of cybersecurity operations, threat hunting, detection engineering, incident response, or digital forensics experience.
  • Advanced hands-on experience with Microsoft Sentinel, KQL, Defender XDR, and threat hunting.
  • Strong understanding of attacker tactics, techniques, and procedures.
  • Experience supporting regulated or federal environments with CUI, PII, PHI, FTI, or sensitive data.
  • Experience writing incident reports, RCA reports, threat hunt reports, and detection engineering recommendations.

Tools and Preferred Qualifications:

  • Microsoft Sentinel, Defender XDR, MDE, MDI, Entra ID, Azure Log Analytics.
  • AWS CloudTrail, VPC Flow Logs, GitHub security logs, SQL Server audit logs.
  • MITRE ATT&CK, NIST SP 800-61, NIST SP 800-53, Zero Trust.
  • Certifications preferred: GCIH, GCIA, GCFA, GNFA, CISSP, CEH, SC-200, AZ-500, AWS Security Specialty.

Benefits

  • Medical, Dental, and Vision Insurance
  • FSA & HSA options
  • 401(k) Retirement Plan
  • Annual Bonus & Profit Sharing
  • Paid Time Off (PTO) & Vacation
  • Employee Assistance Program (EAP)
  • Life & Disability Insurance

Why Join WINTrio? WINTrio is a people-first, employee-driven organization. We offer opportunities to grow across emerging technologies, program management, and business development while working on high-impact federal initiatives. Equal Opportunity Employer WINTrio LLC is an Equal Opportunity/Affirmative Action Employer. All qualified applicants will receive consideration without regard to race, color, religion, sex, gender identity, national origin, age, veteran status, or disability. Apply tot his job Apply To this Job

Similar Jobs

[Remote] Security Operations Center Analyst II - Remote

Remote, USA Full-time

SOC Analyst - Contract - Candidate is local to Columbia, SC

Remote, USA Full-time

Jr. SOC Analyst

Remote, USA Full-time

XTN-2584703 | L3 SOC ANALYST

Remote, USA Full-time

Sr. SOC Analyst

Remote, USA Full-time

Senior SOC OT Security Consultant Engineer

Remote, USA Full-time

SOC Analyst; L2

Remote, USA Full-time

Tier 1 Analyst

Remote, USA Full-time

Junior Cyber Defender (SOC Analyst)

Remote, USA Full-time

Trust & Safety Architect

Remote, USA Full-time

Join the BEST, be the BEST: Junior Technical Consultant for AI-driven data capture and digital archive. APPLY TODAY!

Remote, USA Full-time

Part-Time/Contract Medical Director or Psychiatrist Medical Director

Remote, USA Full-time

Peer Support Specialist - Fully Remote in Rio Rancho, New Mexico

Remote, USA Full-time

Experienced Remote Data Entry Specialist – Competitive Salary & Flexible Work Arrangement

Remote, USA Full-time

AI Software Development Engineer in Test (AI-SDET)

Remote, USA Full-time

Experienced Full Stack Customer Service Representative – Work From Home $16-$35/hr

Remote, USA Full-time

Experienced Customer Experience Representative – Remote Opportunity with arenaflex

Remote, USA Full-time

Experienced Customer Service Technical Support Representative – Crafting a World-Class Experience for arenaflex Members

Remote, USA Full-time

Experienced Online Chat Support Specialist – Part-Time Remote Opportunity at arenaflex

Remote, USA Full-time

Creator In-Residence Program

Remote, USA Full-time