Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

Detection Engineer - Threat Hunter

$81.73 - $91.35 per hour
Full-time

ECS Federal

Job DescriptionEverforth ECS is seeking a Detection Engineer – Threat Hunter to join our team in Arlington, VA (Hybrid). This position is contingent upon award.We are seeking a highly motivated Detection Engineer / Threat Hunter to proactively identify, detect, and mitigate advanced cyber threats across the enterprise environment. This role combines threat hunting, detection engineering, and security analytics to improve the organization's ability to identify malicious activity before it results in business impact.The ideal candidate will have experience working within Security Operations Centers (SOC), Incident Response, Detection Engineering, or Threat Hunting teams and possess strong analytical skills, knowledge of adversary tactics and techniques, and expertise in developing high-fidelity security detections.Key ResponsibilitiesThreat HuntingConduct proactive threat hunting activities to identify malicious, suspicious, or unauthorized activity across enterprise networks, endpoints, cloud environments, and applications.Leverage threat intelligence, behavioral analytics, and emerging threat research to develop hunting hypotheses.Investigate anomalous events and indicators that may represent compromise or active threats and translate findings into formal hunt/detection guidance.Document threat hunting methodologies, findings, and recommendations.Detection EngineeringDesign, develop, test, and maintain security detection content across SIEM, EDR/XDR, NDR, and cloud security platforms.Create and tune detection logic based on adversary TTPs, threat intelligence, and attack simulations.Develop and maintain Sigma rules, YARA signatures, SIEM queries, analytics rules, and detection playbooks.Continuously improve detection coverage using MITRE ATT&CK and industry threat frameworks.Define and validate true-positive criteria and effectively tunes/retires weak detections.Security AnalyticsAnalyze large volumes of security telemetry from endpoints, networks, cloud platforms, identity systems, and applications.Correlate threat intelligence with internal security data to identify emerging threats.Perform root cause analysis and provide actionable recommendations to improve detection effectiveness.Develop metrics and dashboards that measure detection coverage and security monitoring effectiveness.Incident Response SupportPartner with Incident Response and SOC teams during active investigations.Provide advanced threat analysis and forensic context during security incidents.Assist with containment, eradication, and recovery efforts when necessary.Create post-incident detection enhancements to prevent adversary re-entry.Threat Intelligence IntegrationConsume and operationalize threat intelligence from commercial, government, open-source, and internal sources.Map intelligence findings to security controls and detection opportunities.Identify threat actor tactics, techniques, procedures (TTPs), and Indicators of Compromise (IOCs).Collaborate with Cyber Threat Intelligence teams to enhance security monitoring capabilities.Continuous ImprovementAssess existing detections for effectiveness and false-positive reduction opportunities.Conduct adversary emulation and purple team exercises to validate detection capabilities.Identify visibility gaps and recommend additional logging, telemetry, and monitoring controls.Stay current on emerging cyber threats, attacker methodologies, and detection technologies.Salary Range: $170,000 - $190,000General Description of Benefits Job RequirementsTop Secret ClearanceBachelor's degree in Cybersecurity, Computer Science, Information Technology, or related field, or equivalent experience.7+ years of experience in cybersecurity, with direct experience in Threat Hunting, Detection Engineering, Security Operations, or Incident Response.Strong understanding of attacker tactics, techniques, and procedures (TTPs).Experience with SIEM platforms and security analytics tools.Knowledge of MITRE ATT&CK, Cyber Kill Chain, and threat hunting methodologies.Experience analyzing endpoint, network, cloud, and identity-based security telemetry.Familiarity with scripting and automation using Python, PowerShell, KQL, or similar languages.Strong critical-thinking, investigative, and problem-solving skills.Job DetailsJob Type: Full-timeCategory: Project, Program & Product Management (PMO)Salaried: Salaried

Vacancy posted 1 day ago
Similar jobs that could be interesting for youBased on the Detection Engineer - Threat Hunter in Arlington, VA vacancy
  • $170k - $190k

    Job DescriptionEverforth ECS is seeking a Detection Engineer - Threat Hunter to join our team in Arlington, VA (Hybrid). This position is contingent upon award.We are seeking a highly motivated Detection Engineer / Threat Hunter to proactively identify, detect, and mitigate... 
    Suggested
    Work at office

    ECS Federal

    Arlington, VA
    1 day ago
  • $119.32k - $202.85k

    ICF is actively recruiting for an experienced Senior Threat Detection & Response Engineer to support the research and development of new cyber analytic capabilities that will help the US protect and defend its networks and critical information systems. The successful cleared... 
    Suggested
    Full time
    Contract work
    Work experience placement
    Work at office
    Remote work

    ICF

    Arlington, VA
    2 days ago
  •  ...contingent upon contract award ***OverviewSOSi is seeking a Senior Threat Hunter to support proactive cyber defense activities in alignment...  ...multiple sources to identify malicious activity, supporting detection and response efforts, and applying advanced analytical... 
    Suggested
    Contract work
    Work at office
    Worldwide
    Monday to Friday
    Weekend work
    Afternoon shift

    SOSi

    Washington DC
    4 days ago
  • $107.9k - $195.05k

     ...Leidos Digital Modernization sector is looking for a Cyber Threat Hunter to support a Defensive Cyber Operations (DCO) team in...  ...to identify "low and slow" attacks that evade automated detection.Detection Engineering Pipeline: Partner with detection teams to transform manual... 
    Suggested
    Full time
    Summer work
    Casual work
    Remote work
    Shift work
    Night shift
    Rotating shift

    Leidos

    Washington DC
    3 days ago
  • $104k - $166k

    ResponsibilitiesPeraton's Cyber Mission sector is looking for a Sr Threat Hunter to support a SOC.Location: Chandler, AZ or Washington DC.Role...  ...ATT&CK.Analyze endpoint, network, cloud, and log data to detect advanced persistent threats, insider threats, and anomalous behavior... 
    Suggested
    Contract work
    Shift work

    Peraton Corporation

    Washington DC
    4 days ago
  •  ...monitoring and reactive/corrective measures for threats to the enterprise computer networks-...  ...and physical solutions that prevent detect and correct the system to be assessed and...  ...Computer Science, Information Systems, Engineering, Business, Physical Science, or other technology... 
    Work experience placement

    NTT DATA

    Arlington, VA
    10 hours ago
  • $100k - $141.3k

     ...thought leader in the design of cutting-edge detective, preventative, and proactive controls.ResponsibilitiesThe position of Threat Hunter is responsible for analyzing and...  ...Operation, Incident Response, Detection Engineering, Offensive Security/Red Team, or Cyber Threat... 
    Full time
    Work at office
    Flexible hours
    Day shift

    Bank of America

    Washington DC
    3 days ago
  •  ...Mid Level Cyber Threat Hunter cFocus Software seeks a Mid Level Cyber Threat Hunter to join our program supporting US Courts in Washington...  ...searches for security incidents that would not normally be detected through automated alerting. The Threat Hunt mission is to... 
    Work at office
    Remote work

    cFocus Software

    Washington DC
    2 days ago
  •  ...Cyber Threat Hunter Own your opportunity at GDIT and you'll help improve how agencies operate. Our work depends on a Cyber Threat Hunter...  ...across ARNG enterprise networks, endpoints, and datasets to detect malicious, suspicious, or risky activities that evade existing... 
    Full time
    Contract work
    Work experience placement

    General Dynamics

    Falls Church, VA
    4 days ago
  • $114.75k - $155.25k

     ...Service, Cyber Risks, Cyber Security Architecture, Cyber Threat Hunting, Threat Detection Certifications: None Experience: 6 + years...  ...Job Description: Position Description - Cyber Threat Hunter We are GDIT. We stay at the forefront of innovation... 
    Full time
    Contract work
    Temporary work
    Work experience placement
    Immediate start
    Remote work
    Worldwide
    Flexible hours

    General Dynamics Information Technology

    Falls Church, VA
    5 days ago
  • $62k - $141k

    Cyber Threat Hunter, MidThe Opportunity:The Threat Hunter supports a Cybersecurity Operations...  ...TTPs, and behavioral analytics to detect early indicators of compromise. The hunter...  ...closely with SOC, IR, CTI, and platform engineering teams to operationalize intelligence, integrate... 
    Full time
    Contract work
    Part time
    Work at office
    Local area
    Remote work

    Booz Allen Hamilton

    Bethesda, MD
    4 days ago
  •  ...Cyber Threat Hunter Bethesda, MD Role Summary: Mid-level hunter conducting proactive threat hunts, identifying behavioral anomalies...  ...-Have Skills: ~3–5 years threat hunting, SOC, IR, or detection engineering experience. ~ Skilled with MITRE Telecommunication&CK,... 

    Merit 321

    Bethesda, MD
    3 days ago
  • $100k

     ...industrial world against cyber attacks. Our threat detection platform defends the modern world...  ...to join our team as a Threat Hunter / SOC Analyst. In this role, you will...  ...benefits.    Location   The Galvanick engineering team is based in Seattle. Given that we... 
    Permanent employment
    Work at office
    Relocation

    Galvanick

    Washington DC
    22 days ago
  • $125k - $150k

     ...execution over bureaucracy. Senior Threat Hunter Analyst Location: Washington, DC, Ft....  ...7/365 continuous monitoring, intrusion detection, threat hunting, incident response, and...  ...Threat Intelligence), GREM (GIAC Reverse Engineering Malware), CySA+, or equivalent... 
    Full time
    Work experience placement
    Local area
    Remote work
    Flexible hours
    Shift work

    Revolutional, LLC

    Washington DC
    6 days ago
  • $160k - $200k

     ...About the JobWe are looking to add a talented Senior Cyber Threat Operations Engineer to become a key player in our vibrant team dedicated to...  ...on a daily basis. Assist in advancing threat hunting and detection engineering capabilities across all operational segments,... 
    Permanent employment
    Full time
    Work at office
    Local area
    Remote work
    Worldwide

    Umbra

    Arlington, VA
    4 days ago
  • $179.4k - $204.7k

     ...Overview Detection Engineer, Manager Are you passionate about building and pioneering in the technology space? Do you enjoy solving complex...  ...with deep endpoint security expertise to join our Cyber Threat Detection (CTD) team. In this role, you will own end-to-end detection... 
    Full time
    Part time
    H1b
    Local area

    Capital One

    McLean, VA
    7 days ago
  • $75.2k - $158.1k

    Job Title: Cyber Threat HunterJob Category: Information TechnologyTime Type: Full timeMinimum Clearance Required to Start: TS/SCIEmployee...  ...: Local* * *The Opportunity:CACI is seeking a cyber threat hunter to join our team in supporting the National Geospatial-Intelligence... 
    Contract work
    Work experience placement
    Local area
    Flexible hours

    CACI International

    Springfield, VA
    10 hours ago
  •  ...Consulting at DescriptionProSidian seeks a Mid-Level InfoSec Threat Intelligence Engineer Consultant focusing on Cyber-Security/Information...  ...implementation, Intrusion Prevention Systems (IPS) and Intrusion Detection and Prevention Systems (IDPS) Systems, and advanced... 
    Full time
    For contractors
    Work experience placement
    Internship
    Work at office
    Monday to Friday
    Shift work

    Prosidian Consultng

    Washington DC
    4 days ago
  • $143.7k - $194.4k

    The Amazon Cyber Threat Intelligence (ACTI) organization is responsible for investigating...  ...security ecosystem.As a Software Development Engineer within ACTI Engineering, you will...  ...will directly influence ACTI's ability to detect, analyze, and respond to emerging security... 
    Internship
    Flexible hours

    Amazon

    Herndon, VA
    5 days ago
  •  ...Description Title: Senior Cybersecurity Threat Hunter III Location: Alexandria, VA Clearance:...  ..., mission risk, adversary TTPs, detection coverage, incident lessons learned, and...  ...actionable requirements for detection engineering, watch operations, security engineering... 

    Invictus International Consulting, LLC

    Alexandria, VA
    9 days ago
  • $145k - $192.5k

     ...Global Information Security (GIS) team is seeking a Cyber Threat Defense Sr AI/ML Engineer to build and integrate advanced AI and machine learning...  ...This person will drive innovation across preventative, detective, and responsive security controls by engineering the full... 
    Full time
    Work at office
    Shift work
    Day shift

    Bank of America

    Washington DC
    1 day ago
  •  ...Description   Title: Senior Cybersecurity Threat Hunter III Location: Alexandria, VA...  ...intelligence, mission risk, adversary TTPs, detection coverage, incident lessons learned, and...  ...actionable requirements for detection engineering, watch operations, security engineering... 

    Invictus International Consulting, LLC

    Alexandria, VA
    9 days ago
  • cFocus Software seeks a Detection Engineer to join our program supporting the Administrative Office of the United States Courts (AOUSC). This...  ...a related field ~3+ years’ experience conducting proactive threat hunting or adversary emulation.  ~2+ years demonstrated experience... 
    Full time
    Work at office

    cFocus Software Incorporated

    Washington DC
    more than 2 months ago
  • $127.2k - $246.9k

     ...team.KPMG is currently seeking a Manager, Content Development, Detection Engineering & Automation to join our Enterprise Security Services...  ...CI/CD pipelines (Detection-as-Code)Collaborate closely with Threat Intelligence, SOC, and Incident Response teams to map detections... 
    H1b
    Local area

    KPMG

    McLean, VA
    4 days ago
  •  ...next mission begins. Ardent is seeking a  Cybersecurity Engineer to join our team. This position is based in Washington,...  ...will support Zero Trust initiatives, continuous monitoring, threat detection, incident response, vulnerability management, and security operations... 
    Full time
    Local area
    Remote work
    Flexible hours

    Ardent

    Washington DC
    1 day ago
  • $90k - $107k

     ...residence required Position Summary The Cybersecurity Engineer designs, implements, and maintains enterprise security controls...  ..., least-privilege enforcement, continuous monitoring, and threat detection — across cloud, network, and endpoint environments for a U.S.... 
    Permanent employment
    Full time
    Contract work
    Local area
    Remote work
    Monday to Friday

    Innovim Career

    Washington DC
    1 day ago
  • GTSC seeks  Cybersecurity Engineer – Zero Trust / RMF / SIEM \\\ for mid -August 2026 start. Commitment to start must be by 30 June...  ...identity -centric access, least privilege, continuous monitoring, threat detection, secure configuration, hardening, NIST SP 800 -53, NIST SP 80... 
    Full time
    Temporary work
    Local area
    Remote work
    Flexible hours

    Gtsc-Talent Solutions

    Washington DC
    1 day ago
  • $142k - $309k

     ...tech, and hyper-connected world. Role Overview The Insider Threat Counter Operations (ITCO) is the Coupang Red team for insider...  ...insider risk resilience. We are seeking a deeply technical ITCO Engineer to lead offensive simulation campaigns from our Seattle office.... 
    Temporary work
    Work at office
    Flexible hours

    Coupang

    Washington DC
    15 days ago
  • Incident Response Engineer-JourneymanIntermittent Telework: Arlington, VATS/SCI RequiredPay...  ...professional responsible for detecting, investigating, and remediating security...  ...stakeholders. The engineer also contributes to threat hunting, maintains incident response playbooks... 
    Remote work

    Dunhill Professional Search

    Arlington, VA
    3 days ago
  •  ...looking for a Darktrace Cybersecurity Engineer is responsible for the design, deployment...  ..., and customer stakeholders to improve threat detection, investigation, and response. This...  ...analysts, incident responders, threat hunters, network engineers, cloud teams, system... 
    Full time
    Work at office
    Local area
    Remote work
    Work from home

    Optiv

    Washington DC
    1 day ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to Detection Engineer - Threat Hunter. Be the first to apply!