Cybersecurity Threat Hunter

ESM•Jefferson Township, OH
•$87,000 - $104,000•Onsite

About The Position

Enterprise Solutions and Management (ESM) is a rapidly growing government contractor that provides strategic IT services that meet mission needs for Defense and Federal customers. We are hiring a Cybersecurity Threat Hunter to support an enterprise-level program within a federal environment. This role proactively identifies and investigates cyber threats that may be operating undetected within the network, using a threat-informed approach that assumes an adversary may already have access to the environment. The Threat Hunter analyzes raw log, network, and security data to identify unusual activity and potential malicious behavior, while collaborating with Threat Detection and Incident Response teams to develop and pursue hunting leads. They correlate enterprise activity and emerging trends with current threat intelligence to identify potential threats, vulnerabilities, and areas requiring mitigation. This position leads the analysis and response to advanced persistent threats (APTs) and other compromises discovered during threat hunting activities. The role also involves developing and implementing threat hunting strategies, tools, and automation to improve the organization's ability to detect sophisticated adversaries, and provides incident response support for critical security incidents.

Requirements

  • Knowledge of threat hunting methodologies and the ability to proactively identify anomalous activity, advanced threats, and indicators of compromise within an enterprise network.
  • Skill in analyzing and correlating raw log, network, security, and threat intelligence data to identify malicious activity, vulnerabilities, and emerging threats.
  • Ability to investigate and respond to critical security incidents, including advanced persistent threats (APTs) and network compromises, and develop effective mitigation strategies.
  • Ability to develop threat hunting strategies, tools, and automated capabilities that improve the detection and analysis of sophisticated cyber adversaries.
  • Knowledge of security challenges across multiple operating systems and the MITRE ATT&CK framework.
  • Ability to analyze large datasets and identify trends, anomalies, and potential threats.
  • Experience with security tools and scripting languages, including Splunk, Python, and PowerShell.
  • Ability to translate threat intelligence and data into actionable insights and clear threat hunting documentation.
  • Five (5) years of technical experience in one of the following areas: Threat Intelligence, Cybersecurity Incident Response, Penetration Testing, Reverse Engineering, Digital Forensic
  • Three (3) years of experience analyzing attacker techniques at all levels of attack.
  • Must maintain CSSP Analyst certification by having one of the following or equivalent - (CEH, CFR, GCIA, GCISP)
  • Top Secret clearance

Nice To Haves

  • Be a positive, self-motivated, and proactive person with the ability to adapt to change and tolerate stressful situations
  • Candidate must communicate effectively with team members, team lead, management, and government customers
  • Must have the ability and desire to research and develop creative solutions to unique problems with minimal supervision

Responsibilities

  • Proactively identifies and investigates cyber threats that may be operating undetected within the network, using a threat-informed approach that assumes an adversary may already have access to the environment.
  • Analyzes raw log, network, and security data to identify unusual activity and potential malicious behavior, while collaborating with Threat Detection and Incident Response teams to develop and pursue hunting leads.
  • Correlates enterprise activity and emerging trends with current threat intelligence to identify potential threats, vulnerabilities, and areas requiring mitigation.
  • Leads the analysis and response to advanced persistent threats (APTs) and other compromises discovered during threat hunting activities.
  • Develops and implements threat hunting strategies, tools, and automation to improve the organization's ability to detect sophisticated adversaries.
  • Provides incident response support for critical security incidents.
  • Other duties as assigned.
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service