Why This Role Stands Out
This role offers an exceptional opportunity to lead advanced threat hunting initiatives, leveraging your expertise to protect critical systems and develop innovative defensive strategies within a respected organization. You'll thrive here if you are a proactive, analytical cybersecurity professional with a TS/SCI clearance looking for significant impact and professional growth in a hybrid work environment. Take the next step in your career and explore this exciting challenge!
Quick Overview
Job Description
Title: Senior Cybersecurity Threat Hunter III Location: Colorado Springs, CO Clearance: TS/SCI with the ability to obtain and maintain a CI polygraph Description: Invictus, a Red River company, delivers technology and services supporting government and national security missions. We combine cleared mission expertise with enterprise engineering, technology partnerships and large-program execution in support of advanced modernization, cybersecurity, intelligence and systems integration. Our teams support complex operational environments across the U.S. and around the world, helping customers strengthen resilience, accelerate mission outcomes and deploy capabilities that meet demanding mission requirements. Learn more at www. InvictusIC.com.
Job Details
- Lead complex, hypothesis-driven threat hunts across multiple enterprise data sources and enclaves to identify sophisticated or previously undetected adversary activity
- Proactively analyze security telemetry to identify indicators of compromise, anomalous behavior, and adversary activity that has not met an incident threshold or has evaded automated security controls
- Assess and correlate data from multiple sources, including network, endpoint, identity, SIEM, threat intelligence, vulnerability, and other available security data
- Document hunt activity, findings, evidence, and recommended follow-on actions in authorized systems and initiate or support incident-response processes when malicious activity is identified
- Provide relevant findings and trends for SOC operational reporting, significant-activity reporting, and defensive awareness
- Develop and prioritize hunt campaigns based on threat intelligence, mission risk, adversary TTPs, detection coverage, incident lessons learned, and environmental changes
- Perform advanced behavioral analysis and identify patterns indicative of persistence, credential abuse, lateral movement, command and control, collection, or other adversary activity
- Serve as an escalation point for junior threat analysts and provide technical guidance on hunt methodology, analytical pivots, and evidence validation
- Translate successful hunt findings into actionable requirements for detection engineering, watch operations, security engineering, and incident response
- Develop reusable hunt playbooks, queries, analytic methods, documentation standards, and training materials
- Mentor junior personnel and support exercises, knowledge sharing, and assessment of threat-analysis proficiency Requirements:
- Bachelor's degree from an accredited institute in a technical discipline applicable to the position; an additional 4 years of may be substituted in lieu of a degree
- Minimum six (6) years of relevant experience in addition to education level
- Significant hands-on experience conducting threat hunting, advanced cyber analysis, or adversary-focused investigations
- Strong knowledge of MITRE ATT&CK, adversary TTPs, threat intelligence application, and network/host/identity security telemetry
- Experience developing hunt hypotheses and converting analytical findings into detection or defensive improvements
- Experience mentoring analysts or leading complex analytical efforts
- Must possess current DoD 8570 IAT II or IAM II certification
- Experience working in a DoD or IC environment
- Current active TS/SCI clearance, with the ability to obtain and maintain a CI polygraph
Equal Opportunity Employer/Veteran/Disabled
Similar jobs
- HS
Lab IT Security Engineer / Endpoint Security Engineer
NewHS Solutions
CA🇺🇸Hybrid23 hours agoActive DirectoryPowerShellTechnology - AG
Ping Identity Security Analyst
NewASCII Group LLC
Dallas, TX🇺🇸$60/hrHybrid23 hours agoTechnology - MA
Principal Network Evaluator with Security Clearance
NewMarkon
Annapolis Junction, MD🇺🇸$120k - $225k/yrHybrid23 hours agoAdministrative - MA
Cyber Ops Hardware Engineer with Security Clearance
NewMarkon
Chantilly, VA🇺🇸$160k - $190k/yrHybrid23 hours agoTechnology - LE
Security Architect
NewLeidos
Bedford, MA🇺🇸$131.3k - $237.3k/yrHybrid23 hours agoOracleAWSAzure+12Technology - SA
Computer Systems Security Specialist with Security Clearance
NewSavvee Inc
Norfolk, VA🇺🇸On-site23 hours agoAdministrative - RE
Cryptologic Cyber Planner 3 with Security Clearance
NewRealmOne
central maryland, MD🇺🇸Hybrid23 hours agoTechnology - MA
Digital Network Exploitation Analyst with Security Clearance
NewMarkon
Chantilly, VA🇺🇸$120k - $150k/yrHybrid23 hours agoTechnology - SD
Cyber Defense Operator (CDO) with Security Clearance
NewSMS Data Products Group, Inc
Lackland AFB, TX🇺🇸On-site23 hours agoTCP/IPAssemblyDNSTechnology - MA
Information Systems Security Officer (ISSO) with Security Clearance
NewMarkon
Annapolis Junction, MD🇺🇸$120k - $200k/yrHybridYesterdayTechnology - II
Information System Security Engineer (ISSE) – ISSD with Security Clearance
NewIDS International
Annapolis Junction, MD🇺🇸Hybrid23 hours agoLESSMicrosoft OfficeTechnology - II
Cyber Virtualization Engineer with Security Clearance
NewIDS International
Arlington, VA🇺🇸On-site23 hours agoDockerOpenStackPacker+16Technology