Senior Threat Hunter

Reposted One Month Ago
Be an Early Applicant
Washington, DC, USA
Hybrid
Senior level
Aerospace • Information Technology • Professional Services • Defense
The Role
Lead proactive threat hunting operations by analyzing logs, EDR, IDS, PCAP, and network traffic to identify malicious activity. Apply MITRE ATT&CK/D3FEND methodologies, use scripting/query languages to hunt and report findings, support SOC and incident response, and develop detection and monitoring recommendations.
Summary Generated by Built In
Company Description

Founded in 1989, SOSi is among the largest private, founder-owned technology and services integrators in the defense and government services industry. We deliver tailored solutions, tested leadership, and trusted results to enable national security missions worldwide.

Job Description

*** This position is contingent upon contract award ***

Overview

SOSi is seeking a Senior Threat Hunter to support proactive cyber defense activities in alignment with our customer. This role is responsible for conducting threat hunting operations, analyzing data from multiple sources to identify malicious activity, supporting detection and response efforts, and applying advanced analytical techniques to improve cyber defense operations.

Responsibilities

  • Conduct proactive threat hunting to identify malicious activity, indicators of compromise, and anomalous behavior across the enterprise
  • Analyze data from logs, sensors, endpoint detection and response (EDR) tools, and full packet capture (PCAP) sources to detect threats
  • Apply threat hunting methodologies using MITRE ATT&CK and MITRE D3FEND frameworks
  • Support detection, analysis, and response to cyber threats in coordination with SOC and incident response teams
  • Perform analysis of TCP/IP traffic, intrusion detection system (IDS) data, malware activity, and adversary tactics, techniques, and procedures (TTPs)
  • Use scripting and query tools to support threat analysis, data hunting, and development of analytical outputs
  • Support development of threat hunting products, reporting, and recommendations to improve cyber defense detection and monitoring

Qualifications

  • Experience:
    • Five (5) or more years of experience in data hunting, manipulation, and presentation
    • Management or team lead experience
    • Experience with MITRE ATT&CK and MITRE D3FEND
    • Experience analyzing TCP/IP, IDS data, PCAP, logs, and sensor data
    • Experience supporting malware analysis
    • Experience with Endpoint Detection and Response (EDR) tools
    • Experience with scripting or query languages including R, Python, PIG, HIVE, or SQL
  • Education:
    • Bachelor’s Degree
    • (Bachelor’s Degree may be substituted with additional 4+ years of experience as approved by Government)
  • Certifications:
    One of:
    • GCIH
    • GNFA
    • GCIA
  • Plus one DoD 8570 CSSP certification in:
    • CISSP (Associate)
    • CCSP
    • SSCP
  • Clearance/Suitability: Secret (active), Top Secret, SCI Eligible

Additional Information

Work Environment

  • Normal office conditions with potential to perform duties in deployed locations.
  • Core hours of operation are Monday through Friday, 0600 – 1700.
  • May be requested to work evenings and weekends to meet program and contract needs.

Working at SOSi

All interested individuals will receive consideration and will not be discriminated against for any reason.

Skills Required

  • Five (5) or more years of experience in data hunting, manipulation, and presentation
  • Management or team lead experience
  • Experience with MITRE ATT&CK and MITRE D3FEND frameworks
  • Experience analyzing TCP/IP, IDS data, PCAP, logs, and sensor data
  • Experience supporting malware analysis
  • Experience with Endpoint Detection and Response (EDR) tools
  • Experience with scripting or query languages (R, Python, PIG, HIVE, SQL)
  • Bachelor's Degree (or substitution with additional 4+ years of experience as approved by Government)
  • One of: GCIH, GNFA, or GCIA
  • Plus one DoD 8570 CSSP certification: CISSP (Associate), CCSP, or SSCP
  • Clearance/Suitability: Active Secret, Top Secret, SCI Eligible

SOSi Compensation & Benefits Highlights

The following summarizes recurring compensation and benefits themes identified from responses generated by popular LLMs to common candidate questions about SOSi and has not been reviewed or approved by SOSi.

  • Healthcare Strength Health coverage is considered a relative strength, with international plan options and substantial employer contribution that support OCONUS and travel-heavy work. Company materials also highlight a comprehensive medical offering alongside wellness support.
  • Retirement Support A 401(k) program is available, with indications of employer matching though specifics are not publicly detailed. This suggests foundational retirement support for eligible employees.
  • Career-Linked Recognition & Rewards Compensation is often characterized as competitive for cleared, hard‑to‑hire, and certain overseas or mission‑critical roles. Pay levels appear closely tied to contract demands, clearance, and location.

SOSi Insights

Am I A Good Fit?
beta
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.

The Company
HQ: Reston, VA
2,460 Employees
Year Founded: 1989

What We Do

SOSi is a technology and services integrator focused on the aerospace, defense, and government services industry, described as one of the largest private, founder-owned companies in its sector.

Similar Jobs

CrowdStrike Logo CrowdStrike

Sr. Cloud Threat Hunter - AWS (Remote)

Cloud • Computer Vision • Information Technology • Sales • Security • Cybersecurity
Remote or Hybrid
USA
11000 Employees
115K-160K Annually

Peraton Logo Peraton

Senior Threat Hunter

Aerospace • Information Technology • Security • Cybersecurity • Defense
In-Office
2 Locations
18000 Employees
104K-166K Annually

Coursera + Udemy  Logo Coursera + Udemy

Chief Of Staff

Artificial Intelligence • Consumer Web • Edtech • Enterprise Web • HR Tech • Social Impact • Generative AI
Remote or Hybrid
United States
1500 Employees
181K-273K Annually

Xero Logo Xero

Lead Engineer - Payments Platform

Cloud • Fintech • Information Technology • Machine Learning • Software
Remote or Hybrid
Washington, DC, USA
4500 Employees
206K-260K Annually

Similar Companies Hiring

Golden Pet Brands Thumbnail
Digital Media • eCommerce • Information Technology • Marketing Tech • Pet • Retail • Social Media
El Segundo, California
178 Employees
Outpost Space Thumbnail
Aerospace • Defense
US
24 Employees
Revel Thumbnail
Aerospace • Hardware • Robotics • Software
Marina Del Rey, California
60 Employees

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account