Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

Cyber Threat Hunter

$94.1k - $150k

ASM Research, An Accenture Federal Services Company

Position Overview

The Cyber Threat Hunter proactively protects enterprise environments from advanced cyber threats by analyzing network, endpoint, and log data to identify malicious activity that may evade conventional security controls. This role establishes normal traffic and data-flow baselines, detects anomalies, develops threat hypotheses, and investigates adversary tactics, techniques, and procedures to strengthen cyber defense and incident response operations. This role directly supports a proactive SOC model by contributing to detection engineering, monitoring enhancements, automation development and continuous gap analysis to identify and mitigate emerging threats before they materialize.

Key Responsibilities

  • Conduct proactive threat hunting across networks, endpoints, and security datasets to identify, isolate, and help eradicate advanced threats before they impact operations.

  • Analyze logs from multiple sources, including packet captures, correlation engines, parsed security data, and endpoint telemetry, to detect suspicious behavior and validate threat activity.

  • Establish and maintain baseline patterns for normal traffic, system activity, and data flows to improve anomaly detection and investigative accuracy.

  • Collaborate closely with SOC analysts and detection engineers to recommend new alerts, analytics, and monitoring logic based on threat hunting findings, emerging trends, and identified visibility gaps.

  • Develop automation scripts and workflows (using SOAR platforms, Python, PowerShell, or similar tools) to streamline threat hunting activities, automate repetitive analytical tasks, and reduce detection and response time.

  • Research and track adversary tactics, techniques, and procedures (TTPs), developing technical hypotheses and investigative leads based on threat intelligence and observed behaviors.

  • Support incident response activities by creating incident documentation, follow-up actions, reporting criteria, and recommendations that improve overall response maturity and operational resilience.

  • Examine and characterize malware and cyber threats, including viruses, worms, bots, rootkits, and Trojan horses, to determine threat nature, scope, and potential impact.

  • Apply reverse engineering and binary analysis techniques using tools such as Ghidra and IDA Pro to support vulnerability research and understand malicious code behavior.

Required Qualifications

  • Bachelor's degree in Information Technology, Computer Science, Cybersecurity, or a related field, or equivalent relevant experience.

  • 4 years of experience in cybersecurity or a closely related technical security role.

  • Demonstrated ability to perform system administrator-level analysis across multiple platforms and operating systems in support of cyber investigations.

  • Strong analytical and problem-solving skills with the ability to identify, track, and assess adversary TTPs and suspicious activity.

  • Knowledge of intrusion detection methodologies, evidence preservation practices, and cyber defense and information security policies, procedures, and regulations.

  • Ability to support work in a U.S.-only staffing environment and satisfy any client-required background investigation or security requirements.

Preferred Qualifications

  • Relevant cybersecurity certifications such as GCDA, GNFA, CompTIA PenTest+ (Removed CISSP), CISM, or CompTIA CySA+.

  • Experience with reverse engineering, malware analysis, vulnerability research, and threat analysis in enterprise or government environments.

  • Familiarity with U.S. Army Corps of Engineers (USACE) IT policies and operational security requirements.

  • Experience preparing technical reports, incident summaries, and threat findings for stakeholders and operational leadership.

Job Specific Skills

  • Threat hunting and anomaly detection.

  • Log correlation and security event analysis.

  • Packet capture analysis and data parsing.

  • Malware analysis, reverse engineering, and binary analysis.

  • Threat intelligence analysis and TTP identification.

  • Incident response documentation and reporting.

  • Detection engineering collaboration and monitoring enhancement support.

Compensation Ranges

Compensation ranges for ASM Research positions vary depending on multiple factors; including but not limited to, location, skill set, level of education, certifications, client requirements, contract-specific affordability, government clearance and investigation level, and years of experience. The compensation displayed for this role is a general guideline based on these factors and is unique to each role. Monetary compensation is one component of ASM's overall compensation and benefits package for employees.

EEO Requirements

It is the policy of ASM that an individual's race, color, religion, sex, disability, age, sexual orientation or national origin are not and will not be considered in any personnel or management decisions. We affirm our commitment to these fundamental policies.

All recruiting, hiring, training, and promoting for all job classifications is done without regard to race, color, religion, sex, disability, or age. All decisions on employment are made to abide by the principle of equal employment.

Physical Requirements

The physical requirements described in "Knowledge, Skills and Abilities" above are representative of those which must be met by an employee to successfully perform the primary functions of this job. (For example, "light office duties' or "lifting up to 50 pounds" or "some travel" required.) Reasonable accommodations may be made to enable individuals with qualifying disabilities, who are otherwise qualified, to perform the primary functions.

Disclaimer

The preceding job description has been designed to indicate the general nature and level of work performed by employees within this classification. It is not designed to contain or be interpreted as a comprehensive inventory of all duties, responsibilities and qualifications required of employees assigned to this job.

$94,100 - $150,000

EEO Requirements

It is the policy of ASM that an individual's race, color, religion, sex, disability, age, gender identity, veteran status, sexual orientation or national origin are not and will not be considered in any personnel or management decisions. We affirm our commitment to these fundamental policies.

All recruiting, hiring, training, and promoting for all job classifications is done without regard to race, color, religion, sex, veteran status, disability, gender identity, or age. All decisions on employment are made to abide by the principle of equal employment.

Vacancy posted 2 days ago
Similar jobs that could be interesting for youBased on the Cyber Threat Hunter in Washington DC vacancy
  •  ...Responder to support the Administrative Offices of the United States Courts in Washington, DC. This role involves incident response and threat hunting, requiring a minimum of 5 years of experience across cloud and non-cloud environments, as well as proficiency in tools like... 
    Cyber

    cFocus Software Incorporated

    Washington DC
    5 days ago
  • cFocus Software seeks a Mid Level Cyber Threat Hunter to join our program supporting US Courts in Washington, DC. This position is 4 days a week onsite in DC and one day remote. Required Qualifications include: ~3- 5 years of experience performing threat hunts & incident... 
    Cyber
    Work at office
    Remote work

    cFocus Software Incorporated

    Washington DC
    1 day ago
  • cFocus Software seeks a Threat Hunter to support the Administrative Offices of the United States Courts (AOUSC) in Washington, DC.  This position...  ...custom scripts provided by the AOUSC. Track and document cyber defense incidents from initial detection through final... 
    Cyber
    Work at office
    Remote work

    cFocus Software Incorporated

    Washington DC
    5 days ago
  •  ...to join the Department of Commerce in Washington D.C. The position requires leading incident response activities and conducting cyber threat analysis. To qualify, applicants must have specialized experience and demonstrate skills in attention to detail, customer service... 
    Cyber
    Work at office

    US Office of the Secretary

    Washington DC
    3 days ago
  •  ...Description ***** This position is contingent upon contract award ***** Overview SOSi is seeking a Senior Threat Hunter to support proactive cyber defense activities in alignment with our customer. This role is responsible for conducting threat hunting operations... 
    Cyber
    Full time
    Contract work
    Work at office
    Worldwide
    Monday to Friday
    Weekend work
    Afternoon shift

    SOS International LLC

    Washington DC
    5 days ago
  • $107.9k - $195.05k

    Overview The Leidos Digital Modernization sector is looking for a Cyber Threat Hunter to support a Defensive Cyber Operations (DCO) team in Washington, DC. This position is expected to become available in Summer 2026. Our team provides mission critical, 24/7 operational... 
    Cyber
    Summer work
    Casual work
    Local area
    Remote work
    Shift work
    Night shift
    Rotating shift

    Leidos

    Washington DC
    4 days ago
  • A leading technology company is seeking a Cyber Threat Hunter to join their Defensive Cyber Operations team in Washington, DC. The role involves developing hunt campaigns, conducting advanced telemetry analysis, and maintaining high levels of situational awareness regarding... 
    Cyber
    Remote work

    Leidos Inc

    Washington DC
    3 days ago
  • A leading technology firm is seeking a Cyber Threat Hunter to join their team in Washington, DC. This hybrid position involves developing and executing threat hunting campaigns, analyzing complex datasets, and crafting detailed technical reports. Candidates should have... 
    Cyber

    Leidos

    Washington DC
    4 days ago
  • A technology consulting firm is seeking a Threat Hunter for the Administrative Offices of the United States Courts in Washington, DC. This...  ...hypothesis-based threat hunts, making critical contributions to cyber defense efforts. #J-18808-Ljbffr cFocus Software Incorporated
    Cyber
    Remote job

    cFocus Software Incorporated

    Washington DC
    5 days ago
  • Base One Technologies in Washington, DC, is looking for a Junior Cyber Network Defense Analyst to provide 24x7 support, monitor network...  .../SCI clearance is mandatory. This role involves shift work and demands proactive threat analysis. #J-18808-Ljbffr Base One Technologies
    Cyber
    Shift work

    Base One Technologies

    Washington DC
    4 days ago
  • A cybersecurity firm in Arlington, Virginia, is seeking a Computer Network Defense Analyst to monitor network activity, analyze cyber threats, and recommend proactive measures to contain incidents. The ideal candidate will have over 5 years of experience in cyber defense... 
    Cyber

    Base One Technologies

    Arlington, VA
    2 days ago
  • MANTECH seeks a motivated, career and customer-oriented Cyber Threat Hunter to join our team in Mclean, VA . The Cyber Threat Hunter will leverage their strong technical background and knowledge to proactively detect, investigate, and mitigate cyber threats within our... 
    Cyber
    Work at office
    Local area

    ManTech

    Mc Lean, VA
    5 days ago
  • A minority-owned technology firm in Arlington, VA, is seeking an Incident Response Expert / Cyber Eviction Analyst. This role requires 8+ years of cyber incident response experience and the ability to manage critical incidents effectively. The ideal candidate will have... 
    Cyber

    Node.Digital LLC

    Arlington, VA
    5 days ago
  • $107.93k - $188.9k

    Deloitte is seeking a Threat Hunter, Cyber Defense & Resilience to support proactive cyber threat detection, analysis, and response in complex client environments. This role focuses on identifying adversary behavior, investigating suspicious activity, and improving defensive... 
    Cyber

    Deloitte LLP

    Washington DC
    5 days ago
  • A leading cybersecurity firm is looking for Cyber Eviction Analysts in Arlington, Virginia. This role involves incident response, analyzing threats, and advising technical personnel on countermeasures. Candidates must have active TS/SCI clearance, a relevant degree, and... 
    Cyber

    NewGen Technologies

    Arlington, VA
    4 days ago
  •  ...Candidates must possess a TS/SCI clearance and have at least 8 years of relevant experience in incident response, knowledge of operational threat environments, and strong communication skills. This position values collaboration and encourages innovation in tackling complex... 
    Cyber
    Remote work

    Nightwing

    Arlington, VA
    1 day ago
  •  ...footprint within a Federal IT sector. Requirements US Citizenship Ability to obtain a Public Trust Clearance GCTI or relevant vendor Cyber Threat Intelligence certification, such as Mandiant Cyber Threat Intelligence Analysis Certification 5 years' experience in conducting... 
    Cyber

    NewGen Technologies (Maryland)

    Washington DC
    2 days ago
  •  ...will be required to have US Citizenship and the ability to obtain a Public Trust Clearance, along with significant experience in cyber threat intelligence analysis. The role demands expertise in evaluating threat intelligence, producing comprehensive reports, and... 
    Cyber

    NewGen Technologies (Maryland)

    Washington DC
    2 days ago
  • A leading cybersecurity firm is seeking a Cyber Eviction Analyst to join their incident response team in Arlington, Virginia. The role involves conducting proactive threat hunting, analyzing security breaches, and communicating complex findings to stakeholders. Candidates... 
    Cyber

    Solutions Technology, Inc / STI Health & Wellness

    Arlington, VA
    1 day ago
  • A cybersecurity firm in Arlington, VA seeks a Cyber Threat Intelligence Analyst II to proactively identify and respond to cyber threats. This role requires U.S. citizenship, an active TS/SCI clearance, and 5+ years of relevant experience. Responsibilities include analyzing... 
    Cyber

    ARGO Cyber Systems, LLC

    Arlington, VA
    4 days ago
  • Solutions Technology Inc. (STI) is seeking a Cyber Eviction Analyst in Arlington, Virginia. This role entails proactive threat hunting, incident response, and technical analysis focusing on complex cybersecurity challenges. Candidates must have 8+ years of relevant experience... 
    Cyber

    Solutions Technology Inc. (STI)

    Arlington, VA
    4 days ago
  • A leading cybersecurity firm is seeking a Principal Threat Intelligence Researcher to deliver critical intelligence insights for clients. This remote role requires at least 7 years in the cyber threat intelligence field, exceptional analytical and communication skills,... 
    Cyber
    Remote work

    Palo Alto Networks

    Arlington, VA
    4 days ago
  •  ...Category: Threat SME Location: Washington DC Citizenship Required: United States Citizenship Clearance Type: Background...  ...techniques, and patterns across domains including transnational crime, cyber-enabled threats, foreign influence, and protective security risks... 
    Cyber
    Contract work
    Work at office
    Remote work
    Worldwide
    Shift work
    Day shift

    TMPC INC

    Washington DC
    1 day ago
  • A leading cybersecurity firm in Arlington, Virginia is seeking Cyber Network Defense Analysts to support critical missions by analyzing network traffic and identifying threats. The ideal candidate requires U.S. Citizenship, active TS/SCI Clearance, and 5+ years of experience... 
    Cyber

    NewGen Technologies

    Arlington, VA
    1 day ago
  • A cybersecurity solutions provider is seeking a Jr Industrial Control System Cyber Threat Intelligence Analyst in Arlington, VA. The ideal candidate should hold a Bachelor's degree with at least 2 years of relevant experience and have hands-on capabilities in cyber incident... 
    Cyber

    Peraton

    Arlington, VA
    2 days ago
  • A leading cybersecurity solutions provider in Arlington, Virginia is seeking motivated individuals to support cyber threat intelligence efforts. Ideal candidates will have 5+ years of experience, U.S. Citizenship, and an active TS/SCI Clearance. Responsibilities include... 
    Cyber

    NewGen Technologies

    Arlington, VA
    4 days ago
  • A government contractor in Washington, DC is seeking a Lead Cyber Threat Analyst to oversee cybersecurity operations for enterprise systems. The ideal candidate will have significant experience in cybersecurity, strong leadership skills, and relevant certifications such... 
    Cyber
    For contractors

    DirectViz Solutions, LLC

    Washington DC
    1 day ago
  • The Hong Kong Study Skills Research Institute is looking for a Senior Cyber Threat Intelligence Analyst to work fully remote, supporting cybersecurity initiatives. This position requires active Public Trust clearance. The ideal candidate will have extensive experience... 
    Cyber
    Remote job

    Hong Kong Study Skills Research Institute

    Washington DC
    5 days ago
  • $120k - $132k

    SkyePoint Decisions, Inc. seeks a Threat Analyst to join their team in Arlington, VA. This onsite position requires expertise in cybersecurity...  ...have at least a Bachelor's degree and extensive experience in cyber threat analysis. The role includes cataloging threat activity... 
    Cyber

    SkyePoint Decisions, Inc.

    Arlington, VA
    4 days ago
  • A technology consulting firm in Arlington seeks a Cyber Threat Intelligence Analyst to support operational decision-making by providing timely intelligence on cyber threats. This role requires U.S. Citizenship and an active TS/SCI clearance, with a minimum of two years... 
    Cyber

    Limelight Health

    Arlington, VA
    5 days ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to Cyber Threat Hunter. Be the first to apply!