Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

Cyber Threat Hunter

$94.1k - $150k

ASM Research, An Accenture Federal Services Company

Position Overview

The Cyber Threat Hunter proactively protects enterprise environments from advanced cyber threats by analyzing network, endpoint, and log data to identify malicious activity that may evade conventional security controls. This role establishes normal traffic and data-flow baselines, detects anomalies, develops threat hypotheses, and investigates adversary tactics, techniques, and procedures to strengthen cyber defense and incident response operations. This role directly supports a proactive SOC model by contributing to detection engineering, monitoring enhancements, automation development and continuous gap analysis to identify and mitigate emerging threats before they materialize.

Key Responsibilities

  • Conduct proactive threat hunting across networks, endpoints, and security datasets to identify, isolate, and help eradicate advanced threats before they impact operations.

  • Analyze logs from multiple sources, including packet captures, correlation engines, parsed security data, and endpoint telemetry, to detect suspicious behavior and validate threat activity.

  • Establish and maintain baseline patterns for normal traffic, system activity, and data flows to improve anomaly detection and investigative accuracy.

  • Collaborate closely with SOC analysts and detection engineers to recommend new alerts, analytics, and monitoring logic based on threat hunting findings, emerging trends, and identified visibility gaps.

  • Develop automation scripts and workflows (using SOAR platforms, Python, PowerShell, or similar tools) to streamline threat hunting activities, automate repetitive analytical tasks, and reduce detection and response time.

  • Research and track adversary tactics, techniques, and procedures (TTPs), developing technical hypotheses and investigative leads based on threat intelligence and observed behaviors.

  • Support incident response activities by creating incident documentation, follow-up actions, reporting criteria, and recommendations that improve overall response maturity and operational resilience.

  • Examine and characterize malware and cyber threats, including viruses, worms, bots, rootkits, and Trojan horses, to determine threat nature, scope, and potential impact.

  • Apply reverse engineering and binary analysis techniques using tools such as Ghidra and IDA Pro to support vulnerability research and understand malicious code behavior.

Required Qualifications

  • Bachelor's degree in Information Technology, Computer Science, Cybersecurity, or a related field, or equivalent relevant experience.

  • 4 years of experience in cybersecurity or a closely related technical security role.

  • Demonstrated ability to perform system administrator-level analysis across multiple platforms and operating systems in support of cyber investigations.

  • Strong analytical and problem-solving skills with the ability to identify, track, and assess adversary TTPs and suspicious activity.

  • Knowledge of intrusion detection methodologies, evidence preservation practices, and cyber defense and information security policies, procedures, and regulations.

Preferred Qualifications

  • Relevant cybersecurity certifications such as GCDA, GNFA, CompTIA PenTest+ (Removed CISSP), CISM, or CompTIA CySA+.

  • Experience with reverse engineering, malware analysis, vulnerability research, and threat analysis in enterprise or government environments.

  • Familiarity with U.S. Army Corps of Engineers (USACE) IT policies and operational security requirements.

  • Experience preparing technical reports, incident summaries, and threat findings for stakeholders and operational leadership.

Job Specific Skills

  • Threat hunting and anomaly detection.

  • Log correlation and security event analysis.

  • Packet capture analysis and data parsing.

  • Malware analysis, reverse engineering, and binary analysis.

  • Threat intelligence analysis and TTP identification.

  • Incident response documentation and reporting.

  • Detection engineering collaboration and monitoring enhancement support.

Compensation Ranges

Compensation ranges for ASM Research positions vary depending on multiple factors; including but not limited to, location, skill set, level of education, certifications, client requirements, contract-specific affordability, government clearance and investigation level, and years of experience. The compensation displayed for this role is a general guideline based on these factors and is unique to each role. Monetary compensation is one component of ASM's overall compensation and benefits package for employees.

EEO Requirements

It is the policy of ASM that an individual's race, color, religion, sex, disability, age, sexual orientation or national origin are not and will not be considered in any personnel or management decisions. We affirm our commitment to these fundamental policies.

All recruiting, hiring, training, and promoting for all job classifications is done without regard to race, color, religion, sex, disability, or age. All decisions on employment are made to abide by the principle of equal employment.

Physical Requirements

The physical requirements described in "Knowledge, Skills and Abilities" above are representative of those which must be met by an employee to successfully perform the primary functions of this job. (For example, "light office duties' or "lifting up to 50 pounds" or "some travel" required.) Reasonable accommodations may be made to enable individuals with qualifying disabilities, who are otherwise qualified, to perform the primary functions.

Disclaimer

The preceding job description has been designed to indicate the general nature and level of work performed by employees within this classification. It is not designed to contain or be interpreted as a comprehensive inventory of all duties, responsibilities and qualifications required of employees assigned to this job.

$94,100 - $150,000

EEO Requirements

It is the policy of ASM that an individual's race, color, religion, sex, disability, age, gender identity, veteran status, sexual orientation or national origin are not and will not be considered in any personnel or management decisions. We affirm our commitment to these fundamental policies.

All recruiting, hiring, training, and promoting for all job classifications is done without regard to race, color, religion, sex, veteran status, disability, gender identity, or age. All decisions on employment are made to abide by the principle of equal employment.

Vacancy posted 1 day ago
Similar jobs that could be interesting for youBased on the Cyber Threat Hunter in Annapolis, MD vacancy
  • Lumen Technologies seeks a Senior Lead Security Engineer to hunt threats, investigate evolving cyber activity, and develop automated detection across large networks. You will collaborate with researchers, data engineers, and customers in a high-visibility team leveraging... 
    Cyber
    Remote job

    Lumen Technologies

    Annapolis, MD
    15 hours ago
  • SOC Analyst: Threat Detection & Incident Response job at Nconsolidator. Annapolis, MD. Nconsolidator seeks a cybersecurity professional...  ...security operations. You will apply frameworks like MITRE ATT&CK and Cyber Kill Chain, and utilize tools for network and log analysis to... 
    Cyber

    Fairweather, LLC

    Annapolis, MD
    15 hours ago
  • Threat Analyst LOCATION Annapolis Junction, MD 20701 CLEARANCE TS/SCI CI Poly (Please note this position requires full U.S. Citizenship...  ...contribute to our mission‑driven efforts. SIMILAR CAREER TITLES Cyber Threat Analyst, Intelligence Analyst, Security Analyst, Risk... 
    Cyber

    Cymertek Corporation

    Annapolis, MD
    3 days ago
  • $110k - $125k

     ...The candidate will conduct thorough analysis of national security issues, provide analytic support for operations, and categorize cyber threats. A Master's degree in a related field is essential, along with 12 years of relevant experience. #J-18808-Ljbffr Acclaim... 
    Cyber

    Acclaim Technical Services, Inc.

    Annapolis, MD
    4 days ago
  • Peraton seeks a Senior Intel/Operational Analyst to provide C4/Cyber Threat & Vulnerability Analysis to USPACOM J6, supporting the PACOM J6 with 1-week on-site deployments across the PACOM AOR. Location: Fort Meade, MD. Requires leadership for travel teams and extensive... 
    Cyber

    Peraton

    Annapolis, MD
    15 hours ago
  •  ...USCYBERCOM operations from the Annapolis area. You will conduct deep malware analysis, forensics, and threat intelligence to identify TTPs and inform defensive and offensive cyber missions. The role requires a Top Secret clearance with SCI eligibility, 8+ years of hands-on... 
    Cyber

    SIXGEN

    Annapolis, MD
    3 days ago
  •  ...technical data to produce finished products for GO/FO audiences. You will track adversary TTPs, support cyber operations planning, and serve as a senior SME on DoDIN threats and critical infrastructure. This is a high-visibility, high-impact role requiring top-level... 
    Cyber

    Peraton

    Annapolis, MD
    3 days ago
  • Lumen Technologies seeks a Lead Information Security Engineer to advance threat hunting, investigations, and discovery across evolving malicious activity using our network visibility, analytic platforms, and AI-enabled tools. Work with researchers, data engineers, and... 
    Cyber
    Remote job

    Lumen Technologies

    Annapolis, MD
    15 hours ago
  • Google is seeking a Senior Security Analyst in the Google Threat Intelligence Group (GTIG) to lead AI/ML threat intelligence efforts for...  ...active Top Secret/SCI clearance.

    cyber threat data into strategic intelligence, coordinating across Google... 

    Cyber
    Remote work

    Google

    Annapolis, MD
    2 days ago
  •  ...support a DoD customer. You will conduct intelligence analysis, monitor cyberspace operations, and assess threats to DoDIN and critical assets. The role focuses on cyber threat analysis, digital forensics, and mission support in a collaborative environment. You will... 
    Cyber

    Peraton

    Annapolis, MD
    3 days ago
  • Google's Threat Intelligence Group (GTIG) within the DoD team seeks a Security Analyst to act as the lead onsite Mandiant authority for...  ...client focused on AI technologies. You will translate intricate cyber threat data into strategic intelligence that helps partners counter... 
    Cyber

    Socket.dev

    Annapolis, MD
    1 day ago
  • $134.1k - $241.4k

     ...Job Description: Parsons is looking for a detail-oriented Cyber Analyst to join our team. This role is suited for candidates with...  ...insights to stakeholders with the common goal to prevent and eradicate threats to critical U.S. systems. What Required Skills You'll Bring:... 
    Cyber
    Flexible hours

    Parsons Company

    Annapolis, MD
    20 hours ago
  • $147k - $213k

     ...experience with security assessments or security design reviews or threat modeling. 1 year of experience leading teams or projects in a...  ...risk analysis in an enterprise environment. Experience applying Cyber Threat Intelligence (CTI) methodologies to support monitoring, detection... 
    Cyber

    Socket.dev

    Annapolis, MD
    1 day ago
  • $145.46k - $193.94k

     ..., join us today. The Role Black Lotus Labs is seeking a remote Threat Intelligence Researcher on the Research & Analysis team focused...  ...datasets (e.g., netflow, malware and passive DNS,) to track malicious cyber actors, their infrastructure, and campaigns. Build repeatable AI... 
    Cyber
    Temporary work
    Remote work
    Work from home

    Lumen Technologies

    Annapolis, MD
    3 days ago
  • $105.79k - $141.05k

     ...opening for a Lead Information Security Engineer who will support threat hunting, investigation, and discovery of evolving malicious...  ...analytic approaches that support automated detection. Work with cyber operators and senior researchers, when requested, to support investigations... 
    Cyber
    Contract work
    Temporary work
    Work experience placement
    Remote work
    Work from home

    Lumen Technologies

    Annapolis, MD
    15 hours ago
  • $132.23k - $176.31k

     ...to hunt, investigate, and scale discovery of evolving malicious threats, provide mission-relevant intelligence, and support mitigations...  ...procedures (TTPs) with a goal of automating detection. Work with cyber operators, when requested, to conduct in-depth investigations on... 
    Cyber
    Temporary work
    Work experience placement
    Remote work
    Work from home

    Lumen Technologies

    Annapolis, MD
    15 hours ago
  • $100k - $200k

    Ansfederal is seeking an Intrusion Analyst to analyze target digital network data for malicious activity using SIGINT and defense resources. Candidates must hold a TS/SCI clearance and have extensive experience in malware analysis. The position requires strong programming...
    Cyber

    Ansfederal

    Annapolis, MD
    15 hours ago
  •  ...Top Secret Security Clearance are required. J5 offers comprehensive benefits including 100% employer-paid health coverage, 401(k) match, and professional development opportunities. Join us in protecting organizations from cyber threats! #J-18808-Ljbffr J5cyberconsulting
    Cyber

    J5cyberconsulting

    Annapolis, MD
    3 days ago
  • $119.6k - $179.4k

     ...history.We are looking for you to join our team as a Principal Cyber Systems Engineer or Senior Principal Cyber Systems Engineer in Annapolis...  ...secure systems to protect our organization from cyber threats. This role requires profound knowledge of cyber security principles... 
    Cyber
    Full time
    For contractors
    Relocation package
    Shift work

    Northrop Grumman

    Annapolis, MD
    10 hours ago
  • $174.4k - $220.3k

     ...orchestration across OpenShift containerized environments. They will develop fingerprinting capabilities enabling identification of cyber threat actors through SIGINT derived behavioral signatures, operational patterns, and technical indicators. These efforts enhance the... 
    Cyber
    Contract work
    Work experience placement
    Local area

    ELEVI Associates

    Annapolis, MD
    19 hours ago
  • $3,000 per month

     ...WHAT WE’RE DOING Lockheed Martin, Rotary Mission Systems Cyber & Intelligence invites you to step up to one of today’s most daunting...  ..., you’ll work with cybersecurity experts on the forefront of threat protection and proactive prevention. In this fast-paced, real-world... 
    Cyber

    Lockheed Martin

    Arnold, MD
    5 days ago
  • $120k - $210k

     ...________________ Looking to push your skills in the Offensive Cyber domain? You’ll join a fast-paced, mission-focused team tackling...  ...incident response, investigations, and research on emerging cyber threats.  Responsibilities: Perform malware analysis and reverse... 
    Cyber
    Work at office
    Flexible hours

    Set Of X

    Annapolis, MD
    3 days ago
  • $130k - $150k

     ...HII's Mission Technologies division. Warfare Systems comprises cyber and mission IT; electronic warfare; and C5ISR systems....  ...communities to defend our interests in cyberspace and anticipate emerging threats. Our capabilities in cybersecurity, network architecture, reverse... 
    Cyber
    Full time
    Local area
    Worldwide

    Huntington Ingalls Industries

    Annapolis, MD
    15 hours ago
  • $130k - $180k

     ...HII’s Mission Technologies division. Warfare Systems comprises cyber and mission IT; electronic warfare; and C5ISR systems. HII works...  ...to defend our interests in cyberspace and anticipate emerging threats. Our capabilities in cybersecurity, network architecture, reverse... 
    Cyber
    Full time
    Work experience placement
    Local area
    Worldwide

    Huntington Ingalls Industries

    Annapolis, MD
    1 day ago
  • $180k - $260k

     ...software and systems engineering company focused on enterprise and cyber security solutions. We deliver stable, dependable software using...  .... We also support customers in CND, CNE, and CNO through threat mitigation, vulnerability analysis, penetration testing, threat... 
    Cyber
    Full time
    Contract work
    Remote work
    Relocation package

    GliaCell Technologies

    Annapolis, MD
    1 day ago
  • $105k - $175k

     ...HII's Mission Technologies division. Warfare Systems comprises cyber and mission IT; electronic warfare; and C5ISR systems. HII works...  ...to defend our interests in cyberspace and anticipate emerging threats. Our capabilities in cybersecurity, network architecture, reverse... 
    Cyber
    Full time
    Work experience placement
    Local area
    Worldwide

    Huntington Ingalls Industries

    Annapolis, MD
    15 hours ago
  • $200k - $280k

     ...focused on software and systems engineering across enterprise and cyber security solution spaces. We deliver stable, reliable software...  ...containerization. We also provide solutions in CND, CNE, and CNO, including threat mitigation, vulnerability assessment, penetration testing,... 
    Cyber
    16 hours
    Full time
    Remote work
    Relocation package

    GliaCell Technologies

    Annapolis, MD
    1 day ago
  • $200k - $280k

     ...delivery. We want you to apply your expertise to our enterprise and cyber security software environment. Technologies: AI AWS...  ...Our team also supports CND, CNE, and CNO initiatives, including threat mitigation, vulnerability exposure, penetration testing, threat... 
    Cyber
    16 hours
    Full time
    Remote work
    Relocation package

    GliaCell Technologies

    Annapolis, MD
    1 day ago
  •  ...analyze, map, protect, or discover vulnerabilities, intrusions, and threats in computer network systems. The ideal candidate will have the...  ..., Electrical Engineering, Computer Science, Computer Forensics, Cyber Security, Software Engineering, Information Assurance, or... 
    Cyber

    NetSage

    Annapolis, MD
    4 days ago
  • $60k

     ...enterprise security and compliance requirements. Execute directed cyber actions including network access restrictions, firewall and...  ...Monitor and operate network security tools, supporting alert triage, threat detection, and initial response actions across network and... 
    Cyber
    Contract work
    Remote work

    MAXIMUS

    Annapolis, MD
    4 days ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to Cyber Threat Hunter. Be the first to apply!