--- title: 'Threat Hunter / Security Analyst at Galvanick' canonical: 'https://feeny.ai/job/threat-hunter-security-analyst-galvanick-seattle-qy4qgy03k3qg' type: 'job' last_seen: '2026-09-07' --- # Threat Hunter / Security Analyst at Galvanick - **Company:** Galvanick - **Location:** Seattle, WA - **Employment:** full-time - **Work type:** onsite - **Posted:** 2024-03-29 - **Last confirmed live:** 2026-09-07 - **Apply:** https://jobs.lever.co/galvanick/66d633a8-8451-40fd-ab67-86a02b51e951 ## Job description ## About Galvanick Galvanick protects the industrial world against cyber attacks. Our threat detection platform defends the modern world against criminals and nation-states that target Operational Technology (OT) systems and networks. This is a chance to work in a startup environment with driven individuals committed to solving cybersecurity's big problems. We are backed by Founders Fund, Village Global, MaC Venture Capital, and others. ## About the Role We are seeking a highly skilled individual to join our team as a Threat Hunter / SOC Analyst. In this role, you will play a critical role in enhancing our operational security by conducting manual threat detection operations and proactively hunting for potential threats. You will ensure the threat hunting tools and methodologies employed by the company will scale with Galvanick’s growth and success. This is a great opportunity to leverage the data collected by Galvanick to proactively hunt and identify security threats within customer systems and networks. You will provide insights through monthly reports with overview of findings and high level recommendations. ## What You Will Do - Develop and implement effective detection strategies and ensure comprehensive threat coverage. You will be responsible for hunting and monitoring for threats using hundreds of telemetry sources from across the Galvanick platform. - Stay updated with the latest security trends, attack techniques, and vulnerabilities to continuously improve our threat detection capabilities. - Investigate and respond to security incidents, conducting thorough analysis and providing timely resolution. - Maintain ownership of assigned customer accounts, facilitate high levels of customer satisfaction, and be a trusted advisor for customers. You will respond to customer questions relating to threat intelligence and threat hunting. - Identify opportunities to increase overall customer satisfaction or streamline internal processes. - Perform adversary-focused threat hunting to identify abnormalities in the environment, with a focus on public cloud environments. - Contribute to automation and tooling that support hunting operations. Develop and maintain comprehensive documentation of threat hunting activities, findings, and remediation steps. ## Who You Are - 5+ years of experience with one or more of the following areas, Incident Response, Security Operations, Threat Hunting, and Cyber Threat Intelligence. - Fluency with Python and an understanding of query languages. You are comfortable getting into the code and helping with detections. - Experience monitoring and analyzing telemetry data from application, infrastructure, and endpoint. - In-depth knowledge of security tools, techniques, and methodologies. Familiarity with threat intelligence platforms and frameworks. - Strong analytical and problem-solving skills, with the ability to think strategically and identify potential threats. - Excellent understanding of attack vectors, vulnerabilities, and common security weaknesses. - Proven experience as a SOC analyst or threat hunter, with a strong operational security background. - Effective communication skills, with the ability to clearly convey complex security concepts to both technical and non-technical stakeholders. Experience writing monthly reports with overview of findings and high level recommendations. Bonus Points - Experience conducting threat hunting or managing incident response for organizations, investigating targeted threats such as the Advanced Persistent Threat, Organized Crime, and Hactivists. - Knowledge of cyber threat intelligence terminology and data communication concepts and technologies. - You enjoy solving problems and are naturally curious about the technologies and tools you use. - Startup experience and an understanding of zero to one ideas. You enjoy attacking complex and novel problems. - Experience with industrial, operational, or fulfillment environments. - Relevant certifications such as CISSP, CEH, or GCIH are desirable. ## Benefits We provide top-of-the-line medical/dental/vision for employees and dependents, and have additional benefits designed to optimize every team member’s vitality, health, and wellness. Our compensation reflects the cost of labor across various geographic markets. The base pay for this position ranges from $100,000/year in our lowest geographic market up to $180,000/year in our highest geographic market. Pay is based on a number of factors including market location and may vary depending on job-related knowledge, skills, and experience. Galvanick is an early stage startup and base salary is only one component of our compensation package. Dependent on the position offered, equity may be provided as part of the compensation package, in addition to medical, financial, and/or other benefits. Location The Galvanick engineering team is based in Seattle. Given that we are an early-stage startup working on an exceptionally hard problem, we expect new team members to be in office. We are happy to cover relocation expenses. ITAR Requirements To conform to US Government export regulations, including the International Traffic in Arms Regulations (ITAR) you must be a US citizen, lawful permanent resident of the US, protected individual as defined by 8 U.S.C. 1324b(a)(3), or eligible to obtain the required authorizations from the US Department of State. Learn more about the ITAR here. Galvanick is an equal opportunity employer and does not discriminate on the basis of race, color, religion, sex, national origin, disability, veteran status, sexual orientation, gender identity, or any other protected status. ## About Galvanick ## Company Overview - **One-liner**: Galvanick provides a behavioral threat detection platform purpose-built for industrial control systems (ICS) and operational technology (OT) environments. - **Entity Type**: Private (Seed stage) - **Headquarters**: Seattle, Washington, United States - **Founded**: 2021 - **Founders**: Joshua Steinman (Co-Founder) and other co-founders who previously built the industrial security team at Amazon and investigated OT intrusions at Mandiant. ## Core Business - Primary industry: Industrial Cybersecurity / OT Security - Target customers: Factories, critical infrastructure operators, and any organization with SCADA/ICS systems – from early-stage startups to multi-facility enterprises. - Mission/Purpose: “Protect the industrial world against cyber attacks” by detecting attackers before they can disrupt industrial operations. ## Products & Services - **Galvanick XDR Platform**: A behavioral threat detection and response platform that ingests endpoint, network, infrastructure, and application data from OT environments into a single detection engine. It correlates signals across the MITRE ATT&CK framework, reconstructs attack paths, and provides environment-aware response recommendations. Type: SaaS/software platform. ## Market Standing - **Valuation/Market Cap**: Not disclosed (private company). - **Key Metric**: Total funding of **$16M** (Pre-Seed + Seed); annual revenue of approximately **$768K** (estimated). - **Notable Investors/Partners**: MaC Venture Capital (led the $10M Seed round), plus Founders Fund, Oracle Defense Ecosystem, HNVR Technology Investment Management, Countdown Capital, and 13+ others. Partner: Armada (edge platform). - **Growth Signals**: 15 employees (+21.1% YoY headcount growth); 6 active job openings; LinkedIn followers grew 46% YoY; opened a Seattle office in 2024; recent partnership with Armada; active hiring for engineering and threat detection roles. ## Competitive Advantages - **Built by OT practitioners**: The team previously ran the industrial security program at Amazon (700+ facilities, 35,000+ PLCs) and conducted OT incident response at Mandiant, giving deep domain expertise. - **Safe, non-intrusive agent**: Sensors run in user-mode only – no kernel driver, no control channel, no active scanning – eliminating the risk of disrupting production systems. - **Retroactive detection**: Can ingest historical endpoint logs and surface compromises that occurred months before deployment. - **Low false-positive rate**: Cross-verifies detections across multiple data sources, resulting in “100x fewer false positives” and “10x more real detections.” ## Strategic Focus - Expanding protection for critical infrastructure and industrial environments, with emphasis on continuous monitoring, threat hunting, and automated response. - Building partnerships (e.g., Armada) to integrate edge computing capabilities for real-time detection. - Scaling the engineering and threat intelligence teams to accelerate product development and address growing demand for OT security. ## Why Work Here - **Impact**: Join a small, mission-driven team (15 people) protecting the systems that keep factories, power grids, and critical infrastructure running. - **Culture**: “Join the frontlines of industrial cybersecurity” – the company values tackling hard problems and has a strong technical ethos. - **Work policy**: On-site roles in Seattle, WA (HQ) with a second office in Los Angeles, CA. All current open positions are listed as on-site. - **Engineering environment**: Tech stack includes Kubernetes, Prometheus, Linkerd, Terraform, Python, PostgreSQL, React, and more. Engineers work on threat detection, infrastructure, and automation. - **Notable perks**: Opportunity to work with former Amazon and Mandiant cybersecurity leaders; small team means high ownership and visibility; recent funding indicates runway for growth. ## Sources 1. [Galvanick.com](https://www.galvanick.com/?tpcc=NL_Marketing) 2. [Galvanick Careers (Lever)](https://jobs.lever.co/galvanick) 3. [LinkedIn – Galvanick](https://linkedin.com/company/galvanick) 4. [CB Insights – Galvanick](https://www.cbinsights.com/company/galvanick) 5. [GeekWire – Cybersecurity startup opens Seattle office](https://www.geekwire.com/2024/cybersecurity-startup-that-helps-companies-secure-industrial-systems-opens-seattle-office/) 6. [Business Wire – $10M Seed Funding](https://www.businesswire.com/news/home/20230601005218/en/Galvanick-Announces-10-Million-in-Seed-Funding-for-Industrial-Cybersecurity-Platform) ## Other roles at Galvanick - [Head of Marketing](https://feeny.ai/job/head-of-marketing-galvanick-remote-2t4mh1rzf3wt) - [Infrastructure Engineer](https://feeny.ai/job/infrastructure-engineer-galvanick-seattle-gf3f2nngt547) — Seattle, WA - [Head of Engineering](https://feeny.ai/job/head-of-engineering-galvanick-seattle-b4zsatvgve3x) — Seattle, WA - [Senior Detections Engineer](https://feeny.ai/job/senior-detections-engineer-galvanick-seattle-x850vw6ca99m) — Seattle, WA