Detection Engineer - Threat Hunter
$81.73 - $91.35 per hourECS Federal
Job DescriptionEverforth ECS is seeking a Detection Engineer – Threat Hunter to join our team in Arlington, VA (Hybrid). This position is contingent upon award.We are seeking a highly motivated Detection Engineer / Threat Hunter to proactively identify, detect, and mitigate advanced cyber threats across the enterprise environment. This role combines threat hunting, detection engineering, and security analytics to improve the organization's ability to identify malicious activity before it results in business impact.The ideal candidate will have experience working within Security Operations Centers (SOC), Incident Response, Detection Engineering, or Threat Hunting teams and possess strong analytical skills, knowledge of adversary tactics and techniques, and expertise in developing high-fidelity security detections.Key ResponsibilitiesThreat HuntingConduct proactive threat hunting activities to identify malicious, suspicious, or unauthorized activity across enterprise networks, endpoints, cloud environments, and applications.Leverage threat intelligence, behavioral analytics, and emerging threat research to develop hunting hypotheses.Investigate anomalous events and indicators that may represent compromise or active threats and translate findings into formal hunt/detection guidance.Document threat hunting methodologies, findings, and recommendations.Detection EngineeringDesign, develop, test, and maintain security detection content across SIEM, EDR/XDR, NDR, and cloud security platforms.Create and tune detection logic based on adversary TTPs, threat intelligence, and attack simulations.Develop and maintain Sigma rules, YARA signatures, SIEM queries, analytics rules, and detection playbooks.Continuously improve detection coverage using MITRE ATT&CK and industry threat frameworks.Define and validate true-positive criteria and effectively tunes/retires weak detections.Security AnalyticsAnalyze large volumes of security telemetry from endpoints, networks, cloud platforms, identity systems, and applications.Correlate threat intelligence with internal security data to identify emerging threats.Perform root cause analysis and provide actionable recommendations to improve detection effectiveness.Develop metrics and dashboards that measure detection coverage and security monitoring effectiveness.Incident Response SupportPartner with Incident Response and SOC teams during active investigations.Provide advanced threat analysis and forensic context during security incidents.Assist with containment, eradication, and recovery efforts when necessary.Create post-incident detection enhancements to prevent adversary re-entry.Threat Intelligence IntegrationConsume and operationalize threat intelligence from commercial, government, open-source, and internal sources.Map intelligence findings to security controls and detection opportunities.Identify threat actor tactics, techniques, procedures (TTPs), and Indicators of Compromise (IOCs).Collaborate with Cyber Threat Intelligence teams to enhance security monitoring capabilities.Continuous ImprovementAssess existing detections for effectiveness and false-positive reduction opportunities.Conduct adversary emulation and purple team exercises to validate detection capabilities.Identify visibility gaps and recommend additional logging, telemetry, and monitoring controls.Stay current on emerging cyber threats, attacker methodologies, and detection technologies.Salary Range: $170,000 - $190,000General Description of Benefits Job RequirementsTop Secret ClearanceBachelor's degree in Cybersecurity, Computer Science, Information Technology, or related field, or equivalent experience.7+ years of experience in cybersecurity, with direct experience in Threat Hunting, Detection Engineering, Security Operations, or Incident Response.Strong understanding of attacker tactics, techniques, and procedures (TTPs).Experience with SIEM platforms and security analytics tools.Knowledge of MITRE ATT&CK, Cyber Kill Chain, and threat hunting methodologies.Experience analyzing endpoint, network, cloud, and identity-based security telemetry.Familiarity with scripting and automation using Python, PowerShell, KQL, or similar languages.Strong critical-thinking, investigative, and problem-solving skills.Job DetailsJob Type: Full-timeCategory: Project, Program & Product Management (PMO)Salaried: Salaried
$170k - $190k
Job DescriptionEverforth ECS is seeking a Detection Engineer - Threat Hunter to join our team in Arlington, VA (Hybrid). This position is contingent upon award.We are seeking a highly motivated Detection Engineer / Threat Hunter to proactively identify, detect, and mitigate...SuggestedWork at office$119.32k - $202.85k
ICF is actively recruiting for an experienced Senior Threat Detection & Response Engineer to support the research and development of new cyber analytic capabilities that will help the US protect and defend its networks and critical information systems. The successful cleared...SuggestedFull timeContract workWork experience placementWork at officeRemote work- ...contingent upon contract award ***OverviewSOSi is seeking a Senior Threat Hunter to support proactive cyber defense activities in alignment... ...multiple sources to identify malicious activity, supporting detection and response efforts, and applying advanced analytical...SuggestedContract workWork at officeWorldwideMonday to FridayWeekend workAfternoon shift
$107.9k - $195.05k
...Leidos Digital Modernization sector is looking for a Cyber Threat Hunter to support a Defensive Cyber Operations (DCO) team in... ...to identify "low and slow" attacks that evade automated detection.Detection Engineering Pipeline: Partner with detection teams to transform manual...SuggestedFull timeSummer workCasual workRemote workShift workNight shiftRotating shift$104k - $166k
ResponsibilitiesPeraton's Cyber Mission sector is looking for a Sr Threat Hunter to support a SOC.Location: Chandler, AZ or Washington DC.Role... ...ATT&CK.Analyze endpoint, network, cloud, and log data to detect advanced persistent threats, insider threats, and anomalous behavior...SuggestedContract workShift work- ...monitoring and reactive/corrective measures for threats to the enterprise computer networks-... ...and physical solutions that prevent detect and correct the system to be assessed and... ...Computer Science, Information Systems, Engineering, Business, Physical Science, or other technology...Work experience placement
$100k - $141.3k
...thought leader in the design of cutting-edge detective, preventative, and proactive controls.ResponsibilitiesThe position of Threat Hunter is responsible for analyzing and... ...Operation, Incident Response, Detection Engineering, Offensive Security/Red Team, or Cyber Threat...Full timeWork at officeFlexible hoursDay shift- ...Mid Level Cyber Threat Hunter cFocus Software seeks a Mid Level Cyber Threat Hunter to join our program supporting US Courts in Washington... ...searches for security incidents that would not normally be detected through automated alerting. The Threat Hunt mission is to...Work at officeRemote work
- ...Cyber Threat Hunter Own your opportunity at GDIT and you'll help improve how agencies operate. Our work depends on a Cyber Threat Hunter... ...across ARNG enterprise networks, endpoints, and datasets to detect malicious, suspicious, or risky activities that evade existing...Full timeContract workWork experience placement
$114.75k - $155.25k
...Service, Cyber Risks, Cyber Security Architecture, Cyber Threat Hunting, Threat Detection Certifications: None Experience: 6 + years... ...Job Description: Position Description - Cyber Threat Hunter We are GDIT. We stay at the forefront of innovation...Full timeContract workTemporary workWork experience placementImmediate startRemote workWorldwideFlexible hours$62k - $141k
Cyber Threat Hunter, MidThe Opportunity:The Threat Hunter supports a Cybersecurity Operations... ...TTPs, and behavioral analytics to detect early indicators of compromise. The hunter... ...closely with SOC, IR, CTI, and platform engineering teams to operationalize intelligence, integrate...Full timeContract workPart timeWork at officeLocal areaRemote work- ...Cyber Threat Hunter Bethesda, MD Role Summary: Mid-level hunter conducting proactive threat hunts, identifying behavioral anomalies... ...-Have Skills: ~3–5 years threat hunting, SOC, IR, or detection engineering experience. ~ Skilled with MITRE Telecommunication&CK,...
$100k
...industrial world against cyber attacks. Our threat detection platform defends the modern world... ...to join our team as a Threat Hunter / SOC Analyst. In this role, you will... ...benefits. Location The Galvanick engineering team is based in Seattle. Given that we...Permanent employmentWork at officeRelocation$125k - $150k
...execution over bureaucracy. Senior Threat Hunter Analyst Location: Washington, DC, Ft.... ...7/365 continuous monitoring, intrusion detection, threat hunting, incident response, and... ...Threat Intelligence), GREM (GIAC Reverse Engineering Malware), CySA+, or equivalent...Full timeWork experience placementLocal areaRemote workFlexible hoursShift work$160k - $200k
...About the JobWe are looking to add a talented Senior Cyber Threat Operations Engineer to become a key player in our vibrant team dedicated to... ...on a daily basis. Assist in advancing threat hunting and detection engineering capabilities across all operational segments,...Permanent employmentFull timeWork at officeLocal areaRemote workWorldwide$179.4k - $204.7k
...Overview Detection Engineer, Manager Are you passionate about building and pioneering in the technology space? Do you enjoy solving complex... ...with deep endpoint security expertise to join our Cyber Threat Detection (CTD) team. In this role, you will own end-to-end detection...Full timePart timeH1bLocal area$75.2k - $158.1k
Job Title: Cyber Threat HunterJob Category: Information TechnologyTime Type: Full timeMinimum Clearance Required to Start: TS/SCIEmployee... ...: Local* * *The Opportunity:CACI is seeking a cyber threat hunter to join our team in supporting the National Geospatial-Intelligence...Contract workWork experience placementLocal areaFlexible hours- ...Consulting at DescriptionProSidian seeks a Mid-Level InfoSec Threat Intelligence Engineer Consultant focusing on Cyber-Security/Information... ...implementation, Intrusion Prevention Systems (IPS) and Intrusion Detection and Prevention Systems (IDPS) Systems, and advanced...Full timeFor contractorsWork experience placementInternshipWork at officeMonday to FridayShift work
$143.7k - $194.4k
The Amazon Cyber Threat Intelligence (ACTI) organization is responsible for investigating... ...security ecosystem.As a Software Development Engineer within ACTI Engineering, you will... ...will directly influence ACTI's ability to detect, analyze, and respond to emerging security...InternshipFlexible hours- ...Description Title: Senior Cybersecurity Threat Hunter III Location: Alexandria, VA Clearance:... ..., mission risk, adversary TTPs, detection coverage, incident lessons learned, and... ...actionable requirements for detection engineering, watch operations, security engineering...
$145k - $192.5k
...Global Information Security (GIS) team is seeking a Cyber Threat Defense Sr AI/ML Engineer to build and integrate advanced AI and machine learning... ...This person will drive innovation across preventative, detective, and responsive security controls by engineering the full...Full timeWork at officeShift workDay shift- ...Description Title: Senior Cybersecurity Threat Hunter III Location: Alexandria, VA... ...intelligence, mission risk, adversary TTPs, detection coverage, incident lessons learned, and... ...actionable requirements for detection engineering, watch operations, security engineering...
- cFocus Software seeks a Detection Engineer to join our program supporting the Administrative Office of the United States Courts (AOUSC). This... ...a related field ~3+ years’ experience conducting proactive threat hunting or adversary emulation. ~2+ years demonstrated experience...Full timeWork at office
$127.2k - $246.9k
...team.KPMG is currently seeking a Manager, Content Development, Detection Engineering & Automation to join our Enterprise Security Services... ...CI/CD pipelines (Detection-as-Code)Collaborate closely with Threat Intelligence, SOC, and Incident Response teams to map detections...H1bLocal area- ...next mission begins. Ardent is seeking a Cybersecurity Engineer to join our team. This position is based in Washington,... ...will support Zero Trust initiatives, continuous monitoring, threat detection, incident response, vulnerability management, and security operations...Full timeLocal areaRemote workFlexible hours
$90k - $107k
...residence required Position Summary The Cybersecurity Engineer designs, implements, and maintains enterprise security controls... ..., least-privilege enforcement, continuous monitoring, and threat detection — across cloud, network, and endpoint environments for a U.S....Permanent employmentFull timeContract workLocal areaRemote workMonday to Friday- GTSC seeks Cybersecurity Engineer – Zero Trust / RMF / SIEM \\\ for mid -August 2026 start. Commitment to start must be by 30 June... ...identity -centric access, least privilege, continuous monitoring, threat detection, secure configuration, hardening, NIST SP 800 -53, NIST SP 80...Full timeTemporary workLocal areaRemote workFlexible hours
$142k - $309k
...tech, and hyper-connected world. Role Overview The Insider Threat Counter Operations (ITCO) is the Coupang Red team for insider... ...insider risk resilience. We are seeking a deeply technical ITCO Engineer to lead offensive simulation campaigns from our Seattle office....Temporary workWork at officeFlexible hours- Incident Response Engineer-JourneymanIntermittent Telework: Arlington, VATS/SCI RequiredPay... ...professional responsible for detecting, investigating, and remediating security... ...stakeholders. The engineer also contributes to threat hunting, maintains incident response playbooks...Remote work
- ...looking for a Darktrace Cybersecurity Engineer is responsible for the design, deployment... ..., and customer stakeholders to improve threat detection, investigation, and response. This... ...analysts, incident responders, threat hunters, network engineers, cloud teams, system...Full timeWork at officeLocal areaRemote workWork from home
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Detection Engineer - Threat Hunter. Be the first to apply!



