Home
/
Comprehensive
/
Cyber Hunt Analyst Expert
Cyber Hunt Analyst Expert-March 2024
McLean
Mar 28, 2026
About Cyber Hunt Analyst Expert

  Secure our Nation, Ignite your Future

  Are you interested in defending the most coveted targets in the world? Is advancing today's technology for tomorrow's threats to national security constantly on your mind? Join ManTech and help protect our country against our adversaries while working on innovative projects that offer opportunities for advancement. We encourage our team members to share and grow their skills and expertise while creating robust and cutting-edge solutions.

  ManTech his hiring a Cyber Threat Hunt Subject Matter Expert (SME) on this Cyber Security support contract. JAs a Cyber threat Hunt SME on our team, you help strengthen an established unit of elite cyber defense experts by providing strategic vision and tactical implementation to protect our customer's networks from all cyber threat actors.

  Responsibilities include, but are not limited to:

  Provide strategic and tactical direction to cyber hunters and leadership based on trends and actionable intelligence related to threat capabilities

  Coordinate hunt activities between various internal and external hunt groups

  Construct and exploit threat intelligence to detect, respond, and defeat advanced persistent threats (APTs)

  Fully analyze network and host activity in successful and unsuccessful intrusions by advanced attackers

  Build fly-away kits utilizing an agile approach to identify the appropriate tools and technologies necessary to conduct hunt missions

  Conduct advanced threat hunt operations using known adversary tactics, techniques and procedures as well as indicators of attack in order to detect adversaries with persistent access to the enterprise

  Create and add custom signatures, to mitigate highly dynamic threats to the enterprise using the latest threat information obtained from multiple sources. Perform malware analysis on samples obtained during an investigation or hunt operation to create custom signatures

  Develop and produce reports on all activities and incidents to help maintain day to day status, develop and report on trends, and provide focus and situational awareness on all issues

  Piece together intrusion campaigns, threat actors, and nation-state organizations

  Manage, share, and receive intelligence on APT adversary groups

  Generate intelligence from their own data sources and share it accordingly

  Identify, extract, and leverage intelligence from APT intrusions

  Expand upon existing intelligence to build profiles of adversary groups

  Leverage intelligence to better defend against and respond to future intrusions

  Correlate data from intrusion detection and prevention systems with data from other sources such as firewall, web server, and DNS logs

  Notify the management team of significant changes in the security threat against the government networks in a timely manner and in writing via established reporting methods

  Coordinate with appropriate organizations within the intelligence community regarding possible security incidents. Conduct intra-office research to evaluate events as necessary, maintain the current list of coordination points of contact.

  Review assembled data with firewall administrators, engineering, system administrators and other appropriate groups to determine the risk of a given event

  Maintain knowledge of the current security threat level by monitoring related Internet postings, Intelligence reports, and other related documents as necessary

  Required Qualifications:

  10+ years of experience in Computer Science, Cyber Security, Security Engineering or Network Engineering, including cyber security issues and operations, computer incident response, systems architecture, data management

  Experience with working nation state intrusion sets

  Experience with and expert level proficiency in one or more of the following disciplines:

  Windows and/or Linux operating systems

  Network forensics

  Expertise at enterprise scale:

  SysMon or EDR solutions for host-based Cyber Threat Hunting, or

  Netflow/pcap or NDR solutions for network-oriented Cyber Threat Hunting

  Malware analysis/reverse engineering

  Exploit development

  On-net pursuit/response

  Incident response, forensics, or threat hunting in AWS or Azure

  Knowledge of the following classes of enterprise cyber defense technologies:

  Security Information and Event Management (SIEM) systems

  Network Intrusion Detection System/Intrusion Prevention Systems (IDS/IPS)

  Host Intrusion Detection System/Intrusion Prevention Systems (IDS/IPS)

  Network and Host malware detection and prevention (NDR/EDR)

  Network and Host forensic applications

  Web/Email gateway security technologies

  Security Orchestration, Automation, and Response (SOAR)

  Ability to demonstrate effective interpersonal, organizational, writing, communications, and briefing skills

  Ability to use advanced level analytical and problem-solving skills to solve complex issues

  Ability to obtain a CISSP or CEH Certification within 6 months of start date

  DoD 8570 IAT Level III or CSSP-SPM within 6 months of start date

  Active/Current TS/SCI with polygraph clearance

  Preferred Qualifications:

  Bachelor’s Degree in Electrical Engineering, Computer Engineering, Computer Science, or other closely related Information Technology field of studyClearance Requirement:

  Active/Current TS/SCI with polygraphPhysical Requirements:

  Must be able to remain in a stationary position 50%

  Constantly operates a computer and other office productivity machinery, such as a calculator, copy machine and computer printer

  The person in this position needs to occasionally move about inside the office to access file cabinets, office machinery, etc.

  #LI-MT1

  SKN.7.23

  For all positions requiring access to technology/software source code that is subject to export control laws, employment with the company is contingent on either verifying U.S.-person status or obtaining any necessary license. The applicant will be required to answer certain questions for export control purposes, and that information will be reviewed by compliance personnel to ensure compliance with federal law. ManTech may choose not to apply for a license for such individuals whose access to export-controlled technology or software source code may require authorization and may decline to proceed with an applicant on that basis alone.

  ManTech International Corporation, as well as its subsidiaries proactively fulfills its role as an equal opportunity employer. We do not discriminate against any employee or applicant for employment because of race, color, sex, religion, age, sexual orientation, gender identity and expression, national origin, marital status, physical or mental disability, status as a Disabled Veteran, Recently Separated Veteran, Active Duty Wartime or Campaign Badge Veteran, Armed Forces Services Medal, or any other characteristic protected by law.

  If you require a reasonable accommodation to apply for a position with ManTech through its online applicant system, please contact ManTech's Corporate EEO Department at (703) 218-6000. ManTech is an affirmative action/equal opportunity employer - minorities, females, disabled and protected veterans are urged to apply. ManTech's utilization of any external recruitment or job placement agency is predicated upon its full compliance with our equal opportunity/affirmative action policies. ManTech does not accept resumes from unsolicited recruiting firms. We pay no fees for unsolicited services.

  If you are a qualified individual with a disability or a disabled veteran, you have the right to request an accommodation if you are unable or limited in your ability to use or access http://www.mantech.com/careers/Pages/careers.aspx as a result of your disability. To request an accommodation please click [email protected] and provide your name and contact information.

Comments
Welcome to zdrecruit comments! Please keep conversations courteous and on-topic. To fosterproductive and respectful conversations, you may see comments from our Community Managers.
Sign up to post
Sort by
Show More Comments
SIMILAR JOBS
Intermediate Compliance Specialist (Hybrid Work Option)
36718BR Requisition ID: 36718BR Business Unit: COR Job Description: CDM Smith is seeking an Intermediate Compliance Specialist to join our Corporate Compliance Team. This individual performs basic to
Health Technician (Dietetic)
Summary The Dayton Veterans Affairs Medical Center (VAMC) is recruiting for a Health Technician. The Health Technician will function with in Nutrition and Food Services. The primary purpose of the po
Creative Lead / Designer II
Company Summary DISH, an EchoStar Company, is a Fortune 250 that is reimagining the future of connectivity. For over 40 years, we’ve been challenging the status quo and evolving our company to antici
Dispatcher
Dispatcher Location19 Natalie Way Plymouth, Massachusetts 02360 USPhone NumberCategoriesOperation SupportReq IDJR1372 Dispatcher (Open) First for a reasonFirst Student is the largest school transport
Senior Member of Technical Staff (JoinOCI-SDE)
Job Description We are seeking a strong engineer to join our team which is focused on building and maintaining a scalable software control platform for Compute Infrastructure. Major focus areas of so
Pharmacy Technician
Bring your heart to CVS Health. Every one of us at CVS Health shares a single, clear purpose: Bringing our heart to every moment of your health. This purpose guides our commitment to deliver enhanced
L2 Customer Technical Support Analyst - MICROS - Simphony/Ebusiness
Job Description L2 Customer Technical Support Analyst - MICROS - Simphony/Ebusiness Location: Orlando, FL or Columbia, MD highly preferred No visa sponsorship is available for this position. As a mem
Hotel Laundry Attendant
Req ID: 431582 Address: 7101 W. Sundust Rd Chandler, AZ, 85226 Welcome to Love’s! * * Where People are the Heart of Our Success * * Hotel Laundry Attendant Laundry Attendants are expected to maintain
Phlebotomist
Description Want to Expand your career-development potential, your ability to help donors and patients, and your access to professional opportunities? We’re growing fast. [You can, too!] There are so
Water / Wastewater Engineering Manager 6 - US Hybrid
Water / Wastewater Engineering Manager 6 - US Hybrid Date: Jan 23, 2024 Location: US Company: Black & Veatch Family of Companies Together, we own our company, our future, and our shared success.
Copyright 2023-2026 - www.zdrecruit.com All Rights Reserved