Talent.com
Cyber Threat Hunter

Cyber Threat Hunter

Leidos IncAshburn, VA, United States
1 day ago
Job type
  • Full-time
Job description

Description

Leidos is seeking a highly motivated and experienced Cyber Threat Hunter to join our DHS NOSC Cyber Team. This role supports the Department of Homeland Security's mission to protect its enterprise-wide information systems from cyber threats through proactive monitoring, intrusion detection, and security services.

The ideal candidate is process-driven, inquisitive, and skilled at identifying patterns and anomalies in complex datasets.

About DHS NOSC

The Network Operations Security Center (NOSC) is a U.S. Government program responsible for preventing, identifying, containing, and eradicating cyber threats across DHS networks. NOSC provides monitoring, intrusion detection, and protective services for DHS information systems, including :

LAN / WAN infrastructure

Public-facing websites

Wireless and mobile / cellular networks

Cloud environments

Security devices, servers, and workstations

NOSC oversees the overall security of DHS enterprise systems and investigates and reports suspected or confirmed security violations.

Primary Responsibilities

Develop threat models to assess the DHS IT enterprise, identify defensive gaps, and prioritize mitigations

Author, update, and maintain SOPs, playbooks, and work instructions

Use threat intelligence and models to formulate threat hypotheses

Plan and execute threat hunt missions to validate hypotheses

Proactively search systems and networks for advanced threats

Analyze host, network, and application logs, malware, and code

Prepare and present risk analyses and threat findings to stakeholders

Recommend and assist in developing new security content (e.g., signatures, alerts, workflows, automation)

Collaborate across teams to enhance threat detection, response, and overall security posture

Basic Qualifications

Active TS / SCI clearance ; must also obtain a favorable Entry on Duty (EOD) determination from DHS HQ

Bachelor's degree in IT, Cybersecurity, Computer Science, Information Systems, Data Science, or Software Engineering from an ABET or NCAE-C designated institution

Minimum 8-12 years of relevant experience (SOC Analyst, Incident Responder)

A bachelor's degree may substitute for up to 1 year of experience

A master's degree may substitute for up to 2 years of experience

At least two certifications from the following : Security+, PenTest+, Cloud+, GSEC, CEH, CCE, CFR, CySA+, GCFA, GCIA, GCIH, GDSA, GICSP

Strong ability to work independently; self-starter and self-motivated

Must be a U.S. Citizen

Preferred Qualifications

Expertise in network and host-based analysis and investigation

Experience planning and executing threat hunt missions

Understanding of enterprise network architecture (routing, switching, firewalls, proxies, load balancers)

Completion of military cyber training courses : 4-11-C32-255S (CP), 4C-255N (CP), or 4C-255A (CP)

Working knowledge of networking protocols (HTTP, DNS, SMB, etc.)

Familiarity with Windows and Linux operating systems

Proficiency in scripting languages (Python, PowerShell)

Experience with Splunk SPL and / or Elastic DSL

Proven ability to triage and respond to APT activities

Experience with cloud and container platforms (AWS, Azure, O365, etc.)

Deep understanding of the cyber threat landscape and adversary tactics

Prior experience on a federal government threat hunt team, especially DHS or DoD

Come break things (in a good way). Then build them smarter.

We're the tech company everyone calls when things get weird. We don't wear capes (they're a safety hazard), but we do solve high-stakes problems with code, caffeine, and a healthy disregard for "how it's always been done."

Original Posting : October 6, 2025

For U.S. Positions : While subject to change based on business needs, Leidos reasonably anticipates that this job requisition will remain open for at least 3 days with an anticipated close date of no earlier than 3 days after the original posting date as listed above.

Pay Range :

Pay Range $104,650.00 - $189,175.00

The Leidos pay range for this job level is a general guideline onlyand not a guarantee of compensation or salary. Additional factors considered in extending an offer include (but are not limited to) responsibilities of the job, education, experience, knowledge, skills, and abilities, as well as internal equity, alignment with market data, applicable bargaining agreement (if any), or other law.

Create a job alert for this search

Cyber Threat Hunter • Ashburn, VA, United States

Related jobs
  • Promoted
Cyber Security Deception / Threat Hunter

Cyber Security Deception / Threat Hunter

AGR, LLCArlington, VA, US
Full-time
We are currently seeking an experienced.Senior Cyber Security Deception Engineer / Threat Hunter.Department of State (DoS) Diplomatic Security Cyber Mission (DSCM) program providing leading cyber and...Show moreLast updated: 5 days ago
  • Promoted
  • New!
Insider Threat Analyst / Hunt Team (Springfield)

Insider Threat Analyst / Hunt Team (Springfield)

ClearanceJobsSpringfield, VA, US
Part-time
Insider Threat Analyst / Hunt Team.ASRC Federal is seeking experienced Insider Threat Analyst / Hunt Team supporting an Insider Threat Program (ITP) with the Department of Homeland Security.Insider Thr...Show moreLast updated: 7 hours ago
Cyber Defense Threat Hunting Analyst

Cyber Defense Threat Hunting Analyst

Resource Management Concepts, Inc.Quantico, VA, US
Full-time
Quick Apply
Resource Management Concepts, Inc.RMC) provides high-quality, professional services to government and commercial sectors. Our mission is to deliver exceptional management and technology solutions su...Show moreLast updated: 1 day ago
  • Promoted
  • New!
Counterintelligence (CI) Cyber Threat Analyst (Springfield)

Counterintelligence (CI) Cyber Threat Analyst (Springfield)

Parsons CompanySpringfield, VA, US
Part-time
Counterintelligence (CI) Cyber Threat Analyst.In a world of possibilities, pursue one with endless opportunities.Imagine Next! When it comes to what you want in your career, if you can imagine it, ...Show moreLast updated: 7 hours ago
  • Promoted
Threat Analyst

Threat Analyst

VirtualVocationsAlexandria, Virginia, United States
Full-time
A company is looking for a Threat Analyst for 3rd shift positions, fully remote within the continental U.Key Responsibilities Provide intrusion / incident monitoring and detection using customer da...Show moreLast updated: 30+ days ago
  • Promoted
  • New!
Cyber Threat Hunt Analyst (Falls Church)

Cyber Threat Hunt Analyst (Falls Church)

ClearanceJobsFalls Church, VA, US
Part-time
Seeking a Cyber Threat Hunt Analyst to join our Cyber Security Operations Center (CSOC) in McLean, VA.The ideal candidate will have a deep understanding of cyber threat hunting, advanced persistent...Show moreLast updated: 7 hours ago
  • Promoted
  • New!
CI Cyber Threat Technical Analysis (Level III) (Springfield)

CI Cyber Threat Technical Analysis (Level III) (Springfield)

ClearanceJobsSpringfield, VA, US
Part-time
CI Cyber Threat Technical Analysis (Level III).CI Cyber Threat Technical Analysis (Level III) will ensure all required reports are complete with minimal errors and that all processes, activities, a...Show moreLast updated: 7 hours ago
  • Promoted
  • New!
Cyber Threat Analyst (Reston)

Cyber Threat Analyst (Reston)

AnaVation LLCReston, VA, United States
Full-time
AnaVation is seeking a Cyber Threat Analyst to join our team and support our mission critical customer in Reston, VA.As our Cyber Threat Analyst, you will create analysis products based on cyber th...Show moreLast updated: 3 hours ago
  • Promoted
Threat Hunter

Threat Hunter

VirtualVocationsRockville, Maryland, United States
Full-time
A company is looking for a Threat Hunter to proactively identify and mitigate threats using advanced SPL queries in Splunk. Key Responsibilities Develop SPL queries to detect IOCs, anomalies, and ...Show moreLast updated: 1 day ago
  • Promoted
Threat Intelligence Specialist

Threat Intelligence Specialist

VirtualVocationsAlexandria, Virginia, United States
Full-time
A company is looking for a Threat Intelligence Specialist to manage critical global law enforcement inquiries.Key Responsibilities Respond to high-priority, time-sensitive requests from law enfor...Show moreLast updated: 1 day ago
  • Promoted
  • New!
CI Cyber Threat Technical Analyst (Springfield)

CI Cyber Threat Technical Analyst (Springfield)

Booz Allen HamiltonSpringfield, VA, US
Full-time +1
CI Cyber Threat Technical Analyst.As a CI Cyber Threat Technical Analyst, you will provide input for the CI Cyber Branch to produce weekly, monthly, and quarterly threat reports.Additionally, you w...Show moreLast updated: 7 hours ago
  • Promoted
  • New!
Counterintelligence (CI) Cyber Threat Analyst (Springfield)

Counterintelligence (CI) Cyber Threat Analyst (Springfield)

ClearanceJobsSpringfield, VA, US
Part-time
Counterintelligence (CI) Cyber Threat Analyst.In a world of possibilities, pursue one with endless opportunities.Imagine Next! When it comes to what you want in your career, if you can imagine it, ...Show moreLast updated: 7 hours ago
  • Promoted
  • New!
Cyber Threat Intelligence Lead (Ashburn)

Cyber Threat Intelligence Lead (Ashburn)

ClearanceJobsAshburn, VA, US
Full-time +1
Cyber Threat Intelligence Lead.We are seeking an experienced Cyber Threat Intelligence Lead in support of a government customer to join our team to provide Security Operations Support (SOC) Service...Show moreLast updated: 7 hours ago
  • Promoted
Cybersecurity A&A Subject Matter Expert

Cybersecurity A&A Subject Matter Expert

VirtualVocationsAlexandria, Virginia, United States
Full-time
A company is looking for a Cybersecurity Assessment & Authorization (A&A) SME.Key Responsibilities Serve as a DOD cybersecurity SME for information systems undergoing A&A Apply NIST 800-53 secur...Show moreLast updated: 1 day ago
  • Promoted
  • New!
Senior Cybersecurity Threat Hunter (Herndon)

Senior Cybersecurity Threat Hunter (Herndon)

ClearanceJobsHerndon, VA, United States
Full-time
Senior Cybersecurity Threat Hunter.ManTech seeks a motivated, career and customer-oriented Senior Cybersecurity Threat Hunter to join our team in Herndon, VA. Responsibilities include, but are not l...Show moreLast updated: 3 hours ago
  • Promoted
Cyber Security Deception / Threat Hunter (Arlington)

Cyber Security Deception / Threat Hunter (Arlington)

AGR, LLCArlington, VA, US
Full-time +1
We are currently seeking an experienced.Senior Cyber Security Deception Engineer / Threat Hunter.Department of State (DoS) Diplomatic Security Cyber Mission (DSCM) program providing leading cyber and...Show moreLast updated: 1 day ago
  • Promoted
  • New!
Cyber Threat Analysis Division Task Lead (Arlington)

Cyber Threat Analysis Division Task Lead (Arlington)

ClearanceJobsArlington, VA, US
Part-time
Seize your opportunity to make a personal impact as a Project / Task Manager supporting our program.GDIT is your place to make meaningful contributions to challenging projects and grow a rewarding ca...Show moreLast updated: 7 hours ago
  • Promoted
Cyber Threat Analysis Division Task Lead

Cyber Threat Analysis Division Task Lead

Clearance JobsArlington, VA, US
Full-time
Seize your opportunity to make a personal impact as a Project / Task Manager supporting our program.GDIT is your place to make meaningful contributions to challenging projects and grow a rewarding ca...Show moreLast updated: 30+ days ago
  • Promoted
  • New!
CI Cyber Threat Analyst (Springfield)

CI Cyber Threat Analyst (Springfield)

ClearanceJobsSpringfield, VA, US
Part-time
Seize your opportunity to make a personal impact as a CI Cyber Threat Analyst supporting our intelligence customer.GDIT is your place to make meaningful contributions to challenging projects and gr...Show moreLast updated: 7 hours ago
  • Promoted
  • New!
Cyber Threat Analyst - GTA (Arlington)

Cyber Threat Analyst - GTA (Arlington)

PeratonArlington, VA, US
Full-time +1
We are seeking a highly skilled Cyber Threat Analyst - GTA with regional cyber threat expertise, an in-depth understanding of historical cyber activity, and a strong grasp of the current cyber thre...Show moreLast updated: 7 hours ago