Cyber Threat Hunter (TS/SCI Clearance Required)
Trellix
Job Title:
Cyber Threat Hunter (TS/SCI Clearance Required)
About Trellix ?
Trellix is a global company redefining the future of cybersecurity. The company's comprehensive, open, and native cybersecurity platform helps organizations confronted by today's most advanced threats gain confidence in the protection and resilience of their operations. Trellix, along with an extensive partner ecosystem, accelerates technology innovation through artificial intelligence, automation, and analytics to empower over 50,000 business and government customers with responsibly architected security. More at .
Role Overview:
Develops and delivers detailed IT solutions through consulting project activities. Responsibilities include client identification through final invoicing for engagements requiring varied interpersonal and technical skills. Technical responsibilities include problem identification, system architecture definition, hardware/software specification and/or design, implementation, testing, client training, and solution deployment. Performance is typically evaluated based on utilization, (i.e., billable hours). Project management activities include interaction with company and client managers and schedule monitoring. May participate in sales and proposal presentations in addition to completing ongoing team account activities. Identifies additional product/services opportunities in customer organization. Performance is typically measured by the capture of the consulting engagement and/or delivery of agreed solutions within budgeted hours. The ideal candidate will have a strong background in threat hunting and cyber defense, with the ability to develop and refine Tactics, Techniques, and Procedures (TTPs) to outpace evolving threats. This position also requires clear documentation and close coordination with cross-functional teams to enhance security policies, tools, and architecture based on threat insights.
Job Title:
Trellix Professional Services Security Consultant (Public Sector)
Work Location:
Onsite Fort Belvoir, VA
Role Overview:
Role: Trellix Security Professional Services Consultant
Location: Fort Belvoir, VA
Clearance Required: TS/SCI
Up to 25% Travel Required
Company Overview:
Trellix is a global company redefining the future of cybersecurity. The company's open and native extended detection and response (XDR) platform helps organizations confronted by today's most advanced threats gain confidence in the protection and resilience of their operations. Trellix's security experts, along with an extensive partner ecosystem, accelerate technology innovation through machine learning and automation to empower over 40,000 business and government customers. More at
About the role:
This is a Full time onsite role at Fort Belvoir, VA in a classified environment. You will be responsible for developing and delivering detailed IT solutions through consulting project activities from client identification through to final invoicing. Works on complex problems where analysis of situations or data requires an in-depth evaluation of various factors. Exercises judgment within broadly defined practices and policies in selecting methods, techniques, and evaluation criteria for obtaining results. Work leadership may be provided by assigning work and resolving problems.
As a Professional Services consultant, you will be responsible for consulting project activities from project initiation through project completion and final invoicing. A Professional Services consultant is expected to interface with internal and external customers and is expected to develop professional relationships that will enable him to achieve his goals.
Among the tasks that a PS consultant will be expected to deliver, are:
Manage and perform client work, related to our product service's offerings.
Create end of engagement reports describing engagement findings and analysis work.
Help develop and maintain intellectual capital within Solution Services around our product line.
Help identify and implement improvements in existing processes and procedures.
Maintain technical proficiency through self-training or formal training.
Help identify and develop new clients and expert services engagements.
Provide knowledge sharing throughout the Solution Services team.
Mentor consultant peers in new techniques, tools and other job skills.
Deliver training when required.
Possible helping update and/or create training course material.
Interaction with company and client managers and cost/schedule monitoring and estimating, proposal generation and invoicing.
May participate in sales and proposal presentations in addition to completing ongoing team account activities.
About the candidate:
Understanding of cyber threats, attack vectors, detection capabilities, and associated countermeasures
Experience working in a Security Operations Center to monitor security alerts, respond and remediate detected issues is preferred
Clear understanding of organizational Incident Management processes in relation to threats and vulnerabilities
Knowledge and experience creating detailed Threat Hunting plans, briefings and reports.
Analyze configurations for vulnerabilities, recommend mitigations, use network tools to assess risks, and assist in malware removal during incidents.
Maintain a deep knowledge of Trellix Endpoint Security, Application Control/Change Control, ENS, TIE, DXL, DLP, HX, IVX.
Experience in Windows, Mac, Linux OS and application hardening, including understanding artifacts and behaviors.
Experience with one or more scripting languages: Python, PowerShell, Go, C#, other command line scripting or similar is preferred.
You may have experience scripting API integrations with response and orchestration tools like SIEM, SOARs and/or XDR platforms
Experience with a SIEM tool and working with SIEM Analyst.
Experience with event correlation and analysis.
Demonstrated technical proficiency in cybersecurity operations, cybersecurity engineering, systems engineering
Experience with Virtualization (VMWare, Nutanix, etc.) and Cloud Services [i.e., AWS, Azure]) and enterprise networks.
Characterize and analyze network traffic to identify anomalous activities or potential threats using packet-level and protocol analysis tools.
Deliver onsite and remote security application/endpoint protection designs, implementations, training, and knowledge transfer for a wide variety of customers.
Be able to identify gaps in application and network security architecture and recommend strategies using a combination of industry-standard security best practices, software controls and other necessary changes to promote a higher level of information security practices.
Author formal reports, architecture designs, optimization guides, and best-practice white papers covering a variety of security topics.
Participate in conference calls, onsite meetings and roundtables with customers, sales, internal product development and support to gather data, scope new and existing work, evaluate or suggest new product features and assist in resolving existing product issues.
Recognize and generate potential product and consulting services sales leads when appropriate and necessary.
Detailed understanding of the TCP and IP protocol suites and ability to dissect and explain the contents of traffic and packets.
Experience with configuration of debugging, event generation, and logging functionality within the application and operating systems, using Syslog or flat-file generation.
Required Qualifications:
5+ years of Threat Hunting experience or similar Federal Government Enterprise capability
Currently hold an adjudicated Secret Clearance and qualify for a TS/SCI clearance
BA/BS +4 years recent specialized or AA/AS +6years recent specialized or a major cert + 8 years recent specialized
Active DoD 8570 or DoD 8140 compliant cybersecurity certification
Advanced Proficiency in Microsoft Office Suite products (Word, Excel, PowerPoint)
Preferred Qualifications:
Knowledge of DoD IT RMF, USCYBERCOM, IC and JFHQ-DoDIN
Microsoft Certified Solutions Associate (MCSA) Widows Server 2016/2019
Microsoft Certified Solutions Associate (MCSA) SQL 2016 Database Admin
Proficiency with Microsoft SCCM and/or other automatic reporting tools
Adaptable to changing circumstances and operational needs
Understanding of Department of Defense Military and Federal Government Agency standards
Experience with Federal Government and DoD IT security requirements
Company Benefits and Perks:
We believe that the best solutions are developed by teams who embrace each other's unique experiences, skills, and abilities. We work hard to create a dynamic workforce where we encourage everyone to bring their authentic selves to work every day. We offer a variety of social programs, flexible work hours and family-friendly benefits to all of our employees.
Retirement Plans
Medical, Dental and Vision Coverage
Paid Time Off
Paid Parental Leave
Support for Community Involvement
We're serious about our commitment to a workplace where everyone can thrive and contribute to our industry-leading products and customer support, which is why we prohibit discrimination and harassment based on race, color, religion, gender, national origin, age, disability, veteran status, marital status, pregnancy, gender expression or identity, sexual orientation or any other legally protected status.
Our Commitment to You:
At Trellix, we are committed to creating a safe and trustworthy experience for our customers, employees, and candidates. Please be aware that fraudulent recruiting activity can occur through fake job postings or impersonated communications.
Trellix conducts interviews through professional channels only and does not use text messages, instant messaging, or group chats for interviews. We will never request sensitive personal information-such as your date of birth, Social Security number, or national ID number-during the interview process.
Trellix also does not require candidates to pay fees, purchase products or services, or process payments of any kind as part of the recruiting or hiring process. And Trellix will never keep any original work authorization documents that we may be required to review during the hiring process.
- 109 Trellix Public Sector LLC is looking for a Cyber Threat Hunter with TS/SCI clearance in Fort Belvoir, VA. The successful candidate will engage clients... ...effective communication and reporting. The role requires a minimum of 5 years of cybersecurity experience and an...Cyber
- Job Title Cyber Threat Hunter (TS/SCI Clearance Required) Location Fort Belvoir, VA (Onsite) Clearance TS/SCI (Qualified) Role Overview The role involves developing and delivering detailed IT solutions through consulting project activities, from client identification to...CyberWork at officeRemote work
- ...(Public Sector) Work Location Onsite Fort Belvoir, VA Clearance Required TS/SCI Travel Up to 25% required Role Overview This is a full‑... ...account activities. About the Candidate Understanding of cyber threats, attack vectors, detection capabilities, and...CyberFull timeWork at officeRemote work
- ARGO Cyber Systems is looking for an Incident Response Expert III to join our team in the Washington DC Metro Area. This role entails... ...will have over 8 years of relevant experience, an active TS/SCI clearance, and a strong understanding of network security. Benefits...Cyber
- ...in McLean, VA is seeking an experienced Cyber Threat Hunt Analyst to enhance national security... ...techniques. A High School Diploma with relevant experience is required; a Bachelor’s degree is preferred. The position requires a current TS/SCI clearance. #J-18808-Ljbffr...CyberFor contractors
- A cybersecurity firm in Arlington, VA seeks a Cyber Threat Intelligence Analyst II to proactively identify and respond to cyber threats. This role requires U.S. citizenship, an active TS/SCI clearance, and 5+ years of relevant experience. Responsibilities include analyzing...Cyber
- ...seeks a motivated, career and customer-oriented Cyber Threat Hunter to join our team in Mclean, VA . The Cyber Threat... ...(e.g., CISSP, GCIH, CThH, CySA+). Clearance Requirements: ~ An active TS/SCI with Polygraph is required for this position....CyberWork at office
- ...focus on high-profile, high-threat, private and public-sector customers... ...recognized members of the Cyber Elite, we work together in... ...an Elasticsearch Engineer (TS/SCI Clearance)with expertise in designing,... ...ability to analyze complex requirements and translate them into...Cyber
- ...location in Lorton, VA. This position requires an active Top Secret with SCI level clearance. As a Senior Information... ...innovative solutions to support ongoing Cyber Threat and Defensive Operations.... ...to 10% Must possess an active TS/SCI clearance or above Please...CyberFull timeContract workImmediate startRelocation
- ...Location: Arlington, VA Clearance Required: TS/SCI minimum (US Citizen) Employment Type: Full-Time About Praescient Analytics:... ...Praescient Analytics is seeking a highly skilled Senior Cyber Threat Analyst to join our team. This role requires an experienced...CyberFull timeLocal area
- ...technology solutions provider in Arlington, VA is seeking a Cyber Threat Intelligence Analyst. The role involves gathering and analyzing... ...agencies. Candidates must be U.S. citizens with an active TS/SCI clearance and have at least 5 years of relevant experience....Cyber
- ...Arlington, VA, is seeking an Incident Response Expert / Cyber Eviction Analyst. This role requires 8+ years of cyber incident response experience and the... ...experience and possess a top-secret security clearance. Responsibilities include advising on incident response...Cyber
- Node.Digital in Arlington, VA, seeks an Incident Manager to provide intelligence support in mitigating cyber threats. Candidates must have an active TS/SCI clearance, U.S. Citizenship, and at least 2 years of relevant experience. Key responsibilities include analyzing...Cyber
- ...experienced Incident Manager to gather and analyze cyber threat intelligence. Key responsibilities include... ...vulnerability management capabilities. The role requires a minimum of 2 years' experience, active TS/SCI clearance, and strong analytical skills. The company offers...Cyber
- ...consulting firm is seeking an Incident Manager with a focus on Cyber Threat Intelligence in Arlington, VA. The role involves gathering... ...improve vulnerability management. Candidates should have a TS/SCI clearance, 2+ years of relevant experience, and a Bachelor's degree in...Cyber
- ...role involves overseeing the A&A process, developing security plans, and mitigating cyber threats while ensuring compliance with security standards. Candidates must have a TS/SCI clearance, relevant degrees, and experience in networking and security tools. This position...Cyber
- ..., Virginia, is seeking a skilled cybersecurity professional to manage cyber incidents. The role requires over 5 years of experience in cyber incident management, along with an active TS/SCI clearance. You will support the incident response lifecycle, create and maintain...Cyber
- A technology firm is seeking an experienced Cyber Incident Manager in Arlington, VA. The role involves correlating incident data... ...Candidates must have 5+ years of relevant experience and an active TS/SCI clearance. This position plays a critical role in supporting onsite...Cyber
- ...to meet critical mission requirements in the areas of Data Analytics... ...Operations, Training, and Cyber Operations. We maximize... ...current and emerging cyber threats. Analyze data to... ...requires an active/current TS/SCI with Polygraph clearance. Equal Opportunity Employer...Cyber
- ...Insider Threat Program Hunt Team Analyst (w/ active TS/SCI) Location: Springfield, VA Clearance: Top-Secret/SCI Type: Full-time, Onsite... ...platform to identify emerging requirements related to insider threat... ...Justice, Homeland security, Cyber Security, or related field...CyberFull timeFlexible hours
- ManTech seeks a motivated Cyber Threat Hunter to join our team in McLean, VA. The role involves leveraging technical expertise to... ...familiarity with SIEM and cloud environments, and relevant certifications. An active TS/SCI clearance is required. #J-18808-Ljbffr ManTechCyber
- ...System and Ground Support security requirements and ensures that the requirements are... ...Key Performance Parameters (KPPs), Cyber Survivability Endorsement (CSE) requirements... ...YOU’LL NEED TO SUCCEED Security Clearance Level: Active TS/SCI Required Experience: 5+ years of...CyberContract workWork at office
- ...Senior Cyber Engineer Intelligent. Dynamic. Resilient.... ...against the most complex cyber threats imaginable for more than 25... ...critical customer driven requirements, enabling secure data transfer... ...Active (currently in Use) TS/SCI w/CI Poly clearance ~8+ years of experience...CyberPermanent employmentFull timeFor contractorsLocal areaRemote workMonday to FridayFlexible hours
- ...modern practices while having strong Python skills and experience with database technologies. The role also mandates an active TS/SCI clearance. Candidates should have relevant experience in state machines and RESTful APIs. Opportunities for professional growth and...Cyber
- A technology services company is seeking a Senior Cyber Engineer III in Arlington, VA. The role requires a TS/SCI clearance and emphasizes technical expertise in cyber engineering, project management, and evaluation of cyber capabilities. Candidates should possess a Bachelor...Cyber
- ...to meet critical mission requirements in the areas of Data Analytics... ...Operations, Training, and Cyber Operations. We maximize... ...resource will analyze cyber threat intelligence gathered from... ...an active/current TS/SCI with Polygraph clearance. Equal Opportunity Employer...Cyber
- A leading technology services company is seeking a Technical Targeting Analyst with TS/SCI clearance and polygraph. The role involves utilizing a multi-disciplinary approach to identify intelligence opportunities and conducting data analysis to support technical operations...Cyber
- ...Everfox Holdings LLC is seeking a Principal Cyber Engineer to work onsite in Vienna, VA. The successful candidate will tackle complex... ...with security protocols. A strong background in cybersecurity and an active TS/SCI clearance are essential for this role. #J-18808-LjbffrCyber
- ...Systems in Arlington, Virginia is seeking a Cyber Incident Management professional to oversee... ...cyber incidents, and collaborating with teams on threat assessments. The position requires U.S. Citizenship and an active TS/SCI clearance. #J-18808-Ljbffr Farfield SystemsCyber
- ...seeking professionals to manage cyber incidents for U.S.... ...U.S. citizenship, an active TS/SCI clearance, and 5+ years of relevant experience... ...A BS in a related field is required, alongside knowledge of... ...response methodologies and threat environments. #J-18808-Ljbffr...Cyber
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Cyber Threat Hunter (TS/SCI Clearance Required). Be the first to apply!



