Tanium

Threat Hunter

Tanium$95K — $280K *
Information Technology
5 - 7 years of experience
Job Overview by Ladders

Qualifications

  • 5+ years in cybersecurity operations, incident response, or threat hunting.
  • Hands-on threat hunting and detection analysis experience.
  • Strong understanding of incident response processes.
  • Experience with security platforms like EDR, SIEM, or SOAR.
  • Customer-facing experience providing security guidance or technical support.
  • Proficient in scripting or APIs (e.g., Python, PowerShell).
  • Knowledge of threat intelligence and detection engineering principles.

Responsibilities

  • Strengthen customer incident response readiness and support remediation planning.
  • Execute hands-on threat hunting to detect and investigate emerging threats.
  • Deploy and enable Tanium Security Operations solutions tailored to customer use cases.
  • Conduct threat intelligence analysis and enhance threat visibility and response.
  • Provide direct, hands-on guidance on maximizing the effectiveness of the Tanium Platform.
  • Collaborate with internal product teams to improve the Tanium Platform based on customer insights.
  • Build API-driven integrations and custom Tanium hunts to enhance threat capabilities.

Benefits

  • Generous medical, dental, and vision plans.
  • 401(k) retirement savings plan with company match.
  • Employee assistance programs and well-being benefits.
  • 5 days of volunteer time off (VTO) annually.
  • Equity awards provided to team members.
Full Job Description
The Basics

This role delivers expert-level threat operations support by strengthening customer incident response readiness, performing hands-on threat hunting, and enhancing detection and visibility across enterprise environments. It partners directly with customers in a hands-on-keyboard capacity to operationalize Tanium, build API-based integrations, and drive meaningful security improvements. The objective is to elevate customer maturity to a proactive security strategy by combining technical depth, product expertise, and close collaboration with internal teams to address emerging threats and evolving operational needs.

This position follows the Company's hybrid schedule which currently requires employees to work in the office at one of the following locations a minimum of three days per week: Addison, TX; Bellevue, WA; Durham, NC; Emeryville, CA; or Reston, VA.

Essential Job Functions
  • Strengthen customer incident response readiness, assist with remediation planning, and augment response capabilities during incidents to improve overall security maturity and readiness of customers
  • Perform hands-on threat hunting with customers, executing the full hunting lifecycle to detect, investigate, and reduce emerging threats
  • Provide expert deployment and enablement of Tanium Security Operations solutions tailored to each customer's unique use cases
  • Conduct threat intelligence analysis, build and refine detections, and tune intel with customers to enhance threat visibility and response
  • Work side-by-side with customers in a hands-on-keyboard capacity to guide, support, and maximize the effectiveness of the Tanium Platform
  • Collaborate closely with internal product teams, providing customer-driven feedback and hands-on insights to shape and enhance the Tanium Platform
  • Build API-driven integrations with third-party tools and create custom Tanium hunts using the API to baseline and enhance customer threat visibility and capability
  • Partner with internal teams to research emerging security challenges-such as AI, container and cloud security, and OT-to inform customer guidance and platform improvements

Minimum & Preferred Job Qualifications
  • 5+ years of experience in cybersecurity operations, incident response, threat hunting, or related defensive security roles
  • Hands-on experience performing threat hunting, detection analysis, and investigation work across enterprise environments
  • Strong knowledge of incident response processes, including scoping, containment, remediation planning, and post-incident improvements
  • Experience with security platforms such as EDR, SIEM, SOAR, threat intelligence platforms, or similar technologies
  • Direct customer-facing experience, providing security guidance, technical support, or operational enablement
  • Proficiency with scripting or API usage (e.g., Python, PowerShell, REST APIs) for integrations and data-driven investigations
  • Understanding threat intelligence concepts, detection engineering principles, and threat visibility best practices.
  • Ability to collaborate cross-functionally with product, engineering, and security teams to translate customer needs into actionable improvements
  • Strong communication skills, including the ability to explain complex technical topics to varied audiences

Core Competencies
  • Demonstrates initiative and motivation
  • Excellent oral and written communication skills
  • Team player
  • Person of high ethics and integrity
  • Ability to work in a fast-paced, changing environment
  • Strong customer communication, guidance, and hands-on operational support

What you'll get

The annual base salary range for this full-time position is $95,000 to $280,000. This range is an estimate for what Tanium will pay a new hire. The actual annual base salary offered may be adjusted based on a variety of factors, including but not limited to, location, education, skills, training, and experience.

In addition to an annual base salary, team members will receive equity awards and a generous benefits package consisting of medical, dental and vision plan, family planning benefits, health savings account, flexible spending account, transportation savings account, 401(k) retirement savings plan with company match, life, accident and disability coverage, business travel accident insurance, employee assistance programs, disability insurance, and other well-being benefits.

About Tanium

Tanium is an American cybersecurity and systems management company. The company provides security and IT operations solutions for enterprises and government organizations. Tanium's platform provides real-time visibility and control over endpoints, including laptops, servers, virtual machines, containers, and cloud infrastructure. The company's products are used by organizations in a variety of industries, including finance, healthcare, retail, and government. Tanium was founded in 2007 by Orion Hindawi and his father David Hindawi. The company is headquartered in Santa Clara, California.
Learn more about Tanium
Size
1,500 employees
Industry
Founded
2007

Similar Jobs

More Jobs at Tanium

More Information Technology Jobs

Find similar Threat Hunter jobs: