Cyber Threat Hunter
$94.1k - $150kASM Research, An Accenture Federal Services Company
Position Overview
The Cyber Threat Hunter proactively protects enterprise environments from advanced cyber threats by analyzing network, endpoint, and log data to identify malicious activity that may evade conventional security controls. This role establishes normal traffic and data-flow baselines, detects anomalies, develops threat hypotheses, and investigates adversary tactics, techniques, and procedures to strengthen cyber defense and incident response operations. This role directly supports a proactive SOC model by contributing to detection engineering, monitoring enhancements, automation development and continuous gap analysis to identify and mitigate emerging threats before they materialize.
Key Responsibilities
Conduct proactive threat hunting across networks, endpoints, and security datasets to identify, isolate, and help eradicate advanced threats before they impact operations.
Analyze logs from multiple sources, including packet captures, correlation engines, parsed security data, and endpoint telemetry, to detect suspicious behavior and validate threat activity.
Establish and maintain baseline patterns for normal traffic, system activity, and data flows to improve anomaly detection and investigative accuracy.
Collaborate closely with SOC analysts and detection engineers to recommend new alerts, analytics, and monitoring logic based on threat hunting findings, emerging trends, and identified visibility gaps.
Develop automation scripts and workflows (using SOAR platforms, Python, PowerShell, or similar tools) to streamline threat hunting activities, automate repetitive analytical tasks, and reduce detection and response time.
Research and track adversary tactics, techniques, and procedures (TTPs), developing technical hypotheses and investigative leads based on threat intelligence and observed behaviors.
Support incident response activities by creating incident documentation, follow-up actions, reporting criteria, and recommendations that improve overall response maturity and operational resilience.
Examine and characterize malware and cyber threats, including viruses, worms, bots, rootkits, and Trojan horses, to determine threat nature, scope, and potential impact.
Apply reverse engineering and binary analysis techniques using tools such as Ghidra and IDA Pro to support vulnerability research and understand malicious code behavior.
Required Qualifications
Bachelor's degree in Information Technology, Computer Science, Cybersecurity, or a related field, or equivalent relevant experience.
4 years of experience in cybersecurity or a closely related technical security role.
Demonstrated ability to perform system administrator-level analysis across multiple platforms and operating systems in support of cyber investigations.
Strong analytical and problem-solving skills with the ability to identify, track, and assess adversary TTPs and suspicious activity.
Knowledge of intrusion detection methodologies, evidence preservation practices, and cyber defense and information security policies, procedures, and regulations.
Ability to support work in a U.S.-only staffing environment and satisfy any client-required background investigation or security requirements.
Preferred Qualifications
Relevant cybersecurity certifications such as GCDA, GNFA, CompTIA PenTest+ (Removed CISSP), CISM, or CompTIA CySA+.
Experience with reverse engineering, malware analysis, vulnerability research, and threat analysis in enterprise or government environments.
Familiarity with U.S. Army Corps of Engineers (USACE) IT policies and operational security requirements.
Experience preparing technical reports, incident summaries, and threat findings for stakeholders and operational leadership.
Job Specific Skills
Threat hunting and anomaly detection.
Log correlation and security event analysis.
Packet capture analysis and data parsing.
Malware analysis, reverse engineering, and binary analysis.
Threat intelligence analysis and TTP identification.
Incident response documentation and reporting.
Detection engineering collaboration and monitoring enhancement support.
Compensation Ranges
Compensation ranges for ASM Research positions vary depending on multiple factors; including but not limited to, location, skill set, level of education, certifications, client requirements, contract-specific affordability, government clearance and investigation level, and years of experience. The compensation displayed for this role is a general guideline based on these factors and is unique to each role. Monetary compensation is one component of ASM's overall compensation and benefits package for employees.
EEO Requirements
It is the policy of ASM that an individual's race, color, religion, sex, disability, age, sexual orientation or national origin are not and will not be considered in any personnel or management decisions. We affirm our commitment to these fundamental policies.
All recruiting, hiring, training, and promoting for all job classifications is done without regard to race, color, religion, sex, disability, or age. All decisions on employment are made to abide by the principle of equal employment.
Physical Requirements
The physical requirements described in "Knowledge, Skills and Abilities" above are representative of those which must be met by an employee to successfully perform the primary functions of this job. (For example, "light office duties' or "lifting up to 50 pounds" or "some travel" required.) Reasonable accommodations may be made to enable individuals with qualifying disabilities, who are otherwise qualified, to perform the primary functions.
Disclaimer
The preceding job description has been designed to indicate the general nature and level of work performed by employees within this classification. It is not designed to contain or be interpreted as a comprehensive inventory of all duties, responsibilities and qualifications required of employees assigned to this job.
$94,100 - $150,000
EEO Requirements
It is the policy of ASM that an individual's race, color, religion, sex, disability, age, gender identity, veteran status, sexual orientation or national origin are not and will not be considered in any personnel or management decisions. We affirm our commitment to these fundamental policies.
All recruiting, hiring, training, and promoting for all job classifications is done without regard to race, color, religion, sex, veteran status, disability, gender identity, or age. All decisions on employment are made to abide by the principle of equal employment.
- ...Responder to support the Administrative Offices of the United States Courts in Washington, DC. This role involves incident response and threat hunting, requiring a minimum of 5 years of experience across cloud and non-cloud environments, as well as proficiency in tools like...Cyber
- cFocus Software seeks a Mid Level Cyber Threat Hunter to join our program supporting US Courts in Washington, DC. This position is 4 days a week onsite in DC and one day remote. Required Qualifications include: ~3- 5 years of experience performing threat hunts & incident...CyberWork at officeRemote work
- cFocus Software seeks a Threat Hunter to support the Administrative Offices of the United States Courts (AOUSC) in Washington, DC. This position... ...custom scripts provided by the AOUSC. Track and document cyber defense incidents from initial detection through final...CyberWork at officeRemote work
- ...Description ***** This position is contingent upon contract award ***** Overview SOSi is seeking a Senior Threat Hunter to support proactive cyber defense activities in alignment with our customer. This role is responsible for conducting threat hunting operations...CyberFull timeContract workWork at officeWorldwideMonday to FridayWeekend workAfternoon shift
- ...to join the Department of Commerce in Washington D.C. The position requires leading incident response activities and conducting cyber threat analysis. To qualify, applicants must have specialized experience and demonstrate skills in attention to detail, customer service...CyberWork at office
$107.9k - $195.05k
Description The Leidos Digital Modernization sector is looking for a Cyber Threat Hunter to support a Defensive Cyber Operations (DCO) team in Washington, DC. This position is expected to become available in Summer 2026. Our team provides mission critical, 24/7 operational...CyberSummer workCasual workLocal areaImmediate startRemote workShift workNight shiftRotating shift- A leading technology company is seeking a Cyber Threat Hunter to join their Defensive Cyber Operations team in Washington, DC. The role involves developing hunt campaigns, conducting advanced telemetry analysis, and maintaining high levels of situational awareness regarding...CyberRemote work
- A leading technology firm is seeking a Cyber Threat Hunter to join their team in Washington, DC. This hybrid position involves developing and executing threat hunting campaigns, analyzing complex datasets, and crafting detailed technical reports. Candidates should have...Cyber
- A technology consulting firm is seeking a Threat Hunter for the Administrative Offices of the United States Courts in Washington, DC. This... ...hypothesis-based threat hunts, making critical contributions to cyber defense efforts. #J-18808-Ljbffr cFocus Software IncorporatedCyberRemote job
- Base One Technologies in Washington, DC, is looking for a Junior Cyber Network Defense Analyst to provide 24x7 support, monitor network... .../SCI clearance is mandatory. This role involves shift work and demands proactive threat analysis. #J-18808-Ljbffr Base One TechnologiesCyberShift work
- A cybersecurity firm in Arlington, Virginia, is seeking a Computer Network Defense Analyst to monitor network activity, analyze cyber threats, and recommend proactive measures to contain incidents. The ideal candidate will have over 5 years of experience in cyber defense...Cyber
- ManTech seeks a motivated Cyber Threat Hunter to join our team in McLean, VA. The role involves leveraging technical expertise to detect and mitigate cyber threats, utilizing methodologies like MITRE ATT&CK and conducting threat hunts based on internal data. Qualifications...Cyber
- MANTECH seeks a motivated, career and customer-oriented Cyber Threat Hunter to join our team in Mclean, VA . The Cyber Threat Hunter will leverage their strong technical background and knowledge to proactively detect, investigate, and mitigate cyber threats within our...CyberWork at officeLocal area
- A minority-owned technology firm in Arlington, VA, is seeking an Incident Response Expert / Cyber Eviction Analyst. This role requires 8+ years of cyber incident response experience and the ability to manage critical incidents effectively. The ideal candidate will have...Cyber
$107.93k - $188.9k
Deloitte is seeking a Threat Hunter, Cyber Defense & Resilience to support proactive cyber threat detection, analysis, and response in complex client environments. This role focuses on identifying adversary behavior, investigating suspicious activity, and improving defensive...Cyber- A leading cybersecurity firm is looking for Cyber Eviction Analysts in Arlington, Virginia. This role involves incident response, analyzing threats, and advising technical personnel on countermeasures. Candidates must have active TS/SCI clearance, a relevant degree, and...Cyber
- ...Candidates must possess a TS/SCI clearance and have at least 8 years of relevant experience in incident response, knowledge of operational threat environments, and strong communication skills. This position values collaboration and encourages innovation in tackling complex...CyberRemote work
- ...footprint within a Federal IT sector. Requirements US Citizenship Ability to obtain a Public Trust Clearance GCTI or relevant vendor Cyber Threat Intelligence certification, such as Mandiant Cyber Threat Intelligence Analysis Certification 5 years' experience in conducting...Cyber
- ...will be required to have US Citizenship and the ability to obtain a Public Trust Clearance, along with significant experience in cyber threat intelligence analysis. The role demands expertise in evaluating threat intelligence, producing comprehensive reports, and...Cyber
- A cybersecurity firm in Arlington, VA seeks a Cyber Threat Intelligence Analyst II to proactively identify and respond to cyber threats. This role requires U.S. citizenship, an active TS/SCI clearance, and 5+ years of relevant experience. Responsibilities include analyzing...Cyber
- A leading cybersecurity firm is seeking a Cyber Eviction Analyst to join their incident response team in Arlington, Virginia. The role involves conducting proactive threat hunting, analyzing security breaches, and communicating complex findings to stakeholders. Candidates...Cyber
- Solutions Technology Inc. (STI) is seeking a Cyber Eviction Analyst in Arlington, Virginia. This role entails proactive threat hunting, incident response, and technical analysis focusing on complex cybersecurity challenges. Candidates must have 8+ years of relevant experience...Cyber
- A leading cybersecurity firm is seeking a Principal Threat Intelligence Researcher to deliver critical intelligence insights for clients. This remote role requires at least 7 years in the cyber threat intelligence field, exceptional analytical and communication skills,...CyberRemote work
- ...Category: Threat SME Location: Washington DC Citizenship Required: United States Citizenship Clearance Type: Background... ...techniques, and patterns across domains including transnational crime, cyber-enabled threats, foreign influence, and protective security risks...CyberContract workWork at officeRemote workWorldwideShift workDay shift
- A leading cybersecurity solutions provider in Arlington, Virginia is seeking motivated individuals to support cyber threat intelligence efforts. Ideal candidates will have 5+ years of experience, U.S. Citizenship, and an active TS/SCI Clearance. Responsibilities include...Cyber
- A cybersecurity solutions provider is seeking a Jr Industrial Control System Cyber Threat Intelligence Analyst in Arlington, VA. The ideal candidate should hold a Bachelor's degree with at least 2 years of relevant experience and have hands-on capabilities in cyber incident...Cyber
- A leading cybersecurity firm in Arlington, Virginia is seeking Cyber Network Defense Analysts to support critical missions by analyzing network traffic and identifying threats. The ideal candidate requires U.S. Citizenship, active TS/SCI Clearance, and 5+ years of experience...Cyber
- The Hong Kong Study Skills Research Institute is looking for a Senior Cyber Threat Intelligence Analyst to work fully remote, supporting cybersecurity initiatives. This position requires active Public Trust clearance. The ideal candidate will have extensive experience...CyberRemote job
- A government contractor in Washington, DC is seeking a Lead Cyber Threat Analyst to oversee cybersecurity operations for enterprise systems. The ideal candidate will have significant experience in cybersecurity, strong leadership skills, and relevant certifications such...CyberFor contractors
$120k - $132k
SkyePoint Decisions, Inc. seeks a Threat Analyst to join their team in Arlington, VA. This onsite position requires expertise in cybersecurity... ...have at least a Bachelor's degree and extensive experience in cyber threat analysis. The role includes cataloging threat activity...Cyber
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Cyber Threat Hunter. Be the first to apply!

