Job Description
Note:
The job is a remote job and is open to candidates in USA. Databricks is a leading data and AI company that provides a unified platform for data analytics. They are seeking a
Senior Staff Threat Hunter & Intelligence Engineer to lead threat hunting and intelligence capabilities across various cloud platforms, build the necessary tooling and infrastructure, and serve as a technical authority in the security organization. Responsibilities β’ Define the strategic vision and roadmap for a structured, repeatable threat hunting program using hypothesis-driven methodologies aligned with industry frameworks β’ Develop Databricks-based hunting capabilities and logic to analyse security telemetry at a massive scale across our multi-cloud environment β’ Build reusable hunting notebooks and automated intelligence pipelines using Databricks workflows β’ Serve as the technical authority for threat hunting across Security, influencing detection strategy and incident response capabilities β’ Mentor and develop threat hunting capabilities across the security organization β’ Operationalize threat intelligence from multiple sources (commercial feeds, OSINT, industry sharing groups) into actionable hunting hypotheses β’ Work with internal partners to develop and maintain Priority Intelligence Requirements (PIRs) β’ Build automated enrichment pipelines using Databricks to correlate intelligence with internal telemetry β’ Produce intelligence assessments on threats relevant to our business β’ Represent Databricks in external security communities, industry working groups, and with strategic customers on advanced threat topics β’ Architect scalable hunting infrastructure using Databricks notebooks, bolthires Lake, and Unity Catalog β’ Develop libraries of reusable detection logic and hunting queries optimized for distributed computing β’ Build automated workflows for threat intelligence ingestion, enrichment, and correlation β’ Create dashboards and visualizations for threat exposure and hunt findings β’ Integrate security tools with Databricks platform Skills β’ 12+ years in cybersecurity with 6+ years focused on threat hunting, threat intelligence, or detection engineering β’ Deep expertise with nation-state and e-crime threat actors' TTPs, trends, and historical targets β’ Experience working with large-scale security datasets and big data platforms β’ Strong Python programming experience with a background in PySpark, distributed computing frameworks, or Databricks' platform β’ Deep understanding of cloud security across AWS, Azure, and GCPβincluding cloud-native logging, security controls, and container/Kubernetes security β’ Strong knowledge of OS internals across macOS, Linux, and containerized environments β’ Experience with enterprise-scale software development practices including infrastructure-as-code, code review, and large codebase management β’ Demonstrated experience conducting hypothesis-driven threat hunts with measurable outcomes β’ Experience defining and driving multi-year security program strategy β’ Thought leadership around the application of cybersecurity frameworks, such as MITRE ATT&CK and D3FEND β’ Applied CTI skills including consuming and operationalizing IOCs/TTPs, tracking campaigns, and conducting research β’ Experience influencing technical decisions beyond your immediate team β’ A track record of mentoring Staff+ engineers β’ Experience with Databricks platform or similar (Spark, bolthires Lake, MLflow) β’ Experience protecting multi-tenant SaaS/PaaS environments β’ Experience using AI, Large Language Models or machine learning to automate cybersecurity operations β’ Experience with purple team operations and adversary emulation β’ Published research at major cybersecurity conferences or in academic journals β’ Contributions to impactful open-source security projects or software patents in the cybersecurity domain Benefits β’ Eligibility for annual performance bonus β’ Equity β’ Comprehensive benefits and perks that meet the needs of all of our employees Company Overview β’ Databricks is a data and AI platform that unifies data engineering, analytics, and machine learning on a lakehouse architecture.
It was founded in 2013, and is headquartered in San Francisco, California, USA, with a workforce of 5001-10000 employees. Its website is Company H1B Sponsorship β’ Databricks has a track record of offering H1B sponsorships, with 318 in 2025, 319 in 2024, 227 in 2023, 222 in 2022, 166 in 2021, 64 in 2020. Please note that this does not guarantee sponsorship for this specific role. Apply tot his job