Cyber Threat Hunter
$94.1k - $150kASM Research, An Accenture Federal Services Company
Position Overview
The Cyber Threat Hunter proactively protects enterprise environments from advanced cyber threats by analyzing network, endpoint, and log data to identify malicious activity that may evade conventional security controls. This role establishes normal traffic and data-flow baselines, detects anomalies, develops threat hypotheses, and investigates adversary tactics, techniques, and procedures to strengthen cyber defense and incident response operations. This role directly supports a proactive SOC model by contributing to detection engineering, monitoring enhancements, automation development and continuous gap analysis to identify and mitigate emerging threats before they materialize.
Key Responsibilities
Conduct proactive threat hunting across networks, endpoints, and security datasets to identify, isolate, and help eradicate advanced threats before they impact operations.
Analyze logs from multiple sources, including packet captures, correlation engines, parsed security data, and endpoint telemetry, to detect suspicious behavior and validate threat activity.
Establish and maintain baseline patterns for normal traffic, system activity, and data flows to improve anomaly detection and investigative accuracy.
Collaborate closely with SOC analysts and detection engineers to recommend new alerts, analytics, and monitoring logic based on threat hunting findings, emerging trends, and identified visibility gaps.
Develop automation scripts and workflows (using SOAR platforms, Python, PowerShell, or similar tools) to streamline threat hunting activities, automate repetitive analytical tasks, and reduce detection and response time.
Research and track adversary tactics, techniques, and procedures (TTPs), developing technical hypotheses and investigative leads based on threat intelligence and observed behaviors.
Support incident response activities by creating incident documentation, follow-up actions, reporting criteria, and recommendations that improve overall response maturity and operational resilience.
Examine and characterize malware and cyber threats, including viruses, worms, bots, rootkits, and Trojan horses, to determine threat nature, scope, and potential impact.
Apply reverse engineering and binary analysis techniques using tools such as Ghidra and IDA Pro to support vulnerability research and understand malicious code behavior.
Required Qualifications
Bachelor's degree in Information Technology, Computer Science, Cybersecurity, or a related field, or equivalent relevant experience.
4 years of experience in cybersecurity or a closely related technical security role.
Demonstrated ability to perform system administrator-level analysis across multiple platforms and operating systems in support of cyber investigations.
Strong analytical and problem-solving skills with the ability to identify, track, and assess adversary TTPs and suspicious activity.
Knowledge of intrusion detection methodologies, evidence preservation practices, and cyber defense and information security policies, procedures, and regulations.
Preferred Qualifications
Relevant cybersecurity certifications such as GCDA, GNFA, CompTIA PenTest+ (Removed CISSP), CISM, or CompTIA CySA+.
Experience with reverse engineering, malware analysis, vulnerability research, and threat analysis in enterprise or government environments.
Familiarity with U.S. Army Corps of Engineers (USACE) IT policies and operational security requirements.
Experience preparing technical reports, incident summaries, and threat findings for stakeholders and operational leadership.
Job Specific Skills
Threat hunting and anomaly detection.
Log correlation and security event analysis.
Packet capture analysis and data parsing.
Malware analysis, reverse engineering, and binary analysis.
Threat intelligence analysis and TTP identification.
Incident response documentation and reporting.
Detection engineering collaboration and monitoring enhancement support.
Compensation Ranges
Compensation ranges for ASM Research positions vary depending on multiple factors; including but not limited to, location, skill set, level of education, certifications, client requirements, contract-specific affordability, government clearance and investigation level, and years of experience. The compensation displayed for this role is a general guideline based on these factors and is unique to each role. Monetary compensation is one component of ASM's overall compensation and benefits package for employees.
EEO Requirements
It is the policy of ASM that an individual's race, color, religion, sex, disability, age, sexual orientation or national origin are not and will not be considered in any personnel or management decisions. We affirm our commitment to these fundamental policies.
All recruiting, hiring, training, and promoting for all job classifications is done without regard to race, color, religion, sex, disability, or age. All decisions on employment are made to abide by the principle of equal employment.
Physical Requirements
The physical requirements described in "Knowledge, Skills and Abilities" above are representative of those which must be met by an employee to successfully perform the primary functions of this job. (For example, "light office duties' or "lifting up to 50 pounds" or "some travel" required.) Reasonable accommodations may be made to enable individuals with qualifying disabilities, who are otherwise qualified, to perform the primary functions.
Disclaimer
The preceding job description has been designed to indicate the general nature and level of work performed by employees within this classification. It is not designed to contain or be interpreted as a comprehensive inventory of all duties, responsibilities and qualifications required of employees assigned to this job.
$94,100 - $150,000
EEO Requirements
It is the policy of ASM that an individual's race, color, religion, sex, disability, age, gender identity, veteran status, sexual orientation or national origin are not and will not be considered in any personnel or management decisions. We affirm our commitment to these fundamental policies.
All recruiting, hiring, training, and promoting for all job classifications is done without regard to race, color, religion, sex, veteran status, disability, gender identity, or age. All decisions on employment are made to abide by the principle of equal employment.
- Lumen Technologies, a leader in AI-ready connectivity, is hiring a Senior Lead Security Engineer to hunt threats, investigate at scale, and develop automated detection across large networks. You will work with advanced security researchers, data engineers, and customers...SuggestedRemote job
- Threat Analyst LOCATION Annapolis Junction, MD 20701 CLEARANCE TS/SCI CI Poly (Please note this position requires full U.S. Citizenship... ...contribute to our mission‑driven efforts. SIMILAR CAREER TITLES Cyber Threat Analyst, Intelligence Analyst, Security Analyst, Risk...Cyber
$110k - $125k
...The candidate will conduct thorough analysis of national security issues, provide analytic support for operations, and categorize cyber threats. A Master's degree in a related field is essential, along with 12 years of relevant experience. #J-18808-Ljbffr Acclaim...Cyber- Peraton seeks a Senior Intel/Operational Analyst to provide C4/Cyber Threat & Vulnerability Analysis to USPACOM J6, supporting the PACOM J6 with 1-week on-site deployments across the PACOM AOR. Location: Fort Meade, MD. Requires leadership for travel teams and extensive...Cyber
- ...USCYBERCOM operations from the Annapolis area. You will conduct deep malware analysis, forensics, and threat intelligence to identify TTPs and inform defensive and offensive cyber missions. The role requires a Top Secret clearance with SCI eligibility, 8+ years of hands-on...Cyber
- IBM Consulting is seeking a Threat Intelligence Consultant specialized in Collections Analysis. You will execute collections using predefined... ...Bachelor’s degree, with Master’s preferred, and experience with cyber indicators, threat assessments, and data analysis tools. TS/SCI...Cyber
- IBM Consulting is seeking a Cyber Operations Support Engineer (TS/SCI) to execute collections using defined strategies and develop cyber indicators. You will analyze and share threat assessments, while continuously monitoring the threat landscape to provide actionable...Cyber
- ...invites applications for a Security Operations Center Analyst in the Annapolis Junction area to strengthen U.S. Cyber Command defenses. You will analyze logs, threat intelligence, and forensic data to identify advanced threats and respond to incidents with a deep...Cyber
- ...to join our CNO intelligence team. You will research, analyze, and synthesize data from SIGINT, HUMINT, and other sources to assess threats to DoD networks and networked weapons platforms. You will produce high-quality papers, briefings, and findings for senior U.S....Cyber
$112.2k - $196.4k
...your full potential. Unleash your talent and redefine what's possible. Job Description: Parsons is looking for a talented Cyber Threat Intel Analyst to join our growing team! In this role you will provide advanced network protocol analysis and security...CyberFlexible hours- Lumen Technologies' Black Lotus Labs is seeking a Lead Information Security Engineer to advance threat hunting, investigation, and discovery of evolving malicious activity using Lumen’s network visibility, analytic platforms, and approved AI-enabled tools. This position...Remote job
- ...Engineering Services, Inc. (CESI), a By Light company, seeks a cybersecurity training specialist to provide DoD CMF training expertise across cyber operations, evaluating ranges, and leading event planning in Annapolis Junction, MD on-site. You will develop and implement training...CyberContract work
- ...and experiences. Your role and responsibilities As a Threat Intelligence Consultant specializing in Collections Analysis,... ...of the evolving threat landscape by developing and implementing cyber indicators. Your primary responsibilities will include: •...CyberFull timeTemporary workPart timeWorldwide
$130k - $170k
...constructive, and gaming (LVCG) domains. CESI also designs, builds and runs infrastructure, platforms, applications and processes that enable cyber training for the integrated multi-domain force. Our vision is to become a worldwide full spectrum LVCG and cyber training/analysis...CyberFull timeContract workTemporary workWork experience placementWorldwide$132.23k - $176.31k
...to hunt, investigate, and scale discovery of evolving malicious threats, provide mission‑relevant intelligence, and support mitigations... ...procedures (TTPs) with a goal of automating detection. Work with cyber operators, when requested, to conduct in‑depth investigations on...CyberTemporary workWork experience placementRemote workWork from home$105.79k - $141.05k
...opening for a Lead Information Security Engineer who will support threat hunting, investigation, and discovery of evolving malicious... ...analytic approaches that support automated detection. Work with cyber operators and senior researchers, when requested, to support investigations...CyberTemporary workWork experience placementRemote workWork from home- By Light Professional IT Services LLC, including its CESI division, seeks a DoD cyber mission training expert for on-site work in Annapolis Junction, MD. You will lead cyber range events, develop training content, and coordinate with customers across DoD and federal partners...CyberFull time
- By Light Professional IT Services LLC in Annapolis Junction, MD, seeks a senior DoD cyber training specialist to oversee CMF training and operations across cyber ranges. You will lead planning and execution of cyber test events, inform development of training software,...Cyber
$130k - $180k
...HII's Mission Technologies division. Warfare Systems comprises cyber and mission IT; electronic warfare; and C5ISR systems.... ...communities to defend our interests in cyberspace and anticipate emerging threats. Our capabilities in cybersecurity, network architecture, reverse...CyberFull timeWork experience placementLocal areaWorldwide- ...Contributes to the identification of root causes, the prioritization of threats, and recommends/implements corrective action Provides... ...satisfy IAM Level III (CISSP, GSLC or CISM) Experience with cyber security policies and implementation of Risk Management Framework...CyberWork experience placement
- ...Top Secret Security Clearance are required. J5 offers comprehensive benefits including 100% employer-paid health coverage, 401(k) match, and professional development opportunities. Join us in protecting organizations from cyber threats! #J-18808-Ljbffr J5cyberconsultingCyber
- IBM Consulting is seeking a Senior Cyber Defender to safeguard clients' digital infrastructure and lead incident response efforts. You... ...leveraging MITRE ATT&CK and Cyber Kill Chain frameworks. You will guide threat intelligence activities, coordinate with client teams, and help...Cyber
$119.6k - $179.4k
...history.We are looking for you to join our team as a Principal Cyber Systems Engineer or Senior Principal Cyber Systems Engineer in Annapolis... ...secure systems to protect our organization from cyber threats. This role requires profound knowledge of cyber security principles...CyberFull timeFor contractorsRelocation packageShift work$90k - $120k
...cleared professionals in the following areas: Network Analysts (Cyber, Forensic, Signals, Exploitation etc) Vulnerability Analysts... ...Forensic Analysis, Network Analysis, Intrusion Detection, Cyber Threat Assessment, Protocol Analysis, Vulnerability Analysis, Signals...CyberLocal areaRemote work- ...for Digital Governmtent in Annapolis, MD, seeks a Public Works OT Cyber Security Manager (Systems Analyst) to lead digital defense... ...public works teams, development of security standards, and ongoing threat intelligence to #J-18808-Ljbffr Center for Digital GovernmtentCyberCasual work
$80.2k - $111.3k
...Creates cyber-intelligence tools / methods and performs research and analysis in order to mitigate and eliminate high level data and... ...Maintains the computer and information security incident, damage and threat assessment programs. Responsible for the formal Security Test...CyberContract workWork at office- ...analyze, map, protect, or discover vulnerabilities, intrusions, and threats in computer network systems. The ideal candidate will have the... ..., Electrical Engineering, Computer Science, Computer Forensics, Cyber Security, Software Engineering, Information Assurance, or...Cyber
$130k - $150k
...HII's Mission Technologies division. Warfare Systems comprises cyber and mission IT; electronic warfare; and C5ISR systems.... ...communities to defend our interests in cyberspace and anticipate emerging threats. Our capabilities in cybersecurity, network architecture, reverse...CyberFull timeLocal areaWorldwide$90k - $120k
...cleared professionals in the following areas: Network Analysts (Cyber, Forensic, Signals, Exploitation etc) Vulnerability Analysts Data... ...Forensic Analysis Network Analysis Intrusion Detection Cyber Threat Assessment Protocol Analysis Vulnerability Analysis Signals Analysis...CyberLocal areaRemote work$168k - $207k
...missions by building and delivering intelligence, analytics, and cyber solutions that enable users to advance national security. From... ...customers with the tools needed to counter evolve global and cyber threats, and to improve wartime decision-making. Our talented...CyberContract workRemote workWorldwide
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Cyber Threat Hunter. Be the first to apply!


