Threat Hunter/Detection Engineer - Tier 3

Evans & Chambers

Fort Meade (MD)

On-site

USD 130,000 - 150,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

Evans & Chambers seeks a Threat Hunter/Detection Engineer - Tier 3 to actively hunt adversary TTPs, develop, tune, and maintain SIEM and SOAR detection content, and provide senior technical leadership for advanced investigations within the SOC.

This onsite role at Fort Meade, MD requires TS/SCI with CI Poly, a bachelor’s degree in cybersecurity or related field (master’s preferred), and 5–8+ years of progressive cybersecurity experience, including threat hunting and incident response.

Qualifications

  • Proven experience threat hunting and detection engineering.
  • Strong incident response capabilities and playbook development.
  • Proficiency in scripting/automation to support security operations.

Responsibilities

  • Conduct proactive, hypothesis‑driven threat hunts informed by cyber threat intelligence and TTP frameworks.
  • Develop, tune, and maintain SIEM and SOAR detection content and automated response playbooks.
  • Lead technical investigation of advanced threats, including malware analysis and forensics beyond Tier 2 scope.
  • Provide senior mentorship to Tier 1 and 2 staff and support tabletop/red-team exercises.
  • Contribute to threat modeling and SOC architecture decisions.

Skills

Threat hunting
Detection engineering
Incident response
Scripting/automation

Education

Bachelor's degree in Cybersecurity, Computer Science, or related field
Master's degree preferred

Tools

SIEM
SOAR
Automation scripting

Job description

Threat Hunter/Detection Engineer - Tier 3
Title

Threat Hunter/Detection Engineer - Tier 3

ID

10000267

Department

Information Technology

Evans & Chambers partners with the US national defense community to create fully integrated, resilient, and innovative digital solutions that enable them to make smart decisions in real‑time. We work with our customers on everything from conquering their data to improving and safeguarding IT infrastructure. Our ultimate goal? To enhance our nation's ability to identify, address, and act – no matter what challenges arise.

Position Summary: The Tier 3 Threat Hunter / Detection Engineer performs proactive threat hunting against current adversary tactics, techniques, and procedures (TTPs), develops and tunes detection content, and provides senior technical leadership for advanced or persistent threat investigations, consistent with the SOC operating model.

Clearance: TS/SCI with CI Poly

Location: Ft. Meade, MD (Onsite)

Work Schedule and Conditions: Primary shift assignment within the 24/7/365 coverage model. Serve as a senior on‑call escalation point for advanced incidents.

Duties and Responsibilities:

  • Conduct proactive, hypothesis‑driven threat hunts informed by current cyber threat intelligence and adversary TTP frameworks.
  • Develop, tune, and maintain SIEM and SOAR detection content and automated response playbooks, incorporating findings from incident after‑action reviews.
  • Lead technical investigation of advanced, persistent, or previously undetected threats, including advanced malware analysis and forensics beyond the scope of Tier 2 investigation.
  • Provide senior technical mentorship to Tier 1 and Tier 2 staff, and support recurring tabletop, red‑team, and purple‑team exercises.
  • Participate in design‑time control mapping and threat modeling activities, providing SOC‑informed input to architecture and platform engineering decisions.

Required Education and Experience: Bachelor's degree in Cybersecurity, Computer Science, or a related field required; Master's degree preferred. Typically five to eight or more years of progressive cybersecurity experience, including threat hunting, detection engineering, or advanced incident response.

Required Certifications: DoD 8570/8140 IAT Level III required, plus at least one advanced certification such as GCTI, GCFA, OSCP or CISSP; demonstrated proficiency in SIEM/SOAR content development and scripting/automation.

Salary Range: $130k - $150k Depends on Experience and Shift

All employment opportunities are made without regard to age, race, creed, color, religion, sex, national origin, ancestry, disability status, veteran status, sexual orientation, gender identity or expression, genetic information, marital status or any other basis protected by law.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Threat Hunter/Detection Engineer - Tier 3
Threat Hunter/Detection Engineer - Tier 3

Evans & Chambers Technology • Fort Meade (MD)

On-site
USD 130,000 - 150,000
Senior Threat Hunter & Detection Engineer
Senior Threat Hunter & Detection Engineer

Evans & Chambers Technology • Fort Meade (MD)

On-site
USD 130,000 - 150,000
Senior Threat Hunter & Detection Engineer - Tier 3 (Onsite)
Senior Threat Hunter & Detection Engineer - Tier 3 (Onsite)

Evans & Chambers • Fort Meade (MD)

On-site
USD 130,000 - 150,000
Incident Responder Shift Lead - Tier 2
Incident Responder Shift Lead - Tier 2

Evans & Chambers Technology • Fort Meade (MD)

On-site
USD 130,000 - 158,000
Incident Responder - Tier 2
Incident Responder - Tier 2

Evans & Chambers • Fort Meade (MD)

On-site
USD 115,000 - 147,000
Incident Responder Shift Lead - Tier 2
Incident Responder Shift Lead - Tier 2

Evans & Chambers • Fort Meade (MD)

On-site
USD 130,000 - 158,000
Threat Hunter / Public Trust
Threat Hunter / Public Trust

Peraton • Warrenton (VA)

On-site
USD 86,000 - 138,000
Detection Engineer III
Detection Engineer III

OU Health • Oklahoma City (OK)

On-site
USD 110,000 - 140,000
PTO
401(k)
Medical and dental plans
SOC Analyst - Tier 1
SOC Analyst - Tier 1

Evans & Chambers • Fort Meade (MD)

On-site
USD 88,000 - 118,000
Threat Hunt Lead
Threat Hunt Lead

Agile Defense • Reston (VA)

Hybrid
USD 165,000 - 200,000