Jobs · Maryland

Cyber Threat Hunter

Deloitte · Baltimore, MD · 1 wk ago
Hybrid$108k–$189k/yrFull-time

About the role

Deloitte is seeking a Threat Hunter to support proactive cyber threat detection, analysis, and response in complex client environments. This role focuses on identifying adversary behavior, investigating suspicious activity, and improving defensive operations through data-driven hunting and detection strategies. The ideal candidate brings hands-on experience across security operations, threat hunting, and incident analysis, along with the ability to translate findings into actionable security improvements. This is an opportunity to work on high-impact cyber missions in a collaborative, fast-paced environment.

Responsibilities

  • Conducting proactive threat hunts across endpoint, network, cloud, and log data to identify malicious activity, anomalous behavior, and indicators of compromise
  • Analyzing security telemetry, alerts, and artifacts to investigate threats and support detection, containment, and remediation activities
  • Developing hunt hypotheses based on threat intelligence, adversary tactics, techniques, and procedures, and documented attack patterns
  • Partnering with security operations, incident response, and engineering teams to improve detections, close visibility gaps, and strengthen defensive capabilities
  • Documenting hunt methodologies, findings, and recommendations, and communicating results to technical stakeholders and team leadership

Skills

  • Ability to work independently and collaborate as part of a team
  • Effective written and verbal communication skills
  • Meticulous attention to detail and quality of work product
  • Ability to build and sustain professional relationships
  • Ability to lead projects or workstreams
  • Ability to manage and prioritize multiple tasks in a fast-paced and dynamic environment
  • Strong interpersonal skills and professional demeanor
  • Ability to meet deadlines
  • Ability to provide clear guidance to others

The team

Deloitte's Cyber Defense & Resilience team helps clients identify, investigate, and respond to evolving cyber threats across mission-critical environments. The team brings together threat hunters, incident responders, analysts, and cyber specialists to strengthen detection capabilities and improve operational resilience. Professionals in this area work on complex security challenges involving threat detection, adversary analysis, incident support, and continuous improvement of defensive operations.

Qualifications

Required:

  • Bachelor's degree in computer science, Cybersecurity, Information Technology, Engineering, or a degree in a related technical field
  • 3+ years of experience in threat hunting, security operations, detection engineering, or incident response
  • 3+ years of experience with security information and event management platforms, endpoint detection and response platforms, and network analysis tools
  • 2+ years of experience doing the following:
    • Analyzing endpoint, network, cloud, and log telemetry to identify suspicious or malicious activity
    • Mapping adversary behavior to MITRE ATT&CK and documenting hunt findings and recommendations
  • Ability to travel 20%, on average, based on the work you do and the clients and industries/sectors you serve
  • Active Secret clearance or higher
  • One or more certifications such as Certified Information Systems Security Professional, GIAC Certified Incident Handler, or GIAC Certified Forensic Analyst
  • Must be legally authorized to work in the United States without the need for employer sponsorship, now or at any time in the future

Preferred:

  • 1+ years of experience supporting government or public sector cybersecurity environments
  • 2+ years of experience creating or tuning detection logic, analytic rules, or hunt queries
  • 2+ years of experience with the following:
    • Digital forensics or malware analysis
    • Cloud security monitoring in Amazon Web Services or Microsoft Azure environments
    • Using Python, PowerShell, or Structured Query Language for analysis or automation

Pay

A reasonable estimate of the current range is $107,925 to $188,900. You may also be eligible to participate in a discretionary annual incentive program, subject to the rules governing the program, whereby an award, if any, depends on various factors, including, without limitation, individual and organizational performance.

Similar jobs

Cyber Threat Hunter

Edgewater Federal Solutions, Inc.Bethesda, MD· 2 days ago
Information Technology$150k–$180k/yrapply on careers-edgewaterit.icims.com

Cyber Threat Hunter

StratasCorp TechnologiesChesapeake, VA· 3 wk ago
Information Technology$88k–$91k/yrapply on stratascorp.hua.hrsmart.com

Cyber Threat Hunter

MANTECHMcLean, VA· 1 mo ago
Information Technologyapply on mantech.avature.net

Cyber Security Threat Hunter

Western Governors UniversitySalt Lake City Metropolitan Area· 1 mo ago
Information Technology$108k–$162k/yrapply on wgu.wd5.myworkdayjobs.com

Cyber Threat Hunter I

MidAmerican Energy CompanyDes Moines, IA· 2 mo ago
Information Technologyapply on fa-essf-saasfaprod1.fa.ocs.oraclecloud.com

Threat Hunter

TENEX.AISan Jose, CA· 1 mo ago
Business Developmentapply on tenex.ai