Unknown Company

Senior Threat Hunter

washington, dc • Posted 2 days ago
Onsite Contract IT Consulting
Company DescriptionFounded in 1989, SOSi is among the largest private, founder-owned technology and services integrators in the defense and government services industry. We deliver tailored solutions, tested leadership, and trusted results to enable national security missions worldwide.Job Description*** This position is contingent upon contract award ***OverviewSOSi is seeking a Senior Threat Hunter to support proactive cyber defense activities in alignment with our customer. This role is responsible for conducting threat hunting operations, analyzing data from multiple sources to identify malicious activity, supporting detection and response efforts, and applying advanced analytical techniques to improve cyber defense operations.ResponsibilitiesConduct proactive threat hunting to identify malicious activity, indicators of compromise, and anomalous behavior across the enterpriseAnalyze data from logs, sensors, endpoint detection and response (EDR) tools, and full packet capture (PCAP) sources to detect threatsApply threat hunting methodologies using MITRE ATT&CK and MITRE D3FEND frameworksSupport detection, analysis, and response to cyber threats in coordination with SOC and incident response teamsPerform analysis of TCP/IP traffic, intrusion detection system (IDS) data, malware activity, and adversary tactics, techniques, and procedures (TTPs)Use scripting and query tools to support threat analysis, data hunting, and development of analytical outputsSupport development of threat hunting products, reporting, and recommendations to improve cyber defense detection and monitoringQualificationsExperience:Five (5) or more years of experience in data hunting, manipulation, and presentationManagement or team lead experienceExperience with MITRE ATT&CK and MITRE D3FENDExperience analyzing TCP/IP, IDS data, PCAP, logs, and sensor dataExperience supporting malware analysisExperience with Endpoint Detection and Response (EDR) toolsExperience with scripting or query languages including R, Python, PIG, HIVE, or SQLEducation:Bachelor’s Degree(Bachelor’s Degree may be substituted with additional 4+ years of experience as approved by Government)Certifications:
One of:GCIHGNFAGCIAPlus one DoD 8570 CSSP certification in:CISSP (Associate)CCSPSSCPClearance/Suitability: Secret (active), Top Secret, SCI EligibleAdditional InformationWork EnvironmentNormal office conditions with potential to perform duties in deployed locations.Core hours of operation are Monday through Friday, 0600 – 1700.May be requested to work evenings and weekends to meet program and contract needs.Working at SOSiAll interested individuals will receive consideration and will not be discriminated against for any reason.SummaryType: Full-timeFunction: OtherExperience level: Mid-Senior LevelIndustry: Information Technology And Services

Senior Threat Hunter in washington at Unknown Company

This position is listed as contract and onsite.

Back to Job Search