Senior Threat Hunter

Peraton

Chandler (AZ)

On-site

USD 104,000 - 166,000

Full time

4 days ago
Be an early applicant
Application generator

Get a reply from this employer — a resume and cover letter tailored to exactly what they’re hiring for.

Get past ATS filters

Job summary

Peraton is seeking a Senior Threat Hunter in the United States (Arizona/DC) to drive proactive, intelligence-driven hunts and improve SOC maturity. You will lead hunt activities, analyze data across endpoints, networks, and clouds, and collaborate with IR and SOC teams to validate findings and support containment.

Ideal candidates have 8+ years of experience, strong MITRE ATT&CK knowledge, SIEM/EDR expertise, and proficiency in Python/R/SQL.

Qualifications

  • 8+ years experience with a Bachelor's degree or 12+ years without a degree.
  • 5+ years data hunting, data manipulation, and advanced analytics in SOC/threat hunting.
  • Supervisory or team lead experience mentoring analysts and leading hunt/response activities.
  • Strong knowledge of MITRE ATT&CK and hypothesis-driven threat hunting.
  • Hands-on experience with SIEM, telemetry, and large-scale log analysis.
  • Proficiency in R, Python, and SQL for analytics and automation.
  • One or more required certifications: CISSP (Associate), CCSP, SSCP, GCIH, GNFA, or GCIA; meet DoD 8570 CSSP requirements.
  • U.S. citizenship and active Secret clearance.

Responsibilities

  • Conduct intelligence-driven threat hunting to identify malicious activity evading controls.
  • Develop and test threat hypotheses using MITRE ATT&CK.
  • Analyze endpoint, network, cloud, and log data to detect threats.
  • Collaborate with SOC analysts and IR teams to validate findings and support containment.
  • Create and refine detection logic, queries, signatures, and analytics in SIEM/EDR/XDR.
  • Lead root cause analysis and post-incident reviews to improve SOC maturity.
  • Produce threat intel reports, hunt findings, and operations briefings for tech teams.
  • Mentor junior analysts and contribute to SOC training and playbooks.
  • Maintain awareness of emerging threats and adversary campaigns.

Skills

MITRE ATT&CK
SIEM platforms
Data hunting
Scripting languages (R, Python, SQL)
Threat hunting methodologies
Team leadership

Education

Bachelor's degree in Cybersecurity, IT, CS, or related field

Tools

EDR/XDR platforms

Job description

Senior Threat Hunter

Job Locations: US-AZ-Chandler | US-DC-Washington

  • Requisition ID: 2026-163425
  • Position Category: Intel and Threat Analysis
  • Clearance: Secret
Responsibilities
  • Conduct proactive, intelligence-driven threat hunting to identify malicious activity that evades traditional security controls.
  • Develop and test threat hypotheses based on adversary tactics, techniques, and procedures (TTPs), leveraging frameworks such as MITRE ATT&CK.
  • Analyze endpoint, network, cloud, and log data to detect advanced persistent threats, insider threats, and anomalous behavior.
  • Collaborate with SOC analysts and incident response teams to validate findings and support containment, eradication, and recovery efforts.
  • Create and refine detection logic, queries, signatures, and analytic use cases within SIEM, EDR, and XDR platforms.
  • Lead root cause analysis and post-incident reviews to improve SOC detection and response maturity.
  • Produce high-quality threat intelligence reports, hunt findings, and operational briefings for technical teams and leadership.
  • Mentor junior analysts and contribute to SOC training, playbooks, and continuous improvement initiatives.
  • Maintain situational awareness of emerging threats, vulnerabilities, and adversary campaigns relevant to mission environments.
Qualifications
Required
  • Minimum 8 years experience with a Bachelor's degree in Cybersecurity, Information Technology, Computer Science, or related field. An additional 4 years of relevant experience will be considered in lieu of degree.
  • Minimum of 5 years of experience in data hunting, data manipulation, and advanced analytical techniques within a SOC, threat hunting, or cyber operations environments.
  • Demonstrated supervisory or team lead experience, including mentoring analysts and leading hunt or response activities.
  • Strong working knowledge of MITRE ATT&CK, adversary TTP analysis, and hypothesis-driven threat hunting methodologies.
  • Hands-on experience with SIEM platforms, security telemetry, and large-scale log analysis.
  • Proficiency in scripting and query languages, including R, Python, and SQL, to support analytics, automation, and hunt development.
  • One or more of the following certifications required:
    • CISSP (Associate), CCSP, SSCP, GCIH, GNFA, or GCIA
    • Must also meet DoD 8570 requirements for CSSP Analyst, CSSP Infrastructure Support, or CSSP Incident Responder
  • U.S. citizenship required.
  • Active Secret security clearance required.
Preferred
  • Top Secret with SCI eligibility security clearance preferred.
Peraton Overview

Peraton is a next-generation national security company that drives missions of consequence spanning the globe and extending to the farthest reaches of the galaxy. As the world's leading mission capability integrator and transformative enterprise IT provider, we deliver trusted, highly differentiated solutions and technologies to protect our nation and allies. Peraton operates at the critical nexus between traditional and nontraditional threats across all domains: land, sea, space, air, and cyberspace. The company serves as a valued partner to essential government agencies and supports every branch of the U.S. armed forces. Each day, our employees do the can't be done by solving the most daunting challenges facing our customers. Visit peraton.com to learn how we're keeping people around the world safe and secure.

Target Salary Range

$104,000 - $166,000. This represents the typical salary range for this position. Salary is determined by various factors, including but not limited to, the scope and responsibilities of the position, the individual's experience, education, knowledge, skills, and competencies, as well as geographic location and business and contract considerations. Depending on the position, employees may be eligible for overtime, shift differential, and a discretionary bonus in addition to base pay.

EEO

EEO: Equal opportunity employer, including disability and protected veterans, or other characteristics protected by law.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

External Job Posting Title ICS Threat Hunt Analyst / Active Top Secret
External Job Posting Title ICS Threat Hunt Analyst / Active Top Secret

Peraton • Arlington (VA), Northern (KY)

Hybrid
USD 86,000 - 138,000
Cyber Threat Analyst (I&W) with Splunk and Analyst1 / Active Top Secret
Cyber Threat Analyst (I&W) with Splunk and Analyst1 / Active Top Secret

Peraton • Arlington (VA)

On-site
USD 104,000 - 166,000
OpenSource Cyber Threat Intelligence Analyst
OpenSource Cyber Threat Intelligence Analyst

Peraton • Arlington (VA)

On-site
USD 104,000 - 166,000
Data Scientist / Active TS/SCI
Data Scientist / Active TS/SCI

Peraton • Chandler (AZ)

On-site
USD 135,000 - 216,000
Sr Cybersecurity Engineer / Secret
Sr Cybersecurity Engineer / Secret

Peraton • Chandler (AZ)

On-site
USD 112,000 - 179,000
ICS Threat Hunt Analyst / Active Top Secret
ICS Threat Hunt Analyst / Active Top Secret

Peraton • Arlington (VA)

On-site
USD 86,000 - 138,000
Open‑Source Cyber Threat Intelligence Analyst
Open‑Source Cyber Threat Intelligence Analyst

Peraton • Arlington (VA)

On-site
USD 104,000 - 166,000
Junior Cyber Incident Analyst - Notification Specialist
Junior Cyber Incident Analyst - Notification Specialist

Peraton • Arlington (VA)

On-site
USD 80,000 - 128,000
External Job Posting Title Cyber Monitoring Signature Analyst
External Job Posting Title Cyber Monitoring Signature Analyst

Peraton • Beltsville (MD)

On-site
USD 80,000 - 128,000
Sr Cyber Intelligence Analyst / TS/SCI
Sr Cyber Intelligence Analyst / TS/SCI

Peraton • Chandler (AZ)

On-site
USD 104,000 - 166,000