JobMesh

Senior Information Security Engineer - IS Mod

Mayo Clinic · Rochester, Minnesota, US

The Senior Information Security Engineer (Threat Hunt) proactively hunts for and validates adversary activity across endpoint, identity, network, cloud, and...

Job description

The Senior Information Security Engineer (Threat Hunt) proactively hunts for and validates adversary activity across endpoint, identity, network, cloud, and application telemetry, and supports high-severity incident investigations to determine scope and impact. Translates successful hunts and threat intelligence into scalable detections and monitoring (e.g., SIEM/XDR correlation rules, alert logic, scheduled queries, and dashboards) and continuously tunes them to reduce noise while improving coverage. Leverages automation and Artificial Intelligence platforms to accelerate hunt development, enrich investigative context, prioritize high-value leads, and improve the efficiency and scale of threat hunting workflows. Applies deep knowledge of attacker tradecraft and TTPs across the cyber kill chain, including IOC management, tracking, and hypothesis-driven hunting. Success in the role requires strong data and automation skills (e.g., KQL/Splunk SPL/Yara-L plus PowerShell/Python) and hands-on experience with platforms such as Microsoft Sentinel and Microsoft Defender XDR or comparable SIEM/XDR tools. Partners closely with incident response, detection engineering, security testing (purpl...