Cyber Threat Hunter
$94.1k - $150kASM Research, An Accenture Federal Services Company
Position Overview
The Cyber Threat Hunter proactively protects enterprise environments from advanced cyber threats by analyzing network, endpoint, and log data to identify malicious activity that may evade conventional security controls. This role establishes normal traffic and data-flow baselines, detects anomalies, develops threat hypotheses, and investigates adversary tactics, techniques, and procedures to strengthen cyber defense and incident response operations. This role directly supports a proactive SOC model by contributing to detection engineering, monitoring enhancements, automation development and continuous gap analysis to identify and mitigate emerging threats before they materialize.
Key Responsibilities
Conduct proactive threat hunting across networks, endpoints, and security datasets to identify, isolate, and help eradicate advanced threats before they impact operations.
Analyze logs from multiple sources, including packet captures, correlation engines, parsed security data, and endpoint telemetry, to detect suspicious behavior and validate threat activity.
Establish and maintain baseline patterns for normal traffic, system activity, and data flows to improve anomaly detection and investigative accuracy.
Collaborate closely with SOC analysts and detection engineers to recommend new alerts, analytics, and monitoring logic based on threat hunting findings, emerging trends, and identified visibility gaps.
Develop automation scripts and workflows (using SOAR platforms, Python, PowerShell, or similar tools) to streamline threat hunting activities, automate repetitive analytical tasks, and reduce detection and response time.
Research and track adversary tactics, techniques, and procedures (TTPs), developing technical hypotheses and investigative leads based on threat intelligence and observed behaviors.
Support incident response activities by creating incident documentation, follow-up actions, reporting criteria, and recommendations that improve overall response maturity and operational resilience.
Examine and characterize malware and cyber threats, including viruses, worms, bots, rootkits, and Trojan horses, to determine threat nature, scope, and potential impact.
Apply reverse engineering and binary analysis techniques using tools such as Ghidra and IDA Pro to support vulnerability research and understand malicious code behavior.
Required Qualifications
Bachelor’s degree in Information Technology, Computer Science, Cybersecurity, or a related field, or equivalent relevant experience.
4 years of experience in cybersecurity or a closely related technical security role.
Demonstrated ability to perform system administrator-level analysis across multiple platforms and operating systems in support of cyber investigations.
Strong analytical and problem-solving skills with the ability to identify, track, and assess adversary TTPs and suspicious activity.
Knowledge of intrusion detection methodologies, evidence preservation practices, and cyber defense and information security policies, procedures, and regulations.
Preferred Qualifications
Relevant cybersecurity certifications such as GCDA, GNFA, CompTIA PenTest+ (Removed CISSP), CISM, or CompTIA CySA+.
Experience with reverse engineering, malware analysis, vulnerability research, and threat analysis in enterprise or government environments.
Familiarity with U.S. Army Corps of Engineers (USACE) IT policies and operational security requirements.
Experience preparing technical reports, incident summaries, and threat findings for stakeholders and operational leadership.
Job Specific Skills
Threat hunting and anomaly detection.
Log correlation and security event analysis.
Packet capture analysis and data parsing.
Malware analysis, reverse engineering, and binary analysis.
Threat intelligence analysis and TTP identification.
Incident response documentation and reporting.
Detection engineering collaboration and monitoring enhancement support.
Compensation Ranges
Compensation ranges for ASM Research positions vary depending on multiple factors; including but not limited to, location, skill set, level of education, certifications, client requirements, contract-specific affordability, government clearance and investigation level, and years of experience. The compensation displayed for this role is a general guideline based on these factors and is unique to each role. Monetary compensation is one component of ASM's overall compensation and benefits package for employees.
EEO Requirements
It is the policy of ASM that an individual's race, color, religion, sex, disability, age, sexual orientation or national origin are not and will not be considered in any personnel or management decisions. We affirm our commitment to these fundamental policies.
All recruiting, hiring, training, and promoting for all job classifications is done without regard to race, color, religion, sex, disability, or age. All decisions on employment are made to abide by the principle of equal employment.
Physical Requirements
The physical requirements described in "Knowledge, Skills and Abilities" above are representative of those which must be met by an employee to successfully perform the primary functions of this job. (For example, "light office duties' or "lifting up to 50 pounds" or "some travel" required.) Reasonable accommodations may be made to enable individuals with qualifying disabilities, who are otherwise qualified, to perform the primary functions.
Disclaimer
The preceding job description has been designed to indicate the general nature and level of work performed by employees within this classification. It is not designed to contain or be interpreted as a comprehensive inventory of all duties, responsibilities and qualifications required of employees assigned to this job.
$94,100 - $150,000
EEO Requirements
It is the policy of ASM that an individual's race, color, religion, sex, disability, age, gender identity, veteran status, sexual orientation or national origin are not and will not be considered in any personnel or management decisions. We affirm our commitment to these fundamental policies.
All recruiting, hiring, training, and promoting for all job classifications is done without regard to race, color, religion, sex, veteran status, disability, gender identity, or age. All decisions on employment are made to abide by the principle of equal employment.
$132.23k - $176.31k
...to hunt, investigate, and scale discovery of evolving malicious threats, provide mission-relevant intelligence, and support mitigations... ...procedures (TTPs) with a goal of automating detection. Work with cyber operators, when requested, to conduct in-depth investigations on...CyberFull timeTemporary workWork experience placementWork at officeRemote work$105.79k - $141.05k
...opening for a Lead Information Security Engineer who will support threat hunting, investigation, and discovery of evolving malicious... ...analytic approaches that support automated detection. Work with cyber operators and senior researchers, when requested, to support investigations...CyberFull timeTemporary workWork experience placementRemote workWork from home$106k - $152k
...systems and data. This high-impact role where your expertise in cyber risk, vendor security, and cloud architecture will help shape business... ...~ Knowledge of IAM, SSO, federation, privileged access, cyber threats, vulnerabilities, and attack methodologies. ~ Ability to...CyberFull timeWork experience placementWork at officeRelocationFlexible hours1 day per week$66.9k - $82.1k
...strategies with infrastructure and application teams to contain threats while preserving evidence and minimizing operational disruption.... ...tools and service management platforms integrated with SOC and cyber defense functions. Certifications such as ITIL Foundation plus...CyberContract workWork experience placementWork at office- ...Responsibilities include: Conducting complex criminal investigations into financial crimes, including counterfeiting, cyber fraud, and other threats to the financial infrastructure of the United States. Providing physical protection for the President, Vice...Cyber
$76.4k - $138.6k
...Information Security we blend risk strategy, digital identity, cyber defense, application security and technology solutions as we consider... ...role goes beyond traditional scanning by actively emulating threat actors, performing penetration testing and assessing the true impact...CyberSummer holidayLocal areaFlexible hours- ...enterprise security and compliance requirements. - Execute directed cyber actions including network access restrictions, firewall and... ...and operate network security tools, supporting alert triage, threat detection, and initial response actions across network and communications...CyberMinimum wageContract workTemporary workWork experience placementRemote work
$84.91k - $113.91k
...everything we do in support of our vision of a safe and secure cyber world. Our globally recognized, award-winning portfolio of certifications... ...(LLM) integrations, and AI-powered products for adversarial threats, model vulnerabilities, and supply chain risks. The AI Security...CyberWork experience placementWork at officeRemote workNight shift- ...growing organization in Rhode Island. This role centers on evaluating cyber exposure across systems, applications, data movement, and... ...actionable recommendations to leadership.• Track evolving cyber threats, including AI-enabled attack methods and significant vendor-related...CyberWork at officeRemote work
$170k - $230k
...provide clients and sellers with consistent security expertise on all sales opportunities. For this role, the SA will primarily focus on Threat Management, with additional expertise in one or more of the following areas: Data Protection & AI; Cloud Security/DevSecOps;...Full timeWork experience placementLocal areaRemote workWork from home$95k - $123k
...Other Professional CredentialsRequired QualificationsPrevious experience completing Third Party Vendor Assessments.Understanding of Cyber Security controls.Hours & Work ScheduleHours per Week: 40Work Schedule: Monday - Friday / 4 days in office, 1 day remotePay Transparency...CyberWork at officeLocal areaMonday to FridayFlexible hours- ...mission-critical needs always in mind, our employees deliver end-to-end technology solutions connecting the space, air, land, sea and cyber domains in the interest of national security. Job Title: Principal, Undersea Business Development Job Code: 40064 Job...CyberFull time
- ...system hardware and software. This position is primarily aligned to the following NICE Cybersecurity Workforce Framework work roles: Cyber security code: 411. Additional duties may be required, within scope of the position description. Position Description/PD#: It...CyberPermanent employmentRemote workRelocation packageMonday to FridayFlexible hours
$40 - $50 per hour
...designing, implementing, and managing security solutions that protect sensitive data, support compliance requirements, and mitigate cyber threats across AI-driven cloud environments. The ideal candidate brings expertise in cloud security, AI security risks, and...Cyber$85.48k - $97.99k
...Advocacy, Commitment, Diversity, Equity & Inclusion and Excellence — drive everything we do in support of our vision of a safe and secure cyber world. Our globally recognized, award-winning portfolio of certifications provide an independent and globally recognized endorsement...CyberWork experience placementWork at officeRemote work$139.68k - $248.32k
...negotiation leadership, and the ability to operate effectively in a regulated banking environment.We are seeking a Network, Telecom, and Cyber Category Manager to support the subcategories of Telecom Management Infrastructure, Carriers, and Network as well as Cyber Security...CyberContract workLocal areaFlexible hours- ...in various security disciplines such as physical, personnel, and cyber security along with experience in compliance and risk management... ...requirements, technologies, controls, practices, techniques and threats Prior experience with leading projects within various...CyberWork experience placementH1bLocal area
- ...areas covering Artificial Intelligence, Cloud Migration, Custom Software Development, Data Analytics Infrastructure & Cloud Solutions, Cyber Security Services etc. We make reasonable accommodations for clients and employees and we do not discriminate based on any protected...CyberFull timeRemote workRelocation
$75k - $100k
...functional teams across Regional Technology, SAP Applications, Global Product, Supply Chain Planning & Distribution and Finance (GSCP&F), Cyber Security, Legal, Ecommerce, QA, associated vendor partnerships, and other business stakeholders to plan, organize, track, and report...CyberFull timeWork at officeLocal areaRemote workRelocationFlexible hours- ...position provides an extensive growth opportunity for the right candidate to work on 50% user support, 20% Windows server, 20% IT & Cyber‑security project work, and 10% networking & infrastructure. Essential Duties and Responsibilities Support end‑user software applications...CyberRemote work
$86.4k
...JOB SUMMARY This Position is the top investigator in the Cyber Fusion Center, capable of working any kind of incident, leading... ...and intrusion detection system [IDS] logs) to identify possible threats to network security. (10%) Perform cyber defense incident triage...CyberFor contractorsWork at officeLocal areaRemote work$144.9k - $265.8k
Location: Anywhere in Country At EY, we’re all in to shape your future with confidence. We’ll help you succeed in a globally connected powerhouse of diverse teams and take your career wherever you want it to go. Join EY and help to build a better working world...CyberSummer holidayFlexible hours$111.72k - $138.08k
...- Integrity, Advocacy, Commitment, Inclusion, and Excellence - drive everything we do in support of our vision of a safe and secure cyber world. Our globally recognized, award-winning portfolio of certifications provide an independent and globally recognized endorsement...CyberWork experience placementWork at officeRemote work- ...qualified to teach a variety of courses in criminal justice and related fields, such as sociology, political science, psychology, law or cyber security, and to assist in the development of experiential learning opportunities for students.Essential Job FunctionsDemonstrates...CyberWork experience placementRelocation
$60k - $93.9k
...Apply patches, updates, and security configurations to servers and applications to maintain compliance with federal and enterprise cyber standards. Configure and manage backup and recovery solutions, verify successful execution, and support data restoration activities...CyberContract workWork at officeRemote work$68.47k - $75.15k
...- Integrity, Advocacy, Commitment, Inclusion, and Excellence - drive everything we do in support of our vision of a safe and secure cyber world. Our globally recognized, award-winning portfolio of certifications provide an independent and globally recognized endorsement...CyberWork experience placementWork at officeRemote work$78.8k - $131.3k
...case assistance and enhance investigations in the evaluation of threats, critical incidents, and criminal research. The analyst will use... ...personal expertise Must collaborate regularly with insider threat, cyber, and physical security teams to share relevant findings....CyberContract workLocal areaRemote workWork from homeShift workAfternoon shift$112.5k - $133.08k
..., Advocacy, Commitment, Diversity, Inclusion, and Excellence — drive everything we do in support of our vision of a safe and secure cyber world. Our globally recognized, award-winning portfolio of certifications provide an independent and globally recognized endorsement...CyberWork experience placementWork at officeRemote work$91.1k - $170.4k
...Security (InfoSec) - InfoSec prevents, detects, responds and mitigates cyber-risk, protecting EY and client data, and our information... ...response to cybersecurity events or incidents stemming from suspected threats. Candidates for the role must have a strong comprehension of...CyberSummer holidayLocal areaRemote workFlexible hours- ...competitive advantages. Delphi's core technical focus includes Data Sciences & Analytics, Modern AI/ML Model Monetization, Cloud Engineering, Cyber Security, ERP Rescue; serving domains from sensitive national energy sectors to critical financial services, biomed, life sciences &...Cyber
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Cyber Threat Hunter. Be the first to apply!




