View all jobs

Threat Hunter

  • McLean, VA
  • Information Technology

As a Cyber Threat Hunter, you will be responsible for proactively detecting, investigating, and mitigating cyber threats within our large enterprise environment. Your primary focus will be on hypothesis-based threat hunting utilizing the HMM-4 approach and leveraging the Mitre ATT&CK framework. You will collaborate closely with cross-functional teams, including endpoint, network, offensive, threat intelligence, cloud, and data science experts, to identify, analyze, and respond to emerging threats. 

Responsibilities
  • Conduct proactive threat hunting using the HMM-4 approach and Mitre ATT&CK framework
  • Develop and refine hypotheses for targeted threat hunts based on threat intelligence, internal data, and analysis of attacker tactics, techniques, and procedures (TTPs)
  • Collaborate with internal teams to collect and analyze security event data from various sources, such as logs, alerts, network traffic, and endpoint telemetry
  • Utilize cutting-edge tools and technologies to identify indicators of compromise (IOCs) and anomalies that may indicate potential threats
  • Perform in-depth analysis of identified threats, assess their impact, and recommend appropriate mitigation and response strategies
  • Document investigative objectives and progress throughout threat hunt. Produce detailed reports and provide clear and concise communication on findings, to include root cause analysis and recommendations for remediation and risk mitigation. Propose enhanced detections where possible defensive gaps are identified.
  • Stay up to date with the latest cyber threats, attack techniques, and security technologies through continuous learning and knowledge sharing
Requirements
  • TS/SCI FSP Clearance
  • Minimum of 3 years of experience as a cyber security analyst, incident responder, or other closely related cyber security discipline. 4-6 years of experience desired.
  • Professional Experience: Minimum of 3 years of experience as a cyber security analyst, incident responder, or other closely related cyber security discipline. 4-6 years of experience desired.
  • Methodological Expertise: Strong proficiency in hypothesis-based hunting (HMM-4), the Mitre ATT&CK matrix, and mapping adversary TTPs to observed activities
  • Technical Toolset: Hands-on proficiency with SIEM platforms, EDR solutions, network traffic analysis tools, and a deep understanding of cloud environments (AWS, Azure, etc.)
  • Analytical & Communication Skills: Exceptional problem-solving skills in high-pressure situations, with the ability to translate complex technical findings for both technical and non-technical audiences
  • Education & Certification: Relevant industry certifications (e.g., GCIH, CTIA, or CThH) and a solid foundation in network protocols and endpoint security

About Us
For more than 20 years, NewGen Technologies has solved our clients’ toughest IT challenges with integrity, security, and outstanding service by delivering both technology and talent. We have helped secure borders, have used artificial intelligence (AI) to fight terror, aided the identification of criminals, and have helped to prevent crime through the introduction of biometrics. Our team of Highly Cleared Specialists have hard-to-find skills and expertise in a wide spectrum of technologies to provide solutions that transform business processes and solve problems of national significance. #CJ