Lead Threat Hunter

US Bank

Hybrid

Quick summary

Work type
Hybrid
Location
Cincinnati, OH · Atlanta, GA · Hopkins, MN · Cupertino, CA · Charlotte, NC
Salary
$126,820–$149,200 / yr
Posted
1 day ago
Closes
Jul 31, 2026

Market check

Salary context

Below market

How this pay compares to similar roles

Similar $177k
This role $138k
$116k most similar roles pay here $225k

This role pays less than 87% of similar roles. Most pay $152,975–$201,762 — the shaded band above. At the midpoint, this role pays about $138k versus about $177k for comparable roles.

Based on 240 similar postings.

Employer

About US Bank

U.S. Bank (U.S. Bancorp) is the fifth-largest bank in the United States, providing retail banking, corporate and commercial banking, wealth management, and payment services to millions of customers. Industry: Banking & Financial Services

US Bank currently has 44 open roles on FindRole.

Listed pay typically runs $111,605–$131,300 across 41 roles with salary data.

Most-posted roles

View all roles at US Bank

At a glance

TL;DR · Lead Threat Hunter

Join U.S. Bank as a Lead Threat Hunter and contribute to the security incident response program by identifying advanced threats in complex multi-cloud environments. This senior role involves collaborating with engineering teams to develop detection rules, investigating cybersecurity incidents, and training staff on response processes. You will lead technical analysis of emerging threats, assess vulnerabilities, and assist in forensic investigations using AI and automation tools like Jupyter notebooks and Python. Essential skills include expertise in security logging, monitoring, and event management, as well as experience with major cloud platforms such as AWS, Azure, and GCP. The ideal candidate has a strong background in threat hunting frameworks, incident response, and malware reverse engineering, complemented by excellent communication and leadership abilities. This role demands proactive learning and continuous improvement in the ever-evolving field of cybersecurity within the financial sector.

What you'll do

  • Lead technical analysis of new and emerging information security threats.
  • Develop and test detection rules with security engineering teams.
  • Train security operations staff on response processes and incident handling.
  • Review and track detected events to identify new exploits and mitigation strategies.
  • Assist in investigations and eDiscovery efforts using forensic technologies.
  • Automate threat hunting processes and create playbooks for efficiency.
  • Communicate hunting findings effectively to educate colleagues and partners.

What we're looking for

  • 8+ years of experience in information security and incident response.
  • Expertise in threat hunting using AI, automation tools, and Jupyter notebooks.
  • Proficiency in log analysis, packet analysis, and security logging tools.
  • Strong knowledge of MITRE ATT&CK framework and threat intelligence platforms.
  • Experience with cloud environments (AWS, Azure, GCP) for threat hunting.
  • Excellent communication skills for reporting findings and training staff.
  • Proven ability to collaborate across teams and influence decision-making.

More like this

Similar roles

Lead, Cyber Defense & Response

Prudential Financial

Newark, NJ 79 days ago $123,700$204,100
Splunk KQL MITRE ATT&CK SIEM XDR AWS Azure M365 Active Directory Endpoint Detection and Response Network Telemetry Identity Telemetry Cloud Telemetry Incident Response Detection Engineering Cyber Threat Intelligence Python SQL JSON YAML Markdown

Lead Engineer - Insider Risk

Target

Remote (7000 Target Pkwy N,Ncd-0375 Brooklyn Park,Mn 55445, US) 31 days ago $132,000$238,000
Python DLP SIEM UEBA EDR ZScaler ForcePoint Symantec Kubernetes AWS Terraform CI/CD PowerShell SOAR
Remote Hybrid

Security GRC Lead

Salesforce

Remote (San Francisco, CA) 11 days ago $148,500$223,900
FedRAMP NIST 800-53 AWS GovCloud Azure Government Google Cloud SOC 2 ISO 27001 PCI DSS HIPAA CMMC CI/CD DevSecOps GCP Azure AWS Terraform Docker
Remote

Lead, Cyber Defense & Response

Prudential Financial

Newark, NJ 4 days ago $123,700$204,100
SIEM Python PowerShell Splunk MITRE_ATT&CK D3FEND CREF Cloud_Security Agile_Development Data_Visualization Power_BI Tableau AWS_Security Azure_Security GIAC_GCTI GIAC_GMON GIAC_GSOC GIAC_GREM GIAC_GCFA GIAC_GNFA
Hybrid

Protective Intelligence Lead Analyst

Anduril Industries

Costa Mesa, CA 2 days ago $98,000$130,000
OSINT SocialMediaMonitoring ThreatAssessment GeopoliticalRiskAnalysis CrisisManagement AI DefenceSectorSensitivities ProjectManagement SaaSPlatforms Dataminr Liferaft

Lead, Application Security

Prudential Financial

Newark, NJ 73 days ago $123,700$204,100
DevSecOps Python Bash PowerShell OWASP Top 10 SAST SCA DAST ASPM NIST PCI DSS AWS Azure GCP CI/CD CIS MITRE ATT&CK SOX