Cyber Threat Hunter
$94.1k - $150kASM Research, An Accenture Federal Services Company
Position Overview
The Cyber Threat Hunter proactively protects enterprise environments from advanced cyber threats by analyzing network, endpoint, and log data to identify malicious activity that may evade conventional security controls. This role establishes normal traffic and data-flow baselines, detects anomalies, develops threat hypotheses, and investigates adversary tactics, techniques, and procedures to strengthen cyber defense and incident response operations. This role directly supports a proactive SOC model by contributing to detection engineering, monitoring enhancements, automation development and continuous gap analysis to identify and mitigate emerging threats before they materialize.
Key Responsibilities
Conduct proactive threat hunting across networks, endpoints, and security datasets to identify, isolate, and help eradicate advanced threats before they impact operations.
Analyze logs from multiple sources, including packet captures, correlation engines, parsed security data, and endpoint telemetry, to detect suspicious behavior and validate threat activity.
Establish and maintain baseline patterns for normal traffic, system activity, and data flows to improve anomaly detection and investigative accuracy.
Collaborate closely with SOC analysts and detection engineers to recommend new alerts, analytics, and monitoring logic based on threat hunting findings, emerging trends, and identified visibility gaps.
Develop automation scripts and workflows (using SOAR platforms, Python, PowerShell, or similar tools) to streamline threat hunting activities, automate repetitive analytical tasks, and reduce detection and response time.
Research and track adversary tactics, techniques, and procedures (TTPs), developing technical hypotheses and investigative leads based on threat intelligence and observed behaviors.
Support incident response activities by creating incident documentation, follow-up actions, reporting criteria, and recommendations that improve overall response maturity and operational resilience.
Examine and characterize malware and cyber threats, including viruses, worms, bots, rootkits, and Trojan horses, to determine threat nature, scope, and potential impact.
Apply reverse engineering and binary analysis techniques using tools such as Ghidra and IDA Pro to support vulnerability research and understand malicious code behavior.
Required Qualifications
Bachelor’s degree in Information Technology, Computer Science, Cybersecurity, or a related field, or equivalent relevant experience.
4 years of experience in cybersecurity or a closely related technical security role.
Demonstrated ability to perform system administrator-level analysis across multiple platforms and operating systems in support of cyber investigations.
Strong analytical and problem-solving skills with the ability to identify, track, and assess adversary TTPs and suspicious activity.
Knowledge of intrusion detection methodologies, evidence preservation practices, and cyber defense and information security policies, procedures, and regulations.
Preferred Qualifications
Relevant cybersecurity certifications such as GCDA, GNFA, CompTIA PenTest+ (Removed CISSP), CISM, or CompTIA CySA+.
Experience with reverse engineering, malware analysis, vulnerability research, and threat analysis in enterprise or government environments.
Familiarity with U.S. Army Corps of Engineers (USACE) IT policies and operational security requirements.
Experience preparing technical reports, incident summaries, and threat findings for stakeholders and operational leadership.
Job Specific Skills
Threat hunting and anomaly detection.
Log correlation and security event analysis.
Packet capture analysis and data parsing.
Malware analysis, reverse engineering, and binary analysis.
Threat intelligence analysis and TTP identification.
Incident response documentation and reporting.
Detection engineering collaboration and monitoring enhancement support.
Compensation Ranges
Compensation ranges for ASM Research positions vary depending on multiple factors; including but not limited to, location, skill set, level of education, certifications, client requirements, contract-specific affordability, government clearance and investigation level, and years of experience. The compensation displayed for this role is a general guideline based on these factors and is unique to each role. Monetary compensation is one component of ASM's overall compensation and benefits package for employees.
EEO Requirements
It is the policy of ASM that an individual's race, color, religion, sex, disability, age, sexual orientation or national origin are not and will not be considered in any personnel or management decisions. We affirm our commitment to these fundamental policies.
All recruiting, hiring, training, and promoting for all job classifications is done without regard to race, color, religion, sex, disability, or age. All decisions on employment are made to abide by the principle of equal employment.
Physical Requirements
The physical requirements described in "Knowledge, Skills and Abilities" above are representative of those which must be met by an employee to successfully perform the primary functions of this job. (For example, "light office duties' or "lifting up to 50 pounds" or "some travel" required.) Reasonable accommodations may be made to enable individuals with qualifying disabilities, who are otherwise qualified, to perform the primary functions.
Disclaimer
The preceding job description has been designed to indicate the general nature and level of work performed by employees within this classification. It is not designed to contain or be interpreted as a comprehensive inventory of all duties, responsibilities and qualifications required of employees assigned to this job.
$94,100 - $150,000
EEO Requirements
It is the policy of ASM that an individual's race, color, religion, sex, disability, age, gender identity, veteran status, sexual orientation or national origin are not and will not be considered in any personnel or management decisions. We affirm our commitment to these fundamental policies.
All recruiting, hiring, training, and promoting for all job classifications is done without regard to race, color, religion, sex, veteran status, disability, gender identity, or age. All decisions on employment are made to abide by the principle of equal employment.
$66.9k - $82.1k
...strategies with infrastructure and application teams to contain threats while preserving evidence and minimizing operational disruption.... ...tools and service management platforms integrated with SOC and cyber defense functions. Certifications such as ITIL Foundation plus...CyberContract workWork experience placementWork at office- ...teams. Delivers ongoing reporting and analysis to Information Technology security leadership regarding enterprise security posture, threat trends, and control effectiveness. Performs advanced monitoring, analysis, and tracking of application and system...CyberRemote work
$76.4k - $138.6k
...Information Security we blend risk strategy, digital identity, cyber defense, application security and technology solutions as we consider... ...role goes beyond traditional scanning by actively emulating threat actors, performing penetration testing and assessing the true impact...CyberSummer holidayLocal areaFlexible hours$152.7k - $294k
...strategist will combine deep knowledge of emerging technologies and threats with strong business acumen to drive security programs that... ...Security program a step ahead of evolving business demands and cyber risks. Key Responsibilities: Strategic Program Development...CyberSummer holidayLocal areaFlexible hoursShift work- ...platform helps organizations confronted by today's most advanced threats gain confidence in the protection and resilience of their... ...experience in large-scale operational environments focusing on cyber defense along with experience performing incident analysis, developing...CyberFull timeRemote workFlexible hours
$86.4k
...JOB SUMMARY This Position is the top investigator in the Cyber Fusion Center, capable of working any kind of incident, leading... ...and intrusion detection system [IDS] logs) to identify possible threats to network security. (10%) Perform cyber defense incident triage...CyberFor contractorsWork at officeLocal areaRemote work$144.9k - $265.8k
Location: Anywhere in Country At EY, we’re all in to shape your future with confidence. We’ll help you succeed in a globally connected powerhouse of diverse teams and take your career wherever you want it to go. Join EY and help to build a better working world...CyberSummer holidayFlexible hours$78.8k - $131.3k
...case assistance and enhance investigations in the evaluation of threats, critical incidents, and criminal research. The analyst will use... ...personal expertise Must collaborate regularly with insider threat, cyber, and physical security teams to share relevant findings....CyberFull timeContract workLocal areaRemote workWork from homeShift workAfternoon shift$91.1k - $170.4k
...Security (InfoSec) - InfoSec prevents, detects, responds and mitigates cyber-risk, protecting EY and client data, and our information... ...response to cybersecurity events or incidents stemming from suspected threats. Candidates for the role must have a strong comprehension of...CyberSummer holidayLocal areaRemote workFlexible hours$104.8k - $192.2k
Location: Anywhere in Country At EY, we’re all in to shape your future with confidence. We’ll help you succeed in a globally connected powerhouse of diverse teams and take your career wherever you want it to go. Join EY and help to build a better working world...CyberSummer holidayLocal areaRemote workFlexible hours$18 - $25 per hour
...Consulting, Machine Learning Operations, Multicloud, and Security. Relevant Majors: Business Administration Computer Science Cyber Security Data Science/Analytics Economics/Statistics Information Technology Software Engineering Master of Business...CyberRemote jobHourly paySummer workInternshipWork at officeImmediate startShift work- ...or university level is required. The ideal candidate will have a strong background in computer science, particularly in the areas of cyber security, computer forensics, network security, network engineering, data science, artificial intelligence, digital gaming, and...Cyber
- ...timelines, and impacts accurately. Telemetry‑Informed Engagement: Use monitoring/ITSM data to route incidents; engage infra/app/cyber/vendor dependencies. Communications & Handoffs: Provide structured internal messaging (leadership updates, stakeholder briefings,...CyberContract workWork experience placementWork at officeShift work
- ...role executes the incident response process as defined by enterprise ITSM governance and the Senior Incident Manager, integrates with cyber defenders when needed, and champions readiness and continual improvement. Key Responsibilities War-Room Facilitation:...CyberContract workWork experience placementWork at officeShift work
- ...the World's AI Transformation Rubrik (RBRK), the Security and AI Operations Company, leads at the intersection of data protection, cyber resilience, and enterprise AI acceleration. Rubrik Security Cloud delivers complete cyber resilience by securing, monitoring, and recovering...CyberLocal areaImmediate start
- ..., Investments & Capital Markets, Computer Science, Data/Quant Analytics, Economics, Finance, Risk Management, Technology (including Cyber and Software Development) and more. Join us to hear directly from our University Talent Advisors about: -Who we are and how we...CyberRemote jobFull timeSummer workInternshipSummer internship
$71.2k - $166.1k
...management and engineering project management experience • Federal EHR (VA and/or DoD) engineering and deployment experience • Federal Cyber understanding/experience • Engineering experience with Oracle Health (Cerner) Applications/Platforms • Engineering experience...CyberTemporary workFlexible hours$122.1k
...models, and technologies for secure and reliable electric power systems and related technologies such as communications systems and grid cyber security. Develops and drives sustainment plan that identifies training needs for local operators. Lead and evaluate technical...CyberFor contractorsWork experience placementWork at officeLocal areaRelocation packageFlexible hours$106.9k - $147k
...is responsible for the design, engineering, implementation, operation, and continuous optimization of enterprise backup, recovery, cyber resilience, and data protection solutions supporting Humana's mission‑critical business services and healthcare platforms. This position...CyberFull timeTemporary workFor contractorsApprenticeshipWork at officeRemote workWork from homeHome office$99.3k - $158.69k
...to leadership. Partner with vulnerability management, security operations, and network/server teams to integrate scan results, threat intelligence, and asset criticality into patch planning and execution. Design and oversee automation, scripting, and configuration...Contract workWork at officeRemote work- ...Networks, and Intelligence Specialists keep the Fleet connected, informed, and secure by operating and defending networks, conducting cyber operations, and producing intelligence for decision makers across the Navy. Key Responsibilities As an Information Systems...CyberApprenticeshipWorldwideShift work
- ...cybersecurity. The company's comprehensive, open, and native cybersecurity platform helps organizations confronted by today's most advanced threats gain confidence in the protection and resilience of their operations. Trellix, along with an extensive partner ecosystem,...Full timeRemote workFlexible hours
$100.7k - $181.3k
...everyone. Our focus is simple: Cloud and Edge: Running apps closer to users for instant performance. Security : Neutralizing threats before they ever reach your data. Content Delivery : Scaling the world's biggest moments without a glitch. AI : Enabling...Work experience placementWork at office$140k - $192.5k
Our Mission At Palo Alto Networks®, we're united by a shared mission-to protect our digital way of life. We thrive at the intersection of innovation and impact, solving real-world problems with cutting-edge technology and bold thinking. Here, everyone has a voice, and...Remote workVisa sponsorshipWork visa$106.61k - $284.28k
...standards, governance controls, and enterprise data protection solutions. Conduct privacy risk assessments, privacy impact assessments, threat modeling, and control evaluations to identify, mitigate, and monitor privacy and security risks while supporting audit, compliance,...Hourly payFull timeTemporary workWork experience placementLocal area$104.8k - $192.2k
Location: Anywhere in Country At EY, we’re all in to shape your future with confidence. We’ll help you succeed in a globally connected powerhouse of diverse teams and take your career wherever you want it to go. Join EY and help to build a better working world...For contractorsSummer holidayFlexible hours$126.07k - $196.98k
US - Remote US - DE - Wilmington (Headquarters) Full time JR14773 As we create a colorful, capable and cleaner world through chemistry, we invite you to join our team to harness the power of chemistry to shape markets, redefine industries and improve lives for...Full timeWork at officeLocal areaRemote work$78.4k - $79.91k
The Backup and Recovery Specialist, Senior leads the architecture and governance of enterprise backup and recovery services that protect large, complex environments supporting mission-critical systems in a federal IT setting. This role owns the overall health, scalability...Contract workWork at office$78.9k - $123.3k
Position Overview We are seeking a detail-oriented cybersecurity compliance professional to support system authorization and continuous monitoring activities within a Federal environment. This role is responsible for managing the security authorization lifecycle for one...Permanent employmentFull timePart timeWork at officeLocal areaRemote work
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Cyber Threat Hunter. Be the first to apply!


