Threat Hunter (Mid-Level Cyber Defense)

Phase2 Technology

Bethesda (MD)

On-site

USD 62,000 - 141,000

Full time

11 days ago
Application generator

Turn this role into an interview — a resume and cover letter built around what this employer wants.

Get past ATS filters

Job summary

Booz Allen Hamilton is seeking a Cyber Threat Hunter (Mid) to advance threat hunting across enterprise networks, leveraging MITRE ATT&CK and threat intelligence. You will develop analytics, refine detections, and collaborate with SOC, IR, and CTI teams to improve visibility and responses.

The role emphasizes hypothesis-driven hunts, deep-dive log and endpoint analysis, and production of actionable hunt reports for leadership and mission stakeholders.

Qualifications

  • 2+ years analyzing adversary behaviors and conducting structured, hypothesis-driven hunts.
  • Experience with MITRE ATT&CK and Splunk PEAK.
  • Experience leveraging threat intelligence to develop hunt hypotheses.
  • Experience performing advanced analytics, log analysis, and forensic triage.
  • Experience maintaining documentation, SOPs, and repeatable workflows.

Responsibilities

  • Proactively identify malicious activity and strengthen the organization’s defensive posture.
  • Conduct hypothesis-driven hunts across enterprise networks using threat intel and behavioral analytics.
  • Develop and refine analytics, detection logic, and visibility gaps.
  • Document repeatable workflows and produce high-quality hunt reports.
  • Brief leadership and stakeholders on emerging threats, outcomes, and recommended improvements.
  • Collaborate with SOC, IR, CTI, and platform engineering to operationalize intelligence.

Skills

Threat hunting
MITRE ATT&CK
Threat intelligence
Log analysis
Documentation
Clearance readiness
SPL queries

Education

Bachelor's degree

Tools

Splunk Enterprise
SPL

Job description

Booz Allen Hamilton is seeking a Cyber Threat Hunter (Mid) to advance threat hunting across enterprise networks, leveraging MITRE ATT&CK and threat intelligence. You will develop analytics, refine detections, and collaborate with SOC, IR, and CTI teams to improve visibility and responses.

The role emphasizes hypothesis-driven hunts, deep-dive log and endpoint analysis, and production of actionable hunt reports for leadership and mission stakeholders.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Remote Cyber Threat Intelligence Analyst
Remote Cyber Threat Intelligence Analyst

Booz Allen Hamilton • Bethesda (MD)

On-site
USD 62,000 - 141,000
Remote Cyber Threat Intelligence Analyst (Mid)
Remote Cyber Threat Intelligence Analyst (Mid)

Phase2 Technology • Bethesda (MD)

On-site
USD 62,000 - 141,000
Threat Hunt Analyst: Cutting-Edge Cyber Defense
Threat Hunt Analyst: Cutting-Edge Cyber Defense

Chenega Agile Real Time Solutions, LLC • Washington

On-site
USD 103,000 - 123,000
Cyber Threat Intelligence Lead
Cyber Threat Intelligence Lead

Booz Allen Hamilton • Huntsville (AL)

On-site
USD 62,000 - 141,000
Cyber Threat Hunter: Proactive Threat Detection & IR
Cyber Threat Hunter: Proactive Threat Detection & IR

ASM Research, An Accenture Federal Services Company • Frankfort (KY)

On-site
USD 94,000 - 150,000
Proactive Cyber Threat Hunter
Proactive Cyber Threat Hunter

ASM Research, An Accenture Federal Services Company • Jackson (MS)

On-site
USD 94,000 - 150,000
Cyber Threat Hunter, Mid
Cyber Threat Hunter, Mid

Phase2 Technology • Bethesda (MD)

On-site
USD 62,000 - 141,000
Senior Threat Hunter: Proactive Threat Intel Lead
Senior Threat Hunter: Proactive Threat Intel Lead

Peraton • United States

On-site
USD 104,000 - 166,000
Cyber Mission Analyst: Remote Threat Intel & Strategy
Cyber Mission Analyst: Remote Threat Intel & Strategy

Booz Allen Hamilton • Virginia (MN)

On-site
USD 62,000 - 141,000
Junior Cyber Threat Analyst
Junior Cyber Threat Analyst

Booz Allen Hamilton • Washington

On-site
USD 53,000 - 108,000