Elite Threat Hunter & Forensic Investigator

Cisco Systems, Inc.

Clegg (NC)

On-site

USD 131,000 - 175,000

Full time

3 days ago
Be an early applicant
Application generator

Get a reply from this employer — a resume and cover letter tailored to exactly what they’re hiring for.

Get past ATS filters

Job summary

Cisco Systems, Inc. seeks a Threat Hunter to join a highly specialized security unit in an onsite environment. You will craft hypothesis-driven hunts, develop Splunk-based detections, and perform end-to-end host and network forensics to uncover and neutralize threats.

You will mentor analysts, brief findings to engineering and leadership, and help elevate the team's intelligence and readiness. A TS/SCI clearance and 4+ years of related experience are required.

Qualifications

  • Active TS/SCI clearance, in scope, at time of hire.
  • 4+ years of combined experience in threat hunting, incident response, detection engineering, or Tier 2+ SOC analysis.
  • Proficiency querying and building content in an enterprise SIEM, specifically Splunk (SPL).
  • Practical knowledge of Windows and Linux internals, TCP/IP, and common application-layer protocols.
  • Scripting proficiency in Python, PowerShell, or Bash for enrichment and automation.

Responsibilities

  • Build and execute hypothesis-driven hunt campaigns based on adversary tradecraft to identify and neutralize hidden threats.
  • Build durable detection logic in Splunk and map coverage against the MITRE ATT&CK framework to ensure detailed security visibility.
  • Perform end-to-end host and network forensics to determine root causes and drive effective incident containment and eradication.
  • Brief technical findings to both engineering peers and leadership to translate sophisticated investigation data into actionable organizational insights.
  • Mentor junior analysts and develop robust playbooks to improve the collective maturity and readiness of the security team.

Skills

Threat hunting
Incident response
Detection engineering
SOC analysis
Windows internals
Linux internals
Networking TCP/IP
Python scripting
PowerShell scripting
Bash scripting

Tools

Splunk (SPL)

Job description

Cisco Systems, Inc. seeks a Threat Hunter to join a highly specialized security unit in an onsite environment. You will craft hypothesis-driven hunts, develop Splunk-based detections, and perform end-to-end host and network forensics to uncover and neutralize threats.

You will mentor analysts, brief findings to engineering and leadership, and help elevate the team's intelligence and readiness. A TS/SCI clearance and 4+ years of related experience are required.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Elite Threat Hunter & Incident Forensics Investigator
Elite Threat Hunter & Incident Forensics Investigator

Cisco • North Carolina

On-site
USD 131,000 - 175,000
Senior Threat Hunting & Intelligence Engineer
Senior Threat Hunting & Intelligence Engineer

Jobtailor • California (MO)

On-site
USD 150,000 - 210,000
Senior Cybersecurity Threat Hunter III
Senior Cybersecurity Threat Hunter III

Invictus International • Colorado Springs (CO)

On-site
USD 130,000 - 190,000
Senior Cybersecurity Threat Hunter III
Senior Cybersecurity Threat Hunter III

Invictus International Consulting, LLC. • Alexandria (VA)

On-site
USD 120,000 - 180,000
Equal Opportunity Employer
Senior Threat Hunter — TS/SCI | Advanced Cyber Defense Lead
Senior Threat Hunter — TS/SCI | Advanced Cyber Defense Lead

Invictus International Consulting, LLC. • Colorado Springs (CO)

On-site
USD 120,000 - 170,000
Senior Cybersecurity Threat Hunter III
Senior Cybersecurity Threat Hunter III

Invictus International Consulting, LLC. • Colorado Springs (CO)

On-site
USD 120,000 - 170,000
Threat Hunter — Executive IP & Insider Threat Focus
Threat Hunter — Executive IP & Insider Threat Focus

Cisco Systems • Maryland

Remote
USD 161,000 - 234,000
Senior Cybersecurity Threat Hunter III
Senior Cybersecurity Threat Hunter III

Invictus International • Alexandria (VA)

On-site
USD 120,000 - 180,000
Senior Cyber Threat Hunter III — TS/SCI DoD IC Expert
Senior Cyber Threat Hunter III — TS/SCI DoD IC Expert

Invictus International Consulting, LLC. • Alexandria (VA)

On-site
USD 120,000 - 180,000
Equal Opportunity Employer
Senior Cyber Threat Hunter – TS/SCI | Lead & Mentor
Senior Cyber Threat Hunter – TS/SCI | Lead & Mentor

Invictus International • Alexandria (VA)

On-site
USD 120,000 - 180,000