Cyber Threat Hunt Specialist

4 weeks ago


Ashburn, Virginia, United States Critical Solutions Full time
Job Description

Critical Solutions is seeking a highly skilled Cyber Threat Hunt Specialist to support our federal program customer in Ashburn, VA.

The ideal candidate will have experience in in-depth technical analysis of network and endpoint logs & activity, executing various types of cyber threat hunts on various agency assets, escalating findings as deemed appropriate, and authoring technical reports summarizing operations and findings in support of the protection of the customers' systems, networks, and assets.

Key Responsibilities:

  • Create Threat Models to better understand the Agency IT Enterprise, identify defensive gaps, and prioritize mitigations
  • Author, update, and maintain SOPs, playbooks, work instructions
  • Utilize Threat Intelligence and Threat Models to create threat hypotheses
  • Plan and scope Threat Hunt Missions to verify threat hypotheses
  • Proactively and iteratively search through systems and networks to detect advanced threats
  • Analyze host, network, and application logs in addition to malware and code
  • Prepare and report risk analysis and threat findings to appropriate stakeholders
  • Create, recommend, and assist with development of new security content as the result of hunt missions to include signatures, alerts, workflows, and automation.
  • Coordinate with different teams to improve threat detection, response, and improve overall security posture of the Enterprise

Requirements:

  • Possess an active Top-Secret Clearance and be able to favorably pass a 5-year Agency background investigation (BI)
  • BS degree or equivalent and 2+ years of prior relevant experience, or a master's with less than 2 years, in order to operate within the scope contemplated by the level.
  • Experience in the areas of incident detection and response, malware analysis, or computer forensics.
  • Must have one of the following certifications: CCFP, CCNA, CCNP, CEH, CHFI, CISSP, CIRC, ECES, ECIH, ECSA, ECSS, EnCE, ENSA, FIWE, GCFA, GCFE GCIH, GISF, GNFA, GREM, GWEB, GXPN, LPT, OSCE, OSCE, OSCP, OSEE, OSWP, WFE-E-CI, FTK-WFE-FTK, CySA+, CLNP, CompTIA PenTest+, GCTI, GOSI, CTIA, CSAP, Splunk Core Certified Advanced Power User, Splunk Core Certified Consultant, Splunk SOAR Certified Automation Developer

Preferred Qualifications:

  • Expertise in network and host-based analysis and investigation
  • Demonstrated experience planning and executing threat hunt missions
  • Understanding of complex Enterprise networks to include routing, switching, firewalls, proxies, load balancers
  • Working knowledge of common (HTTP, DNS, SMB, etc) networking protocols
  • Familiar with operation of both Windows and Linux based systems
  • Proficient with scripting languages such as Python or PowerShell
  • Familiarity with Splunk Search Processing Language (SPL) and/or Elastic Domain Specific Language (DSL)
  • Demonstrated experience triaging and responding to APT activities.
  • Experience working with various technologies and platform such as AWS, Azure, O365, containers, etc.
  • Understanding of current cyber threat landscape, the different tactics commonly used by adversaries and how you would investigate, contain and recover against their attacks.

Location:

  • On-site. Ashburn, VA
  • Must be able and willing to commute to work location.

Additional Information:

Clearance Requirement: Must be a US Citizen and possess an active Top-Secret Clearance. In addition to specific security clearance requirements, selected candidate must undergo background investigation and finger printing by the federal agency and successfully pass the preceding to qualify for the position.

CRITICAL SOLUTIONS PAY AND BENEFITS:

Salary range $135,000 - $173,000. The salary range for this position represent the typical salary range for this job level and this does not guarantee a specific salary. Compensation is based upon multiple factors such as responsibilities of the job, education, experience, knowledge, skills, certifications, and other requirements.

BENEFIT SNAPSHOT: 100% premium coverage for Medical, Dental, Vision, and Life Insurance, Supplemental Insurance, 401K matching, Flexible Time Off (PTO/Holidays), Higher Education/Training Reimbursement, and more.

Job Posted by ApplicantPro

  • Ashburn, Virginia, United States Allyon Full time

    Job Title: Cyber Threat Hunt AnalystSummary:Allyon, Inc. is a leading IT and Healthcare Services firm dedicated to delivering exceptional results. We are passionate about helping talented individuals achieve their career goals while assisting our clients in building quality teams.Key Responsibilities:Create comprehensive threat models to identify defensive...


  • Ashburn, Virginia, United States Leidos Full time

    Cyber Threat Hunt Analyst Job DescriptionLeidos is seeking a highly skilled Cyber Threat Hunt Analyst to join our team. As a member of this highly technical Cyber Threat Hunt team, you will be responsible for in-depth technical analysis of network and endpoint logs & activity, executing various types of cyber threat hunts on various agency assets, escalating...


  • Ashburn, Virginia, United States Critical Solutions Full time

    Job Title: Threat Hunt AnalystJoin Critical Solutions as a Threat Hunt Analyst and contribute to the protection of our customers' systems, networks, and assets.Job SummaryWe are seeking an experienced Cyber Threat Hunt Analyst to support our federal program customer in Ashburn, VA. The successful candidate will be responsible for in-depth technical analysis...


  • Ashburn, Virginia, United States Gray Tier Technologies LLC Full time

    Cyber Threat Intelligence SpecialistAt Gray Tier Technologies LLC, we are seeking a highly skilled Cyber Threat Intelligence Specialist to join our team. As a key member of our incident response team, you will be responsible for utilizing state-of-the-art technologies to perform hunt and investigative activity to examine endpoint and network-based data. Your...


  • Ashburn, Virginia, United States 00100 LEIDOS, INC. Full time

    Leidos is seeking a Cyber Threat Hunter to support our NOSC Cyber Team. The ideal candidate will be process driven, curious, and skilled in identifying patterns and anomalies in data.The Department of Homeland Security (DHS), Network Operations Security Center (NOSC) Cyber is responsible for preventing, identifying, containing, and eradicating cyber threats...


  • Ashburn, Virginia, United States 00100 LEIDOS, INC. Full time

    Cyber Threat Hunter Job DescriptionLeidos is seeking a highly skilled Cyber Threat Hunter to join our NOSC Cyber Team. The ideal candidate will possess a strong background in incident detection and response, malware analysis, and/or cyber forensics.Key Responsibilities:Create Threat Models to identify defensive gaps and prioritize mitigationsAuthor, update,...


  • Ashburn, Virginia, United States Agile Defense Full time

    Job SummaryAt Agile Defense, we are committed to delivering innovative solutions to support our nation's most critical missions. As a Cyber Threat Analyst, you will play a vital role in our Security Operations Center (SOC), responsible for preventing, identifying, containing, and eradicating cyber threats to the Department of Homeland Security's (DHS)...


  • Ashburn, Virginia, United States REDLattice Full time

    Job Title:Cyber Threat Intelligence AnalystJob Description:We are seeking a highly skilled Cyber Threat Intelligence Analyst to support our high-risk technical programs and field operations. The ideal candidate will have a strong background in all-source analysis and experience working with technical writing.Key Responsibilities:* Conduct all-source analysis...


  • Ashburn, Virginia, United States Manpower Group Inc. Full time

    Job Title: Cybersecurity Threat AnalystAbout the Role:We are seeking a highly skilled Cybersecurity Threat Analyst to join our team at Manpower Group Inc. As a Cybersecurity Threat Analyst, you will be responsible for conducting near real-time security monitoring in a 24x7 environment, utilizing proprietary SIEM and cybersecurity tools to identify Indicators...


  • Ashburn, Virginia, United States Experis Full time

    Job Title: Cybersecurity Threat AnalystAbout the Role:We are seeking a skilled Cybersecurity Threat Analyst to join our team at Experis. As a Cybersecurity Threat Analyst, you will be responsible for conducting near real-time security monitoring in a 24x7 environment, utilizing proprietary SIEM and cybersecurity tools to identify Indicators of Compromise...


  • Ashburn, Virginia, United States REDLattice Full time

    Job OverviewWe are seeking a highly skilled All-Source Threat Data Analyst to support our high-risk technical programs and field operations.Key Responsibilities:Conduct all-source analysis to identify trends and patterns in adversary tactics, techniques, and procedures (TTPs)Develop and maintain technical reports and briefings for senior leadership and...


  • Ashburn, Virginia, United States OneZero Solutions Full time

    We are a forward-thinking company that values our team members and their contributions to our customers and the missions they support.We pride ourselves on fostering teams that are technically proficient and capable across a range of cyber mission areas.Our company offers a competitive benefits package, including health insurance, 401K with company matching,...


  • Ashburn, Virginia, United States Agile Defense Full time

    Job Title: Cyber Security Systems Operations SpecialistAt Agile Defense, we understand the importance of proactive security measures in today's digital landscape. As a Cyber Security Systems Operations Specialist, you will play a critical role in ensuring the integrity and security of our systems and networks.Key Responsibilities:Conduct security event...


  • Ashburn, Virginia, United States Leidos Full time

    Cybersecurity Expert for Malware Analysis and ForensicsWe are seeking a highly skilled Cybersecurity Expert to join our team as a Malware Analyst and Forensics Specialist. In this role, you will be responsible for analyzing and investigating cyber threats, identifying vulnerabilities, and developing strategies to mitigate risks.Key Responsibilities:Conduct...


  • Ashburn, Virginia, United States REDLattice Full time

    Welcome to REDLattice, a premier cyberwarfare company specializing in Computer Network Operations (CNO), Offensive Cyber Operations (OCO), Electronic Warfare (EW), and Information Operations (IO). We operate at the nexus of innovative technology and national security imperatives, safeguarding our nation's interests in the digital domain.Our team tackles...


  • Ashburn, Virginia, United States Pyramid Consulting, Inc Full time

    Cyber Security Specialist Job DescriptionWe are seeking a highly skilled Cyber Security Specialist to join our team at Pyramid Consulting, Inc. This is a 12+ months contract opportunity with long-term potential and is located in a hybrid environment.Job Summary:The Cyber Security Specialist will provide near real-time security monitoring in a 24x7...


  • Ashburn, Virginia, United States Leidos Holding Full time

    Job SummaryWe are seeking a highly skilled Cyber Security Incident Response Specialist to join our team at Leidos Holding. The ideal candidate will have a strong background in cybersecurity and incident response, with experience in leading teams and managing complex security operations.Key ResponsibilitiesLead and mentor a team of cybersecurity analysts,...


  • Ashburn, Virginia, United States Agile Defense Full time

    Cyber Security Engineer Job DescriptionAt Agile Defense, we are committed to delivering innovative solutions to support our nation's most critical missions. As a Cyber Security Engineer, you will play a vital role in defending against cyber threats and ensuring the security of our clients' information systems.Key Responsibilities:Direct and track...


  • Ashburn, Virginia, United States 00100 LEIDOS, INC. Full time

    Leidos is seeking a highly skilled Strategic Cyber Risk Management Analyst to join our Cyber Risk Management & Communication team. The ideal candidate will have a strong background in risk management and a passion for staying up-to-date with the latest cybersecurity threats and technologies.Key Responsibilities:Conduct risk assessments and develop risk...


  • Ashburn, Virginia, United States Leidos Full time

    Job Title: Cyber Security SpecialistThe Cyber Security Specialist at Leidos will be responsible for supporting the full system engineering life-cycle, including requirements analysis, design, development, test, implementation, maintenance, integration, and documentation of SOC infrastructure and SOC tool suite.The ideal candidate will have hands-on...