iP-Plus Consulting, Inc. CYBERSECURITY THREAT HUNTER Remote · Full time

Proactively hunts for and investigates advanced cyber threats and suspicious activity across the enterprise by analyzing network, log, and threat intelligence data to identify potential compromises and emerging adversary behaviors. Develops threat hunting strategies, tools, and automation to enhance detection capabilities, identifies mitigations for vulnerabilities, and supports incident response for critical security incidents.

About iP-Plus Consulting, Inc.

iP-Plus Consulting, Inc. is a mission-focused technology and cybersecurity services firm supporting Federal agencies across defense, logistics, and national security sectors. The company specializes in delivering cybersecurity engineering, information assurance, systems integration, and technology modernization solutions that protect critical infrastructure and enable secure mission operations.

Description

Proactively searches for cyber threats that exist undetected within the network. Initiates investigations to identify unusual behavior indicative of malicious activity with the assumption that a threat actor already resides within the network. Analyzes raw log and network data as well as working with Threat Detection and Incident Response analysts to generate hunting leads. Cross-reference trends and activity within the enterprise environment with current threat intelligence regarding external trends. Identifies mitigations for key vulnerabilities identified during threat as well as taking the lead on analysis if an APT or other compromise is identified while performing hunting. Develops threat hunting strategies to increase capabilities for finding new threats. Builds hunting tools and automation capabilities to identify sophisticated adversaries. Performs incident response for critical security incidents.


Required Qualifications:

  • Five (5) years of technical experience in one of the following areas: Threat Intelligence, Cybersecurity Incident Response, Penetration Testing, Reverse Engineering, Digital Forensics
  • Three (3) years of experience analyzing attacker techniques at all levels of attack
  • Knowledge of security challenges in multiple Operating Systems (OS)
  • Ability to work with large data sets
  • Experience using tools and scripting languages such as Splunk, Python & PowerShell.
  • Ability to turn Threat Intelligence into actionable information
  • Knowledge of MITRE ATT&CK framework
  • Capable of using data to build a narrative to support documentation of hunting operations
  • Must possess a current DOD Top Secret Clearance and be eligible for an IT-I Critical Sensitive security clearance or Tier 5 (T5)


REQ: CSSP