Demo

Cyber Threat Hunt SME

WarCollar Industries, LLC
Herndon, VA Full Time
POSTED ON 1/8/2026
AVAILABLE BEFORE 2/6/2026
Job Description

  • Provide strategic and tactical direction to cyber hunters and leadership based on trends and actionable intelligence related to threat capabilities
  • Coordinate hunt activities between various internal and external hunt groups
  • Construct and exploit threat intelligence to detect, respond, and defeat advanced persistent threats (APTs)
  • Fully analyze network and host activity in successful and unsuccessful intrusions by advanced attackers
  • Build fly-away kits utilizing an agile approach to identify the appropriate tools and technologies necessary to conduct hunt missions
  • Conduct advanced threat hunt operations using known adversary tactics, techniques and procedures as well as indicators of attack in order to detect adversaries with persistent access to the enterprise
  • Create and add custom signatures, to mitigate highly dynamic threats to the enterprise using the latest threat information obtained from multiple sources
  • Perform malware analysis on samples obtained during the course of an investigation or hunt operation in order to create custom signatures
  • Develop and produce reports on all activities and incidents to help maintain day to day status, develop and report on trends, and provide focus and situational awareness on all issues
  • Piece together intrusion campaigns, threat actors, and nation-state organizations
  • Manage, share, and receive intelligence on APT adversary groups
  • Generate intelligence from their own data sources and share it accordingly
  • Identify, extract, and leverage intelligence from APT intrusions
  • Expand upon existing intelligence to build profiles of adversary groups Leverage intelligence to better defend against and respond to future intrusions
  • Correlate data from intrusion detection and prevention systems with data from other sources such as firewall, web server, and DNS logs
  • Notify the management team of significant changes in the security threat against the government networks in a timely manner and in writing via established reporting methods
  • Coordinate with appropriate organizations within the intelligence community regarding possible security incidents. Conduct intra-office research to evaluate events as necessary, maintain the current list of coordination points of contact.
  • Review assembled data with firewall administrators, engineering, system administrators and other appropriate groups to determine the risk of a given event
  • Maintain knowledge of the current security threat level by monitoring related Internet postings, Intelligence reports, and other related documents as necessary

,

Required Skills

Minimum of 10 years of progressively responsible experience in Computer Science, Cyber Security, Security Engineering, Network Engineering with emphasis in cyber security issues and operations, computer incident response, systems architecture, data management Or 4 additional years of experience in lieu of degree

Expert analytical and problem solving skills and demonstrated experience working nation state intrusion sets

The ideal candidate will have expert level experience in one or more of the following disciplines:

  • Windows and/or Linux operating systems
  • Network forensics
  • Demonstrated ability using at enterprise scale:
  • SysMon or EDR solutions for host-based Cyber Threat Hunting, or
  • Netflow/pcap or NDR solutions for network-oriented Cyber Threat Hunting
  • Malware analysis/reverse engineering
  • Exploit development
  • On-net pursuit/response

Required Tools

  • Familiarity with the following classes of enterprise cyber defense technologies:
  • Security Information and Event Management (SIEM) systems
  • Network Intrusion Detection System/Intrusion Prevention Systems (IDS/IPS)
  • Host Intrusion Detection System/Intrusion Prevention Systems (IDS/IPS)
  • Network and Host malware detection and prevention (NDR/EDR)
  • Network and Host forensic applications
  • Web/Email gateway security technologies
  • Security Orchestration, Automation, and Response (SOAR)

Required Certifications

  • CISSP or CEH
  • DoD 8570 IAT Level III or CSSP-SPM

Required Degree

  • BS (bachelor's degree in electrical engineering, computer engineering, computer science, or other closely related IT discipline)

,

About WarCollar Industries

About us:

WarCollar Industries, LLC is a veteran-owned small business. We maintain a team of cybersecurity experts committed to protecting complicated data and distribution systems and providing decision makers with the most accurate assessment of residual risk possible. We work with our clients to solve the toughest challenges in the ever-evolving digital landscape. Services include network defense, computer network attack, secure network design, penetration testing and vulnerability assessment. WarCollar enables its clients to find, fix, stop, and ultimately solve cybersecurity problems across their entire enterprise.

WarCollar offers generous benefits including: Medical insurance premium coverage; PTO based on billable hours; federal holidays plus your birthday; matching 401k, education reimbursement plus paid training days; performance bonuses; referral bonuses; government shutdown protection; monthly team building events plus two major social events annually.

WarCollar Industries, LLC is an equal opportunity employer. WarCollar does not discriminate in employment based upon race, color, religion, sex (including pregnancy and gender identity), national origin, political affiliation, sexual orientation, marital status, disability, genetic information, age, membership in an employee organization, retaliation, parental status, status as a protected military veteran, or other non-merit factor.

Salary.com Estimation for Cyber Threat Hunt SME in Herndon, VA
$155,318 to $188,306
If your compensation planning software is too rigid to deploy winning incentive strategies, it’s time to find an adaptable solution. Compensation Planning
Enhance your organization's compensation strategy with salary data sets that HR and team managers can use to pay your staff right. Surveys & Data Sets

What is the career path for a Cyber Threat Hunt SME?

Sign up to receive alerts about other jobs on the Cyber Threat Hunt SME career path by checking the boxes next to the positions that interest you.
Income Estimation: 
$87,466 - $114,731
Income Estimation: 
$114,790 - $146,930
Income Estimation: 
$115,647 - $153,495
Income Estimation: 
$179,455 - $227,077
Income Estimation: 
$214,167 - $272,269
View Core, Job Family, and Industry Job Skills and Competency Data for more than 15,000 Job Titles Skills Library

Job openings at WarCollar Industries, LLC

  • WarCollar Industries, LLC Mc Lean, VA
  • Job Description Performs actions in response to identified cyber intrusions Determines appropriate course of action in response to identified cyber securit... more
  • 6 Days Ago

  • WarCollar Industries, LLC Chantilly, VA
  • Job Description WarCollar is looking for a Cyber Linguist with experience using the sponsor's targeting tools and databases to identify leads. The ideal ca... more
  • 6 Days Ago

  • WarCollar Industries, LLC George, MD
  • Job Description WarCollar Industries is currently sourcing Reverse Engineers of all levels to fill exciting roles in supporting national security efforts. ... more
  • 2 Days Ago

  • WarCollar Industries, LLC Herndon, VA
  • Job Description WarCollar Industries is looking for a DevOps Engineer to support a new opportunity! Demonstrated 5 yrs of DevOps experience Demonstrated 3 ... more
  • 4 Days Ago


Not the job you're looking for? Here are some other Cyber Threat Hunt SME jobs in the Herndon, VA area that may be a better fit.

  • MANTECH Mc Lean, VA
  • MANTECH seeks a skilled and innovative Cyber Threat Hunt Analyst to support our cybersecurity operations in McLean, VA. As a Cyber Threat Hunter, you will ... more
  • 15 Days Ago

  • MANTECH Ashburn, VA
  • MANTECH seeks a motivated, career and customer-oriented Cyber Threat Hunt Lead to join our team in Ashburn, VA . The ultimate purpose of this role is to pr... more
  • 17 Days Ago

AI Assistant is available now!

Feel free to start your new journey!