Cyber Threat Hunter
$94.1k - $150kASM Research, An Accenture Federal Services Company
Position Overview
The Cyber Threat Hunter proactively protects enterprise environments from advanced cyber threats by analyzing network, endpoint, and log data to identify malicious activity that may evade conventional security controls. This role establishes normal traffic and data-flow baselines, detects anomalies, develops threat hypotheses, and investigates adversary tactics, techniques, and procedures to strengthen cyber defense and incident response operations. This role directly supports a proactive SOC model by contributing to detection engineering, monitoring enhancements, automation development and continuous gap analysis to identify and mitigate emerging threats before they materialize.
Key Responsibilities
Conduct proactive threat hunting across networks, endpoints, and security datasets to identify, isolate, and help eradicate advanced threats before they impact operations.
Analyze logs from multiple sources, including packet captures, correlation engines, parsed security data, and endpoint telemetry, to detect suspicious behavior and validate threat activity.
Establish and maintain baseline patterns for normal traffic, system activity, and data flows to improve anomaly detection and investigative accuracy.
Collaborate closely with SOC analysts and detection engineers to recommend new alerts, analytics, and monitoring logic based on threat hunting findings, emerging trends, and identified visibility gaps.
Develop automation scripts and workflows (using SOAR platforms, Python, PowerShell, or similar tools) to streamline threat hunting activities, automate repetitive analytical tasks, and reduce detection and response time.
Research and track adversary tactics, techniques, and procedures (TTPs), developing technical hypotheses and investigative leads based on threat intelligence and observed behaviors.
Support incident response activities by creating incident documentation, follow-up actions, reporting criteria, and recommendations that improve overall response maturity and operational resilience.
Examine and characterize malware and cyber threats, including viruses, worms, bots, rootkits, and Trojan horses, to determine threat nature, scope, and potential impact.
Apply reverse engineering and binary analysis techniques using tools such as Ghidra and IDA Pro to support vulnerability research and understand malicious code behavior.
Required Qualifications
Bachelor’s degree in Information Technology, Computer Science, Cybersecurity, or a related field, or equivalent relevant experience.
4 years of experience in cybersecurity or a closely related technical security role.
Demonstrated ability to perform system administrator-level analysis across multiple platforms and operating systems in support of cyber investigations.
Strong analytical and problem-solving skills with the ability to identify, track, and assess adversary TTPs and suspicious activity.
Knowledge of intrusion detection methodologies, evidence preservation practices, and cyber defense and information security policies, procedures, and regulations.
Ability to support work in a U.S.-only staffing environment and satisfy any client-required background investigation or security requirements.
Preferred Qualifications
Relevant cybersecurity certifications such as GCDA, GNFA, CompTIA PenTest+ (Removed CISSP), CISM, or CompTIA CySA+.
Experience with reverse engineering, malware analysis, vulnerability research, and threat analysis in enterprise or government environments.
Familiarity with U.S. Army Corps of Engineers (USACE) IT policies and operational security requirements.
Experience preparing technical reports, incident summaries, and threat findings for stakeholders and operational leadership.
Job Specific Skills
Threat hunting and anomaly detection.
Log correlation and security event analysis.
Packet capture analysis and data parsing.
Malware analysis, reverse engineering, and binary analysis.
Threat intelligence analysis and TTP identification.
Incident response documentation and reporting.
Detection engineering collaboration and monitoring enhancement support.
Compensation Ranges
Compensation ranges for ASM Research positions vary depending on multiple factors; including but not limited to, location, skill set, level of education, certifications, client requirements, contract-specific affordability, government clearance and investigation level, and years of experience. The compensation displayed for this role is a general guideline based on these factors and is unique to each role. Monetary compensation is one component of ASM's overall compensation and benefits package for employees.
EEO Requirements
It is the policy of ASM that an individual's race, color, religion, sex, disability, age, sexual orientation or national origin are not and will not be considered in any personnel or management decisions. We affirm our commitment to these fundamental policies.
All recruiting, hiring, training, and promoting for all job classifications is done without regard to race, color, religion, sex, disability, or age. All decisions on employment are made to abide by the principle of equal employment.
Physical Requirements
The physical requirements described in "Knowledge, Skills and Abilities" above are representative of those which must be met by an employee to successfully perform the primary functions of this job. (For example, "light office duties' or "lifting up to 50 pounds" or "some travel" required.) Reasonable accommodations may be made to enable individuals with qualifying disabilities, who are otherwise qualified, to perform the primary functions.
Disclaimer
The preceding job description has been designed to indicate the general nature and level of work performed by employees within this classification. It is not designed to contain or be interpreted as a comprehensive inventory of all duties, responsibilities and qualifications required of employees assigned to this job.
$94,100 - $150,000
EEO Requirements
It is the policy of ASM that an individual's race, color, religion, sex, disability, age, gender identity, veteran status, sexual orientation or national origin are not and will not be considered in any personnel or management decisions. We affirm our commitment to these fundamental policies.
All recruiting, hiring, training, and promoting for all job classifications is done without regard to race, color, religion, sex, veteran status, disability, gender identity, or age. All decisions on employment are made to abide by the principle of equal employment.
$108.31k - $160k
...States Suitability/Public Trust Fully remote Information Technology Overview GovCIO is currently hiring for a remote Cyber Threat Analyst to support the US Courts. This position will be within United States and will be fully remote. Responsibilities...CyberFull timeCurrently hiringRemote workFlexible hours$66.9k - $82.1k
...strategies with infrastructure and application teams to contain threats while preserving evidence and minimizing operational disruption.... ...tools and service management platforms integrated with SOC and cyber defense functions. Certifications such as ITIL Foundation plus...CyberContract workWork experience placementWork at office$80.2k - $111.3k
...major incident handling while maintaining deep technical focus on threat containment and eradication. It also drives proactive... ...tools and service management platforms integrated with SOC and cyber defense functions. Certifications such as ITIL Foundation plus...CyberContract workWork experience placementWork at office$100.2k - $164.1k
...Blending cutting-edge technologies, unique skill sets, and proven cyber counterintelligence strategies, SpearTip partners with our... ...profits. We are driven to protect our clients from the ever-changing threat actors and become the gold standard in detecting zero-day...CyberFull timeTemporary workApprenticeshipLocal areaRemote workVisa sponsorshipFlexible hours$84.91k - $113.91k
...everything we do in support of our vision of a safe and secure cyber world. Our globally recognized, award-winning portfolio of certifications... ...(LLM) integrations, and AI-powered products for adversarial threats, model vulnerabilities, and supply chain risks. The AI Security...CyberWork experience placementWork at officeRemote workNight shift$60k - $100k
Maximus is seeking a cybersecurity professional in Cheyenne, Wyoming to provide advanced support for cybersecurity operations. The role includes responsibilities like leading incident containment efforts and ensuring compliance with federal cybersecurity guidance. Strong...Cyber$64.23k - $77.97k
...for improvements of policies, procedures, or systems. Identifies threats, vulnerabilities, and potential risks. Drafts security incident... ..., offering leading mission-ready capabilities in AI, cloud, cyber and software development. Join our Talent Community to stay up...CyberFull timeTemporary workFor contractorsLocal areaImmediate startRemote workWorldwideFlexible hours- ...Security Operations Center (SOC) Analyst II serves as a mid‑level cyber defender responsible for continuous monitoring, investigation,... ...operate and tune SOC technologies such as SIEM, EDR/XDR, IDS/IPS, and threat intelligence platforms while improving playbooks, use cases, and...CyberContract workWork at office
$138.2k - $179.65k
...Incident Response team to identify, bring up and mitigate security threats. Implement sophisticated security solutions powered by... ...highlight security improvement areas and lead initiatives to improve cyber hygiene in these areas. Coordinate standard processes for Artificial...CyberLive inLocal areaWorldwide$76.59k - $114.89k
...enterprise risk, municipal liability, property and casualty insurance, cyber risk, regulatory compliance, and operational resilience.This... ...continuity and/ or disaster recovery planning. Effective threat and awareness training to recognize potential risk and assess.Preferred...CyberWork at officeLocal areaRemote work$124.2k - $186.2k
...and maintaining its reputation as a trusted leader in data and AI security. The SOC is the first to respond to cyber security incidents, report on cyber threats, and recommend changes needed to further protect the organization. What you'll do: Monitor and respond...CyberLocal areaRemote work$243.87k - $286.9k
...The Senior Manager, Adversary Management is responsible for strategy, operational oversight, and governance of all aspects of cyber threat intelligence at Coinbase - to include ensuring intelligence support for the Security Operations and other Information Security intelligence...CyberLocal area$130k - $135k
...incident response, security operations, and security initiatives. Background in SOC operations, detection engineering, threat hunting, or cyber threat intelligence. Must be comfortable supporting a weekend schedule. ( 2 nd Shift WEEKEND schedule, Wednesday – Sunday...CyberFull timeRemote workFlexible hoursShift workWeekend workAfternoon shift$60k - $93.9k
...Apply patches, updates, and security configurations to servers and applications to maintain compliance with federal and enterprise cyber standards. Configure and manage backup and recovery solutions, verify successful execution, and support data restoration activities...CyberContract workWork at officeRemote work$167.28k - $196.8k
...~ Strong understanding and proven experience of formal program management methodologies ~ Working knowledge of and experience in cyber/security domain ~ Fluency in leveraging AI in daily workflows to enhance efficiency, drive process improvements, and deliver high-...CyberTemporary workLocal area- ...roles, this workshop is designed to enhance your interview preparation for a diverse range of positions, including Business Analyst, Cyber, Data Analyst, Finance, Management, MBA, and Product roles. Join us for a session of interview preparation to support your career...CyberRemote job
- ...business language; maintain SSOT. Cross‑Practice Integration: Coordinate with Problem, Change, Release, Service Continuity, and SOC/Cyber IR where service impact/security intersects; support PIRs and trend analysis. Readiness & Drills: Run tabletop exercises; review playbooks...CyberContract workWork experience placementWork at officeShift work
- ...Responsible for profit/loss, operating income, revenue. Responsible for organic growth. Minimum Qualifications Bachelor’s Degree in IT, Cyber Security Business, Engineering, Management or a related field. An Associate’s Degree and 10 years of experience may be substituted...CyberContract workWork at office
$71.4k - $151.9k
...job posts: Please be aware of fraudulent job postings that are not affiliated with Fiserv. Fraudulent job postings may be used by cyber criminals to target your personally identifiable information and/or to steal money or financial information. Any communications from...CyberRemote work$144.4k - $216.6k
...attitude. Executes with urgency. In‑depth understanding of reseller partner ecosystem. IT industry experience with knowledge of Cloud & Cyber. Worked with Enterprise scale National Reseller Partners such as Ahead, Guidepoint, ePlus, SHI, CDW, Insight, Trace3, Presidio or...CyberLocal areaRemote work$55.7k - $82.1k
...Incident Response Engineer, Jr. monitors enterprise security tools and logs to detect, analyze, and triage potential cybersecurity threats targeting mission‑critical systems and data. The role performs initial investigations, distinguishes false positives from genuine incidents...Contract workWork at officeShift work$186.9k - $234k
...complex alliance programs across global partner ecosystems. Sales Hunter Mentality: Demonstrated ability to identify, initiate, and... ...Operations Company, leads at the intersection of data protection, cyber resilience, and enterprise AI acceleration. Rubrik Security...CyberLocal areaRemote work- ...completes all annual compliance requirements such as External Certification Authority (ECA) renewal as well as annual training such as Cyber Awareness and PII to ensure access to the CMS system is maintained. Acts as a clinical Point of Contact (POC) for the supervisors...CyberContract workWork experience placement
$144.4k - $216.6k
...attitude Executes with urgency In depth understanding of reseller partner ecosystem IT industry experience with Knowledge of Cloud & Cyber Worked with Enterprise scale National Reseller Partners such as Ahead, Guidepoint, ePlus, SHI, CDW, Insight, Trace3, Presidio or...CyberLocal areaRemote work$75k - $85k
...A2B Tracking or similar IUID equipment tracking system experience CompTIA A+ or other certification in accordance with DoDM 8140 Cyber Workforce Qualification Program Matrix, 411 - Technical Support Specialist role Associate's degree in computer science, Electrical...CyberLong term contractContract workFlexible hoursShift work- ...the World's AI Transformation Rubrik (RBRK), the Security and AI Operations Company, leads at the intersection of data protection, cyber resilience, and enterprise AI acceleration. Rubrik Security Cloud delivers complete cyber resilience by securing, monitoring, and...CyberLocal areaImmediate start
$71.3k - $154k
...and service delivery. Prior experience managing programs that include call center, telephony, cloud/IT infrastructure sustainment, cyber security, and/or software application sustainment workstreams. Familiarity with ITIL-aligned service management, workforce...CyberContract workFor contractorsFor subcontractorWork at officeWorldwide$59.5k - $126.6k
...job posts: Please be aware of fraudulent job postings that are not affiliated with Fiserv. Fraudulent job postings may be used by cyber criminals to target your personally identifiable information and/or to steal money or financial information. Any communications from...CyberFull timeContract workTemporary workH1b$116k - $144k
...secure cloud infrastructure (Azure, or GCCH) to optimize performance and compliance. Collaborate with the security team to perform threat modeling and risk assessments, and address identified vulnerabilities. Monitor systems, logs, and events to detect security...Hourly payContract workLocal areaRemote work$100.7k - $181.3k
...experience for everyone. Our focus is simple: Cloud and Edge: Running apps closer to users for instant performance. Security : Neutralizing threats before they ever reach your data. Content Delivery : Scaling the world's biggest moments without a glitch. AI : Enabling our...Work experience placementWork at office
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Cyber Threat Hunter. Be the first to apply!


