Lead Threat Hunting Analyst
ChainPatrol
IT
Posted on Apr 28, 2026
Lead Threat Hunting Analyst – ChainPatrol
Job Type: Remote
About ChainPatrol
ChainPatrol is a cybersecurity company focused on protecting brands and users from digital threats. We specialize in detecting and taking down phishing campaigns, impersonation attacks, scam infrastructure, and coordinated threat actor networks across domains, social media, and messaging platforms.
Our platform combines threat intelligence, automation, and human-led investigations to proactively identify and disrupt malicious activity at scale.
Role Overview
We are looking for a Lead Threat Hunting Analyst to drive proactive threat discovery and analysis across multiple platforms. This role requires a strong investigative mindset, deep understanding of attacker behavior, and the ability to connect signals across domains, social media, and infrastructure.
You will play a key role in identifying emerging threats, mapping threat actor networks, and improving detection methodologies.
Key Responsibilities
Identify and investigate malicious domains, URLs, phishing sites, and brand impersonation campaigns
Conduct threat hunting across social platforms (Meta, X/Twitter, Telegram, LinkedIn, etc.)
Detect and analyze fake ads and scam campaigns
Build threat actor maps by correlating infrastructure, patterns, and behaviors
Leverage tools like URLScan.io and other threat intelligence platforms for investigations
Develop advanced sourcing queries and improve hunting workflows
Automate repetitive/manual analyst tasks where possible
Produce high-quality threat intelligence reports for customers
Collaborate with internal teams to improve detection logic and coverage
Requirements
Strong experience in threat hunting, OSINT, and cyber investigations
Hands-on experience with tools like URLScan.io, passive DNS, WHOIS, etc.
Ability to identify patterns across domains, infrastructure, and social activity
Experience working with social media threat detection
Strong analytical and problem-solving skills
Experience in automation / scripting (Python, etc.) + A little bit knowledge about API is a plus
Excellent written and verbal communication skills
Work Environment
24/7 SOC environment - flexibility to work in shifts is required
Apply Here:
Loading...