The posting
This position is listed on behalf of a partner company, who manages all applications and next steps. Our partner is looking for a Cybersecurity Threat Hunter based in United States.
This role focuses on proactively identifying cyber threats that may remain undetected within complex network environments. You will investigate anomalous activity, analyze large volumes of security and network data, and use threat intelligence to uncover sophisticated adversary behavior. The position combines threat hunting, incident response, threat intelligence, and security analysis to strengthen an organization's ability to detect emerging attacks. You will collaborate with threat detection and incident response teams while developing actionable insights from technical evidence and external intelligence. The role also involves building hunting tools and automation capabilities to improve the identification of advanced threats. This is a fully remote, contingent position supporting an upcoming proposal effort, with employment dependent upon contract award and negligible travel.
Accountabilities
- Proactively hunt for cyber threats and malicious activity that may be operating undetected within network and enterprise environments.
- Investigate unusual behavior and suspicious activity using the assumption that threat actors may already have access to the environment.
- Analyze raw log, network, and security data to identify indicators of compromise, attacker behavior, and potential hunting leads.
- Collaborate with threat detection and incident response analysts to investigate findings and develop actionable intelligence.
- Correlate activity and behavioral trends within the enterprise environment with current threat intelligence, emerging attack techniques, and external threat developments.
- Identify appropriate mitigations for vulnerabilities and security weaknesses uncovered during threat-hunting activities.
- Lead technical analysis when an Advanced Persistent Threat (APT) or other significant compromise is identified.
- Develop and refine threat-hunting strategies that improve the organization's ability to detect new and evolving adversaries.
- Build threat-hunting tools, scripts, and automation capabilities that enhance detection of sophisticated cyber threats.
- Perform incident response activities for critical security incidents and support the investigation and containment of serious security events.
- Translate threat intelligence and technical findings into actionable information for security stakeholders.
- Use data to develop clear narratives and documentation supporting threat-hunting operations and investigative conclusions.
- Hold a DoD Top Secret Clearance and be eligible for an IT-I Critical Sensitive security clearance or Tier 5 (T5) at the time of proposal submission.
- Have at least 5 years of technical experience in Threat Intelligence, Cybersecurity Incident Response, Penetration Testing, Reverse Engineering, Digital Forensics, or a closely related discipline.
- Have at least 3 years of experience analyzing attacker techniques across different levels of the attack lifecycle.
- Demonstrate knowledge of security challenges and attack behaviors across multiple operating systems.
- Be comfortable analyzing and interpreting large datasets to identify patterns, anomalies, and potential threats.
- Have hands-on experience with security and scripting tools such as Splunk, Python, and PowerShell.
- Demonstrate the ability to transform threat intelligence into actionable security information and investigative leads.
- Have knowledge of the MITRE ATT&CK framework and its application to threat analysis and hunting activities.
- Demonstrate strong analytical and problem-solving abilities when investigating sophisticated or ambiguous security events.
- Be able to communicate technical findings clearly and develop coherent narratives to document threat-hunting operations.
- Collaborate effectively with threat detection, incident response, and other cybersecurity professionals.
- Multiple healthcare coverage options, including low-deductible and high-deductible plans.
- Health Savings Account (HSA)-eligible healthcare options.
- Dental and vision coverage.
- Accident and illness coverage.
- Short-term and long-term disability coverage.
- 401(k) plan with a 6% company match.
- Potential profit sharing based on company performance.
- Employee Stock Ownership Plan (ESOP), subject to eligibility and vesting requirements.
- Fully remote work within the United States.
- Negligible travel requirements.
- Opportunity to work on advanced threat hunting, incident response, threat intelligence, and cybersecurity initiatives.
- Contingent employment supporting an upcoming proposal effort, with employment dependent upon contract award.
How Jobgether works:
We use an AI-powered matching process to ensure your application is reviewed quickly, objectively, and fairly against the role's core requirements. Our system identifies the top-fitting candidates, and this shortlist is then shared directly with the hiring company. The final decision and next steps (interviews, assessments) are managed by their internal team.
We appreciate your interest and wish you the best!
Why Apply Through Jobgether?
Data Privacy Notice: By submitting your application, you acknowledge that Jobgether will process your personal data to evaluate your candidacy and share relevant information with the hiring employer. This processing is based on legitimate interest and pre-contractual measures under applicable data protection laws (including GDPR). You may exercise your rights (access, rectification, erasure, objection) at any time.
#LI-CL1



