Cyber Threat Hunter

Leidos

Actively hiring
Ashburn, VA Posted 72 days ago $131,300$237,350 / year

At a glance

AI generated

TL;DR

Leidos seeks a Cyber Threat Hunter to join its DHS NOSC Cyber Team, supporting the Department of Homeland Security’s mission to safeguard enterprise-wide information systems. This senior-level role involves developing threat models and identifying defensive gaps, updating security protocols, executing proactive threat hunts, analyzing complex datasets for advanced threats, and presenting findings to stakeholders. The ideal candidate should possess a strong background in cybersecurity with 12-15 years of relevant experience, including SOC Analyst or Incident Responder roles, and hold at least two certifications such as Security+, PenTest+, or GSEC. Expertise in network analysis, scripting languages like Python and PowerShell, and tools like Splunk SPL is preferred. The role demands a TS/SCI clearance and U.S. citizenship, with the candidate contributing to enhancing the security posture of DHS networks across various platforms including cloud environments and wireless networks.

Skills

Python PowerShell Splunk Elasticsearch AWS Azure Linux Windows HTTP DNS SMB CI/CD

What you'll do

  • Develop threat models to assess and secure the DHS IT enterprise.
  • Execute proactive threat hunt missions to validate hypotheses on cyber threats.
  • Analyze complex datasets for patterns and anomalies in host, network, and application logs.
  • Recommend and assist in developing new security content like signatures and alerts.
  • Present risk analyses and threat findings to stakeholders within the organization.

What we're looking for

  • Active TS/SCI clearance with favorable Entry on Duty (EOD) determination from DHS HQ
  • Bachelor’s degree in IT-related field or equivalent experience
  • At least two cybersecurity certifications from a specified list
  • 12-15 years of relevant SOC Analyst or Incident Responder experience
  • Strong independent work capability and self-motivation
  • U.S. Citizenship required

Market check

Salary context

Above market

How this pay compares to similar roles

Similar $164k
This role $184k
$99k most similar roles pay here $252k

This role pays more than 72% of similar roles. Most pay $142,175–$185,000 — the shaded band above. At the midpoint, this role pays about $184k versus about $164k for comparable roles.

Based on 239 similar postings.

Employer

About Leidos

Leidos is an industry and technology leader serving government and commercial customers with smarter, more efficient digital and mission innovations.

Leidos currently has 214 open roles on FindRole.

Listed pay typically runs $107,900–$195,050 across 204 roles with salary data.

Most-posted roles

View all roles at Leidos

More like this

Similar roles

Cyber Threat Intelligence Analyst

Leidos

9358 Undisclosed Dc Customer Site, US 83 days ago $107,900$195,050
MITRE ATT&CK Threat Intelligence Platform (TIP) Python PowerShell SPL KQL Elastic DSL AWS Azure O365 Cyber Kill Chain Diamond Model of Intrusion Analysis Anomali ThreatConnect MISP
Hybrid

Cybersecurity Analyst

Leidos

OH 29 days ago $69,550$125,725
SIEM SOAR AWS Azure GCP Python NetFlow Full Packet Capture IDS/IPS HIPS/HBSS Anti-Virus Network Forensics Mobile Device Management MAM MTD OSI Model Defense-in-Depth Packet Analysis Behavioral Analysis Statistical Analysis Machine Learning

Staff Cyber Threat Hunter

Adobe

San Jose 35 days ago $214,100$310,100
Python Kubernetes CI/CD AWS SIEM SQL SPL KQL Git ML Anomaly Detection Statistical Analysis Threat Intelligence Red Team CSIRT Docker Terraform

Senior Cyber Threat Hunter

Adobe

San Jose 21 days ago $180,600$261,450
Python SIEM SPL SQL KQL Git CI/CD APIs Cloud Infrastructure Endpoint Detection Identity Management Network Telemetry Threat Intelligence DFIR Log Forensics Automation Scripts Analytics Detection Engineering

Cybersecurity Specialist

Leidos

Beavercreek, OH 16 days ago $107,900$195,050
RMF DISA STIGs Nessus SCAP ICD 503 Risk Management Framework DoD Manual 8570 CISSP CompTIA Security+ Agile Atlassian JIRA Confluence Python Shell scripting AWS Azure Google Cloud Platform Kubernetes Terraform

Cybersecurity Specialist

Booz Allen Hamilton

Lorton, VA 13 days ago $86,800$198,000
AWS Azure M365 RMF FedRAMP FIPS 199 SSP NIST 800-53 CI/CD multi-factor authentication identity and access management cloud security AI architecture security controls control implementation.summary(CRM/CIS)