Senior Threat Hunter

Leidos

Confirmed live 2 days ago High trust
Hybrid

Quick summary

Work type
Hybrid
Location
Fort Huachuca, AZ
Salary
$107,900–$195,050 / yr
Posted
18 days ago
Freshness
Confirmed live 2 days ago

Market check

Salary context

Below market

How this pay compares to similar roles

Similar $178k
This role $151k
$95k most similar roles pay here $227k

This role pays less than 71% of similar roles. Most pay $149,125–$206,212 — the shaded band above. At the midpoint, this role pays about $151k versus about $178k for comparable roles.

Based on 240 similar postings.

Employer

About Leidos

Leidos is an industry and technology leader serving government and commercial customers with smarter, more efficient digital and mission innovations.

Leidos currently has 264 open roles on FindRole.

Listed pay typically runs $92,300–$166,850 across 245 roles with salary data.

Most-posted roles

View all roles at Leidos

At a glance

TL;DR · Senior Threat Hunter

As a Senior Threat Hunter within the Cyber Security Service Provider team, you will proactively identify, investigate, and mitigate sophisticated cyber threats across multi-tenant subscriber networks. You will lead incident response during high-severity events, conduct host and network analysis, and perform trend analysis to protect cloud and on-premises environments including AWS, Microsoft Azure, Google Cloud Platform, and Oracle Cloud. Your daily responsibilities include developing advanced detection strategies, creating custom signatures and correlation logic, and building AI-assisted detections using machine learning capabilities. You will translate threat intelligence into actionable content, develop training for other personnel, and brief senior leadership on cyber activities. The role requires expertise in adversary tactics, techniques, and procedures to defend the Department of Defense Information Network against malicious activity across diverse SaaS platforms and complex enterprise infrastructures.

What you'll do

  • Conduct proactive threat hunting across cloud and on-premises environments to identify malicious activity before it impacts missions.
  • Lead incident response during high-severity events by providing expert analysis and recommending containment and remediation actions.
  • Develop custom signatures, detection rules, and correlation logic based on identified adversary tactics, techniques, and procedures.
  • Build, tune, and monitor AI-assisted detections and machine learning capabilities to identify adversary behavior.
  • Create and refine threat-hunting hypotheses based on intelligence, emerging threats, and anomalous activity.
  • Produce actionable reports documenting findings and risk for technical teams, stakeholders, and senior leadership.
  • Deliver cybersecurity training and mentorship to team members to improve technical knowledge and response capabilities.
  • Brief senior leaders and high-level stakeholders on cyber threat activity and significant security incidents.

What we're looking for

  • U.S. citizenship and an active TS/SCI security clearance.
  • Bachelor's degree and 8+ years of relevant cybersecurity experience.
  • 7+ years of experience in cyber analysis, threat hunting, and/or purple-team or blue-team operations.
  • Experience working for or with a U.S. Government Cyber Security Service Provider (CSSP).
  • Demonstrated experience investigating sophisticated cyber threats and developing or improving threat detection capabilities.
  • Working knowledge of adversary tactics, techniques, and procedures (TTPs) applied to threat hunting and incident response.
  • Experience operating in complex enterprise environments including cloud, SaaS, and on-premises infrastructure.
  • Security+ certification and a CSSP Analyst certification such as CEH or GCIH.

More like this

Similar roles

Threat Hunter III

CrowdStrike

Remote 37 days ago $100,000$155,000
Threat Hunting Python Go Windows MacOS Linux Splunk Kibana LogScale AWS Azure GCP Digital Forensics Malware Analysis Cyber Threat Intelligence Incident Response Cloud Security
Remote

Threat Hunter, FedCloud

CrowdStrike

Remote 29 days ago $85,000$120,000
Threat Hunting Python Go Windows MacOS Linux Splunk Kibana LogScale AWS Azure GCP Digital Forensics Malware Analysis Cyber Threat Intelligence Incident Response Cloud Security
Remote

Cyber Threat Hunter

Leidos

Washington, DC 60 days ago $107,900$195,050
SIEM EDR Splunk KQL Python PowerShell Bash AWS Azure O365 TCP/IP DNS HTTP/S IDS/IPS Firewalls DFIR
8+ yrs exp Hybrid

Mid Cyber Threat Hunter

Booz Allen Hamilton

Bethesda, MD 10 days ago $62,000$141,000
Splunk SPL MITRE ATT&CK Threat Intelligence Log Analysis Behavioral Analytics Forensic Triage Anomaly Detection Machine Learning Cybersecurity Operations Insider Threat Programs Network Defense SOC IR CTI
2+ yrs exp

Cyber Threat Hunter

General Dynamics

Falls Church, VA 4 days ago $114,750$155,250
Cyber Threat Hunting MITRE ATT&CK Splunk Elastic ITIL Information Assurance Cyber Security Architecture threat-intelligence
6+ yrs exp

Staff Threat Hunting & Intelligence Engineer

Cisco

Seattle, WA +4 16 days ago $160,700$203,500
Splunk SPL Threat Intelligence Threat Hunting API Integration CI/CD DevOps infrastructure-as-code AWS GCP Azure Linux Host-based Logs DNS DHCP Firewall VPN AI
8+ yrs exp Hybrid