Home › Companies › Edel Fa Us2 Oraclecloud Com Cx › Senior Threat Hunting Specialist
Senior Threat Hunting Specialist
Edel Fa Us2 Oraclecloud Com Cx · Burnaby, BC, Canada · Active · $101,600–$124,200 / year · Oracle Recruiting Cloud / Fusion HCM
Job facts
| Field | Value |
|---|---|
| Company | Edel Fa Us2 Oraclecloud Com Cx |
| Title | Senior Threat Hunting Specialist |
| Normalized title | - |
| Department / team | RD Network Security Architect |
| Location | Burnaby, BC, Canada |
| Work model | - |
| Employment type | Full Time |
| Salary | $101,600–$124,200 / year |
| Status | active |
| ATS provider | Oracle Recruiting Cloud / Fusion HCM |
| Posted / first seen | 2025-12-04 / 2026-05-31 |
| Changed / last seen | 2026-05-31 / 2026-06-06 |
Related slices
| Page | What it contains | Open |
|---|---|---|
| Company jobs | Active postings from Edel Fa Us2 Oraclecloud Com Cx. | Open |
| Company breakdowns | Role, location, ATS, and work model facets for this company. | Open |
| ATS provider jobs | Active postings observed through Oracle Recruiting Cloud / Fusion HCM. | Open |
| Provider filtered search | The same provider as a filtered job collection. | Open |
| City jobs | Active postings in Burnaby. | Open |
| Department jobs | Active postings in RD Network Security Architect. | Open |
| Lifecycle events | Open, update, close, and reopen events for this posting. | Open |
| Original posting | Canonical source or apply URL captured from the ATS. | Open |
Linked records
| Company | Edel Fa Us2 Oraclecloud Com Cx |
| Source | 4ceb090c-78f9-4c02-8b38-393783298157 |
| ATS provider | Oracle Recruiting Cloud / Fusion HCM |
Description
Description
We are hiring a Senior Threat Hunting Specialist who combines deep threat-hunting expertise with practical purple-team simulation skills to support an AI-driven detection program. The ideal candidate understands attacker TTPs in depth, can design hypothesis-driven hunts from telemetry, and can script concise attack simulations to generate realistic logs and telemetry in a test environment for validating detections. This role focuses on attacker thinking, preparing and conducting simulations, threat detection SIEM query design and SOC detection validation. Moreover, this role will contribute to features design for ML-driven detection capabilities.
As a senior Threat Hunting Specialist, your responsibilities will include:
Perform hypothesis-driven threat hunting projects and translate attacker TTPs into measurable telemetry signals (IOAs/IOCs) suitable for ML feature design.
Collaborate with ML engineers and data scientists to define, propose, and validate candidate features.
Specify feature engineering transformations, labeling rules, sampling strategies, and evaluation metrics; support feature importance and explainability analysis.
Create hypothesis-driven detection reports and dashboards from telemetry sources and perform threat hunting investigations using the insights surfaced by those reports.
Design and execute controlled red-team style simulations (scripted PoCs) in test environments to create labeled datasets for training and validation; ensure simulations are realistic, diverse, and safely scoped.
Track emerging threats, map them to MITRE ATT&CK, and propose new simulation scenarios and detection features as adversaries evolve.
Requirements (Must - have) :
5+ years’ experience in threat hunting, SOC/IR, Blue\Red\Purple team experince, or related security roles with demonstrable hunting casework.
Strong understanding of attacker techniques and the ability to decompose attack chains (MITRE ATT&CK fluency).
Proven ability to propose hunting hypotheses and identify relevant telemetry fields/signals.
Experience collaborating with ML or data science teams to define feature requirements, labeling strategies, and validation criteria.
Proficient with ClickHouse and PostgreSQL, and able to produce clear, high-quality security analysis reports based on telemetry and hunting findings.
Practical scripting ability for attack simulation and PoC generation (Python required; PowerShell/Bash/other scripting as applicable). Note: production engineering and model training are handled by the team.
Familiarity with common hunting/detection platforms and telemetry sources (SIEM, EDR/XDR, network and cloud logs, container telemetry).
Strong analytical reasoning, incident investigation mindset, and excellent written/verbal communication skills.
Bonus/Preferred
Industry certifications: GIAC GCFA, GCTI, OSCP/OSCE.
Hands-on red team / adversary emulation experience beyond simple PoCs.
Familiarity with SOAR products and concepts.
Familiarity with ML concepts and validation metrics.
Familiarity with Fortinet product telemetry and tooling — e.g., FortiAnalyzer and FortiSIEM for aggregated and correlation logs, FortiGate traffic/event logs, and FortiEDR endpoint telemetry. Able to map Fortinet event fields to hunting features and to explain which Fortinet logs provide the signals needed for specific TTPs.
About Our Team:
Join our team, known for its collaborative ethos, working seamlessly with global customers, internal engineering teams and product development groups. Our team culture emphasizes continuous learning, innovation, and a strong commitment to customer satisfaction. We embrace Fortinet’s core values of openness, teamwork and innovation, fostering an environment where team members support each other, share knowledge, and leverage AI to solve complex technical challenges. Our inclusive and dynamic team thrives on collaboration and is driven by the shared goal of maintaining Fortinet’s high standards of excellence in cybersecurity solutions.
Why Join Us:
We encourage candidates from all backgrounds and identities to apply. We offer a supportive work environment and a competitive Total Rewards package to support you with your overall health and financial well-being. Embark on a challenging, enjoyable, and rewarding career journey with Fortinet. Join us in bringing solutions that make a meaningful and lasting impact to our 660,000+ customers around the globe.
The Canada base salary range for this full-time position is expected to be between $101,600 - $124,200 annually. Wage ranges are based on various factors including the labour market, job type, and job level. Exact salary offers will be determined by factors such as the candidate’s subject knowledge, skill level, qualifications, and experience.
Fortinet strives to provide you and your family with a comprehensive benefits package. Benefits eligibility starts on your first day of hire and comprises of 100% company paid medical, dental, and vision coverage, including a Health Spending Account and a Personal Spending Account that gives you flexibility to spend where you need it the most. Our Employee & Family Assistance Plan (EFAP) offers you and your family access to various services like counseling, legal advice, mental health resources etc. We also provide critical illness, disability, and life insurance, as well as a Group Registered Retirement Savings Plan (RRSP) with a company match to help you save faster for retirement. We offer competitive Paid Time Off and flexible leave policies, including paid health days, to help you take care of yourself and your family members.
All roles are eligible to participate in the Fortinet equity program. Bonus eligibility is reviewed at time of hire and annually at the Company’s discretion.
Full job record
| Job ID | 1b9ff4cd3c1bd72899028c6203f63d419682f739 |
| Org ID | 567b92ea-038a-4832-a806-85fe20cc90cf |
| Source ID | 4ceb090c-78f9-4c02-8b38-393783298157 |
| Board ID | 4ceb090c-78f9-4c02-8b38-393783298157 |
| Provider | oracle_hcm |
| Provider Job Key | 21217 |
| Title | Senior Threat Hunting Specialist |
| Normalized Title | — |
| Status | active |
| Active | yes |
| Location Text | Burnaby, BC, Canada |
| Department | RD Network Security Architect |
| Team | — |
| Employment Type | full_time |
| Workplace Type | — |
| Remote Policy | — |
| Country | Canada |
| Region | BC |
| City | Burnaby |
| Salary Raw | salary range for this full-time position is expected to be between $101,600 - $124,200 annually |
| Salary Min | 101,600 |
| Salary Max | 124,200 |
| Salary Currency | USD |
| Salary Period | year |
| Source URL | https://edel.fa.us2.oraclecloud.com/hcmUI/CandidateExperience/en/sites/cx/job/21217 |
| Apply URL | https://edel.fa.us2.oraclecloud.com/hcmUI/CandidateExperience/en/sites/cx/job/21217 |
| First Seen At | 2026-05-31 18:02:52Z |
| Last Seen At | 2026-06-06 20:17:40Z |
| Last Checked At | 2026-06-06 20:17:40Z |
| Last Changed At | 2026-05-31 18:02:52Z |
| Inactive At | — |
| Source Posted At | 2025-12-04 19:35:58Z |
| Source Updated At | — |
| Raw Payload Uri | s3://job-postings-prod-raw-590183727216/raw/provider=oracle_hcm/board=edel.fa.us2.oraclecloud.com|cx/date=2026-06-06/2026-06-06T20-16-52-125Z-16f04900b6e32a335783dc52407054a0a2b5ebc88e57cccb00193e85f73e29ce.json |
Event Fields
{
"content_hash": "4a939b00cba4b881a659d229270fadc164a35b633142458f624f2254020b0f9b",
"source_hash": "756a0f01404aec3c8c4a571a21a89c1913f80d5a9a2abcc8bef34860b8e279ba",
"last_changed_at": "2026-05-31T18:02:52.561Z",
"active_status": "active"
}Parsed Structured
{
"language": "en",
"location": {
"raw": "Burnaby, BC, Canada",
"city": "Burnaby",
"region": "BC",
"country": "Canada",
"is_remote": false,
"confidence": 0.8
},
"salary_max": 124200,
"salary_min": 101600,
"inferred_at": "2026-06-06T20:17:40.177Z",
"launch_scope": {
"reason": "english_us_canada",
"included": true,
"language": "en",
"location": {
"raw": "Burnaby, BC, Canada",
"city": "Burnaby",
"region": "BC",
"country": "Canada",
"is_remote": false,
"confidence": 0.8
},
"countries": [
"Canada"
]
},
"remote_policy": null,
"salary_period": "year",
"workplace_type": null,
"salary_currency": "USD"
}Extensions
{}Native Structured
{
"detail": {
"Id": "21217",
"Title": "Senior Threat Hunting Specialist",
"media": [],
"skills": [],
"JobType": null,
"Category": "RD Network Security Architect",
"JobGrade": null,
"JobLevel": null,
"JobShift": null,
"WorkDays": null,
"WorkHours": null,
"WorkYears": null,
"Department": null,
"HotJobFlag": false,
"StudyLevel": "Bachelor's Degree",
"WorkMonths": null,
"WorkerType": null,
"GeographyId": 100000000379619,
"JobFamilyId": 300000010292398,
"JobFunction": "Research/Development",
"JobSchedule": "Full time",
"BusinessUnit": null,
"ContractType": null,
"Organization": null,
"TrendingFlag": false,
"workLocation": [
{
"Country": null,
"Region1": null,
"Region2": null,
"Region3": null,
"Building": null,
"Latitude": "",
"Longitude": "",
"LocationId": null,
"PostalCode": null,
"TownOrCity": null,
"AddressLine1": null,
"AddressLine2": null,
"AddressLine3": null,
"AddressLine4": null,
"LocationName": null
}
],
"ContentLocale": "en",
"HiringManager": null,
"LegalEmployer": null,
"RequisitionId": 300001883995894,
"WorkplaceType": "",
"BusinessUnitId": 300000369687518,
"OrganizationId": 300000002940510,
"GeographyNodeId": 100005791158347,
"JobFunctionCode": "RD",
"LegalEmployerId": 300000002940510,
"PrimaryLocation": "Burnaby, BC, Canada",
"RequisitionType": "Professional",
"NumberOfOpenings": null,
"WorkplaceTypeCode": null,
"BeFirstToApplyFlag": false,
"otherWorkLocations": [],
"secondaryLocations": [],
"ExternalContactName": null,
"ShortDescriptionStr": "We are hiring a Senior Threat Hunting Specialist who combines deep threat-hunting expertise with practical purple-team simulation skills to support an AI-driven detection program. The ideal candidate understands attacker TTPs in depth, can design hypothesis-driven hunts from telemetry, and can script concise attack simulations to generate realistic logs and telemetry in a test environment for validating detections. This role focuses on attacker thinking, preparing and conducting simulations, threat detection SIEM query design and SOC detection validation. Moreover, this role will contribute to features design for ML-driven detection capabilities. ",
"ExternalContactEmail": null,
"ExternalPostedEndDate": null,
"OtherRequisitionTitle": null,
"requisitionFlexFields": [],
"ApplyWhenNotPostedFlag": false,
"DomesticTravelRequired": null,
"ExternalDescriptionStr": "<p style=\"margin-left:0cm\"><span>We are hiring a Senior Threat Hunting Specialist who combines deep threat-hunting expertise with practical purple-team simulation skills to support an AI-driven detection program. The ideal candidate understands attacker TTPs in depth, can design hypothesis-driven hunts from telemetry, and can script concise attack simulations to generate realistic logs and telemetry in a test environment for validating detections. This role focuses on attacker thinking, preparing and conducting simulations, threat detection SIEM query design and SOC detection validation. Moreover, this role will contribute to features design for ML-driven detection capabilities. </span></p>\n<p style=\"margin-left:0cm\"><span><strong>As a senior Threat Hunting Specialist, your responsibilities will include: </strong></span></p>\n<ul>\n <li><span>Perform hypothesis-driven threat hunting projects and translate attacker TTPs into measurable telemetry signals (IOAs/IOCs) suitable for ML feature design. </span></li>\n <li><span>Collaborate with ML engineers and data scientists to define, propose, and validate candidate features. </span></li>\n <li><span>Specify feature engineering transformations, labeling rules, sampling strategies, and evaluation metrics; support feature importance and explainability analysis. </span></li>\n <li><span>Create hypothesis-driven detection reports and dashboards from telemetry sources and perform threat hunting investigations using the insights surfaced by those reports. </span></li>\n <li><span>Design and execute controlled red-team style simulations (scripted PoCs) in test environments to create labeled datasets for training and validation; ensure simulations are realistic, diverse, and safely scoped. </span></li>\n <li><span>Track emerging threats, map them to MITRE ATT&CK, and propose new simulation scenarios and detection features as adversaries evolve. </span></li>\n</ul>\n<p style=\"margin-left:0cm\"><span><strong>Requirements (Must - have)</strong>:</span></p>\n<ul>\n <li><span>5+ years’ experience in threat hunting, SOC/IR, Blue\\Red\\Purple team experince, or related security roles with demonstrable hunting casework. </span></li>\n <li><span>Strong understanding of attacker techniques and the ability to decompose attack chains (MITRE ATT&CK fluency). </span></li>\n <li><span>Proven ability to propose hunting hypotheses and identify relevant telemetry fields/signals. </span></li>\n <li><span>Experience collaborating with ML or data science teams to define feature requirements, labeling strategies, and validation criteria. </span></li>\n <li><span>Proficient with ClickHouse and PostgreSQL, and able to produce clear, high-quality security analysis reports based on telemetry and hunting findings. </span></li>\n <li><span>Practical scripting ability for attack simulation and PoC generation (Python required; PowerShell/Bash/other scripting as applicable). <i>Note: production engineering and model training are handled by the team.</i> </span></li>\n <li><span>Familiarity with common hunting/detection platforms and telemetry sources (SIEM, EDR/XDR, network and cloud logs, container telemetry). </span></li>\n <li><span>Strong analytical reasoning, incident investigation mindset, and excellent written/verbal communication skills. </span></li>\n</ul>\n<p style=\"margin-left:0cm\"><span><strong>Bonus/Preferred</strong> </span></p>\n<ul>\n <li><span>Industry certifications: GIAC GCFA, GCTI, OSCP/OSCE. </span></li>\n <li><span>Hands-on red team / adversary emulation experience beyond simple PoCs. </span></li>\n <li><span>Familiarity with SOAR products and concepts. </span></li>\n <li><span>Familiarity with ML concepts and validation metrics. </span></li>\n <li><span>Familiarity with Fortinet product telemetry and tooling — e.g., FortiAnalyzer and FortiSIEM for aggregated and correlation logs, FortiGate traffic/event logs, and FortiEDR endpoint telemetry. Able to map Fortinet event fields to hunting features and to explain which Fortinet logs provide the signals needed for specific TTPs. </span></li>\n</ul>\n<p><span><strong>About Our Team:</strong></span></p>\n<p><span>Join our team, known for its collaborative ethos, working seamlessly with global customers, internal engineering teams and product development groups. Our team culture emphasizes continuous learning, innovation, and a strong commitment to customer satisfaction. We embrace Fortinet’s core values of openness, teamwork and innovation, fostering an environment where team members support each other, share knowledge, and leverage AI to solve complex technical challenges. Our inclusive and dynamic team thrives on collaboration and is driven by the shared goal of maintaining Fortinet’s high standards of excellence in cybersecurity solutions.</span></p>\n<p><span><strong>Why Join Us:</strong></span></p>\n<p><span>We encourage candidates from all backgrounds and identities to apply. We offer a supportive work environment and a competitive Total Rewards package to support you with your overall health and financial well-being. Embark on a challenging, enjoyable, and rewarding career journey with Fortinet. Join us in bringing solutions that make a meaningful and lasting impact to our 660,000+ customers around the globe.</span></p>\n<p> </p>\n<p>The Canada base salary range for this full-time position is expected to be between $101,600 - $124,200 annually. Wage ranges are based on various factors including the labour market, job type, and job level. Exact salary offers will be determined by factors such as the candidate’s subject knowledge, skill level, qualifications, and experience. </p>\n<p>Fortinet strives to provide you and your family with a comprehensive benefits package. Benefits eligibility starts on your first day of hire and comprises of 100% company paid medical, dental, and vision coverage, including a Health Spending Account and a Personal Spending Account that gives you flexibility to spend where you need it the most. Our Employee & Family Assistance Plan (EFAP) offers you and your family access to various services like counseling, legal advice, mental health resources etc. We also provide critical illness, disability, and life insurance, as well as a Group Registered Retirement Savings Plan (RRSP) with a company match to help you save faster for retirement. We offer competitive Paid Time Off and flexible leave policies, including paid health days, to help you take care of yourself and your family members.</p>\n<p>All roles are eligible to participate in the Fortinet equity program. Bonus eligibility is reviewed at time of hire and annually at the Company’s discretion. </p>",
"ObjectVerNumberProfile": "1",
"PrimaryLocationCountry": "CA",
"CorporateDescriptionStr": "",
"ExternalPostedStartDate": "2025-12-04T19:35:58+00:00",
"ExternalQualificationsStr": "",
"InternalQualificationsStr": "",
"OrganizationDescriptionStr": "",
"primaryLocationCoordinates": [
{
"Latitude": "",
"Longitude": "",
"CountryCode": "CA",
"GeographyId": 100000000379619,
"GeographyNodeId": 100005791158347
}
],
"ExternalResponsibilitiesStr": "",
"InternalResponsibilitiesStr": "",
"InternationalTravelRequired": null
},
"list_job": {
"Id": "21217",
"Title": "Senior Threat Hunting Specialist",
"JobType": null,
"Distance": 1764806400000,
"JobShift": null,
"Language": "US",
"WorkDays": null,
"JobFamily": null,
"Relevancy": 2,
"WorkHours": null,
"Department": null,
"HotJobFlag": false,
"PostedDate": "2025-12-04",
"StudyLevel": null,
"WorkerType": null,
"GeographyId": 100000000379619,
"JobFunction": null,
"JobSchedule": null,
"BusinessUnit": null,
"ContractType": null,
"ManagerLevel": null,
"Organization": null,
"TrendingFlag": false,
"workLocation": [
{
"Country": null,
"Region1": null,
"Region2": null,
"Region3": null,
"Building": null,
"Latitude": null,
"Longitude": null,
"LocationId": null,
"PostalCode": null,
"TownOrCity": null,
"AddressLine1": null,
"AddressLine2": null,
"AddressLine3": null,
"AddressLine4": null,
"LocationName": null
}
],
"LegalEmployer": null,
"MediaThumbURL": null,
"WorkplaceType": "",
"BusinessUnitId": 300000369687518,
"OrganizationId": 300000002940510,
"PostingEndDate": null,
"LegalEmployerId": 300000002940510,
"PrimaryLocation": "Burnaby, BC, Canada",
"WorkDurationYears": null,
"WorkplaceTypeCode": null,
"BeFirstToApplyFlag": false,
"WorkDurationMonths": null,
"otherWorkLocations": [],
"secondaryLocations": [],
"ShortDescriptionStr": "We are hiring a Senior Threat Hunting Specialist who combines deep threat-hunting expertise with practical purple-team simulation skills to support an AI-driven detection program. The ideal candidate understands attacker TTPs in depth, can design hypothesis-driven hunts from telemetry, and can script concise attack simulations to generate realistic logs and telemetry in a test environment for validating detections. This role focuses on attacker thinking, preparing and conducting simulations, threat detection SIEM query design and SOC detection validation. Moreover, this role will contribute to features design for ML-driven detection capabilities. ",
"requisitionFlexFields": [],
"DomesticTravelRequired": null,
"PrimaryLocationCountry": "CA",
"ExternalQualificationsStr": null,
"ExternalResponsibilitiesStr": null,
"InternationalTravelRequired": null
},
"detail_meta": {
"url": "https://edel.fa.us2.oraclecloud.com/hcmRestApi/resources/latest/recruitingCEJobRequisitionDetails?expand=all&onlyData=true&finder=ById;Id=%2221217%22,siteNumber=cx",
"http_status": 200,
"content_type": "application/json",
"response_bytes": 10537
},
"detail_errors": []
}Get this page with API
Rendered from the bluedoor Job Postings API. Reproduce it:
GET https://api.bluedoor.sh/job-postings/v1/jobs/1b9ff4cd3c1bd72899028c6203f63d419682f739?include=descriptionJSONGET https://api.bluedoor.sh/job-postings/v1/orgs/567b92ea-038a-4832-a806-85fe20cc90cfJSONGET https://api.bluedoor.sh/job-postings/v1/sources/4ceb090c-78f9-4c02-8b38-393783298157JSONGET https://api.bluedoor.sh/job-postings/v1/jobs/1b9ff4cd3c1bd72899028c6203f63d419682f739/eventsJSON