Cyber Threat Hunter - Hybrid: 4 onsite DC / 1 remote

cFocus Software Incorporated

Washington (District of Columbia)

Hybrid

USD 90,000 - 120,000

Full time

14 days+
Application generator

An application made for this job — a tailored resume and cover letter that speak straight to the posting.

Get past ATS filters

Job summary

A cybersecurity firm is looking for a Mid Level Cyber Threat Hunter to support US Courts in Washington, DC. The position requires 3-5 years of experience in threat hunting and incident response, working both onsite and remote. Responsibilities include incident response, analyzing vulnerabilities, and conducting proactive threat hunts using various tools, including Splunk and CrowdStrike. This role fosters a collaborative work environment with an agile methodology. Candidates must be proficient in cloud platforms like Microsoft Azure.

Qualifications

  • 3-5 years of experience performing threat hunts & incident response activities.
  • Experience analyzing data from compromised systems using EDR agents.
  • Familiarity with various threat hunting tools and cloud environments.

Responsibilities

  • Provide incident response services and proactively search for security incidents.
  • Conduct counterintelligence and identify vulnerabilities.
  • Plan and document hypothesis-based hunts using agile methodology.
  • Interface with IT contacts to install or diagnose problems with EDR agents.

Skills

Threat hunts & incident response
Data analysis from compromised systems
Utilizing Splunk Enterprise Security
Working with EDR agents
Using Microsoft Azure
Vulnerability management
Network traffic analysis

Tools

Splunk Enterprise Security
CrowdStrike
Sysmon
Tenable Nessus
Microsoft Sentinel
Zscaler

Job description

A cybersecurity firm is looking for a Mid Level Cyber Threat Hunter to support US Courts in Washington, DC. The position requires 3-5 years of experience in threat hunting and incident response, working both onsite and remote. Responsibilities include incident response, analyzing vulnerabilities, and conducting proactive threat hunts using various tools, including Splunk and CrowdStrike. This role fosters a collaborative work environment with an agile methodology. Candidates must be proficient in cloud platforms like Microsoft Azure.
Get your free, confidential resume review.
or drag and drop your file here.