Cyber Hunt Team Leader

ECS Corporate Services

Fairfax (VA)

Remote

USD 140,000 - 160,000

Full time

14 days+
Application generator

A complete application in a minute — tailored resume and cover letter, ready to send.

Get past ATS filters

Job summary

Everforth ECS is seeking a Cyber Hunt Team Leader near the National Capital Region to guide proactive threat hunting and incident response for a major federal civilian agency. Salary ranges from $140,000 to $160,000.

The role requires US citizenship, active Public Trust 6c or ability to obtain, and proximity to NCR, with remote options. You will lead hunt missions, coordinate with SOC/CTI, develop detection logic and IoCs, and drive modernization of the agency’s cyber posture through advanced

Qualifications

  • 10+ years of cybersecurity experience with threat hunting and incident response.
  • Experience leading threat hunting teams within SOC environments.
  • Ability to translate technical findings into actionable intelligence for executives.

Responsibilities

  • Lead proactive threat hunting missions and analytics to identify threats.
  • Serve as incident response lead and project/technical lead for the Hunt Team.
  • Coordinate with SOC, CTI, and agency teams to mitigate APTs.
  • Develop IoCs, detection logic, and threat-hunting playbooks.
  • Support Purple Team exercises and threat emulation activities.
  • Oversee network analysis and device integrity for incident response and proactive hunting.
  • Lead response to critical network intrusions across the federal enterprise.
  • Provide program management for large-scale hunt operations and technology roadmaps.
  • Communicate findings and risk to senior government officials.

Skills

Threat hunting
Incident response
Adversary tracking
Team leadership
Communication
SOC operations
MITRE ATT&CK

Education

CISSP
GCIH
GCFA
CEH

Tools

EDR/NDR platforms
SIEM tools
MITRE ATT&CK framework
Threat emulation methodologies

Job description

Everforth ECS is seeking a Cyber Hunt Team Leader who lives in close proximity to the National Capital Region (NCR) to join a premier, enterprise-scale cybersecurity program supporting a major federal civilian agency. Please Note: This position is contingent upon contract award. Salary Range: $140,000 - $160,000. This flagship initiative unifies 24x7x365 Security Operations (SOC), proactive threat hunting, and advanced Security Engineering and Architecture into a cohesive defensive mission. As a key leader on this program, you will drive the protection of highly sensitive, national-level financial and personally identifiable information (PII). You will be at the forefront of modernizing the agency's cyber posture, implementing advanced automation, and ensuring continuous operational resilience across a massive, highly complex federal IT enterprise.

Position Responsibilities:
  • Lead proactive threat hunting missions and advanced analytics to identify and neutralize threats before they impact agency operations.
  • Serve as an incident response lead, proactive/persistent hunt lead, and project/technical lead for the Hunt Team.
  • Coordinate with SOC, CTI, and other business partners and government teams to identify and mitigate advanced persistent threats (APTs).
  • Develop threat hypotheses, detection logic, and a comprehensive knowledge base of Indicators of Compromise (IoCs).
  • Support Purple Team exercises and threat emulation activities to validate and improve the agency's defensive posture.
  • Oversee and coordinate analysis and development of capabilities related to network analysis and network device integrity for incident response and proactive threat hunting.
  • Lead teams in responding to critical network intrusions across the federal enterprise.
  • Provide leadership and program management for large-scale hunt operations, identifying technical roadmaps for the use of new and emerging technologies to maximize hunt capabilities across network, endpoint, and cloud-based environments.
  • Develop and continuously improve threat hunting methodologies, playbooks, and standard operating procedures.
  • Serve as a trusted liaison between hunt team personnel and agency stakeholders, facilitating clear communication and timely issue resolution.
  • Present findings, risk recommendations, and threat intelligence to senior government officials in a clear, actionable format.
  • U.S. Citizenship required.
  • 10+ years of cybersecurity experience, with demonstrated expertise in threat hunting, incident response, and adversary tracking.
  • Remote but within close proximity to the NCR.
  • Active Public Trust 6c clearance, or the ability to obtain and maintain one.
  • At least one of the following certifications: CISSP, GCIH, GCFA, or CEH.
  • Hands‑on experience with EDR/NDR platforms, SIEM tools, MITRE ATT&CK framework, and threat emulation methodologies.
  • Strong understanding of operating systems, networking, and adversary tactics, techniques, and procedures (TTPs).
  • Experience leading threat hunting teams within a Security Operations Center (SOC) environment.
  • Proven ability to develop threat hypotheses and translate complex technical findings into clear, actionable intelligence for both technical teams and executive audiences.
  • Excellent written and verbal communication skills, with a track record of producing high-quality federal security documentation.
Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Cyber Hunt Senior Analyst
Cyber Hunt Senior Analyst

ECS Corporate Services • Fairfax (VA)

Hybrid
USD 165,000 - 185,000
Cyber Hunt Team Leader
Cyber Hunt Team Leader

ECS • Richmond (VA)

On-site
USD 140,000 - 160,000
Senior Cyber Hunt Lead — Remote near NCR | Threat IR
Senior Cyber Hunt Lead — Remote near NCR | Threat IR

ECS Corporate Services • Fairfax (VA)

Remote
USD 140,000 - 160,000
Remote Senior Cyber Hunt Analyst - Threat Intel & Detection
Remote Senior Cyber Hunt Analyst - Threat Intel & Detection

ECS Corporate Services • Fairfax (VA)

Hybrid
USD 165,000 - 185,000
Lead Cyber Threat Hunting Team (Remote/NCR)
Lead Cyber Threat Hunting Team (Remote/NCR)

ECS • Richmond (VA)

Hybrid
USD 140,000 - 160,000
Incident Detection/Response Manager (SOC Manager)
Incident Detection/Response Manager (SOC Manager)

ECS Corporate Services • Fairfax (VA)

Remote
USD 140,000 - 160,000
Penetration Testing Team Lead
Penetration Testing Team Lead

ECS Corporate Services • Fairfax (VA)

Remote
USD 170,000 - 190,000
Senior Cybersecurity Threat Hunter III
Senior Cybersecurity Threat Hunter III

Invictus International Consulting, LLC • Alexandria (VA)

On-site
USD 149,000 - 203,000
Senior Cybersecurity Threat Hunter III
Senior Cybersecurity Threat Hunter III

Invictus International Consulting, LLC. • Colorado Springs (CO)

On-site
USD 120,000 - 170,000
Penetration Testing Team Lead
Penetration Testing Team Lead

ecsfederal • Virginia (MN)

Hybrid
USD 170,000 - 190,000