
Cyber Threat Hunter
- Sundbyberg, Stockholm
- Permanent
- Heltid
- Work in Swedbank's Cyber Defense Center to help protect the bank against cyber attacks.
- Proactively hunt for advanced threats, stealthy intrusions, and anomalous behaviors in our environment.
- Research new attack techniques to uncover innovative detection capabilities
- Develop and execute hunt hypotheses based on CTI insights, Purple Team findings, and environmental baselines.
Here are the required qualifications:
- 3+ years in a technical role in the areas of Security Operations, Threat Intelligence, Cyber Incident Response or Penetration Testing/Red Team.
- Hands-on experience with SIEM and EDR/XDR tools (preferably Microsoft Sentinel and Defender).
- Ability to create and refine hunt queries (KQL or equivalent).
- Good understanding of enterprise networking environments.
- Excellent verbal and written communication skills in English.
- Bachelor's degree in Computer Science, Information Security, or related field - or equivalent professional experience.
- Strong understanding of attacker TTPs and mapping to MITRE ATT&CK.
- Familiarity with NDR tools like Vectra or similar.
- Experience analyzing diverse data sources including Windows event logs, network traffic, and cloud service logs.
- Ability to work from both structured threat intel and self-developed hypotheses.
- Clear communicator, able to document and share findings with technical and non-technical audiences.
- Previous Purple Team or Red/Blue Team collaboration experience.
- Scripting skills (Python, PowerShell) for advanced hunting and data analysis.
- Experience with behavioral analytics or anomaly detection techniques.
- Personal and professional growth through self-leadership and continuous development.
- Meaningful work that positively impacts our workplace, our customers, and society.
- An open and collaborative culture that encourages cross-functional teamwork and provides networking opportunities.
- A supportive and inclusive environment that promotes a balanced and sustainable work-life, with flexible working conditions when suitable for the role.