Cyber Threat Hunter
$94.1k - $150kASM Research, An Accenture Federal Services Company
Position Overview The Cyber Threat Hunter proactively protects enterprise environments from advanced cyber threats by analyzing network, endpoint, and log data to identify malicious activity that may evade conventional security controls. This role establishes normal traffic and data-flow baselines, detects anomalies, develops threat hypotheses, and investigates adversary tactics, techniques, and procedures to strengthen cyber defense and incident response operations. This role directly supports a proactive SOC model by contributing to detection engineering, monitoring enhancements, automation development and continuous gap analysis to identify and mitigate emerging threats before they materialize. Key Responsibilities Conduct proactive threat hunting across networks, endpoints, and security datasets to identify, isolate, and help eradicate advanced threats before they impact operations. Analyze logs from multiple sources, including packet captures, correlation engines, parsed security data, and endpoint telemetry, to detect suspicious behavior and validate threat activity. Establish and maintain baseline patterns for normal traffic, system activity, and data flows to improve anomaly detection and investigative accuracy. Collaborate closely with SOC analysts and detection engineers to recommend new alerts, analytics, and monitoring logic based on threat hunting findings, emerging trends, and identified visibility gaps. Develop automation scripts and workflows (using SOAR platforms, Python, PowerShell, or similar tools) to streamline threat hunting activities, automate repetitive analytical tasks, and reduce detection and response time. Research and track adversary tactics, techniques, and procedures (TTPs), developing technical hypotheses and investigative leads based on threat intelligence and observed behaviors. Support incident response activities by creating incident documentation, follow-up actions, reporting criteria, and recommendations that improve overall response maturity and operational resilience. Examine and characterize malware and cyber threats, including viruses, worms, bots, rootkits, and Trojan horses, to determine threat nature, scope, and potential impact. Apply reverse engineering and binary analysis techniques using tools such as Ghidra and IDA Pro to support vulnerability research and understand malicious code behavior. Required Qualifications Bachelor’s degree in Information Technology, Computer Science, Cybersecurity, or a related field, or equivalent relevant experience. 4 years of experience in cybersecurity or a closely related technical security role. Demonstrated ability to perform system administrator-level analysis across multiple platforms and operating systems in support of cyber investigations. Strong analytical and problem-solving skills with the ability to identify, track, and assess adversary TTPs and suspicious activity. Knowledge of intrusion detection methodologies, evidence preservation practices, and cyber defense and information security policies, procedures, and regulations. Ability to support work in a U.S.-only staffing environment and satisfy any client-required background investigation or security requirements. Preferred Qualifications Relevant cybersecurity certifications such as GCDA, GNFA, CompTIA PenTest+ (Removed CISSP), CISM, or CompTIA CySA+. Experience with reverse engineering, malware analysis, vulnerability research, and threat analysis in enterprise or government environments. Familiarity with U.S. Army Corps of Engineers (USACE) IT policies and operational security requirements. Experience preparing technical reports, incident summaries, and threat findings for stakeholders and operational leadership. Job Specific Skills Threat hunting and anomaly detection. Log correlation and security event analysis. Packet capture analysis and data parsing. Malware analysis, reverse engineering, and binary analysis. Threat intelligence analysis and TTP identification. Incident response documentation and reporting. Detection engineering collaboration and monitoring enhancement support. Compensation Ranges Compensation ranges for ASM Research positions vary depending on multiple factors; including but not limited to, location, skill set, level of education, certifications, client requirements, contract-specific affordability, government clearance and investigation level, and years of experience. The compensation displayed for this role is a general guideline based on these factors and is unique to each role. Monetary compensation is one component of ASM's overall compensation and benefits package for employees. $94,100 - $150,000 Physical Requirements The physical requirements described in "Knowledge, Skills and Abilities" above are representative of those which must be met by an employee to successfully perform the primary functions of this job. (For example, "light office duties' or "lifting up to 50 pounds" or "some travel" required.) Reasonable accommodations may be made to enable individuals with qualifying disabilities, who are otherwise qualified, to perform the primary functions. Disclaimer The preceding job description has been designed to indicate the general nature and level of work performed by employees within this classification. It is not designed to contain or be interpreted as a comprehensive inventory of all duties, responsibilities and qualifications required of employees assigned to this job. EEO Requirements It is the policy of ASM that an individual's race, color, religion, sex, disability, age, gender identity, veteran status, sexual orientation or national origin are not and will not be considered in any personnel or management decisions. We affirm our commitment to these fundamental policies. All recruiting, hiring, training, and promoting for all job classifications is done without regard to race, color, religion, sex, veteran status, disability, gender identity, or age. All decisions on employment are made to abide by the principle of equal employment. #J-18808-Ljbffr
$80.2k - $111.3k
...major incident handling while maintaining deep technical focus on threat containment and eradication. It also drives proactive... ...tools and service management platforms integrated with SOC and cyber defense functions. Certifications such as ITIL Foundation plus advanced...CyberContract workWork experience placementWork at office$200k - $385k
...as you are. EY is seeking a highly strategic and client-focused Cyber Sales Executive (SE) to drive growth within our Cybersecurity practice... ...articulate EY's differentiated value in an increasingly complex threat landscape. The Opportunity As a Cyber Sales Executive, you will...CyberSummer holidayFlexible hours- ...spreadsheets and files. Sort, file, and distribute various correspondence, received via truck mail Stay up to date on cyber security/phone/email threats as it relates to AP vendor issues/concerns May perform other duties as assigned to help meet business objectives...CyberWork at office
- ...EY is seeking a Junior Incident Coordinator within Cyber & Investigative Services (CIS) to coordinate security incident responses and support incident management activities. The role requires strong communication, diplomacy, and hands-on cybersecurity skills in a fast-...Cyber
$125k - $144.06k
...- Integrity, Advocacy, Commitment, Inclusion, and Excellence - drive everything we do in support of our vision of a safe and secure cyber world. Our globally recognized, award-winning portfolio of certifications provide an independent and globally recognized endorsement...CyberWork experience placementWork at officeRemote workShift workNight shift$68.47k - $75.15k
...- Integrity, Advocacy, Commitment, Inclusion, and Excellence - drive everything we do in support of our vision of a safe and secure cyber world. Our globally recognized, award-winning portfolio of certifications provide an independent and globally recognized endorsement...CyberWork experience placementWork at officeRemote work$91.1k - $170.4k
...Security (InfoSec) - InfoSec prevents, detects, responds and mitigates cyber-risk, protecting EY and client data, and our information... ...response to cybersecurity events or incidents stemming from suspected threats. Candidates for the role must have a strong comprehension of...CyberSummer holidayLocal areaRemote workFlexible hours- ...years of relevant experience in lieu of BA Degree OR a High School Diploma with technical training related to Information Technology, Cyber Security, Computer Science, or related discipline with a minimum of 6 years of working knowledge and experience in IT particularly...CyberFull timeContract workPart timeLocal areaFlexible hours
- ...Responsible for profit/loss, operating income, revenue. Responsible for organic growth. Minimum Qualifications Bachelor’s Degree in IT, Cyber Security Business, Engineering, Management or a related field. An Associate’s Degree and 10 years of experience may be substituted...CyberContract workWork at office
$144.4k - $216.6k
...attitude. Executes with urgency. In‑depth understanding of reseller partner ecosystem. IT industry experience with knowledge of Cloud & Cyber. Worked with Enterprise scale National Reseller Partners such as Ahead, Guidepoint, ePlus, SHI, CDW, Insight, Trace3, Presidio or...CyberLocal areaRemote work- ...completes all annual compliance requirements such as External Certification Authority (ECA) renewal as well as annual training such as Cyber Awareness and PII to ensure access to the CMS system is maintained. Acts as a clinical Point of Contact (POC) for the supervisors...CyberContract workWork experience placement
$67.8k - $144.3k
...job posts: Please be aware of fraudulent job postings that are not affiliated with Fiserv. Fraudulent job postings may be used by cyber criminals to target your personally identifiable information and/or to steal money or financial information. Any communications from...Cyber- ..., Investments & Capital Markets, Computer Science, Data/Quant Analytics, Economics, Finance, Risk Management, Technology (including Cyber and Software Development) and more. Join us to hear directly from our University Talent Advisors about: -Who we are and how we...CyberRemote jobFull timeSummer workInternshipSummer internship
- ...timelines, and impacts accurately. Telemetry‑Informed Engagement: Use monitoring/ITSM data to route incidents; engage infra/app/cyber/vendor dependencies. Communications & Handoffs: Provide structured internal messaging (leadership updates, stakeholder briefings,...CyberContract workWork experience placementWork at officeShift work
- ...role executes the incident response process as defined by enterprise ITSM governance and the Senior Incident Manager, integrates with cyber defenders when needed, and champions readiness and continual improvement. Key Responsibilities War-Room Facilitation:...CyberContract workWork experience placementWork at officeShift work
- A leading IT solutions provider in Concord, NH is seeking a Presales Solutions Architect for Security Operations. This role focuses on shaping cybersecurity strategies, crafting technical presentations, and building client relationships. Ideal candidates have 5+ years ...
$84.9k - $209.5k
Job Description As a Principal Site Reliability Engineer (IC4), you will be responsible for designing, building, and operating highly available, scalable, secure, and resilient cloud services. You will combine software engineering with infrastructure expertise to improve...Temporary workFlexible hours$97k - $164.9k
Position Overview The Systems Administrator Lead provides technical and leadership oversight for the administration of servers, operating systems, and core infrastructure services that support mission‑critical operations in a federal IT environment. The role directs day...Permanent employmentContract workWork experience placementWork at office$115k - $145k
Minimum of 5 years of experience in industrial automation & controls engineering Experience commissioning, programming, and supporting PLC-controlled manufacturi About Our Client This global manufacturing company specializes in advanced industrial production...Local area$78.9k - $123.3k
Position Overview We are seeking a detail-oriented cybersecurity compliance professional to support system authorization and continuous monitoring activities within a Federal environment. This role is responsible for managing the security authorization lifecycle for one...Permanent employmentFull timePart timeWork at officeLocal areaRemote work
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Cyber Threat Hunter. Be the first to apply!


