Cyber Threat Hunter
$94.1k - $150kASM Research, An Accenture Federal Services Company
Position Overview
The Cyber Threat Hunter proactively protects enterprise environments from advanced cyber threats by analyzing network, endpoint, and log data to identify malicious activity that may evade conventional security controls. This role establishes normal traffic and data-flow baselines, detects anomalies, develops threat hypotheses, and investigates adversary tactics, techniques, and procedures to strengthen cyber defense and incident response operations. This role directly supports a proactive SOC model by contributing to detection engineering, monitoring enhancements, automation development and continuous gap analysis to identify and mitigate emerging threats before they materialize.
Key Responsibilities
Conduct proactive threat hunting across networks, endpoints, and security datasets to identify, isolate, and help eradicate advanced threats before they impact operations.
Analyze logs from multiple sources, including packet captures, correlation engines, parsed security data, and endpoint telemetry, to detect suspicious behavior and validate threat activity.
Establish and maintain baseline patterns for normal traffic, system activity, and data flows to improve anomaly detection and investigative accuracy.
Collaborate closely with SOC analysts and detection engineers to recommend new alerts, analytics, and monitoring logic based on threat hunting findings, emerging trends, and identified visibility gaps.
Develop automation scripts and workflows (using SOAR platforms, Python, PowerShell, or similar tools) to streamline threat hunting activities, automate repetitive analytical tasks, and reduce detection and response time.
Research and track adversary tactics, techniques, and procedures (TTPs), developing technical hypotheses and investigative leads based on threat intelligence and observed behaviors.
Support incident response activities by creating incident documentation, follow-up actions, reporting criteria, and recommendations that improve overall response maturity and operational resilience.
Examine and characterize malware and cyber threats, including viruses, worms, bots, rootkits, and Trojan horses, to determine threat nature, scope, and potential impact.
Apply reverse engineering and binary analysis techniques using tools such as Ghidra and IDA Pro to support vulnerability research and understand malicious code behavior.
Required Qualifications
Bachelor's degree in Information Technology, Computer Science, Cybersecurity, or a related field, or equivalent relevant experience.
4 years of experience in cybersecurity or a closely related technical security role.
Demonstrated ability to perform system administrator-level analysis across multiple platforms and operating systems in support of cyber investigations.
Strong analytical and problem-solving skills with the ability to identify, track, and assess adversary TTPs and suspicious activity.
Knowledge of intrusion detection methodologies, evidence preservation practices, and cyber defense and information security policies, procedures, and regulations.
Preferred Qualifications
Relevant cybersecurity certifications such as GCDA, GNFA, CompTIA PenTest+ (Removed CISSP), CISM, or CompTIA CySA+.
Experience with reverse engineering, malware analysis, vulnerability research, and threat analysis in enterprise or government environments.
Familiarity with U.S. Army Corps of Engineers (USACE) IT policies and operational security requirements.
Experience preparing technical reports, incident summaries, and threat findings for stakeholders and operational leadership.
Job Specific Skills
Threat hunting and anomaly detection.
Log correlation and security event analysis.
Packet capture analysis and data parsing.
Malware analysis, reverse engineering, and binary analysis.
Threat intelligence analysis and TTP identification.
Incident response documentation and reporting.
Detection engineering collaboration and monitoring enhancement support.
Compensation Ranges
Compensation ranges for ASM Research positions vary depending on multiple factors; including but not limited to, location, skill set, level of education, certifications, client requirements, contract-specific affordability, government clearance and investigation level, and years of experience. The compensation displayed for this role is a general guideline based on these factors and is unique to each role. Monetary compensation is one component of ASM's overall compensation and benefits package for employees.
EEO Requirements
It is the policy of ASM that an individual's race, color, religion, sex, disability, age, sexual orientation or national origin are not and will not be considered in any personnel or management decisions. We affirm our commitment to these fundamental policies.
All recruiting, hiring, training, and promoting for all job classifications is done without regard to race, color, religion, sex, disability, or age. All decisions on employment are made to abide by the principle of equal employment.
Physical Requirements
The physical requirements described in "Knowledge, Skills and Abilities" above are representative of those which must be met by an employee to successfully perform the primary functions of this job. (For example, "light office duties' or "lifting up to 50 pounds" or "some travel" required.) Reasonable accommodations may be made to enable individuals with qualifying disabilities, who are otherwise qualified, to perform the primary functions.
Disclaimer
The preceding job description has been designed to indicate the general nature and level of work performed by employees within this classification. It is not designed to contain or be interpreted as a comprehensive inventory of all duties, responsibilities and qualifications required of employees assigned to this job.
$94,100 - $150,000
EEO Requirements
It is the policy of ASM that an individual's race, color, religion, sex, disability, age, gender identity, veteran status, sexual orientation or national origin are not and will not be considered in any personnel or management decisions. We affirm our commitment to these fundamental policies.
All recruiting, hiring, training, and promoting for all job classifications is done without regard to race, color, religion, sex, veteran status, disability, gender identity, or age. All decisions on employment are made to abide by the principle of equal employment.
$80.2k - $111.3k
...Creates cyber-intelligence tools / methods and performs research and analysis in order to mitigate and eliminate high level data and... ...Maintains the computer and information security incident, damage and threat assessment programs. Responsible for the formal Security Test...CyberContract workWork at office- ...identify security weaknesses. • Interacts with a global team of Cyber Security Analysts and specialists. • Manages 2nd level... ...faults. • Maintains an understanding of current and emerging threats, vulnerabilities, and trends. Knowledge and Attributes: •...CyberWork at officeRemote workFlexible hours
- ...customer environments. Assist setup of customer firewall rules. Possess the ability to partner with other IT teams such as corporate cyber security, firewall and proxy teams. Represent the interests of assigned teams or customers in change advisory boards. Qualifications...CyberFull time
$212.8k - $319.2k
...standards are enforced. ● Support the SOC in analyzing applicable threats, vulnerabilities, controls, and residual risks. ● Partner with... ...Company, leads at the intersection of data protection, cyber resilience, and enterprise AI acceleration. Rubrik Security Cloud...CyberRemote work$79.2k - $209.5k
...environment for development we can provide to our customers. The OCI Security team keeps up with the constantly evolving and challenging cyber-threat landscape, by developing novel solutions and products to prevent and mitigate cyber-attacks on the OCI. We are looking for...CyberTemporary workFlexible hours- ...Assurance Technical (IAT) Level II baseline certification A Bachelors Degree with Technical training related to Information Technology, Cyber Security, Computer Science, or related discipline Or a High School diploma/GED with Technical training related to Information...CyberFull timeContract workPart timeInterim roleLocal areaFlexible hours
- ...thinking organization, apply now. We are currently seeking a Cyber Recovery Engineer to join our team in guadalajara, Jalisco (MX-JAL... ...governance forums, resilience committees, risk committees, threat awareness activities, assurance reviews, and planning discussions...CyberWork at officeRemote workFlexible hours
$18 - $25 per hour
...Consulting, Machine Learning Operations, Multicloud, and Security. Relevant Majors: Business Administration Computer Science Cyber Security Data Science/Analytics Economics/Statistics Information Technology Software Engineering Master of Business...CyberRemote jobHourly paySummer workInternshipWork at officeImmediate startShift work- ...timelines, and impacts accurately. Telemetry‑Informed Engagement: Use monitoring/ITSM data to route incidents; engage infra/app/cyber/vendor dependencies. Communications & Handoffs: Provide structured internal messaging (leadership updates, stakeholder briefings,...CyberContract workWork experience placementWork at officeShift work
- ...role executes the incident response process as defined by enterprise ITSM governance and the Senior Incident Manager, integrates with cyber defenders when needed, and champions readiness and continual improvement. Key Responsibilities War-Room Facilitation:...CyberContract workWork experience placementWork at officeShift work
- ...the World's AI Transformation Rubrik (RBRK), the Security and AI Operations Company, leads at the intersection of data protection, cyber resilience, and enterprise AI acceleration. Rubrik Security Cloud delivers complete cyber resilience by securing, monitoring, and...CyberLocal area
$120k - $140k
...troubleshoot security zones, NAT, virtual routers, static and dynamic routing, IPsec VPN, GlobalProtect, decryption, URL Filtering, Threat Prevention, WildFire, DNS Security, and App‑ID policies. Lead enterprise network‑segmentation and microsegmentation initiatives...Full timeRemote workFlexible hours$36 - $54 per hour
...disaster recovery planning, and forensic investigations. Review and report security procedure violations and monitor emerging security threats. Assist in developing safeguards to protect system configurations and prevent unauthorized changes. Provide expertise for security...Hourly payCasual workWork at officeNight shift$71.2k - $166.1k
...management and engineering project management experience • Federal EHR (VA and/or DoD) engineering and deployment experience • Federal Cyber understanding/experience • Engineering experience with Oracle Health (Cerner) Applications/Platforms • Engineering experience...CyberTemporary workFlexible hours- ...cybersecurity. The company’s comprehensive, open, and native cybersecurity platform helps organizations confronted by today’s most advanced threats gain confidence in the protection and resilience of their operations. Trellix, along with an extensive partner ecosystem,...Full timeWork at officeRemote workFlexible hours3 days per week
- ...cybersecurity. The company’s comprehensive, open, and native cybersecurity platform helps organizations confronted by today’s most advanced threats gain confidence in the protection and resilience of their operations. Trellix, along with an extensive partner ecosystem,...Full timeRemote workFlexible hours
- ...emergency response procedures during critical events. Understand, comply with, and enforce all Signature and airport security (physical, cyber and data) protocols. Create accurate records pertaining to time worked and activities and services performed. Use the Company...CyberWorldwideNight shift
$125k - $150k
...policies using least privilege, application-aware controls, user identity, URL filtering, DNS security, TLS decryption where approved, threat prevention, WildFire analysis, anti-spyware, vulnerability protection, and file-blocking capabilities. Lead the operational use...Full timeRemote workFlexible hours- ...condition. Follow emergency response procedures during critical events. Understand, comply with, and enforce all security (physical, cyber and data) protocols as dictated by both Signature Aviation and the airport. Create accurate records pertaining to time worked and...CyberPart timeLocal areaImmediate startWorldwideNight shift
$20.13 - $27.23 per hour
...solutions at the edge of innovation. We operate across 50+ countries worldwide, offering leading mission-ready capabilities in AI, cloud, cyber and software development. Join our Talent Community to stay up to date on our career opportunities and events at gdit.com/tc....CyberHourly payContract workTemporary workImmediate startRemote workWorldwideFlexible hoursDay shift$142.3k - $195.7k
...with enterprise business and technology priorities. In this role, you will partner with EIP and business leaders to assess emerging threats, identify architectural gaps, and design forward-looking security solutions that strengthen Humana's overall security posture. You...Full timeTemporary workWork at officeRemote workWork from homeHome office$300k
Santa Fe, NM - Relocation assistance available $300,000 ShortList is looking for a Chief Information Officer to join the executive leadership team of an established financial institution in New Mexico. The Chief Information Officer will own enterprise technology strategy...Relocation package$118.08k - $157.44k
Lumen is the trusted network for the AI‑powered world, connecting people, data, and applications through our expansive fiber network and connected ecosystem. We enable secure, high‑performance connectivity across cloud, edge, and AI workloads for enterprises, governments...Temporary workLocal areaRemote work$167.7k - $245.2k
The application window is expected to close on: 11/29/2026 This is a fully remote role and can be based anywhere in the United States. Meet the Team Isovalent, now part of Cisco, is the company founded by the creators of Cilium and eBPF. Cisco Isovalent is building...Full timeTemporary workLocal areaRemote workFlexible hours- Job Description Job Description Title : Information Technology Lead Hours : 36 hours per week Location: primarily on-site at Santa Fe office with some remote possibility Reports to : Chief of Staff About the Role The Information Technology Lead...Contract workWork at officeRemote workShift work
- ...continues. Follow emergency response procedures during critical events. Understand, comply with, and enforce all security (physical, cyber and data) protocols as dictated by both Signature Aviation and the airport. Maintain accurate records pertaining to time worked...CyberLocal areaImmediate startShift workNight shift
- Description About Heritage Companies At Heritage Companies, the culture, spirit, and traditions of New Mexico shape everything we do, including how we support our teams. We’re proud to offer a workplace centered on the experience of our employees, encouraging growth and...Remote workFlexible hoursShift workNight shiftAfternoon shift
$110k - $138k
Why WWT? World Wide Technology (WWT) strives to make a new world happen. WWT's work benefits clients and partners as much as it does its people and community across the globe. Founded in 1990, WWT brings together strategy, deep technical expertise and world-class partnerships...Full timeWork experience placementRemote workFlexible hoursShift work- H2 Performance Consulting is subject to the Vietnam Era Veteran's Readjustment Assistance Act as a Federal Contractor and is an Equal Opportunity/Affirmative Action Employer and strives to build a diverse workforce. All qualified applicants will receive consideration for...Contract workFor contractorsRemote work
- Job Description Job Description General Function: Responsible for all aspects of network management including but not limited to backup systems, domain controllers, network switches, file servers, virtual environments, wireless networks, web content filtering, cybersecurity...Work at officeRemote workWork visa
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Cyber Threat Hunter. Be the first to apply!




