Cyber Threat Investigator

7 days ago


Washington, Washington, D.C., United States cFocus Software Incorporated Full time
Cyber Threat Hunter Job Description

cFocus Software Incorporated is seeking a highly skilled Cyber Threat Hunter (Senior) to support the United States Courts, Information Technology Security Office in Washington, DC. This senior-level position requires US Citizenship and the ability to obtain a Public Trust clearance. The selected candidate will work 4 days onsite with 1 day remote.

  • Required Qualifications:
    • Bachelor's Degree or equivalent experience in a computer, engineering, or science field.
    • Ability to obtain a Public Trust clearance.
    • US Citizenship
    • Certifications: GCIA or GCIH or GSEC or GMON, or Splunk Core Power User.
    • 7+ years of relevant experience.
Key Responsibilities
  • Lead Threat Hunt team provides oversight and be responsible for event investigation and tracking activities.
  • Identify, deter, monitor, and investigate computer and network intrusions.
  • Provide computer forensic support to high technology investigations in the form of evidence seizure, computer forensic analysis, and data recovery.
  • Monitor and assess complex security devices for patterns and anomalies from raw events (DNS, DHCP, AD, SE Logs), tag events for Tier 1 & 2 monitoring.
  • Conduct Malware analysis in out-of-band environment (static and dynamic), including complex malware.
  • Accept and respond to government technical requests through the AOUSC ITSM ticket (e.g., HEAT or Service Now), for threat hunt support.
  • Threat hunt targets include cloud-based and non-cloud-based applications such as: Microsoft Azure, Microsoft O365, Microsoft Active Directory, and Cloud Access Security Brokers (i.e., Zscaler).
  • Review and analyze risk-based Security information and event management (SIEM) alerts when developing hunt hypotheses.
  • Review open-source intelligence about threat actors when developing hunt hypotheses.
  • Plan, conduct, and document iterative, hypothesis based, tactics, techniques, and procedures (TTP) hunts utilizing the agile scrum project management methodology.
  • At the conclusion of each hunt, propose, discuss, and document custom searches for automated detection of threat actor activity based on the hunt hypothesis.
  • Configure, deploy, and troubleshoot Endpoint Detection and Response agents (e.g., Crowdstrike and Sysmon).
  • Collect and analyze data from compromised systems using EDR agents and custom scripts provided by the AOUSC.
  • Track and document cyber defense incidents from initial detection through final resolution.
  • Interface with IT contacts at court or vendor to install or diagnose problems with EDR agents.
  • Participate in government led after action reviews of incidents.
  • Triage malware events to identify the root cause of specific activity.
  • Attend daily Agile Scrum standups and report progress on assigned Jira stories.

Powered by JazzHR



  • Washington, Washington, D.C., United States cFocus Software Incorporated Full time

    Job OverviewcFocus Software Incorporated is seeking a highly skilled Cyber Security Threat Investigator to join our team in Washington, DC.


  • Washington, Washington, D.C., United States cFocus Software Incorporated Full time

    Career Opportunities at cFocus Software IncorporatedWe are seeking an experienced Cyber Threat Intelligence Strategist to join our team in Washington, DC. This position requires US Citizenship and the ability to obtain a Public Trust clearance.About the RoleThe successful candidate will be responsible for conducting analysis and research on advanced cyber...


  • Washington, Washington, D.C., United States General Dynamics Information Technology Full time

    About Cyber Security Threat AnalysisCyber security is a critical component of modern defense, and as a Cyber Security Threat Analyst with General Dynamics Information Technology (GDIT), you will play a vital role in protecting our nation's most sensitive systems.Salary Range: $134,597 - $172,500 per yearAbout the JobWe are seeking a highly skilled and...


  • Washington, Washington, D.C., United States cFocus Software Incorporated Full time

    Cyber Threat Intelligence Program RequirementscFocus Software Incorporated is seeking a Cybersecurity expert to support our program for the United States Courts, Information Technology Security Office in Washington, DC. This position requires US Citizenship and a Public Trust clearance.Key Responsibilities:Cyber Threat AnalysisConduct in-depth analysis of...


  • Washington, Washington, D.C., United States cFocus Software Incorporated Full time

    cFocus Software Incorporated is seeking a Senior Cyber Threat Intelligence Specialist to join their team in Washington, DC. This position requires US Citizenship and the ability to obtain a Public Trust clearance.Job DescriptionThis role involves leading a threat hunt team, providing oversight and responsibility for event investigation and tracking...


  • Washington, Washington, D.C., United States Bank of America Full time

    About the RoleBank of America is seeking a highly skilled Cyber Security Threat Specialist to join our team. The ideal candidate will have a deep understanding of threats and threat tactics, techniques, and procedures (TTPs).Key ResponsibilitiesAs a Cyber Security Threat Specialist, you will lead and participate in advanced technical assessments that...


  • Washington, Washington, D.C., United States Leidos Full time

    Job OverviewLeidos, a leading provider of innovative solutions, seeks an experienced Cyber Threat Intelligence professional to join our dynamic team. This role requires a seasoned expert with a strong background in cyber threat intelligence and analysis.About the CompanyAt Leidos, we empower our teams to deliver exceptional results while contributing to our...


  • Washington, Washington, D.C., United States Synergy ECP Full time

    Cybersecurity Threat InvestigatorAt Synergy ECP, we are seeking a highly skilled Cybersecurity Threat Investigator to join our team. As a Cybersecurity Threat Investigator, you will be responsible for analyzing digital network data to discover, analyze, and document malicious or unauthorized activity using information collected from a variety of SIGINT and...


  • Washington, Washington, D.C., United States cFocus Software Incorporated Full time

    Job OverviewcFocus Software Incorporated is seeking a skilled Chief Cyber Threat Response Specialist to join our team in Washington, DC. This position requires US Citizenship and the ability to obtain a Public Trust clearance.


  • Washington, Washington, D.C., United States Joint Enterprise Technologies Full time

    About the OpportunityJoint Enterprise Technologies is seeking an experienced Cyber Incident Detection Analyst to support our client's enterprise network cyber defense capabilities. This role offers a unique opportunity to build strong lines of cyber defense using cutting-edge technologies, impacting mission success and ensuring anticipation of future...


  • Washington, Washington, D.C., United States Trustwave Holdings, Inc. Full time

    Job Summary:Trustwave is a leading cybersecurity and managed security services provider focused on threat detection and response. We uncover threats that others can't and respond quicker than others can to protect against the devastating impacts of cyberattacks.We're a world-class team of cyber consultants, threat hunters, and researchers serving clients in...


  • Washington, Washington, D.C., United States ALTA IT Services Full time

    About ALTA IT ServicesWe are a leading provider of IT solutions, dedicated to delivering high-quality services to our clients.Job SummaryWe are seeking an experienced Cyber Security Operations Specialist to join our team in Springfield, VA. The successful candidate will have a proven track record in threat detection and response, with a strong understanding...


  • Washington, Washington, D.C., United States Leidos Full time

    Cyber Operations Security Analyst Position OverviewThe Leidos Digital Modernization sector is currently seeking a skilled Cyber Operations Security Analyst to join our team in Washington, DC. This is a hybrid position working a static schedule with the potential for remote work.Responsibilities:Perform computer network incident detection and response...


  • Washington, Washington, D.C., United States Peraton Full time

    Job SummaryWe are seeking a highly skilled Cybersecurity Threat Analyst to join our team at Peraton. This is a unique opportunity to work on critical national security missions, driving innovation and excellence in the field of cybersecurity.Key Responsibilities:• Identify and investigate vulnerabilities, assess exploit potential, and document findings and...


  • Washington, Washington, D.C., United States Watershed Security Full time

    Job OverviewA challenging role is available for a highly skilled Cyber Intelligence Professional at Watershed Security. As a leader in providing quality Cyber Security Services to the Federal Government, we offer a respectful work environment and opportunities for growth.Job DescriptionWe are seeking an experienced professional to support the LECOR process...


  • Washington, Washington, D.C., United States RAMPS International Inc. Full time

    Job SummaryWe are seeking a highly skilled Cybersecurity Threat Detection Specialist to join our team at RAMPS International Inc. in Washington, D.C.Key Responsibilities:Analyzing and interpreting complex data from various sources to identify potential security threatsDeveloping and implementing effective threat detection strategies to mitigate...


  • Washington, Washington, D.C., United States Axxum Technologies Full time

    Axxum Technologies is seeking a seasoned cybersecurity expert to join our team as a Senior Threat Hunter. This critical role requires an individual with a strong background in IT Security, Incident Response, and Network Security, with a proven track record of success in identifying and mitigating advanced threats.About the JobWe are offering a competitive...


  • Washington, Washington, D.C., United States Serigor Inc. Full time

    Job OverviewSerigor Inc. is seeking a highly skilled Cybersecurity Engineer to join our team in Washington, DC. As an expert in threat identification and mitigation, you will play a critical role in protecting our clients' assets from evolving security threats.Salary: $120,000 - $150,000 per year, depending on experience. This salary estimate is based on...


  • Washington, Washington, D.C., United States AHU Technologies Inc Full time

    As a Cybersecurity Specialist at AHU Technologies Inc, you will play a vital role in ensuring the security and integrity of our clients' information systems. This position is ideal for an experienced Information Assurance and Security Specialist looking to take their career to the next level.Job SummaryWe are seeking a highly skilled Cybersecurity Specialist...


  • Washington, Washington, D.C., United States Global Dimensions Full time

    Global Dimensions, a dynamic and expanding HUBZone, service disabled, veteran-owned small business based in Fredericksburg, VA, is currently seeking an experienced Cyber Intelligence Planning Specialist for a position in Columbia, MD.This role involves employing intelligence expertise to assist in the integration of Defense and National intelligence support...