Cyber Threat Hunter
$107.9k - $195.05kLeidos
Description The Leidos Digital Modernization sector is looking for a Cyber Threat Hunte r to support a Defensive Cyber Operations (DCO) team in Washington, DC. This position is expected to become available in Summer 2026. Our team provides mission critical, 24/7 operational support to the customer's mission of protecting federal networked systems and services from cyber threats impacting national security. This hybrid position is primarily on-site, with potential for up to 20% telework. While this position will primarily work during core hours (0600 - 1600), this position will be supporting a team of analysts working 24/7 rotating shifts (days, swings, nights). As such, occasional shift work or weekend work may be required to fill unexpected gaps in coverage.
PRIMARY RESPONSIBILITIES:
Hypothesis-Driven Hunting: Develop and execute structured hunt campaigns by forming theories on adversary persistence and lateral movement based on the latest TTPs. Advanced Telemetry Analysis: Query and correlate massive datasets across cloud resources, identity systems, and network infrastructure to identify "low and slow" attacks that evade automated detection. Detection Engineering Pipeline: Partner with detection teams to transform manual hunt discoveries into high-fidelity, automated detection rules (SIEM/EDR). Automated Countermeasure Deployment: Design and maintain automation scripts to scale threat mitigation and isolate compromised assets at machine speed. APT Targeting & Engagement: Utilize theMITRE ATT&CKframework to proactively search for Advanced Persistent Threat (APT) activity, assuming a "breach mentality" to uncover hidden adversaries. Indications & Warnings (I&W) Integration: Analyze internal and external telemetry to identify early triggers and "smoke" that signal an imminent or ongoing compromise. Tactical Reporting & Metrics: Author detailed technical hunt reports summarizing findings, operational gaps, and measurable improvements to the organization's security posture. Situational Awareness: Maintain a deep understanding of the current threat landscape, focusing on how new vulnerabilities or malware variants could be exploited within the customer enterprise.BASIC QUALIFICATIONS:
Bachelor's Degree with 8+ yrs of experience or Master's Degree with 6+ yrs of relevant experience; additional years of experience may be substituted in lieu of degrees. DoD 8570 IAT Level II/III: Must hold an IAT Level II or higher certification (or obtain within 180 days). (e.g., CompTIA Security +, CySA+, GSEC and SSCP) or (CASP+ CE, CCNP Security, CISA, GCED, and GCIH) DoD 8570 CSSP Analyst: Must hold a CSSP Analyst certification (or obtain within 180 days). (e.g., CompTIA CySA+, Cloud+, GIAC Global Information Assurance Certification (GCIA)) DoD 8570 CSSP Infrastructure Support: Must hold a CSSP Infrastructure Support certification (or obtain within 180 days). (e.g., CompTIA CySA+, Cloud+, EC-Council CEH, CND, CHFI, GIAC GICSP, and ISC2 SSCP) Technical Proficiency: Expert knowledge of networking protocols (TCP/IP, DNS, and common security elements like IDS/IPS and next-gen firewalls. Data Analysis: Direct experience analyzing complex packet captures and endpoint logs to reconstruct attack timelines. Security Clearance: Current DoD TS/SCI security clearance and ability to pass additional customer suitability screenings prior to start and maintain throughout employment .PREFERRED SKILLS:
Hunt Methodology:Demonstrated experience planning and executing hunt missions in complex, hybrid-cloud environments. Query Languages:Expert proficiency inSPL(Splunk),KQL(Kusto), orDSL(Elastic) for large-scale data mining. Scripting for Security:Advanced use ofPython,PowerShell, orBashto automate repetitive hunt tasks and data enrichment. Forensic Insight:Previous experience in Digital Forensics or Incident Response (DFIR) to assist in root-cause analysis. Cloud Infrastructure:Familiarity with hunting within AWS, Azure, O365, and containerized workloads. AI-Enhanced Defense:Experience using AI-driven analytics to sift through noise and identify anomalous behavioral patterns. #ms If you're looking for comfort, keep scrolling. At Leidos, we outthink, outbuild, and outpace the status quo - because the mission demands it. We're not hiring followers. We're recruiting the ones who disrupt, provoke, and refuse to fail. Step 10 is ancient history. We're already at step 30 - and moving faster than anyone else dares. Original Posting: March 12, 2026 For U.S. Positions: While subject to change based on business needs, Leidos reasonably anticipates that this job requisition will remain open for at least 3 days with an anticipated close date of no earlier than 3 days after the original posting date as listed above. Pay Range: Pay Range $107,900.00 - $195,050.00 The Leidos pay range for this job level is a general guideline onlyand not a guarantee of compensation or salary. Additional factors considered in extending an offer include (but are not limited to) responsibilities of the job, education, experience, knowledge, skills, and abilities, as well as internal equity, alignment with market data, applicable bargaining agreement (if any), or other law. About Leidos Leidos is an industry and technology leader serving government and commercial customers with smarter, more efficient digital and mission innovations. Headquartered in Reston, Virginia, with 47,000 global employees, Leidos reported annual revenues of approximately $16.7 billion for the fiscal year ended January 3, 2025. For more information, visit . Pay and Benefits Pay and benefits are fundamental to any career decision. That's why we craft compensation packages that reflect the importance of the work we do for our customers. Employment benefits include competitive compensation, Health and Wellness programs, Income Protection, Paid Leave and Retirement. More details are available at . Securing Your Data Beware of fake employment opportunities using Leidos' name. Leidos will never ask you to provide payment-related information during any part of the employment application process (i.e., ask you for money), nor will Leidos ever advance money as part of the hiring process (i.e., send you a check or money order before doing any work). Further, Leidos will only communicate with you through emails that are generated by the Leidos.com automated system - never from free commercial services (e.g., Gmail, Yahoo, Hotmail) or via WhatsApp, Telegram, etc. If you received an email purporting to be from Leidos that asks for payment-related information or any other personal information (e.g., about you or your previous employer), and you are concerned about its legitimacy, please make us aware immediately by emailing us at View email address on click.appcast.io . If you believe you are the victim of a scam, contact your local law enforcement and report the incident to the U.S. Federal Trade Commission ( . Commitment to Non-Discrimination All qualified applicants will receive consideration for employment without regard to sex, race, ethnicity, age, national origin, citizenship, religion, physical or mental disability, medical condition, genetic information, pregnancy, family structure, marital status, ancestry, domestic partner status, sexual orientation, gender identity or expression, veteran or military status, or any other basis prohibited by law. Leidos will also consider for employment qualified applicants with criminal histories consistent with relevant laws.REQNUMBER: R-00178196
All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability or veteran status. Leidos will consider qualified applicants with criminal histories for employment in accordance with relevant Laws. Leidos is an equal opportunity employer/disability/vet. Leidos$107.9k - $195.05k
Overview The Leidos Digital Modernization sector is looking for a Cyber Threat Hunter to support a Defensive Cyber Operations (DCO) team in Washington, DC. This position is expected to become available in Summer 2026. Our team provides mission critical, 24/7 operational...CyberSummer workCasual workLocal areaRemote workShift workNight shiftRotating shift- Cyber Threat Hunter Bethesda, MD Role Summary: Mid-level hunter conducting proactive threat hunts, identifying behavioral anomalies, and maturing the NIH enterprise threat hunting program. Must-Have Skills: 3-5 years threat hunting, SOC, IR, or detection engineering experience...Cyber
$120k - $135k
## Cybersecurity Threat HunterApplylocations: (North America) Adelphi, MDtime type: Full... ...timeStateside Exempt 3.4**Cybersecurity Threat Hunter****Security Operations****Full-time,... ...consultation on threat hunting methodologies and cyber adversary techniques.* Maintain awareness...CyberFull timePart timeImmediate startFlexible hours- Booz Allen Hamilton is seeking a Cyber Threat Hunter (Mid) to advance threat hunting across enterprise networks, leveraging MITRE ATT&CK and threat intelligence. You will develop analytics, refine detections, and collaborate with SOC, IR, and CTI teams to improve visibility...Cyber
- Invictus International is seeking a Cybersecurity Threat Analyst Subject Matter Expert IV to serve as the senior technical authority for proactive threat hunting within the SOC in Alexandria, VA. The role requires TS/SCI clearance with CI polygraph eligibility and hands...Cyber
- Mid Level Cyber Threat Hunter cFocus Software seeks a Mid Level Cyber Threat Hunter to join our program supporting US Courts in Washington, DC. This position is 4 days a week onsite in DC and one day remote. Required Qualifications include: 5+ years of experience performing...CyberWork at officeRemote work
- ...skilled digital forensics and incident response professional to join our security operations. The role focuses on investigations, threat hunting, malware analysis, and proactive defense to strengthen enterprise security across enterprise infrastructure. The candidate...Cyber
$62k - $141k
Job Number: R0248304 Cyber Threat Hunter, Mid The Opportunity: Cyber threats are evolving, and perimeter security and automated protection aren't enough, it's time to go threat hunting. We need your cyber knowledge to detect advanced cyber threats. Instead of letting...CyberFull timeContract workPart timeWork at officeLocal areaRemote work$62k - $141k
Cyber Threat Hunter, Mid The Opportunity: Cyber threats are evolving, and perimeter security and automated protection aren’t enough, it’s time to go threat hunting. We need your cyber knowledge to detect advanced cyber threats. Instead of letting the attackers come to us...CyberFull timeContract workPart timeWork at officeLocal areaRemote work- ...Description Job Description Title: Senior Cybersecurity Threat Hunter III Location: Alexandria, VA Clearance: TS/SCI with the... ...hands-on experience conducting threat hunting, advanced cyber analysis, or adversary-focused investigations Strong knowledge...Cyber
- Cyber Threat Hunter Own your opportunity at GDIT and you'll help improve how agencies operate. Our work depends on a Cyber Threat Hunter joining our team to continually strengthen the cyber defensive posture of the DoDIN-A (NG) in line with DoD and Army cybersecurity guidance...CyberFull timeContract workWork experience placement
$75.2k - $158.1k
Job Title: Cyber Threat Hunter Job Category: Information Technology Time Type: Full time Minimum Clearance Required to Start: TS/SCI Employee Type: Regular Percentage of Travel Required: Up to 10% Type of Travel: Local * * * The Opportunity CACI is seeking a cyber...CyberFull timeContract workWork experience placementLocal areaFlexible hours- Position Description - Cyber Threat Hunter We are GDIT. We stay at the forefront of innovation to solve complex technical challenges. Own your opportunity at GDIT and you’ll help improve how agencies operate. Our work depends on a Cyber Threat Hunter joining our team to...CyberFull timeContract workWork experience placement
- ...worldwide.Job Description*** This position is contingent upon contract award ***OverviewSOSi is seeking a Senior Threat Hunter to support proactive cyber defense activities in alignment with our customer. This role is responsible for conducting threat hunting operations...CyberContract workWork at officeWorldwideMonday to FridayWeekend workAfternoon shift
$100k - $141.3k
...an impact. Join us!Job Description:The role will work with all Cyber Defense operational and technical teams within Global... ...preventative, and proactive controls.ResponsibilitiesThe position of Threat Hunter is responsible for analyzing and correlating large data sets to...CyberFull timeWork at officeFlexible hoursDay shift$104k - $166k
ResponsibilitiesPeraton's Cyber Mission sector is looking for a Sr Threat Hunter to support a SOC.Location: Chandler, AZ or Washington DC.Role and Responsibility:Conduct proactive, intelligence-driven threat hunting to identify malicious activity that evades traditional...CyberContract workShift work$125k - $150k
...prioritizing speed, ownership, and execution over bureaucracy. Senior Threat Hunter Analyst Location: Washington, DC, Ft. Collins, CO, or Kansas... ...better over time. You work in close coordination with the Cyber Threat Intelligence team, maintaining threat indicator feeds...CyberFull timeWork experience placementLocal areaRemote workFlexible hoursShift work$114.75k - $155.25k
...Trust/Other Required: None Job Family: Cyber and IT Risk Management Job Qualifications... ...Risks, Cyber Security Architecture, Cyber Threat Hunting, Threat Detection Certifications:... ...: Position Description - Cyber Threat Hunter We are GDIT. We stay at the forefront of...CyberFull timeContract workTemporary workWork experience placementImmediate startRemote workWorldwideFlexible hours$126.23k - $210.38k
...currently seeking a Cybersecurity SME - Incident Response and Threat Hunter to join our team in Merrifield, Virginia (US-VA), United States... ...if requested. Preferred Qualifications: DCWF Role 511 - Cyber Defense Analyst / 531 – Cyber Defense Incident Responder...CyberTemporary workWork at officeRemote workFlexible hours- ...Required Qualifications: Experience with intelligence analysis principles or cyber threat intelligence (CTI) principles, including the ability to collect, analyze, and assess threat information. Specific experience conducting CTI analysis focused on China cyber...CyberFull time
- ...Description Candidate should meet minimum experience requirements: ~10 years' experience in conducting in-depth analysis of cyber threats, including malware, phishing campaigns, and other attack vectors. This involves identifying patterns, trends, and indicators of...CyberFull timePart timeWork at office
- ...Position Title Threat Emulation & Readiness Lead / Red Team Lead Position Overview The Threat Emulation & Readiness Lead will oversee adversary emulation, red team operations, cyber readiness exercises, and threat-informed defense initiatives supporting a federal...CyberFull time
- Lafayette Group Inc. seeks a Cyber Intel Specialist - Senior Associate to provide advanced consulting on federal cybersecurity programs. You will translate complex cyber threat intel into actionable guidance for diverse audiences and support strategic planning with executives...Cyber3 days per week
$70k - $85k
...cybersecurity support provider is seeking motivated individuals to deliver intelligence support by analyzing and responding to cyber threats. The position requires U.S. citizenship, an active TS/SCI clearance, and 5+ years of experience in relevant fields. Responsibilities...Cyber- ...Job Description Job Description Title: Cybersecurity Threat Analyst Subject Matter Expert IV Location: Alexandria, VA Clearance... ...-on experience in threat hunting, adversary analysis, advanced cyber defense analysis, or closely related work Demonstrated...Cyber
- Leidos in the Washington DC area is seeking a Cyber Security Analyst for the DISA GSMO-II program. The role provides 24x7 monitoring and analysis of DoD networks above SECRET, performing threat intelligence, correlating security events, and supporting incident response....CyberFlexible hours
- Synertex LLC in Arlington, VA seeks a Cyber Threat Intelligence Analyst SME to support a national cybersecurity organization client. You will oversee collection, assessment, and analysis of threat intel using Google Threat Intelligence and MITRE ATT&CK, delivering strategic...Cyber
- ...AWARD******************** The Security Specialist - Insider Threat develops and supports program activities designed to deter, detect... ...personnel to integrate counter‑insider threat practices into broader cyber and security operations. Maintain accurate records, reports,...CyberFull timeFor contractorsWork experience placementLocal areaRelocation
- ...Required Qualifications: Eastern Europe-focused geopolitical and cyber threat intelligence experience Experience with cyber threat intelligence analysis principles in a government or commercial environment Knowledge of current and emerging Eastern Europe-related...CyberFull time
- ...Cybersecurity Research Analyst with TS/SCI eligibility to support government programs in Arlington, VA. You will investigate emerging cyber threats, analyze data, and translate findings into strategic guidance for leadership and clients. The role emphasizes modeling, threat...Cyber
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Cyber Threat Hunter. Be the first to apply!


