Cybersecurity Threat Hunter II

Invictus International Consulting, LLC

$110K — $130K *
Information Technology
Less than 5 years of experience
Job Overview by Ladders

Qualifications

  • Bachelor's degree in a technical field or equivalent experience.
  • Minimum four years of relevant cybersecurity experience.
  • Hands-on expertise in threat hunting and incident investigation.
  • Familiarity with adversary tactics, techniques, and procedures (TTPs).
  • Experience with security tools like SIEM and network monitoring systems.
  • Must hold DoD 8570 IAT II or IAM II certification.
  • Experience in a Department of Defense (DoD) or Intelligence Community (IC) environment.

Responsibilities

  • Conduct hypothesis-driven threat hunts across enterprise telemetry.
  • Analyze security telemetry for indicators of compromise and anomalous behavior.
  • Correlate data from various security sources to assess threats.
  • Document findings and recommend actions in authorized systems.
  • Report relevant findings and trends for SOC operational use.
  • Develop hunt hypotheses from threat intelligence and environmental observations.
  • Use MITRE ATT&CK methodologies to characterize and guide analysis.

Benefits

  • Opportunities for professional development and certifications.
  • Access to advanced tools and resources in cybersecurity.
  • Work within a collaborative and innovative team environment.
  • Engagement in high-impact projects with government or military importance.
Full Job Description
Title: Cybersecurity Threat Hunter II

Location: Alexandria, VA

Clearance: TS/SCI with the ability to obtain and maintain a CI polygraph

Job Details:
  • Independently conduct hypothesis-driven threat hunts across available enterprise telemetry to identify malicious or anomalous activity not detected by automated controls
  • Proactively analyze security telemetry to identify indicators of compromise, anomalous behavior, and adversary activity that has not met an incident threshold or has evaded automated security controls
  • Assess and correlate data from multiple sources, including network, endpoint, identity, SIEM, threat intelligence, vulnerability, and other available security data
  • Document hunt activity, findings, evidence, and recommended follow-on actions in authorized systems and initiate or support incident-response processes when malicious activity is identified
  • Provide relevant findings and trends for SOC operational reporting, significant-activity reporting, and defensive awareness
  • Develop hunt hypotheses based on threat intelligence, adversary TTPs, environmental observations, emerging threats, and known detection gaps
  • Use MITRE ATT&CK and other threat-informed methodologies to characterize observed behavior and guide analytical pivots
  • Identify patterns, relationships, and potential adversary activity across users, hosts, network segments, and time periods
  • Recommend new or improved detections, data collection, enrichment, and defensive controls based on hunt outcomes


Requirements:
  • Bachelor's degree from an accredited institute in a technical discipline applicable to the position; an additional 4 years of may be substituted in lieu of a degree
  • Minimum four (4) years of relevant experience in addition to education level
  • Hands-on experience with threat hunting, security analysis, incident investigation, threat intelligence analysis, or comparable proactive cyber defense work
  • Working knowledge of adversary TTPs, MITRE ATT&CK, network and endpoint telemetry, and analytical search techniques
  • Experience using SIEM, network-security monitoring, endpoint telemetry, or other large-scale security data sources
  • Must possess current DoD 8570 IAT II or IAM II certification
  • Experience working in a DoD or IC environment
  • Current active TS/SCI clearance, with the ability to obtain and maintain a CI polygraph


Similar Jobs

More Jobs at Invictus International Consulting, LLC

More Information Technology Jobs

Find similar Cybersecurity Threat Hunter II jobs: