Cybersecurity Threat Analyst Subject Matter Expert IV

invictusic

Alexandria (VA)

On-site

USD 150,000 - 190,000

Full time

3 days ago
Be an early applicant
Application generator

Stand out for this role — generate a tailored resume and cover letter in about a minute.

Get past ATS filters

Job summary

invictusic is seeking a Cybersecurity Threat Analyst Subject Matter Expert IV to act as the senior technical authority for proactive threat hunting within the SOC in Alexandria, VA. The role leads development of threat-hunting methodology, integrates with watch operations, and directs advanced hunt campaigns leveraging threat intelligence and MITRE ATT&CK frameworks.

The candidate will assess analytical models, expand hunting scope as needed, and ensure findings are transitioned to incident

Qualifications

  • Bachelor's degree in a technical discipline; an additional 4 years may be substituted in lieu of a degree
  • Minimum of eight (8) years of relevant experience
  • Expert-level hands-on threat hunting and adversary analysis
  • Experience leading complex hunt campaigns and identifying malicious activity not detected via routine alerting
  • Expert knowledge of adversary TTPs, MITRE ATT&CK, threat intel operationalization, telemetry, and analytics
  • Experience establishing or improving a proactive cyber-defense program
  • Current DoD 8570 IAT II or IAM II certification
  • DoD/IC environment experience
  • Active TS/SCI clearance with CI polygraph eligibility

Responsibilities

  • Serve as senior technical authority for proactive threat hunting within the SOC
  • Lead development of SOC threat-hunting methodology and integration with watch operations
  • Proactively search enterprise network, endpoints, SIEM, and telemetry for indicators of compromise
  • Develop advanced hunt campaigns based on threat intel and detection gaps
  • Assess analytical models and determine meaningful adversary behavior
  • Lead pivots across sources and expand scope when evidence indicates broader activity
  • Ensure hunt findings transition to incident response with actionable guidance
  • Provide senior input to daily/weekly SOC reporting and threat assessments
  • Create reusable hunt playbooks and ATT&CK mappings
  • Mentor threat analysts and lead exercises and training
  • Identify telemetry gaps and coordinate with teams to improve collection and detection

Skills

Threat hunting
Adversary analysis
MITRE ATT&CK
Cyber defense
Mentoring

Education

Bachelor's degree in technical field

Tools

MITRE ATT&CK mappings
SIEM

Job description

Title: Cybersecurity Threat Analyst Subject Matter Expert IV
Location: Alexandria, VA
Clearance: TS/SCI with the ability to obtain and maintain a CI polygraph
Job Details:
  • Serve as the senior technical authority for proactive threat hunting and adversary-focused analysis within the SOC
  • Lead development of the SOC threat-hunting methodology, hunt lifecycle, prioritization model, documentation standards, quality criteria, and integration with watch operations and engineering
  • Proactively search across enterprise network, endpoint, identity, SIEM, and other security telemetry for indicators of compromise and behavioral evidence of malicious activity that has evaded automated detection
  • Develop and direct advanced hunt campaigns based on threat intelligence, adversary TTPs, mission priorities, predictive/advanced analytics, environmental changes, incidents, and identified detection gaps
  • Assess and validate analytical or predictive models and determine whether identified patterns represent meaningful adversary behavior, benign activity, or require additional collection and analysis
  • Lead complex analytical pivots across multiple sources and enclaves and direct expansion of scope when evidence indicates broader adversary activity
  • Ensure actionable hunt findings are transitioned to incident response, watch operations, detection engineering, or security engineering with clear evidence and recommended actions
  • Provide senior technical input to daily/weekly SOC reporting, leadership briefings, threat assessments, and defensive priorities
  • Establish reusable hunt playbooks, analytical techniques, ATT&CK mappings, queries, knowledge repositories, and lessons-learned processes
  • Mentor threat analysts at all levels and provide technical leadership for exercises, training, and proficiency development
  • Identify telemetry and detection blind spots and work with engineering teams to improve collection, analytics, enrichment, and automated detection coverage
Requirements:
  • Bachelor's degree from an accredited institute in a technical discipline applicable to the position; an additional 4 years of may be substituted in lieu of a degree
  • Minimum of eight (8) years of relevant experience in addition to education level
  • Expert-level hands-on experience in threat hunting, adversary analysis, advanced cyber defense analysis, or closely related work
  • Demonstrated experience leading complex hunt campaigns and identifying malicious activity not detected through routine alerting
  • Expert knowledge of adversary TTPs, MITRE ATT&CK, threat intelligence operationalization, network/endpoint/identity telemetry, and analytical methodologies
  • Experience establishing or materially improving a threat-hunting or proactive cyber-defense program
  • Experience translating hunt findings into detection engineering requirements and measurable defensive improvements
  • Must possess current DoD 8570 IAT II or IAM II certification
  • Experience working in a DoD or IC environment
  • Current active TS/SCI clearance, with the ability to obtain and maintain a CI polygraph

Equal Opportunity Employer/Veteran/Disabled

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Cybersecurity Threat Analyst Subject Matter Expert IV
Cybersecurity Threat Analyst Subject Matter Expert IV

Invictus International Consulting, LLC. • Alexandria (VA)

On-site
USD 140,000 - 190,000
Cybersecurity Threat Analyst Subject Matter Expert IV
Cybersecurity Threat Analyst Subject Matter Expert IV

Invictus International • Alexandria (VA)

On-site
USD 150,000 - 190,000
Cybersecurity Threat Analyst Subject Matter Expert IV
Cybersecurity Threat Analyst Subject Matter Expert IV

Invictus International • Colorado Springs (CO)

On-site
USD 150,000 - 190,000
Cybersecurity Threat Analyst Subject Matter Expert IV
Cybersecurity Threat Analyst Subject Matter Expert IV

Invictus International Consulting, LLC • Alexandria (VA)

On-site
USD 171,000 - 209,000
Cybersecurity Threat Analyst Subject Matter Expert IV
Cybersecurity Threat Analyst Subject Matter Expert IV

Invictus International Consulting, LLC • Colorado Springs (CO)

On-site
USD 161,000 - 219,000
Senior Cybersecurity Threat Hunter III
Senior Cybersecurity Threat Hunter III

Invictus International Consulting, LLC. • Alexandria (VA)

On-site
USD 120,000 - 180,000
Equal Opportunity Employer
Cybersecurity Threat Analyst Subject Matter Expert IV
Cybersecurity Threat Analyst Subject Matter Expert IV

Invictus International Consulting, LLC. • Colorado Springs (CO)

On-site
USD 130,000 - 190,000
Cybersecurity Threat Analyst Subject Matter Expert IV
Cybersecurity Threat Analyst Subject Matter Expert IV

invictusic • Colorado Springs (CO)

On-site
USD 140,000 - 210,000
Senior Cybersecurity Threat Hunter III
Senior Cybersecurity Threat Hunter III

invictusic • Alexandria (VA)

On-site
USD 120,000 - 160,000
Senior Cybersecurity Threat Hunter III
Senior Cybersecurity Threat Hunter III

Invictus International Consulting, LLC • Alexandria (VA)

On-site
USD 149,000 - 203,000