ManTech International logo
ManTech InternationalPosted 2 months ago
EXPIRED

Cyber Threat Hunter

On-siteMcLean, Virginia, United States

Full TimeLarge

Job Summary

Cyber Threat Hunter responsible for proactively detecting, investigating, and mitigating cyber threats within a large enterprise environment. Responsibilities include threat hunting using the HMM-4 approach and MITRE ATT&CK framework, developing and refining hypotheses for targeted threat hunts based on threat intelligence, internal data, and attacker TTPs, collaborating with internal teams to collect and analyze security event data, utilizing cutting-edge tools to identify indicators of compromise (IOCs) and anomalies, performing in-depth threat analysis and recommending remediation and enhanced detections, and documenting investigative objectives with detailed reports including root cause analysis and recommendations. The role requires staying up to date with latest cyber threats and security technologies through continuous learning and knowledge sharing.

Required Qualifications

  • 2+ years of professional experience as a cyber security analyst, incident responder, and/or other closely related cyber security discipline.
  • Experience with SIEM platforms, EDR solutions, network traffic analysis, and an understanding of cloud environments (AWS, Azure, etc.).
  • Experience with problem-solving skills with the ability to translate complex technical findings in a clear, complete, and accurate manner for technical and non-technical audiences.
  • Relevant industry certifications and a solid foundation in network protocols and Microsoft Windows endpoint security.

Desired Qualifications

  • Bachelor’s degree in cyber security/information security, computer science, engineering, or other closely related IT discipline).
  • 4+ years of professional experience in a cyber-security related capacity.
  • Demonstrated understanding of or proficiency in using cyber threat hunting models, the MITRE ATT&CK framework, and mapping adversary TTPs to observed activities.
  • More advanced industry-relevant professional certifications (e.g., CISSP, GCIH, CThH, CySA+).
  • An active TS/SCI with Polygraph is required for this position.

Hiring someone like this?

Get your role in front of qualified candidates on Sorce.

Get started

Apply to this job in one click with Sorce

Find similar roles