Location: Columbus, OH - On-site
Clearance: Active DoD Top Secret
Salary: $145K-$185K
Job SummaryWe are seeking an experienced
Cybersecurity Threat Hunter to proactively identify and investigate threats within a complex enterprise environment. This role analyzes network, endpoint, and security data to detect malicious activity that may have bypassed existing security controls.
The Threat Hunter will work closely with Threat Intelligence, Detection, and Incident Response teams to investigate suspicious activity, identify adversary tactics and techniques, develop hunting strategies, and respond to critical security incidents.
Responsibilities- Conduct proactive threat hunting to identify malicious or suspicious activity.
- Analyze network traffic, endpoint activity, logs, SIEM data, IDS/IPS alerts, and other security telemetry.
- Develop threat hunts based on intelligence, vulnerabilities, and adversary TTPs.
- Use MITRE ATT&CK to analyze and document attacker techniques.
- Correlate internal activity with current threat intelligence.
- Investigate potential APT and other advanced threat activity.
- Support incident response for critical cybersecurity incidents.
- Identify vulnerabilities and recommend mitigation or remediation.
- Develop threat hunting queries, tools, scripts, and automation using Splunk, Python, and PowerShell.
- Document hunting activities, findings, evidence, and recommendations.
- Work with Threat Intelligence, Incident Response, Digital Forensics, and Detection teams to improve defensive capabilities.
Minimum Requirements- 5+ years of technical experience in one or more of the following:
- Threat Intelligence
- Cybersecurity Incident Response
- Penetration Testing
- Reverse Engineering
- Digital Forensics
- 3+ years of experience analyzing attacker techniques across the attack lifecycle.
- Knowledge of security challenges in multiple Operating Systems (OS)
- Ability to work with large data sets.
- Experience with Splunk, Python, and PowerShell.
- Knowledge of the MITRE ATT&CK framework.
- Ability to turn Threat Intelligence into actionable information.
- Capable of using data to build a narrative to support documentation of hunting operations.
Clearance- Current DoD Top Secret clearance required.
- Must be eligible for IT-I Critical Sensitive access.
Preferred Qualifications- Experience in a SOC, CSSP, CERT, or similar cyber defense environment.
- Experience with APT and advanced threat hunting.
- Experience with network traffic analysis, IDS/IPS, PCAP, or Wireshark.
- Experience with digital forensics or malware analysis.
- Relevant certifications such as GCIH, GCIA, GCFA, GNFA, GCTI, OSCP, CISSP, or CySA+.
If you thrive on solving complex problems and building meaningful connections, we'd love to hear from you. Join our team and make an impact today!
Physical and Mental Qualifications:- Maintain focus and awareness throughout scheduled working hours.
- Perform tasks requiring prolonged periods of sitting or standing at a desk, utilizing a computer, mouse, and keyboard.
- Lift and move objects weighing up to 15 pounds as needed.
- Exhibit excellent verbal and written communication skills, with a strong command of the English language.
- Demonstrate the ability to work independently while also collaborating effectively as part of a team.
- Quickly learn and retain routine tasks and processes.
- Possess strong organizational skills, attention to detail, business correspondence proficiency, and self-management capabilities.
- Perform the essential functions of the role satisfactorily; reasonable accommodation will be provided for employees with disabilities upon request.
- Accept and adapt to additional responsibilities or changes to assigned duties as determined by DirectViz Solutions (DVS).