230 threat hunt jobs at 170 companies in United States
2w
Save
Mark Applied
Hide
2w
AOUSC - Threat Hunt Analyst
Washington, District of Columbia, United States
HybridFull Time
cFocus Software: Provides cybersecurity compliance and enterprise IT services for government.
3+ YOEActive Public Trust clearance, BS in CS/IT or related, 3+ years threat hunting, 2+ years querying large datasets and identifying APT behavior, 2+ years Python and PowerShell scripting.
Northwestern Mutual: Provides life insurance and financial planning services to individuals.
5+ YOE5+ years in threat intelligence/hunting/detection engineering; strong scripting (Python), SIEM/EDR experience, REST API and automation skills, MITRE ATT&CK knowledge, ability to communicate technical findings.
DTCC: Provides post-trade infrastructure for the global financial services industry
3+ YOE3+ years threat hunting/detection/IR experience, Bachelor's or equivalent, hands-on log analysis across endpoint/identity/network/cloud, experience with KQL/SPL/EQL, scripting (Python/PowerShell/Bash), familiarity with MITRE ATT&CK and detection engineering.
Microsoft Defender for Endpoint, CrowdStrike Falcon, SentinelOne, Microsoft Sentinel, Splunk, Splunk SPL, Elastic, EQL, KQL, Lucene, Chronicle/Google SecOps, Microsoft Azure, AWS, Microsoft Entra ID, Microsoft Azure AD, Okta, CloudTrail, Kubernetes, Sigma, YARA, ATT&CK, SOAR, Python, PowerShell, Bash, jq, osquery, CyberChef, EDR/XDR, SIEM
Koniag Government Services: Providing technical and professional services to federal agencies.
8+ YOEBachelor's in related field, 8+ years cybersecurity experience with 4+ years threat hunting/forensics, ability to obtain Public Trust, advanced digital forensics and malware analysis skills, and listed GIAC/EnCE/OSCP/CISSP certifications preferred.
EnCase, FTK, Autopsy, Volatility, Magnet AXIOM, X-Ways Forensics, IDA Pro, Ghidra, Cuckoo Sandbox, Any.run, Splunk, Microsoft Sentinel, ArcSight, Wireshark, Zeek, NetworkMiner, Microsoft Defender for Endpoint, AWS CloudTrail, Azure Activity Logs, Google Cloud Logging, MISP, ThreatConnect, Anomali, STIX/TAXII, Cellebrite UFED, Oxygen Forensic Detective, Python, PowerShell, Bash
CitiNYSE: C: Providing global banking, investment, and wealth management services.
5+ YOEBachelor's in CS/Information Security, 5+ years in cybersecurity (threat hunting/IR), expert networking/OS/security tech, proficiency with SIEM/EDR/Splunk, strong analytical and communication skills.
Probity: Provides IT, cybersecurity, and engineering services to government agencies.
2+ YOEActive Top Secret/SCI clearance with polygraph; 2+ years in cyber threat hunting or related field; strong knowledge of threat hunting and forensic tools; preferred bachelor’s in CS/Cyber or related field; relevant certifications.
SkyePoint Decisions: Provider of cybersecurity, infrastructure, and IT development services.
12+ YOEBachelor's degree and 12+ years in cybersecurity/threat intelligence; active Secret clearance; expertise in behavioral analytics, threat actor profiling, detection engineering; MITRE ATT&CK and CISA threat hunting experience; strong writing and US citizenship.
Illumio: Provides zero-trust segmentation software to contain cyberattacks.
5+ YOE5+ years in threat research or related field; strong MITRE ATT&CK knowledge; experience with security telemetry and threat hunting; excellent communication and collaboration.
ECSNYSE: ASGN: Provides advanced technology and engineering services to government agencies.
10+ YOEU.S. citizen with 10+ years cybersecurity experience, Public Trust 6c clearance (or ability to obtain), experience leading SOC threat-hunting and incident response, and certifications such as CISSP/GCIH/GCFA/CEH.
Digital Hands: Managed security service provider delivering 24/7 cyber threat protection.
3+ YOE3+ years SOC/detection or threat hunting experience, familiarity with MITRE ATT&CK, proficiency with KQL, YARA-L, Python and SIEM, bachelor's in relevant field preferred, strong analytical and communication skills; relevant certs preferred.
4+ YOE4+ years relevant cybersecurity experience; threat hunting, incident response, forensic analysis, XDR/EDR, Python and SQL proficiency; strong written and oral English communication.
IDA Pro, OllyDbg, Wireshark, XDR, EDR, Python, SQL
SimSpace: Provides high-fidelity cyber ranges for cybersecurity training and testing.
5+ YOEU.S. citizen with 5+ years in security operations, incident response, detection engineering or red team; threat hunting, telemetry analysis, CTI application, communication and mentoring skills.
University of Maryland Global Campus: Online higher education for adult and military learners.
6+ YOEBachelor's degree or equivalent, 6+ years cybersecurity experience (5+ in threat hunting/IR), proficiency with EDR/SIEM/threat intel, scripting (PowerShell, Bash, Python), AWS/Azure, MITRE ATT&CK, and strong communication skills.
SIEM, EDR, Threat intelligence platforms, Microsoft PowerShell, Bash, Python, MITRE ATT&CK, AWS, Microsoft Azure
Bank of AmericaNYSE: BAC: Provides global banking, investing, and financial risk management services.
8+ YOE8+ years in security operations, incident response, detection engineering, red teaming, or cyber threat intelligence; experience with threat hunting in enterprise; strong log analysis (Splunk, Python, SQL, Hadoop); ability to communicate risk; able to work onsite in Boston.
Brown Brothers Harriman: Providing global investment management, custody, and private banking services.
5+ YOEBachelor's in related field,5+ years in CTI/SOC/IR/Threat Hunting,familiarity with MITRE ATT&CK and threat intelligence platforms,strong analytical and communication skills.
MITRE ATT&CK, Security Information and Event Management (SIEM), Splunk SPL, Microsoft KQL, Microsoft Defender, Purview Insider Risk Management, EDR, AV, IDS/IPS, Firewalls, WAF, DLP, UEBA, email gateway, sandboxing, Python, SQL, PowerShell, Threat Intelligence Platform
Cincinnati or Atlanta or Hopkins or Cupertino or Charlotte or Chicago or Gresham or Englewood or Brookfield or Saint Louis or Irving
$127k-$149k/yrHybridFull Time
U.S. BankNYSE: USB: Provider of personal, business, and institutional financial services.
8+ YOEBachelor's degree or equivalent, 8+ years information security experience, 4+ years incident response, 2+ years threat hunting, expertise with Python, Jupyter notebooks, cloud (AWS/Azure/GCP), log/packet analysis, MITRE ATT&CK, and AI/automation tooling.