Full-Time

Security Operations Analyst-East or Central Time Zone

Posted on 11/26/2025

Huntress

Huntress

501-1,000 employees

Managed 24/7 EDR threat hunting

Compensation Overview

$100k - $120k/yr

+ Bonus + Equity + On-Call Pay

Remote in USA

Remote

Category
IT & Security (1)
Required Skills
PowerShell
Linux/Unix

Get referred to Huntress

See people who can refer or advise you

Requirements
  • 2+ years of experience in a Security Operations Center or Digital Forensics (DFIR) role
  • Demonstrated experience with Windows, Linux, and MacOS as an attack surface
  • Demonstrated experience with basic Threat Actor tools and techniques including MITRE ATT&CK Framework, PowerShell and Command Prompt Terminals, WMIC, Scheduled Tasks, SCM, Windows Domain and host Enumeration Techniques, Basic Lateral Movement Techniques, Basic Persistence Mechanisms, Basic Defense Evasion Techniques, and other offensive/Red Team TTPs
  • Demonstrated experience with static and dynamic malware analysis concepts
  • Working knowledge of Windows Administration or Enterprise Domain Administration including Active Directory, Group Policy, Domain Trusts
  • Working knowledge of core networking concepts including common ports/protocols, NAT, Public/Private IPs, and VLANs
  • Working knowledge of web technologies and concepts including web servers/applications and OWASP Top Ten
  • Effective communication skills with the ability to explain complex events to less technical audiences to enable cross-functional collaboration within the SOC and across departments
  • Dedicated to prioritizing and addressing customer needs and concerns in all decision-making processes
  • A strong sense of curiosity and a genuine excitement for learning
Responsibilities
  • Triage, investigate, and respond to alerts coming in from the Huntress platform
  • Perform tactical review of endpoint Detection and Response telemetry, log sources, and forensic artifacts to determine the root cause of attacks, where possible, and provide remediations needed to remove the threat
  • Perform tactical malware analysis as part of investigating and triaging alerts
  • Investigate suspicious Microsoft 365 activity and provide remediations
  • Assist in escalations from the Product Support team for threat-related and SOC-relevant questions
  • Contribute to detection engineering creation and tuning efforts
  • Contribute to projects focused on driving better outcomes for analysts and partners
  • Contribute to our collaboratively mentored team (we're all here to make each other better!)
Desired Qualifications
  • Previous experience in an MSP/MSSP/MDR role
  • Linux and MacOS investigative experience
  • Experience with scripting languages (such as PowerShell, Python, Bash, PHP, JavaScript, or Ruby)
  • Demonstrated experience on platforms such as HackTheBox, TryHackMe, Blue Team Labs Online, etc.
  • Demonstrated experience with Cloud-based investigations such as M365, Azure, AWS, GCP, etc.
  • Participation in cybersecurity competitions such as Capture the Flags, the Collegiate Cyber Defense Competition, etc.
  • Familiarity with MSP tools such as RMMs

Huntress delivers managed security services focused on endpoint detection and response (EDR) and proactive threat hunting. It continuously monitors client systems around the clock to detect cyber threats, particularly ransomware and other advanced attacks, and only raises alerts after analysts verify them. In addition to detection, Huntress provides security awareness training and educational resources to help clients improve cybersecurity practices. The service is designed to complement Microsoft 365 environments and emphasizes personalized reporting and strong customer support. The company’s goal is to help businesses defend against cyber threats with reliable, verified detections and practical guidance, reducing false positives and improving security posture.

Company Size

501-1,000

Company Stage

Series D

Total Funding

$309.8M

Headquarters

Columbia, Maryland

Founded

2015

Get referred to Huntress

See people who can refer or advise you

Simplify Jobs

Simplify's Take

What believers are saying

  • July 2026 ARR passed $250 million, growing 65% year over year.
  • EMEA revenue reached $30.6 million; headcount rose 378% since mid-2024.
  • June 2026 launched Managed ISPM; March 2026 launched ESPM to widen platform.

What critics are saying

  • June 2026 insider-leak allegations tied to ransomware gang DevMan damaged trust.
  • Microsoft and CrowdStrike can bundle similar controls, pressuring MSP pricing by 2027.
  • If platform expansion stalls, Huntress remains a feature, not an enduring platform.

What makes Huntress unique

  • Huntress combines managed EDR, ISPM, ESPM, SIEM, and 24/7 human SOC.
  • It sells through MSPs, embedding security into Microsoft 365 and existing endpoint stacks.
  • RMM Guard blocks rogue remote-access tools, a niche enterprise controls ignored.

Help us improve and share your feedback! Did you find this helpful?

Benefits

100% remote work environment

Generous PTO including vacation, sick time, and paid holidays

12 weeks paid parental leave

Highly competitive and comprehensive medical, dental, and vision benefits plans

401(k) with 5% contribution regardless of employee contribution

Life and Disability insurance plans

Stock options for all full-time employees

One-time $500 stipend to build/upgrade home office

Annual allowance for education and professional development assistance

$75 USD/month digital reimbursement

Access to both Udemy and BetterUp platforms for coaching, personal, and professional growth

Growth & Insights and Company News

Headcount

6 month growth

0%

1 year growth

0%

2 year growth

2%
ZP Enterprises
Aug 13th, 2026
ZP Enterprises is pleased to partner with Huntress as an MSP

ZP Enterprises is pleased to partner with Huntress as an MSP "We wreck hackers. A purpose-built platform for organizations like yours, all backed and operated by our industry-proven, 24/7 AI-Centric SOC for continuous threat protection."

UK Tech News
Aug 4th, 2026
Huntress gives small businesses free access to enterprise-style security tool.

Huntress gives small businesses free access to enterprise-style security tool. Cybersecurity company Huntress is giving small and mid-sized businesses free access to a security feature typically reserved for large enterprises, as it warns that hackers are increasingly hijacking everyday remote-access software to break into company systems. The feature, called RMM Guard, automatically detects and blocks unauthorised remote monitoring and management (RMM) tools running on a company's computers. These tools are normally used by IT teams to manage devices remotely, but Huntress says criminals are exploiting them to sneak into networks undetected, since the software looks legitimate and rarely triggers security alerts. According to Huntress, attacks using this method rose by 277% over the last year, and about a third of the incidents its team has investigated so far this year could have been stopped by blocking rogue remote-access tools before they ran. In one recent example described by the company, an employee who clicked a phishing email disguised as a pay-rise announcement unwittingly installed remote access software that gave an attacker a foothold in the company's systems. Blocking unapproved software from running at all, known in the security industry as application control, is considered one of the most effective ways to prevent this kind of attack. But Huntress says most existing tools are built with big companies and dedicated security teams in mind, often requiring months of setup and ongoing management that smaller businesses and the IT providers who support them simply don't have the staff or budget to handle. Rather than requiring customers to vet every single application, Huntress's new approach starts narrower: blocking only unauthorised remote-access tools first, with plans to expand into other risky categories of software, such as AI tools and file-sharing apps, over time. The RMM Guard feature is part of a wider product called Managed ESPM, which Huntress is still developing and testing with customers. However, the company has decided to make RMM Guard itself available immediately and free of charge to all existing customers with its software installed, rather than waiting for the full product to be finished. Businesses already using Huntress can ask their account manager for access now, ahead of a broader commercial launch expected in the coming months.

Yahoo Finance
Jul 31st, 2026
AI powers cyber crime surge as Huntress hits $250M revenue, up 65%

Huntress CEO Kyle Hanslovan has warned that artificial intelligence is enabling cybercriminals to launch more sophisticated and efficient attacks against businesses of all sizes. The cybersecurity firm protects 270,000 businesses, representing less than 1% of the 270 million businesses globally. Hanslovan explained that AI-powered attackers now produce error-free phishing emails and can simultaneously target multiple companies without requiring large teams. The company is experiencing rapid growth, with annual recurring revenue reaching $250 million, up 65% year over year. Most threats come from opportunistic criminals rather than state actors, according to Hanslovan, who previously worked at the NSA. He described the situation as an "arms race" between AI-powered attackers and defenders.

UK Tech News
Jul 31st, 2026
US cybersecurity scale-up Huntress grows UK and European headcount nearly five-fold as revenue passes $250M.

US cybersecurity scale-up Huntress grows UK and European headcount nearly five-fold as revenue passes $250M. Huntress, the US cybersecurity company known for protecting small and mid-sized businesses from cyberattacks, has crossed $250 million in annual recurring revenue (ARR) globally, and its UK and European operations have emerged as the fastest-growing part of the business. Since the company's Series D funding round in June 2024, Huntress' EMEA revenue has grown 366%, rising from $6.6 million to $30.6 million. The region now makes up 12.56% of the company's global ARR, up from 7.11% two years ago. That growth has been matched by significant job creation. Huntress has grown its EMEA headcount by 378% since mid-2024, from 18 employees to 86 as of July 2026, as the company builds out sales, partnerships and support functions to serve customers across the UK and Europe. The regional expansion is part of a broader growth story. Huntress now protects more than 270,000 businesses, 14 million identities and 5.5 million endpoints in over 100 countries, and has grown its global headcount by 191% to more than 800 employees over the past two years, alongside 65% year-over-year revenue growth. Founded in 2015 by three former US National Security Agency cyber operators, Huntress builds security software aimed at businesses too small to afford the enterprise-grade protection typically reserved for Fortune 500 companies. In a blog post reflecting on the $250 million milestone, CEO and co-founder Kyle Hanslovan said the company's growth had followed from a specific gap in the market rather than a pursuit of revenue for its own sake. "Businesses below the Fortune 500 truly needed what we were building," Hanslovan wrote. "We believed every business could thrive, while recognising that adversaries wanted the opposite. It was an unfair fight that we could level." The company's UK and European growth has been underpinned by new distribution partnerships, including with QBS Software and MSP Nordics, and an expanded relationship with Microsoft aimed at helping smaller businesses make better use of security tools they already own. Huntress has also strengthened its leadership team this year, appointing Daniel Westendorf as its first Chief Innovation Officer and Kristin Dean, formerly of Arctic Wolf, as Chief People and Administration Officer to support the company's continued scaling. "This growth is not the finish line," Hanslovan said. "It gives us the fuel to make bigger bets to protect more of what people have spent their lives building." The company has been recognised on the Inc. 5000 and Deloitte Technology Fast 500 lists for its growth, and named to Fortune's Cyber 60 and Fast Company's Most Innovative Companies lists.

Comms Dealer
Jul 7th, 2026
Giacom expands cybersecurity portfolio with Huntress.

Giacom expands cybersecurity portfolio with Huntress. Posted on Tuesday, July 7, 2026 - 14:10 Giacom has agreed a distribution partnership with Huntress following feedback from its customer base, giving partners access to Managed Endpoint Detection and Response (Managed EDR) and other cybersecurity services, backed by 24/7 specialist support. The agreement marks a move that reflects the business' selective approach to building a marketplace that helps partners simplify procurement, reduce operational drag and deliver profitable services. Partners will also gain access to managed endpoint detection and response, identity protection, managed SIEM and security awareness training. Huntress can work alongside existing antivirus tools and Microsoft Defender, helping MSPs strengthen the security services they provide to customers without requiring them to replace existing protection. Giacom partners will gain access product trials, and those eligible able to apply for not-for-resale licences through Huntress' Neighbourhood Watch programme. Carl Oliver, Head of Product & Cloud Practice at Giacom (pictured) said: "MSPs are under pressure to improve security outcomes for customers, but they also need to be able to scale these services profitably without making their own operations harder to manage. "Huntress can deliver Managed EDR in a way that is purpose-built for MSPs, backed by around-the-clock specialist support, working alongside existing security tools in a practical way," he added. "It provides a straightforward route to build a stronger, more valuable cybersecurity proposition, protect existing customer relationships and pursue new opportunities for recurring growth." Related Topics

INACTIVE