Full-Time

Director of Threat Hunting

Posted on 4/17/2025

Coalfire

Coalfire

1,001-5,000 employees

Cybersecurity advisory and managed services provider

Compensation Overview

$208k - $240.2k/yr

Senior, Expert

Denver, CO, USA

Candidates must be based in the United States.

Category
Cybersecurity
IT & Security
Required Skills
Data Science
Linux/Unix
Data Analysis
Requirements
  • Minimum 8+ years of experience in cybersecurity, with at least 3+ years in a leadership role.
  • Proven experience leading threat hunting, threat intelligence, or security operations teams.
  • Expertise in host and network forensic analysis across multiple platforms (Windows, Linux, Cloud environments).
  • Extensive knowledge of MITRE ATT&CK, OWASP, NIST, ISO/IEC 27001, and cyber threat intelligence frameworks.
  • Experience with SIEM, EDR, threat intelligence platforms, and network analysis tools.
  • Demonstrated experience in developing and refining threat hunting processes.
  • Familiarity with data science and analytics techniques used to enhance security operations.
  • Strong leadership and people management skills with experience leading security teams.
  • Deep understanding of threat hunting methodologies, intelligence-driven hunting, and adversary TTPs.
  • Excellent communication and presentation skills, with the ability to convey complex security concepts to both technical and non-technical audiences.
  • Strong ability to align threat hunting objectives with broader organizational security strategy.
  • Highly analytical mindset with problem-solving skills to drive continuous improvement.
  • Ability to foster a proactive, investigative mindset among team members.
Responsibilities
  • Lead and develop a high-performing threat hunting team, providing strategic direction and technical guidance.
  • Establish and refine the organization's threat hunting framework based on existing frameworks like the Open Threat Hunting Framework (OTHF) and industry best practices.
  • Define and drive threat hunting methodologies, ensuring structured, hypothesis-driven approaches to proactive threat detection.
  • Develop and oversee key performance indicators (KPIs) and metrics for measuring the effectiveness of threat hunting operations.
  • Collaborate with Cyber Threat Intelligence (CTI) teams to integrate intelligence-driven hunting approaches.
  • Oversee the identification, validation, and prioritization of hunts based on adversary tactics, techniques, and procedures (TTPs).
  • Ensure continuous improvement of threat detection capabilities through automation, data analytics, and security tooling enhancements.
  • Foster collaboration between security operations, incident response, and red/blue teams to improve detection and response capabilities.
  • Conduct executive-level reporting and communicate threat landscape insights to senior leadership and stakeholders.
  • Develop and execute a training and mentorship program to upskill threat hunters within the organization.
Desired Qualifications
  • Industry-recognized certifications such as CISSP, OSCP, GCTH, GIAC (GCIH, GCFA, GNFA), or equivalent experience.

Coalfire provides cybersecurity advisory services to help businesses safeguard their digital assets and enhance their security protocols. The company focuses on cloud technology and develops scalable security programs tailored to the needs of its clients, which include large enterprises, SaaS providers, and organizations in regulated sectors like healthcare and finance. Coalfire's services encompass cybersecurity risk assessments, threat and vulnerability management, compliance assessments, and third-party risk management. They also offer cloud security consulting and managed services to ensure clients' cloud environments are secure and compliant. Unlike many competitors, Coalfire emphasizes specialized services such as HIPAA compliance and HITRUST certification guidance. The company's goal is to advance cybersecurity practices while supporting education in the field through initiatives like the Richard E. Dakin Fund.

Company Size

1,001-5,000

Company Stage

Series B

Total Funding

$9.4M

Headquarters

Westminster, Colorado

Founded

2001

Simplify Jobs

Simplify's Take

What believers are saying

  • Coalfire's Cyber Security On-Demand portfolio offers flexible, tailored cybersecurity services.
  • The Snyk partnership accelerates vulnerability remediation in code development.
  • RAMPCon event boosts Coalfire's reputation in FedRAMP and cloud security.

What critics are saying

  • Rapid office expansion may strain Coalfire's resources and operational efficiency.
  • Integrating third-party platforms like Snyk could introduce security vulnerabilities.
  • FedRAMP involvement may risk compliance failures, impacting reputation and trust.

What makes Coalfire unique

  • Coalfire's deep expertise in cloud technology sets it apart in cybersecurity advisory.
  • The company offers specialized services like HIPAA and HITRUST compliance guidance.
  • Coalfire's partnerships with Snyk and Tenable enhance its threat-focused security solutions.

Help us improve and share your feedback! Did you find this helpful?

Benefits

Flexible Work Hours

Remote Work Options

Parental Leave

Unlimited Paid Time Off

Professional Development Budget

Mental Health Support

Health Insurance

Dental Insurance

Vision Insurance

Life Insurance

Disability Insurance

Growth & Insights and Company News

Headcount

6 month growth

-1%

1 year growth

0%

2 year growth

0%
BizWest
Sep 11th, 2024
Exabeam appoints chief customer success officer

BROOMFIELD - Kish Dill has been appointed as chief customer success officer for Exabeam Inc., a global cybersecurity company.

BizWest
Aug 23rd, 2024
Sovrn hires pair of executives

Coalfire hires pair of execsWESTMINSTER - Coalfire Systems Inc., a Westminster-based cybersecurity firm, has hired Chris Kloes as chief...

PR Newswire
Aug 5th, 2024
Coalfire And Snyk Partner To Drive Threat-Informed Application And Code Development

This partnership brings Coalfire's hacker expertise as a managed service for optimizing application securityLAS VEGAS, Aug. 5, 2024 /PRNewswire/ -- BLACK HAT CONFERENCE -- Coalfire , an industry-leading cybersecurity services and solutions company, today announced a partnership with Snyk , the leader in developer security, to operationalize application and code security faster than ever. This partnership brings Coalfire's hackers and defenders to the critical work of detecting and stopping vulnerabilities in the code development phase and beyond. Combining Snyk's leading Developer Security Platform with Coalfire's hacker expertise provides a threat-informed view of vulnerabilities, enabling enterprises to more rapidly address the most pressing flaws in their code and applications.Organizations of all sizes often struggle with enabling their security teams to reduce risk in their development environments, whether in proprietary code, open source modules, containers, or Infrastructure as Code. Snyk's world class platform enables developer teams to identify and fix those vulnerabilities and misconfigurations from the integrated development environment (IDE) to the operation of their cloud environments. The addition of Coalfire's hackers and defenders brings in a threat-informed perspective to prioritize the remediation of those vulnerabilities, which optimizes security outcomes for customers.Through this partnership, Coalfire's experts assist clients with deployment of the Snyk platform, implementing Snyk best practices, facilitating comprehensive testing, reviewing scan results and prioritizing vulnerabilities, as well as providing expert guidance on risk management and secure coding

The Software Report
Aug 5th, 2024
Procore Technologies Initiates FedRAMP Authorization Process to Enhance Security Compliance

Procore has partnered with Coalfire, a renowned cybersecurity and compliance services company, to ensure that its customers benefit from standardized security and continuous monitoring across its product suite, efficiently achieving audit-ready status.

Help Net Security
Jul 24th, 2024
Coalfire announces Cyber Security On-Demand portfolio

Coalfire announced its Cyber Security On-Demand portfolio to provide a flexible set of services that reduce cyber risks and remediate security vulnerabilities in customer environments.

INACTIVE