Edgewater Federal Solutions, Inc.-posted 2 days ago
$125,000 - $145,000/Yr
Full-time • Mid Level
11-50 employees

Edgewater Federal Solutions is currently seeking a skilled Cyber Threat Hunter to join our cybersecurity team at a large federal client. As a Cyber Threat Hunter, you will be responsible for identifying advanced cyber threats that go undetected by traditional defensive tools. You will use advanced techniques, tools, and threat intelligence to actively search for signs of malicious activity across networks, systems, and applications. Due to the nature of the contract and work, US Citizenship is required

  • Proactive Threat Hunting: Develop and execute threat hunting plans to identify potential threats, vulnerabilities and adversarial activity
  • Threat Detection & Analysis: Investigate and analyze suspicious events, logs, and network traffic to detect signs of potential compromises. Utilize threat intelligence feeds, SIEM systems, and custom detection rules to identify anomalies.
  • Incident Response Collaboration: Collaborate closely with the Incident Response (IR) team to assist in investigating and responding to identified cyber threats and breaches.
  • Reporting & Documentation: Maintain detailed records of threat-hunting activities, including findings, methods used, and recommendations. Prepare reports for management and other stakeholders regarding potential risks and mitigations.
  • Continuous Improvement: Continuously refine and improve threat-hunting methodologies and tools to stay ahead of evolving cyber threats. Contribute to the development of best practices, playbooks, and standard operating procedures (SOPs).
  • BS in Computer Science, Information Management, Cyber Security, or related field (additional years of experience may be considered in lieu of education).
  • 3+ years in cybersecurity with a focus on threat hunting, incident response and security operations roles.
  • Knowledge of the threat hunting lifecycle
  • Strong written and verbal skills to effectively communicate at all levels in government and industry
  • In-depth understanding of networking protocols, operating systems, and system architecture
  • Ability to conduct analysis of large data sets with minimal guidance
  • In-depth understanding of common enterprise security architecture and relevant log sources.
  • Experience with log analysis, packet analysis, and using advanced threat-hunting techniques.
  • Experience with a variety of SIEM, EDR and IDS tools
  • Experience in cloud cybersecurity
  • Strong scripting skills
  • Experience with adversary emulation for the purpose of detection development.
  • Knowledge of Infrastructure-as-Code (IaC) and Container security threats.
  • Offensive Security Certified Professional (OSCP) or GIAC Penetration Tester Certification (GPEN)
  • GIAC Cyber Threat Intelligence (GCTI)
  • Certified Information Systems Security Professional (CISSP)
  • Other relevant industry certifications
  • Paid Time Off & Holiday Pay
  • Medical Insurance
  • Dental Insurance
  • Vision Insurance
  • Disability, Life Insurance, and AD&D
  • Flexible Spending Accounts
  • Pre-Tax 401K and/or After-Tax Roth IRA (with employer matching contribution)
  • Tuition and Technical Training Reimbursement
  • Exercise Reimbursement
  • Computer Reimbursement
  • Employee Assistance Program
© 2024 Teal Labs, Inc
Privacy PolicyTerms of Service