Southern Company

Adversary Threat Hunter

Southern Company$110K — $130K *
Information Technology
5 - 7 years of experience
Job Overview by Ladders

Qualifications

  • Bachelor's degree or equivalent experience
  • 7 or more years in information technology security
  • Broad knowledge of information security principles
  • Strong understanding of network design principles
  • Practical experience with SIEM platforms like Splunk or Gravwell
  • Demonstrated experience in security operations and forensics
  • Familiarity with the threat intelligence lifecycle and adversary tactics

Responsibilities

  • Plan and conduct structured threat hunting engagements
  • Collect and analyze data to identify suspicious activity
  • Stay updated on the current threat landscape
  • Collaborate with Cyber Threat Intelligence team
  • Recommend improvements for SIEM detections and alert logic
  • Support incident response and threat scenario development
  • Partner with Threat Analysis and Incident Response teams for enhanced security

Benefits

  • Opportunities for ongoing training and certifications
  • Collaborative team environment
  • Access to cutting-edge cybersecurity tools
  • Exposure to diverse threat landscapes
  • Potential for growth in cybersecurity expertise
Full Job Description
Job Description

Adversary Threat Hunter

Job Description

Southern Company is seeking a knowledgeable, hands-on Adversary Threat Hunter to join our Cyber Security team. This role leads proactive threat hunting engagements to identify suspicious behavior, adversary activity, and unauthorized access across Southern Company networks and systems. The position also supports incident response, detection engineering, investigative processes, and recommendations for security technologies and controls that improve the company's defensive posture.

The ideal candidate will have a strong cybersecurity and security operations background, with forensic, investigative, analytical, threat intelligence, and technical skills.

Qualifications:
  • Bachelor's degree or equivalent experience
  • 7 or more years of information technology security experience
  • Broad knowledge of information security principles, including access control, least privilege, data integrity, and core security capabilities
  • Strong understanding of network design principles, including topology, protocols, network components, and virtualized infrastructure
  • Practical experience with Splunk, Gravwell, or other Security Information and Event Management (SIEM) platforms
  • Demonstrated experience in security operations, including security monitoring, incident response, host or network forensics, penetration testing, cyber threat intelligence, malware analysis, or security consulting
  • Experience performing forensic analysis on Windows and Linux/Unix systems
  • Experience using Endpoint Detection and Response (EDR), Network Detection and Response (NDR), Security Orchestration, Automation, and Response (SOAR), and related cybersecurity tools to support threat hunting, investigation, and response
  • Experience with memory analysis, disk artifact collection, endpoint telemetry, and forensic acquisition methods used to identify malicious or evasive activity
  • Ability to develop threat hunting hypotheses from cyber threat intelligence, incident response findings, adversary tradecraft, vulnerability information, and business risk priorities
  • Ability to evaluate available data sources, identify visibility gaps, and determine whether logs, telemetry, or security tooling are sufficient to validate a hunt hypothesis
  • Basic understanding of YARA, Snort, Sigma, or similar detection logic
  • Experience using data analysis methods such as searching, filtering, grouping, stacking, baselining, anomaly detection, visualization, and trend analysis to identify suspicious behavior
  • Experience mapping adversary behaviors to MITRE ATT&CK, MITRE ATT&CK for ICS, Cyber Kill Chain, Diamond Model, or similar analytical frameworks to prioritize hunt activity and detection improvements
  • Familiarity with the threat intelligence lifecycle and adversary tactics, techniques, and procedures, including cybercrime, malware, botnets, hacktivism, social engineering, advanced persistent threats, and insider threats
  • Familiarity with Operational Technology (OT) networks and processes
  • Understanding of how threat hunting differs between Information Technology (IT) and Operational Technology (OT) environments, including safety considerations, specialized protocols, logging limitations, and coordination with operational teams
  • Experience drafting security operations processes and procedures
  • Ability to organize tasks, manage multiple priorities, meet schedules, and deliver on commitments
  • Ability to document hunt plans, analytical methods, evidence, findings, limitations, recommendations, and lessons learned in a repeatable format
  • Strong written and verbal communication skills


Responsibilities

Job Responsibilities:
  • Plan and conduct structured, hypothesis-driven threat hunting engagements
  • Collect and analyze data from multiple sources and tools to identify anomalies, suspicious activity, and potential adversary behavior
  • Maintain awareness of the current threat landscape through intelligence reports, internet research, and sector-specific sources
  • Partner with the Cyber Threat Intelligence team to understand threat actor behavior, tactics, techniques, procedures, and emerging threats
  • Support detection engineering and security monitoring by recommending improved SIEM detections, alert logic, and related capabilities
  • Recommend and support implementation of security controls and solutions based on lessons learned from hunting engagements
  • Partner with Threat Analysis and Incident Response teams to evaluate adversary techniques and improve defensive capabilities
  • Support incident response, remediation, recovery, threat scenario development, and response playbooks


Qualifications

Job Requirements:
  • Must pass NERC CIP and Insider Threat Protection background checks
  • Ability to work independently and as part of a team
  • Ability to understand business requirements, communicate technical findings, and recommend appropriate solutions
  • Strong critical thinking, independent judgment, and creative problem-solving skills
  • Occasional travel to local and regional locations in support of job duties and requirements


Desired certifications (one or more of the following):
  • Offensive Security Certified Professional (OSCP)
  • GIAC Security Essentials (GSEC)
  • GIAC Certified Forensic Examiner (GCFE)
  • GIAC Certified Incident Handler (GCIH)
  • GIAC Certified Intrusion Analyst (GCIA)


About the Team

Southern Company Services

About Southern Company

With 4.4 million customers and more than 42,000 megawatts of generating capacity, Atlanta-based Southern Company is the premier energy company serving the Southeast. A leading U.S. producer of electricity, Southern Company owns electric utilities in four states and a growing competitive generation company, as well as fiber optics and wireless communications. Southern Company brands are known for excellent customer service, high reliability and retail electric prices that are significantly below the national average. Southern Company has been listed the top ranking U.S. electric service provider in customer satisfaction for nine consecutive years by the American Customer Satisfaction Index.

Southern Company Careers

Join the dynamic team at Southern Company, a leader in energy innovation and a champion of sustainable practices. As one of the most respected companies in the energy sector, Southern Company offers unparalleled job opportunities that promise not only professional growth but also a commitment to diversity and leadership development.

Work You’ll Do

At Southern Company, we are not just about power generation; we are about empowering our team to innovate and lead the industry. By joining our team, you will collaborate with some of the brightest minds in the field, using your skills to solve complex problems and drive meaningful change.

Explore a World of Opportunities

Whether you are looking for a full-time position, an internship, or a leadership role, Southern Company has a place for you. Our wide range of employment options ensures that every team member can find a path that best suits their career ambitions and skills.

Innovate and Lead

Southern Company is at the forefront of technological innovation in the energy sector. Our team members are encouraged to lead projects and initiatives that push the boundaries of what is possible in energy production and management.

Grow and Develop

We believe in nurturing the potential of our employees through targeted diversity training, leadership workshops, and continuous professional development. Career growth at Southern Company is not just a possibility—it is an expectation.

Be Part of Our Culture

Southern Company’s culture is built on a foundation of respect, integrity, and inclusion. We celebrate diversity and believe that it drives innovation. Our team is our family, and we support each other in achieving personal and professional goals.

Benefits That Go Beyond

Choosing a career at Southern Company means enjoying a range of benefits designed to enrich your life and support your lifestyle. From health and wellness programs to retirement plans, we ensure our team members are taken care of.

Join Our Team

Ready to power up your career? Explore the job opportunities at Southern Company today. We are actively hiring and looking for passionate, curious, and solution-driven individuals. Enhance your skills, join a community of innovators, and work towards a sustainable future.

Stay Connected

Keep up to date with the latest at Southern Company by following our careers blog. Gain insider perspectives, industry-leading insights, and practical tips to advance your career.

Networking and Career Advancement

At Southern Company, networking and internal mobility are key components of career advancement. Connect with leaders, engage in cross-departmental projects, and take your professional journey to new heights.

Prepare for Your Interview

Make your mark from the first interview. Visit our career site for tips on crafting your resume, preparing for interviews, and making a lasting impression.

Join Southern Company—where careers glow brighter!

SEARCH SOUTHERN COMPANY JOBS Stay ahead of the curve in your career with Southern Company, where innovation meets tradition and every employee is empowered to excel.
Learn more about Southern Company
Size
27,000 employees
Market Cap
$77.6 billion
Industry
Net Income
$3.1 billion
Founded
1912
5 Year Trend
+3%
Revenue
$20.3 billion

Similar Jobs

More Jobs at Southern Company

More Information Technology Jobs

Find similar Adversary Threat Hunter jobs: