Cybersecurity Threat Hunter

AGE Solutions

• $110K — $130K *
Information Technology
5 - 7 years of experience
Job Overview by Ladders

Qualifications

  • 5+ years in Threat Intelligence, Cybersecurity Incident Response, Penetration Testing, Reverse Engineering, or Digital Forensics.
  • 3+ years analyzing attacker techniques across the attack lifecycle.
  • Current DoD Top Secret Clearance with IT-I, T5 investigation required.
  • At least one IAT-II and one CSSP IR certification from specified lists.
  • Knowledgeable in the MITRE ATT&CK framework and capable of working with large datasets.

Responsibilities

  • Proactively hunt for advanced cyber threats across enterprise environments.
  • Analyze network traffic and large-scale security datasets for anomalous activities.
  • Develop and execute strategies to identify sophisticated cyber adversaries.
  • Investigate attacker activity and document TTPs throughout the attack lifecycle.
  • Correlate internal security events with threat intelligence to identify emerging threats.
  • Automate threat-hunting capabilities using tools like Splunk, Python, and PowerShell.
  • Collaborate with various cybersecurity teams to address potential compromises.

Benefits

  • Professional development opportunities to advance skills and certifications.
  • Collaborative work environment with cross-team interactions.
  • Experience with cutting-edge cybersecurity technologies.
  • Opportunity to make a direct impact on organizational security posture.
  • Supportive culture for continuous improvement and innovation.
Full Job Description
AGE Solutions is seeking a highly skilled Cybersecurity Threat Hunter to join a mission-focused team defending complex enterprise environments against advanced cyber threats. In this role, you will go beyond traditional monitoring by proactively hunting for sophisticated adversaries, uncovering malicious activity that may have evaded existing security controls, and turning threat intelligence into actionable investigations. You will analyze large-scale security data, identify attacker tactics, techniques, and procedures (TTPs), develop advanced hunting strategies, and build automated capabilities using Splunk, Python, and PowerShell.

Working alongside Threat Detection and Incident Response teams, you will play a critical role in identifying emerging threats, investigating potential compromises, and strengthening the organization's ability to detect and respond to advanced adversaries.

Responsibilities Include:
  • Proactively hunt for advanced cyber threats and malicious activity that may have evaded existing security controls within enterprise environments.
  • Analyze network traffic, security logs, endpoint telemetry, and large-scale security datasets to identify anomalous or suspicious activity.
  • Develop and execute threat-hunting strategies to identify sophisticated adversaries and previously undetected compromises.
  • Investigate attacker activity across the attack lifecycle and identify adversary tactics, techniques, and procedures (TTPs).
  • Apply the MITRE ATT&CK framework to identify, analyze, categorize, and document adversary behaviors and attack patterns.
  • Correlate internal security events and trends with current threat intelligence to identify emerging threats and develop actionable hunting leads.
  • Transform threat intelligence into actionable queries, detection opportunities, investigative leads, and recommended defensive measures.
  • Develop and automate threat-hunting and detection capabilities using Splunk, Python, PowerShell, and related cybersecurity tools.
  • Collaborate with Threat Detection, Cyber Threat Intelligence, Security Operations, and Incident Response teams to investigate suspicious activity and potential compromises.
  • Lead or support technical analysis when Advanced Persistent Threat (APT) activity or other significant compromises are identified.
  • Perform incident response activities for critical cybersecurity incidents, including investigation, analysis, containment support, and documentation.
  • Identify security vulnerabilities and defensive gaps discovered during threat-hunting activities and recommend appropriate mitigations.
  • Analyze security threats and attacker behaviors across multiple operating systems and enterprise technologies.
  • Develop clear, evidence-based documentation of threat-hunting methodologies, investigative activities, findings, and recommended actions.
  • Communicate threat activity, technical findings, and recommended mitigations to cybersecurity teams, technical stakeholders, and leadership.
  • Continuously improve threat-hunting methodologies, tools, automation, and detection capabilities based on emerging adversary techniques and lessons learned.

Required Skills, Qualifications, and Experience:
  • Experience:
    • Five (5) years of technical experience in one of the following areas: Threat Intelligence, Cybersecurity Incident Response, Penetration Testing, Reverse Engineering, or Digital Forensics.
    • Three (3) years of experience analyzing attacker techniques at all levels of attack.
  • Clearance:
    • Must possess a current DoD Top Secret Clearance with IT-I, T5 investigation.
  • Certifications:
    • Must have at least ONE IAT-II Certification from one of the following:
      • Cisco Certified Network Associate Security (CCNA Security)
      • CompTIA Cybersecurity Analyst (CySA+)
      • Global Industrial Cyber Security Professional (GICSP)
      • GIAC Security Essentials (GSEC)
      • CompTIA Security+ Continuing Education (Security+ CE)
      • Systems Security Certified Practitioner (SSCP)
    • Must have at least ONE CSSP IR Certification from one of the following:
      • Certified Ethical Hacker (CEH)
      • CyberSec First Responder (CFR)
      • CompTIA Cybersecurity Analyst (CySA+)
      • GIAC Certified Forensic Analyst (GCFA)
      • GIAC Certified Incident Handler (GCIH)
      • Cisco Cybersecurity Specialist (SCYBER)
  • Skills and Qualifications:
    • Knowledge of security challenges across multiple Operating Systems (OS).
    • Ability to work with and analyze large data sets.
    • Experience using tools and scripting languages such as Splunk, Python, and PowerShell.
    • Ability to turn Threat Intelligence into actionable information.
    • Knowledge of the MITRE ATT&CK framework.
    • Ability to use data to build a narrative supporting the documentation of threat-hunting operations.
  • Location:
    • This role is full-time onsite at our customer's location in Columbus, OH.

Work Environment and Physical Demand:
  • Work is primarily performed in a professional office or technical environment.
  • Requires prolonged periods of sitting and working at a computer workstation.
  • Requires frequent use of computers, keyboards, monitors, and standard office equipment.
  • Requires the ability to communicate effectively with team members and stakeholders in person, by telephone, and through virtual collaboration tools.
  • May require occasional standing, walking, bending, and reaching during the normal course of work.
  • Requires the ability to maintain concentration and attention to detail while analyzing large volumes of technical and cybersecurity data.
  • Must be able to work effectively in a collaborative environment while managing multiple technical activities and priorities.

The projected salary range for this position is $110,000+ annually. Final compensation will be determined based on factors including years of relevant experience, active security clearance level, certifications, technical skillset, contract requirements, and overall qualifications.

Similar Jobs

More Jobs at AGE Solutions

More Information Technology Jobs

Find similar Cybersecurity Threat Hunter jobs: