4 часа назад
Senior Threat Hunter (Cybersecurity)
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
Текст:
TL;DR
Senior Threat Hunter (Cybersecurity): Hunting advanced persistent threats across network, endpoint, log, PCAP, and sensor data with an accent on SIEM query development, malware analysis, and reusable hunt operations. Focus on developing algorithms and scripts to identify anomalous adversary activity, applying MITRE ATT&CK and D3FEND, and leading threat-hunting projects in a federal environment.
Location: Washington, DC, United States
Company
builds and delivers federal technology using a product-oriented approach focused on speed, ownership, and execution.
What you will do
- Proactively hunt for APTs, adversary TTPs, and indicators of compromise across network flow, PCAP, logs, endpoint telemetry, and sensor data.
- Develop, execute, document, and operationalize reusable threat-hunting tactics, techniques, and procedures.
- Build and maintain SIEM queries, alerts, dashboards, and reports to improve detection coverage.
- Write scripts and develop algorithms for large-scale data collection, manipulation, analysis, and anomaly detection.
- Conduct malware analysis, investigate endpoint activity with EDR solutions, and extract actionable IOCs.
- Lead hunt projects, maintain technical documentation, and present findings to technical and executive audiences.
Requirements
- Bachelor’s degree in Computer Science, Information Security, or a related field, or four additional years of qualifying experience.
- At least five years of experience in security data hunting, manipulation, and presentation.
- Experience leading teams or managing projects and tasks against tight deadlines.
- Active Secret clearance and eligibility for Top Secret/SCI are required.
- Experience with SIEM platforms, network flow, PCAP, logs, security telemetry, EDR, malware analysis, and intrusion detection.
- At least one required certification from both a security specialty group and a DoD 8570 CSSP category.
Nice to have
- Advanced threat-hunting, malware reverse-engineering, or digital-forensics certifications.
- Experience building a federal threat-hunting program from the ground up.
- Familiarity with threat intelligence platforms, cloud-native hunting, red team operations, or adversary emulation.
- Active TS/SCI clearance.
Culture & Benefits
- Flexible schedules and teleworking options.
- Medical insurance, including HSA-eligible plans, plus employer-paid dental and vision options.
- Employer-sponsored short-term disability, long-term disability, and life insurance.
- 5% 401(k) company matching, paid holidays, PTO accrual, and paid parental leave.
- Professional development, career growth opportunities, and team events.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →