Cyber Threat Hunter - Top Secret Clearance Required
Listed on 2026-09-14
-
IT/Tech
Cybersecurity
Position Description – Cyber Threat Hunter
We are GDIT. We stay at the forefront of innovation to solve complex technical challenges. Own your opportunity at GDIT and you’ll help improve how agencies operate. Our work depends on a Cyber Threat Hunter joining our team to continually strengthen the cyber defensive posture of the DoDIN‑A (NG) in line with DoD and Army cybersecurity guidance and regulations.
This role supports an IT Service Management contract focused on operating, modernizing, and evolving global IT services (networking, compute, storage, infrastructure, applications, hosting, and program management). The program supports enterprise IT infrastructure, WAN, authentication and directory services, cybersecurity, application hosting, and related services, using the ITIL framework as the basis for its ITSM model.
ResponsibilitiesAs a Cyber Threat Hunter, you will:
Conduct proactive hunts across ARNG enterprise networks, endpoints, and datasets to detect malicious, suspicious, or risky activities that evade existing tools.
Use agile, threat‑intelligence‑driven or hypothesis‑based hunting techniques and the MITRE ATT&CK framework to identify and prioritize missing or ineffective detection capabilities.
Evaluate cyber risks targeting ARNG technologies and workforce.
Use logging and analytics platforms (e.g., Elastic, Splunk) to collect and analyze host, network, and application logs.
Detect and investigate perpetrators of network intrusions and related malicious activities.
Maintain broad knowledge of malware functionality and operations and explain technical threats clearly to non‑technical stakeholders.
Develop and deliver reports on risk analyses and threat findings to senior leadership.
Author, update, and maintain SOPs, playbooks, and work instructions to support standardized cyber operations.
Bachelor’s degree in cybersecurity, information assurance, computer science, or related technical field; or equivalent combination of education, technical certifications/training, and work experience.
6–8 years of demonstrated experience in cybersecurity, information assurance, or computer science.
Strong problem‑solving, analytical, and decision‑making skills, including understanding user requirements, troubleshooting technical issues, resolving challenges, and identifying process improvements.
Dependable and punctual; follows instructions, responds to management direction, and seeks feedback.
Customer service experience and professional demeanor for engaging senior military and government leadership.
Ability to present ideas clearly in briefings, meetings, and discussions with diverse leadership audiences.
Ability to provide training sessions as required.
Capability to engage stakeholders to track task progress and meet timelines.
Excellent communication and documentation skills.
Strong organizational, collaborative, and teamwork skills.
Ability to quickly assimilate information and self‑study new requirements.
Commitment to maintaining current industry knowledge of relevant concepts, practices, and procedures.
Ability to work under time constraints and adapt to changing requirements and new projects.
Willingness to maintain and upgrade cyber certifications.
Other duties may be assigned as needed.
Must hold a baseline certification meeting DoD 8570.01‑M IAT Level II (e.g., CompTIA Security+ CE, EC‑Council CEH).
Must obtain an additional certification within six months of hire, such as a CSSP category certification (e.g., CEH, CCNA Security, CND). Certification details may be discussed with the program Cyber Security Manager.
Must hold a minimum of an active Top Secret clearance with SCI…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).