Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

Senior Threat Hunter

cFocus Software Incorporated

cFocus Software seeks a Threat Hunter to support the Administrative Offices of the United States Courts (AOUSC) in Washington, DC. This position will require 4 days a week onsite at the Thurgood Marshall Building and 1 day remote with hours of 8am- 4:30pm. Required Qualifications Ability to obtain a Public Trust 5 years of experience performing threat hunts & incident response activities for cloud-based and non-cloud-based environments, such as: Microsoft Azure, Microsoft O365, Microsoft Active Directory, and Zscaler 5 years of experience performing hypothesis-based threat hunt & incident response utilizing Splunk Enterprise Security. 5 years of experience collecting and analyzing data from compromised systems using EDR agents (e.g. CrowdStrike ) and custom scripts (e.g. Sysmon & Auditd ) 5 years of experience with the following threat hunting tools: Microsoft Sentinel for threat hunting within Microsoft Azure; Tenable Nessus and SYN/ACK for vulnerability management; NetScout for analyzing network traffic flow; SPUR.us enrichment of addresses Mandiant Threat intel feeds Must be able to work 80% (Monday thru Thursday) onsite at AOUSC office in Washington, DC One of the following certifications: GIAC Certified Intrusion Analyst (GCIA) GIAC Certified Incident Handler (GCIH) GIAC Continuous Monitoring (GMON) GIAC Defending Advanced Threats (GDAT) Splunk Core Power User Duties and Responsibilities Provide incident response services after an incident is declared and provides a service that proactively searches for security incidents that would not normally be detected through automated alerting. The Threat Hunt mission is to explore datasets across the judicial fabric to identify unique anomalies that may be indicative of threat actor activity based on the assumption that the adversary is already present in the judicial fabric. The extended mission is to conduct counterintelligence, build threat actor dossiers, disrupt adversary operations, identify misconfigurations/ vulnerabilities, and identify visibility/detection gaps, if any. Human analytical thinking is imperative to the primary and extended missions as it is up to the threat hunter to find signs of an intrusion that have bypassed the automatic detection process that may already be in place. Accept and respond to government technical requests through the AOUSC ITSM ticket (e.g., HEAT or Service Now), for threat hunt support. Threat hunt targets include cloud-based and non-cloud-based applications such as: Microsoft Azure, Microsoft O365, Microsoft Active Directory, and Cloud Access Security Brokers (i.e., Zscaler). Review and analyze risk-based Security information and event management (SIEM) alerts when developing hunt hypotheses. Review open-source intelligence about threat actors when developing hunt hypotheses. Plan, conduct, and document iterative, hypothesis based, tactics, techniques, and procedures (TTP) hunts utilizing the agile scrum project management methodology. At the conclusion of each hunt, propose, discuss, and document custom searches for automated detection of threat actor activity based on the hunt hypothesis. Configure, deploy, and troubleshoot Endpoint Detection and Response agents (e.g., CrowdStrike and Sysmon). Collect and analyze data from compromised systems using EDR agents and custom scripts provided by the AOUSC. Track and document cyber defense incidents from initial detection through final resolution. Interface with IT contacts at court or vendor to install or diagnose problems with EDR agents. Participate in government led after action reviews of incidents. Triage malware events to identify the root cause of specific activity. Attend daily Agile Scrum standups and report progress on assigned Jira stories. #J-18808-Ljbffr

Vacancy posted 4 days ago
Similar jobs that could be interesting for youBased on the Senior Threat Hunter in Washington DC vacancy
  •  ...A technology consulting firm is seeking a Threat Hunter for the Administrative Offices of the United States Courts in Washington, DC. This position requires substantial experience in threat hunting and incident response, specifically in cloud and non-cloud environments... 
    Senior
    Remote work

    cFocus Software Incorporated

    Washington DC
    3 days ago
  •  ...worldwide. Job Description ***** This position is contingent upon contract award ***** Overview SOSi is seeking a Senior Threat Hunter to support proactive cyber defense activities in alignment with our customer. This role is responsible for conducting threat... 
    Senior
    Full time
    Contract work
    Work at office
    Worldwide
    Monday to Friday
    Weekend work
    Afternoon shift

    SOS International LLC

    Washington DC
    12 hours ago
  •  ...and delivered by operating with a product mindset, prioritizing speed, ownership, and execution over bureaucracy. Title: Senior Threat Hunter Location: Washington, DC or Chandler, AZ Terms: Full-time Clearance: Secret eligibility Travel: 0-20% Position... 
    Senior
    Full time
    Work experience placement
    Flexible hours

    Revolutional, LLC

    Washington DC
    7 days ago
  •  ...and may entail obtaining a Public Trust Clearance. The ideal candidate will have significant experience in proactive detection engineering and threat hunting, with a strong background in scripting and SIEM solutions like Splunk and Microsoft Sentinel. #J-18808-Ljbffr... 
    Senior

    NewGen Technologies (Maryland)

    Washington DC
    3 days ago
  • $107.93k - $188.9k

    Deloitte is looking for a Security Engineer III, Cyber Threat Hunter in Arlington, Virginia. This role involves proactive cyber threat detection and incident response, focusing on identifying adversary behaviors and improving operational resilience. Candidates should have... 
    Senior

    Relha LLC

    Arlington, VA
    12 hours ago
  •  ...activity and lead incident response efforts. Responsibilities include triaging alerts, building detection signatures, and conducting threat hunting. The ideal candidate has experience in security monitoring and Python development, along with strong communication skills.... 
    Senior

    Anduril Industries

    Washington DC
    3 days ago
  • $166k - $220k

     ...involves monitoring alerts and responding to incidents across various environments, focusing on optimization of detection signatures and threat hunting. Candidates should have experience in security monitoring, log analysis, and Python development, along with strong... 
    Senior

    Anduril

    Washington DC
    4 days ago
  •  ...incidents as part of our Security Operations Center. Ideal candidates should possess advanced knowledge in cybersecurity operations and threat detection methodologies. This role includes conducting in-depth investigations, threat hunting, and assisting Tier 1 analysts. The... 
    Senior

    Defianx

    Falls Church, VA
    6 hours ago
  • Nightwing is hiring Cyber Eviction Analysts primarily to support cyber incident response efforts for government agencies and critical infrastructure owners. Candidates need to have an active TS/SCI clearance and must demonstrate over 5 years of relevant experience in the...
    Senior

    Nightwing

    Arlington, VA
    2 days ago
  •  ...cybersecurity firm is looking for Cyber Eviction Analysts in Arlington, Virginia. This role involves incident response, analyzing threats, and advising technical personnel on countermeasures. Candidates must have active TS/SCI clearance, a relevant degree, and extensive... 
    Senior

    NewGen Technologies (Maryland)

    Arlington, VA
    3 days ago
  • cFocus Software seeks a Mid Level Cyber Threat Hunter to join our program supporting US Courts in Washington, DC. This position is 4 days a week onsite in DC and one day remote. Required Qualifications include: ~3- 5 years of experience performing threat hunts & incident... 
    Work at office
    Remote work

    cFocus Software Incorporated

    Washington DC
    1 day ago
  •  ...Cyber Threat Hunter Bethesda, MD Role Summary: Mid-level hunter conducting proactive threat hunts, identifying behavioral anomalies, and maturing the NIH enterprise threat hunting program. Must-Have Skills: • 3-5 years threat hunting, SOC, IR, or detection... 

    Merit 321

    Bethesda, MD
    13 days ago
  • $94.1k - $150k

     ...Position Overview The Cyber Threat Hunter proactively protects enterprise environments from advanced cyber threats by analyzing network, endpoint, and log data to identify malicious activity that may evade conventional security controls. This role establishes normal... 
    Contract work
    Work at office

    ASM Research, An Accenture Federal Services Company

    Washington DC
    2 days ago
  •  ...Candidates must possess a TS/SCI clearance and have at least 8 years of relevant experience in incident response, knowledge of operational threat environments, and strong communication skills. This position values collaboration and encourages innovation in tackling complex... 
    Senior
    Remote work

    Nightwing

    Arlington, VA
    1 day ago
  • A leading technology company is seeking a Cyber Threat Hunter to join their Defensive Cyber Operations team in Washington, DC. The role involves developing hunt campaigns, conducting advanced telemetry analysis, and maintaining high levels of situational awareness regarding... 
    Remote work

    Leidos Inc

    Washington DC
    3 days ago
  • $107.9k - $195.05k

    Overview The Leidos Digital Modernization sector is looking for a Cyber Threat Hunter to support a Defensive Cyber Operations (DCO) team in Washington, DC. This position is expected to become available in Summer 2026. Our team provides mission critical, 24/7 operational... 
    Summer work
    Casual work
    Local area
    Remote work
    Shift work
    Night shift
    Rotating shift

    Leidos

    Washington DC
    4 days ago
  •  ...Responder to support the Administrative Offices of the United States Courts in Washington, DC. This role involves incident response and threat hunting, requiring a minimum of 5 years of experience across cloud and non-cloud environments, as well as proficiency in tools like... 

    cFocus Software Incorporated

    Washington DC
    12 hours ago
  • A leading technology firm is seeking a Cyber Threat Hunter to join their team in Washington, DC. This hybrid position involves developing and executing threat hunting campaigns, analyzing complex datasets, and crafting detailed technical reports. Candidates should have... 

    Leidos

    Washington DC
    4 days ago
  •  ...Hamilton is seeking a Cyber Mission Specialist in Arlington, VA. In this role, you will leverage your experience to address cybersecurity threats and vulnerabilities, contributing significantly to national defense. The position requires a Bachelor's degree, 10+ years of... 

    Booz Allen Hamilton

    Arlington, VA
    2 days ago
  • $107.93k - $188.9k

    Security Engineer III, Cyber Threat Hunter Deloitte is seeking a Threat Hunter, Cyber Defense & Resilience to support proactive cyber threat detection, analysis, and response in complex client environments. This role focuses on identifying adversary behavior, investigating... 

    Relha LLC

    Arlington, VA
    12 hours ago
  •  ...experience in the field, along with strong analytical skills. Familiarity with SOC processes and various cybersecurity tools is required. Current DoD TS/SCI clearance is mandatory. This role involves shift work and demands proactive threat analysis. #J-18808-Ljbffr... 
    Shift work

    Base One Technologies

    Washington DC
    3 days ago
  •  ...Trilagen is seeking a Senior Account Executive to drive net-new enterprise business development in the Agentic AI sector. This role requires an individual who is a proactive hunter, responsible for managing the complete sales cycle from prospecting to closing deals with... 
    Senior

    Trilagen

    Washington DC
    6 hours ago
  •  ...cybersecurity firm in Arlington, Virginia, is seeking a Computer Network Defense Analyst to monitor network activity, analyze cyber threats, and recommend proactive measures to contain incidents. The ideal candidate will have over 5 years of experience in cyber defense... 

    Base One Technologies

    Arlington, VA
    4 days ago
  • ManTech seeks a motivated Cyber Threat Hunter to join our team in McLean, VA. The role involves leveraging technical expertise to detect and mitigate cyber threats, utilizing methodologies like MITRE ATT&CK and conducting threat hunts based on internal data. Qualifications... 

    ManTech

    Mc Lean, VA
    3 days ago
  • MANTECH seeks a motivated, career and customer-oriented Cyber Threat Hunter to join our team in Mclean, VA . The Cyber Threat Hunter will leverage their strong technical background and knowledge to proactively detect, investigate, and mitigate cyber threats within our... 
    Work at office
    Local area

    ManTech

    Mc Lean, VA
    12 hours ago
  •  ...A leading cybersecurity solutions provider in Arlington, Virginia is seeking motivated individuals to support cyber threat intelligence efforts. Ideal candidates will have 5+ years of experience, U.S. Citizenship, and an active TS/SCI Clearance. Responsibilities include... 
    Senior

    NewGen Technologies (Maryland)

    Arlington, VA
    3 days ago
  • A minority-owned technology firm in Arlington, VA, is seeking an Incident Response Expert / Cyber Eviction Analyst. This role requires 8+ years of cyber incident response experience and the ability to manage critical incidents effectively. The ideal candidate will have ...

    Node.Digital LLC

    Arlington, VA
    12 hours ago
  •  ...The Hong Kong Study Skills Research Institute is looking for a Senior Cyber Threat Intelligence Analyst to work fully remote, supporting cybersecurity initiatives. This position requires active Public Trust clearance. The ideal candidate will have extensive experience... 
    Senior
    Remote work

    Hong Kong Study Skills Research Institute

    Washington DC
    4 days ago
  •  ...ShorePoint in Washington, DC is seeking a Senior Cyber Threat Intelligence (CTI) Analyst to guide enterprise threat intelligence activities. The ideal candidate will have over 15 years of experience in cybersecurity and a current active Top-Secret Clearance, managing complex... 
    Senior

    ShorePoint Inc

    Washington DC
    5 hours ago
  •  ...Whateverittakescom is seeking a Senior Cyber Threat Intelligence Specialist in Washington, DC. This role involves providing analytical support to mitigate cyber and physical risks, requiring a minimum of 8 years in cyber intelligence and a Top Secret clearance. The ideal... 
    Senior

    Whateverittakescom

    Washington DC
    5 hours ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to Senior Threat Hunter. Be the first to apply!