Cyber Threat Hunt Lead
Gritter Francona is looking for a Cyber Threat Hunt Lead to support a potential project with the Department of Homeland Security. The Threat Hunt Lead will build and guide a proactive threat hunting capability for the Department of U.S. Customs and Border Protection (CBP). The Threat Hunt Lead will direct a specialized team in proactively searching for malicious activity across CBP networks that evades traditional security solutions. This role requires an offensive mindset, deep knowledge of attacker TTPs, and expert-level skills with SIEM and endpoint management tools. The Threat Hunt Lead will be responsible for developing hunt hypotheses, executing hunt missions, and coordinating with the SOC to create new detections based on your findings.
Key Responsibilities:
• Lead the CTH team to proactively and iteratively conduct threat hunting efforts against CBP networks, systems, and high value assets to detect and isolate advanced threats.
• Utilize threat models and Cyber Threat Intelligence to formulate hypotheses about attacker activity on CBP networks and systems to investigate during formal hunt missions.
• Propose corrective actions and inform necessary parties of security issues, reportable offenses, or cybersecurity best practices.
• Work with the CBP SOC to create new security content, including signatures and detection alerts, resulting from hunt missions and Purple Team engagements.
• Lead the Cyber Threat Hunt team to report significant findings to leadership and coordinate with asset owners to deconflict findings.
Requirements
- A minimum of five (5) years of experience as a Tier III senior cyber threat hunt analyst performing threat analysis, technical analysis, and network asset traversal.
- A minimum of five (5) years of hands-on experience, including recent experience with network-based security monitoring using cybersecurity capabilities.
- A strong background in host and network-based forensics, intrusion detection, malware identification, and security content development.
- Deep knowledge of and experience with security information and event management (SIEM) and networked-device management tools such as Splunk and Tanium.
- Experience interpreting scripts (e.g., VB scripts, Python, C++) to support cyber threat detection.
- Certified Ethical Hacker (CEH) or one of the following: DoD 8570 IAT Level II or IAM Level I or CSSP Analyst / Incident Responder.
Benefits
- Health Care Plan (Medical, Dental & Vision)
- Retirement Plan (401k, IRA)
- Life Insurance (Basic, Voluntary & AD&D)
- Paid Time Off (Vacation, Sick & Public Holidays)
- Short Term & Long Term Disability
- Training & Development
Recommended Jobs
Principal Associate, Accounting: Close & Consolidations (Hybrid)
Overview Principal Associate, Accounting: Close & Consolidations (Hybrid) We are seeking a highly motivated professional that is interested in working in a collaborative and dynamic financial s…
Marketing & Engagement Coordinator
You will get the opportunity to work closely with all LES employees building relationships that are respectful, supportive and demanding of high performance across the organization. You will have the…
Entry Level Reliability Engineer
Entry Level Reliability Engineer JOB-10045945 Anticipated Start Date February 25, 2026 Location Urbandale, IA Type of Employment Contract Employer Info As a gl…
Lift Truck Operator I Glasgow VA 1st Shift
Are you looking for more? At Mohawk Industries, we’re committed to more – more customer solutions, more process improvements, more sustainable manufacturing and more opportunities for our t…
Property Manager
Company Description ABOUT STREAM REALTY PARTNERS Founded in 1996, Stream Realty Partners (Stream) began with a vision. Not one focused on bricks and mortar, but with people at its foundation.…
Chiropractor Chantilly VA
Chiropractor Chantilly VA (25 miles W of DC) We are looking for a motivated, experienced, and enthusiastic Chiropractor to join our established practice full time in beautiful northern Virginia in …
Non-Medical Case Manager
We are looking for individuals who want to join our team in Quantico, Virginia. Apply now! Job Opportunity : Non-Medical Case Manager Location : Quantico , Virginia Start Date : Immed…
DVSH - Prevention Case Manager
Title: Prevention Case Manager Department: Domestic Violence & Supportive Housing Reports to: Senior Prevention Case Manager FLSA Status: Exempt Salary: $52,000 - $56,000 About Us: …
Facilities Coordinator
Overview: At Augusta Health, your work matters — and so do you. Whether you're delivering direct patient care, supporting operations, or innovating behind the scenes, every role contributes to our m…
Experienced Cherry Picker
We are seeking an experienced Cherry Picker to join our Distribution Center team. In this role, you will assist material handlers by moving inventory in and out of bin locations, documenting all in…