Cyber Threat Hunter
$94.1k - $150kASM Research, An Accenture Federal Services Company
Position Overview
The Cyber Threat Hunter proactively protects enterprise environments from advanced cyber threats by analyzing network, endpoint, and log data to identify malicious activity that may evade conventional security controls. This role establishes normal traffic and data-flow baselines, detects anomalies, develops threat hypotheses, and investigates adversary tactics, techniques, and procedures to strengthen cyber defense and incident response operations. This role directly supports a proactive SOC model by contributing to detection engineering, monitoring enhancements, automation development and continuous gap analysis to identify and mitigate emerging threats before they materialize.
Key Responsibilities
Conduct proactive threat hunting across networks, endpoints, and security datasets to identify, isolate, and help eradicate advanced threats before they impact operations.
Analyze logs from multiple sources, including packet captures, correlation engines, parsed security data, and endpoint telemetry, to detect suspicious behavior and validate threat activity.
Establish and maintain baseline patterns for normal traffic, system activity, and data flows to improve anomaly detection and investigative accuracy.
Collaborate closely with SOC analysts and detection engineers to recommend new alerts, analytics, and monitoring logic based on threat hunting findings, emerging trends, and identified visibility gaps.
Develop automation scripts and workflows (using SOAR platforms, Python, PowerShell, or similar tools) to streamline threat hunting activities, automate repetitive analytical tasks, and reduce detection and response time.
Research and track adversary tactics, techniques, and procedures (TTPs), developing technical hypotheses and investigative leads based on threat intelligence and observed behaviors.
Support incident response activities by creating incident documentation, follow-up actions, reporting criteria, and recommendations that improve overall response maturity and operational resilience.
Examine and characterize malware and cyber threats, including viruses, worms, bots, rootkits, and Trojan horses, to determine threat nature, scope, and potential impact.
Apply reverse engineering and binary analysis techniques using tools such as Ghidra and IDA Pro to support vulnerability research and understand malicious code behavior.
Required Qualifications
Bachelor's degree in Information Technology, Computer Science, Cybersecurity, or a related field, or equivalent relevant experience.
4 years of experience in cybersecurity or a closely related technical security role.
Demonstrated ability to perform system administrator-level analysis across multiple platforms and operating systems in support of cyber investigations.
Strong analytical and problem-solving skills with the ability to identify, track, and assess adversary TTPs and suspicious activity.
Knowledge of intrusion detection methodologies, evidence preservation practices, and cyber defense and information security policies, procedures, and regulations.
Preferred Qualifications
Relevant cybersecurity certifications such as GCDA, GNFA, CompTIA PenTest+ (Removed CISSP), CISM, or CompTIA CySA+.
Experience with reverse engineering, malware analysis, vulnerability research, and threat analysis in enterprise or government environments.
Familiarity with U.S. Army Corps of Engineers (USACE) IT policies and operational security requirements.
Experience preparing technical reports, incident summaries, and threat findings for stakeholders and operational leadership.
Job Specific Skills
Threat hunting and anomaly detection.
Log correlation and security event analysis.
Packet capture analysis and data parsing.
Malware analysis, reverse engineering, and binary analysis.
Threat intelligence analysis and TTP identification.
Incident response documentation and reporting.
Detection engineering collaboration and monitoring enhancement support.
Compensation Ranges
Compensation ranges for ASM Research positions vary depending on multiple factors; including but not limited to, location, skill set, level of education, certifications, client requirements, contract-specific affordability, government clearance and investigation level, and years of experience. The compensation displayed for this role is a general guideline based on these factors and is unique to each role. Monetary compensation is one component of ASM's overall compensation and benefits package for employees.
EEO Requirements
It is the policy of ASM that an individual's race, color, religion, sex, disability, age, sexual orientation or national origin are not and will not be considered in any personnel or management decisions. We affirm our commitment to these fundamental policies.
All recruiting, hiring, training, and promoting for all job classifications is done without regard to race, color, religion, sex, disability, or age. All decisions on employment are made to abide by the principle of equal employment.
Physical Requirements
The physical requirements described in "Knowledge, Skills and Abilities" above are representative of those which must be met by an employee to successfully perform the primary functions of this job. (For example, "light office duties' or "lifting up to 50 pounds" or "some travel" required.) Reasonable accommodations may be made to enable individuals with qualifying disabilities, who are otherwise qualified, to perform the primary functions.
Disclaimer
The preceding job description has been designed to indicate the general nature and level of work performed by employees within this classification. It is not designed to contain or be interpreted as a comprehensive inventory of all duties, responsibilities and qualifications required of employees assigned to this job.
$94,100 - $150,000
EEO Requirements
It is the policy of ASM that an individual's race, color, religion, sex, disability, age, gender identity, veteran status, sexual orientation or national origin are not and will not be considered in any personnel or management decisions. We affirm our commitment to these fundamental policies.
All recruiting, hiring, training, and promoting for all job classifications is done without regard to race, color, religion, sex, veteran status, disability, gender identity, or age. All decisions on employment are made to abide by the principle of equal employment.
- Lumen Technologies seeks a Senior Lead Security Engineer to hunt threats, investigate evolving cyber activity, and develop automated detection across large networks. You will collaborate with researchers, data engineers, and customers in a high-visibility team leveraging...CyberRemote job
- SOC Analyst: Threat Detection & Incident Response job at Nconsolidator. Annapolis, MD. Nconsolidator seeks a cybersecurity professional... ...security operations. You will apply frameworks like MITRE ATT&CK and Cyber Kill Chain, and utilize tools for network and log analysis to...Cyber
- Threat Analyst LOCATION Annapolis Junction, MD 20701 CLEARANCE TS/SCI CI Poly (Please note this position requires full U.S. Citizenship... ...contribute to our mission‑driven efforts. SIMILAR CAREER TITLES Cyber Threat Analyst, Intelligence Analyst, Security Analyst, Risk...Cyber
$110k - $125k
...The candidate will conduct thorough analysis of national security issues, provide analytic support for operations, and categorize cyber threats. A Master's degree in a related field is essential, along with 12 years of relevant experience. #J-18808-Ljbffr Acclaim...Cyber- Peraton seeks a Senior Intel/Operational Analyst to provide C4/Cyber Threat & Vulnerability Analysis to USPACOM J6, supporting the PACOM J6 with 1-week on-site deployments across the PACOM AOR. Location: Fort Meade, MD. Requires leadership for travel teams and extensive...Cyber
- ...USCYBERCOM operations from the Annapolis area. You will conduct deep malware analysis, forensics, and threat intelligence to identify TTPs and inform defensive and offensive cyber missions. The role requires a Top Secret clearance with SCI eligibility, 8+ years of hands-on...Cyber
- ...technical data to produce finished products for GO/FO audiences. You will track adversary TTPs, support cyber operations planning, and serve as a senior SME on DoDIN threats and critical infrastructure. This is a high-visibility, high-impact role requiring top-level...Cyber
- Lumen Technologies seeks a Lead Information Security Engineer to advance threat hunting, investigations, and discovery across evolving malicious activity using our network visibility, analytic platforms, and AI-enabled tools. Work with researchers, data engineers, and...CyberRemote job
- Google is seeking a Senior Security Analyst in the Google Threat Intelligence Group (GTIG) to lead AI/ML threat intelligence efforts for... ...active Top Secret/SCI clearance.
cyber threat data into strategic intelligence, coordinating across Google...
CyberRemote work - ...support a DoD customer. You will conduct intelligence analysis, monitor cyberspace operations, and assess threats to DoDIN and critical assets. The role focuses on cyber threat analysis, digital forensics, and mission support in a collaborative environment. You will...Cyber
- Google's Threat Intelligence Group (GTIG) within the DoD team seeks a Security Analyst to act as the lead onsite Mandiant authority for... ...client focused on AI technologies. You will translate intricate cyber threat data into strategic intelligence that helps partners counter...Cyber
$134.1k - $241.4k
...Job Description: Parsons is looking for a detail-oriented Cyber Analyst to join our team. This role is suited for candidates with... ...insights to stakeholders with the common goal to prevent and eradicate threats to critical U.S. systems. What Required Skills You'll Bring:...CyberFlexible hours$147k - $213k
...experience with security assessments or security design reviews or threat modeling. 1 year of experience leading teams or projects in a... ...risk analysis in an enterprise environment. Experience applying Cyber Threat Intelligence (CTI) methodologies to support monitoring, detection...Cyber$145.46k - $193.94k
..., join us today. The Role Black Lotus Labs is seeking a remote Threat Intelligence Researcher on the Research & Analysis team focused... ...datasets (e.g., netflow, malware and passive DNS,) to track malicious cyber actors, their infrastructure, and campaigns. Build repeatable AI...CyberTemporary workRemote workWork from home$105.79k - $141.05k
...opening for a Lead Information Security Engineer who will support threat hunting, investigation, and discovery of evolving malicious... ...analytic approaches that support automated detection. Work with cyber operators and senior researchers, when requested, to support investigations...CyberContract workTemporary workWork experience placementRemote workWork from home$132.23k - $176.31k
...to hunt, investigate, and scale discovery of evolving malicious threats, provide mission-relevant intelligence, and support mitigations... ...procedures (TTPs) with a goal of automating detection. Work with cyber operators, when requested, to conduct in-depth investigations on...CyberTemporary workWork experience placementRemote workWork from home$100k - $200k
Ansfederal is seeking an Intrusion Analyst to analyze target digital network data for malicious activity using SIGINT and defense resources. Candidates must hold a TS/SCI clearance and have extensive experience in malware analysis. The position requires strong programming...Cyber- ...Top Secret Security Clearance are required. J5 offers comprehensive benefits including 100% employer-paid health coverage, 401(k) match, and professional development opportunities. Join us in protecting organizations from cyber threats! #J-18808-Ljbffr J5cyberconsultingCyber
$119.6k - $179.4k
...history.We are looking for you to join our team as a Principal Cyber Systems Engineer or Senior Principal Cyber Systems Engineer in Annapolis... ...secure systems to protect our organization from cyber threats. This role requires profound knowledge of cyber security principles...CyberFull timeFor contractorsRelocation packageShift work$174.4k - $220.3k
...orchestration across OpenShift containerized environments. They will develop fingerprinting capabilities enabling identification of cyber threat actors through SIGINT derived behavioral signatures, operational patterns, and technical indicators. These efforts enhance the...CyberContract workWork experience placementLocal area$3,000 per month
...WHAT WE’RE DOING Lockheed Martin, Rotary Mission Systems Cyber & Intelligence invites you to step up to one of today’s most daunting... ..., you’ll work with cybersecurity experts on the forefront of threat protection and proactive prevention. In this fast-paced, real-world...Cyber$120k - $210k
...________________ Looking to push your skills in the Offensive Cyber domain? You’ll join a fast-paced, mission-focused team tackling... ...incident response, investigations, and research on emerging cyber threats. Responsibilities: Perform malware analysis and reverse...CyberWork at officeFlexible hours$130k - $150k
...HII's Mission Technologies division. Warfare Systems comprises cyber and mission IT; electronic warfare; and C5ISR systems.... ...communities to defend our interests in cyberspace and anticipate emerging threats. Our capabilities in cybersecurity, network architecture, reverse...CyberFull timeLocal areaWorldwide$130k - $180k
...HII’s Mission Technologies division. Warfare Systems comprises cyber and mission IT; electronic warfare; and C5ISR systems. HII works... ...to defend our interests in cyberspace and anticipate emerging threats. Our capabilities in cybersecurity, network architecture, reverse...CyberFull timeWork experience placementLocal areaWorldwide$180k - $260k
...software and systems engineering company focused on enterprise and cyber security solutions. We deliver stable, dependable software using... .... We also support customers in CND, CNE, and CNO through threat mitigation, vulnerability analysis, penetration testing, threat...CyberFull timeContract workRemote workRelocation package$105k - $175k
...HII's Mission Technologies division. Warfare Systems comprises cyber and mission IT; electronic warfare; and C5ISR systems. HII works... ...to defend our interests in cyberspace and anticipate emerging threats. Our capabilities in cybersecurity, network architecture, reverse...CyberFull timeWork experience placementLocal areaWorldwide$200k - $280k
...focused on software and systems engineering across enterprise and cyber security solution spaces. We deliver stable, reliable software... ...containerization. We also provide solutions in CND, CNE, and CNO, including threat mitigation, vulnerability assessment, penetration testing,...Cyber16 hoursFull timeRemote workRelocation package$200k - $280k
...delivery. We want you to apply your expertise to our enterprise and cyber security software environment. Technologies: AI AWS... ...Our team also supports CND, CNE, and CNO initiatives, including threat mitigation, vulnerability exposure, penetration testing, threat...Cyber16 hoursFull timeRemote workRelocation package- ...analyze, map, protect, or discover vulnerabilities, intrusions, and threats in computer network systems. The ideal candidate will have the... ..., Electrical Engineering, Computer Science, Computer Forensics, Cyber Security, Software Engineering, Information Assurance, or...Cyber
$60k
...enterprise security and compliance requirements. Execute directed cyber actions including network access restrictions, firewall and... ...Monitor and operate network security tools, supporting alert triage, threat detection, and initial response actions across network and...CyberContract workRemote work
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Cyber Threat Hunter. Be the first to apply!



