PitchMeAI
SimSpace

Senior AI-Centric Threat Hunter

SimSpace · United States

  • Hybrid
  • Full-time
  • $175,000 / year
  • United States
Tailored resumekeyword-matched to this role.
Hiring managerwe find who's hiring.
Intro emaildrafted to reach them directly.

Job highlights

  • Lead AI agent integration into cybersecurity workflows.
  • Mentor global security teams on advanced tactics.
  • Design and test AI models for security.
  • Facilitate Blue Team exercises for clients.
  • Analyze telemetry for threat indicators.

About the role

About SimSpace

SimSpace serves as an AI Proving Ground where organizations can confidently train, test, and outmaneuver adversaries in any environment. Trusted by allied governments, militaries, enterprises, and research institutions worldwide, SimSpace enables adaptive, AI-ready defenses that stay ahead of evolving threats. Founded in 2015 by experts from U.S. Cyber Command and MIT Lincoln Laboratory, the platform unifies training, testing, and validation in a realistic, live-fire simulation—helping teams evaluate security investments, optimize performance, and compress cyber readiness cycles from months to days.

Why join SimSpace?

We are an organization that is focused on building our culture and mindfully enhancing our atmosphere every day which is why we have collaborated on an integral value system. Our governing philosophy of being Human Centered is deeply embedded within our value system. We apply this philosophy to every one of our internal team members, external clients, and their customers.

How Do We Work?

We believe that people are at the center of everything we do. SimSpace fosters a culture of continuous learning, curiosity, and professional growth. That belief shows up in action: in-house training, internal and external learning platforms, cyber conferences, industry events, and dedicated time for skill development. Our people are empowered to shape their careers - and it shows. Year over year, SimSpace consistently outperforms industry benchmarks in internal mobility, promotions, and total rewards growth.

Who Thrives Here?

We are a team of innovators, protectors, and problem-solvers. We believe diversity of thought and experience fuels better solutions, and we’re committed to building teams that reflect the communities we serve. Whether you’re remote or office-based, you’ll collaborate with talented colleagues across departments and time zones, united by the mission to create a safer digital world.

We invite you to apply today!

Senior AI-Centric Threat Hunter Position Overview

We are looking for a highly motivated Cybersecurity Professional to support mentorship and assessment of global security teams in basic to advanced cybersecurity skill areas. The ideal candidate has a strong technical background, is enthusiastic, is good at problem solving, has a strong desire to learn, prefers to be hands-on technically, and constantly strives for excellence.

The Senior AI-Centric Threat Hunter will be part of a team developing methodologies of incorporating AI agents into cybersecurity workflows, designing experiments to help develop/test AI agents and models, delivering instructional content to customers, and facilitating a variety of Blue Team exercises for SimSpace and our customers. When facilitating exercises, you will be responsible for teaching security concepts, demonstrating practical/hands-on use of open source and commercial security tools; referencing both well established and cutting edge techniques that Cybersecurity Incident Response Teams might use to effectively defend their networks from advanced cyber threats.

What will you be doing as a Senior AI-Centric Threat Hunter at SimSpace?

  • Lead an internal initiative to research and integrate candidate agentic capabilities into test environments
  • Serve as a consultant to customers looking to integrate agentic capabilities into their cybersecurity enterprise in how to identify, integrate and test capabilities prior to deployment
  • Keep up with industry evolution around AI and cybersecurity operations reviewing publications and standards
  • Bring world class mentorship of advanced threat hunting tactics and strategy for our global clients and international organizations.
  • Utilize years of Blue Teaming experience to establish parsing rules, dashboards, and tuning of numerous enterprise security tools in our cyber range platform to exceed client goals and objectives.
  • Work with our range operations team to develop toolsets and scenarios within a cybersecurity range to model real-world threat defense scenarios.
  • Utilize foresight and awareness of overall business priorities when dealing with competing requirements and needs from across the organization in order to build consensus and drive results.
  • Takes initiative in day-to-day tasks, leads projects, and mentors other team members.
  • Navigate and work effectively across a complex, geographically dispersed organization.
  • Support assessment of customer security teams and customer events (this means the role will require national and international travel estimated up to 25-30%).

Qualifications

What are the qualifications to apply?

To be successful as a Senior AI-Centric Threat Hunter on SimSpace’s Evaluation Team, you need to have:
  • Demonstrated proficiency in AI/ML engineering, including practical application and experimentation with AI agents, LLM APIs.
  • Possess a deep understanding of AI agents, specializing in the orchestration of agent decision loops, tool access frameworks, and memory systems optimized for threat hunting and proactive security operations.
  • Architecting RAG Systems: Hands-on experience designing and deploying Retrieval-Augmented Generation (RAG) pipelines to ground LLMs in internal threat intelligence, historical incident data, and enterprise security policies while eliminating hallucinations.
  • Advanced proficiency in Python and standard data science/AI libraries, alongside strong scripting skills for data manipulation (Pandas, Numpy).
  • Familiarity with open-source AI ecosystems (Hugging Face) and frameworks for running local, privacy-safe LLMs (Ollama, vLLM).
  • 6+ years of experience in a technical role in the areas of Security Operations, Incident Response, Detection Engineering, Offensive Security/Red Team, or Cyber Threat Intelligence.
  • Experience analyzing host, network, and application telemetry for indicators of attack across the stages of the cyber kill chain.
  • Direct experience working with very large datasets and log analysis tools including but not limited to: Splunk, Elastic, Python, Pandas, SQL, Hadoop, Hue.
  • Ability to apply Cyber Threat Intelligence through enrichment, correlation, and attribution.
  • Experience with setup and/or troubleshooting of security stacks.
  • Familiarity with offensive security strategies and assessment methodology.
  • Experience explaining threat hunt objectives to mixed technical and non-technical audiences and ability to communicate associated risk by distilling complex content into digestible information.
  • Hands-on technical experience and ability to demonstrate hunting for indicators of compromise in numerous enterprise scale EDR and SIEM tools to include Splunk, Elastic, Crowdstrike, and many other major vendors.
  • Previous experience performing digital forensics or indecent response on major security incidents.
  • Demonstrated self-starter with a constant desire to help others improve and build the team.

Key skills/competency

  • AI/ML Engineering
  • AI Agents
  • LLM APIs
  • RAG Systems
  • Python
  • Cybersecurity
  • Threat Hunting
  • Incident Response
  • Security Operations
  • Blue Teaming

Skills & topics

  • AI Threat Hunter
  • Cybersecurity
  • AI
  • Machine Learning
  • Threat Hunting
  • Incident Response
  • Python
  • LLM
  • RAG
  • Security Operations
  • Blue Team
  • Splunk
  • Elastic
  • Crowdstrike

How to get hired

  • Tailor your resume: Highlight AI/ML engineering, threat hunting, and Python skills. Emphasize experience with Splunk, Elastic, and Crowdstrike.
  • Showcase AI expertise: Detail your experience with AI agents, LLM APIs, and RAG systems in your application.
  • Demonstrate cybersecurity experience: Quantify your years in Security Operations, Incident Response, or Threat Intelligence.
  • Prepare for technical interviews: Be ready to discuss AI-centric threat hunting strategies and analyze telemetry data.
  • Research SimSpace culture: Align your answers with their human-centered values and focus on continuous learning.

Technical preparation

Master Python and AI/ML libraries (Pandas, Numpy).,Practice AI agent orchestration and RAG systems.,Simulate threat hunting with EDR/SIEM tools.,Analyze large datasets for indicators of attack.

Behavioral questions

Describe a complex cyber threat you hunted.,How do you mentor junior security team members?,How do you balance competing project requirements?,Explain a technical concept to a non-technical audience.

Frequently asked questions

What specific AI/ML skills are most important for the Senior AI-Centric Threat Hunter role at SimSpace?
SimSpace highly values demonstrated proficiency in AI/ML engineering, practical application with AI agents and LLM APIs, and hands-on experience with RAG systems. Strong Python skills and familiarity with open-source AI ecosystems like Hugging Face are also critical.
How does SimSpace foster continuous learning for its employees?
SimSpace champions continuous learning through in-house training, access to internal and external learning platforms, attendance at cyber conferences and industry events, and dedicated time for skill development. They empower employees to shape their careers, leading to high internal mobility and promotion rates.
What is the expected travel for the Senior AI-Centric Threat Hunter position?
The role requires national and international travel, estimated at 25-30% of the time, to support customer assessments and events. This travel is essential for collaborating with global clients and organizations.
What type of experience is required in cybersecurity operations for this role?
We are looking for at least 6 years of experience in technical roles such as Security Operations, Incident Response, Detection Engineering, Offensive Security/Red Team, or Cyber Threat Intelligence. Experience analyzing host, network, and application telemetry is also essential.
How does SimSpace approach diversity and inclusion in its hiring process?
SimSpace is committed to building diverse teams that reflect the communities they serve, believing that diversity of thought and experience fuels better solutions. They encourage all qualified candidates to apply, even if they don't meet every single qualification.
What tools and technologies are commonly used by the Senior AI-Centric Threat Hunter team at SimSpace?
The team utilizes enterprise security tools like Splunk, Elastic, and Crowdstrike for log analysis and threat hunting. Proficiency in Python, Pandas, Numpy, SQL, and experience with AI/ML libraries and frameworks like Hugging Face, Ollama, and vLLM are also key.
Can you describe the compensation and benefits package at SimSpace?
SimSpace offers a competitive package including a base salary range of $135,000 - $200,000, potential bonuses, comprehensive health & wellness benefits (medical, dental, vision), mental health support, 401(k) with match, flexible time off, parental leave, and equity stock options.