Cyber Hunt Team Leader

ecsfederal

Virginia (MN)

Hybrid

USD 140,000 - 160,000

Full time

4 days ago
Be an early applicant
Application generator

Stand out for this role — generate a tailored resume and cover letter in about a minute.

Get past ATS filters

Job summary

Everforth ECS seeks a Cyber Hunt Team Leader near the National Capital Region to guide proactive threat hunting and incident response for a major federal civilian agency. You will lead a skilled team, refine detection strategies, and deliver actionable intelligence across networks and cloud environments.

Responsibilities include steering hunt operations, leading emulation exercises, and presenting risk insights to senior officials.

Qualifications

  • U.S. Citizenship required.
  • Active Public Trust 6c clearance, or ability to obtain.
  • 10+ years of cybersecurity experience with threat hunting, incident response, and adversary tracking.
  • Remote but within close proximity to the NCR.
  • Certifications: CISSP, GCIH, GCFA, or CEH.
  • Hands-on experience with EDR/NDR platforms, SIEM tools, MITRE ATT&CK, and threat emulation.
  • Strong understanding of operating systems, networking, and TTPs.
  • Experience leading threat hunting teams within a SOC environment.
  • Ability to translate complex findings into actionable intelligence for technical and executive audiences.

Responsibilities

  • Lead proactive threat hunting missions and advanced analytics to identify and neutralize threats.
  • Serve as an incident response lead and project/technical lead for the Hunt Team.
  • Coordinate with SOC, CTI, and government teams to mitigate APTs.
  • Develop IoCs, detection hypotheses, and threat intelligence.
  • Support threat emulation and Purple Team exercises to improve defense.
  • Oversee network analysis and device integrity work for incident response and hunting.
  • Lead responses to critical network intrusions across the federal enterprise.
  • Provide program management for large-scale hunt operations and tech roadmaps.
  • Develop and improve hunt playbooks and SOPs.
  • Communicate findings and risk to senior government officials clearly.

Skills

Threat hunting
Incident response
SOC leadership
Communication
Threat emulation
EDR/NDR platforms
SIEM tools
MITRE ATT&CK
Network analysis
Project management

Tools

EDR/NDR platforms
SIEM tools
Threat emulation tools

Job description

Everforth ECS is seeking a Cyber Hunt Team Leader who lives in close proximity to the National Capital Region (NCR) to join a premier, enterprise-scale cybersecurity program supporting a major federal civilian agency.

Please Note: This position is contingent upon contract award.

Salary Range: $140,000 - $160,000

This flagship initiative unifies 24x7x365 Security Operations (SOC), proactive threat hunting, and advanced Security Engineering and Architecture into a cohesive defensive mission. As a key leader on this program, you will drive the protection of highly sensitive, national-level financial and personally identifiable information (PII). You will be at the forefront of modernizing the agency's cyber posture, implementing advanced automation, and ensuring continuous operational resilience across a massive, highly complex federal IT enterprise.

As the Cyber Hunt Team Leader, you will direct and execute proactive threat hunting operations, leading a skilled team in uncovering advanced threats concealed within complex federal networks and systems. Working closely with SOC analysts, Cyber Threat Intelligence (CTI) teams, and agency stakeholders, you will develop and refine detection strategies, lead threat emulation exercises, and deliver actionable intelligence that reduces risk across the enterprise.

Position Responsibilities:
  • Lead proactive threat hunting missions and advanced analytics to identify and neutralize threats before they impact agency operations.
  • Serve as an incident response lead, proactive/persistent hunt lead, and project/technical lead for the Hunt Team.
  • Coordinate with SOC, CTI, and other business partners and government teams to identify and mitigate advanced persistent threats (APTs).
  • Develop threat hypotheses, detection logic, and a comprehensive knowledge base of Indicators of Compromise (IoCs).
  • Support Purple Team exercises and threat emulation activities to validate and improve the agency's defensive posture.
  • Oversee and coordinate analysis and development of capabilities related to network analysis and network device integrity for incident response and proactive threat hunting.
  • Lead teams in responding to critical network intrusions across the federal enterprise.
  • Provide leadership and program management for large-scale hunt operations, identifying technical roadmaps for the use of new and emerging technologies to maximize hunt capabilities across network, endpoint, and cloud-based environments.
  • Develop and continuously improve threat hunting methodologies, playbooks, and standard operating procedures.
  • Serve as a trusted liaison between hunt team personnel and agency stakeholders, facilitating clear communication and timely issue resolution.

Present findings, risk recommendations, and threat intelligence to senior government officials in a clear, actionable format.

  • U.S. Citizenship required.
  • 10+ years of cybersecurity experience, with demonstrated expertise in threat hunting, incident response, and adversary tracking.
  • Remote but within close proximity to the NCR.
  • Active Public Trust 6c clearance, or the ability to obtain and maintain one.
  • At least one of the following certifications: CISSP, GCIH, GCFA, or CEH.
  • Hands-on experience with EDR/NDR platforms, SIEM tools, MITRE ATT&CK framework, and threat emulation methodologies.
  • Strong understanding of operating systems, networking, and adversary tactics, techniques, and procedures (TTPs).
  • Experience leading threat hunting teams within a Security Operations Center (SOC) environment.
  • Proven ability to develop threat hypotheses and translate complex technical findings into clear, actionable intelligence for both technical teams and executive audiences.
  • Excellent written and verbal communication skills, with a track record of producing high-quality federal security documentation.
Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Cyber Hunt Senior Analyst
Cyber Hunt Senior Analyst

ecsfederal • Virginia (MN)

Hybrid
USD 165,000 - 185,000
Cyber Hunt Team Leader
Cyber Hunt Team Leader

ECS • Richmond (VA)

Hybrid
USD 140,000 - 160,000
Cyber Threat Hunt Team Lead — NCR Area (Remote Eligible)
Cyber Threat Hunt Team Lead — NCR Area (Remote Eligible)

ecsfederal • Virginia (MN)

Hybrid
USD 140,000 - 160,000
Lead Cyber Threat Hunting Team (Remote/NCR)
Lead Cyber Threat Hunting Team (Remote/NCR)

ECS • Richmond (VA)

Hybrid
USD 140,000 - 160,000
Incident Detection/Response Manager (SOC Manager)
Incident Detection/Response Manager (SOC Manager)

ecsfederal • Virginia (MN)

Hybrid
USD 140,000 - 160,000
Senior Cybersecurity Threat Hunter III
Senior Cybersecurity Threat Hunter III

Invictus International Consulting, LLC • Colorado Springs (CO)

On-site
USD 158,000 - 193,000
Senior Cybersecurity Threat Hunter III
Senior Cybersecurity Threat Hunter III

Invictus International • Alexandria (VA)

On-site
USD 120,000 - 180,000
Penetration Testing Team Lead
Penetration Testing Team Lead

ecsfederal • Virginia (MN)

Hybrid
USD 170,000 - 190,000
Senior Cybersecurity Threat Hunter III
Senior Cybersecurity Threat Hunter III

Invictus International Consulting, LLC • Alexandria (VA)

On-site
USD 149,000 - 203,000
Cyber Hunt Specialist
Cyber Hunt Specialist

Strategic Data Systems, Inc. • Dahlgren (VA)

On-site
USD 110,000 - 150,000