×
Register Here to Apply for Jobs or Post Jobs. X
More jobs:

Threat Lead - Top Secret

Job in Herndon, Fairfax County, Virginia, 22070, USA
Listing for: General Dynamics Information Technology
Full Time position
Listed on 2026-06-21
Job specializations:
  • IT/Tech
    Cybersecurity
Salary/Wage Range or Industry Benchmark: 125000 - 150000 USD Yearly USD 125000.00 150000.00 YEAR
Job Description & How to Apply Below
Position: Threat Hunt Lead - Top Secret

Threat Hunt Lead is responsible for overseeing all cyber threat hunt, adversary analysis, malware analysis, and digital forensics mission activities under an upcoming government contract. Hunts will include operations within sensitive environments such as Operation Technology (OT), Industrial Control Systems (ICS), and other Critical Infrastructure (CI) networks.

The successful leader directs multidisciplinary hunt and forensic teams providing full spectrum detection, analysis, and response capabilities that enable federal stakeholders to identify, understand, and counter sophisticated cyber threats across federal, State Local Tribal and Territorial (SLTT), commercial, critical infrastructure, and cloud environments.

The Threat Hunt Lead ensures continuous detection of adversary behavior, manages simultaneous deployed hunt operations, oversees advanced malware and forensics workflows, and delivers high quality analytic products that inform national cyber defense actions. The role maintains readiness of personnel, tools, and flyaway kits to support rapid, remote, or onsite engagements.

Adversary, Malware, and Forensics Analysis Oversight
  • Oversee simultaneously deployed hunt operations teams performing adversary tool analysis, including dynamic and static malware analysis and full reverse engineering of binaries, scripts, malicious documents, and artifacts to determine functionality, behavior, and command-and-control mechanisms.
  • Oversee simultaneously deployed teams conducting digital forensic analysis of affected systems to determine malware impact, persistence mechanisms, and threat actor behavior.
  • Deep understanding of all levels of threat actor tools, techniques, and procedures (TTPs) that actors may deploy, including advanced (AI/ML) modeling techniques.
  • Extensive knowledge of emerging, established, and nation‑state level threat actor behaviors, including subversion and/or false‑flag operations designed to circumvent established cyber inspection tools.
  • In‑depth ability to adapt to diverse cyber environments in which teams may need to “live off the land” with on-site‑provided cyber tools.
  • Strong knowledge of air‑gap environments and how to deploy teams within them to ensure consistent reporting.
  • Ensure teams develop custom scripts, tools, and analytic methods to identify, characterize, and visualize adversary techniques across hunt, malware, and forensics workflows within both established and atypical cyber environments, e.g., OT/ICS and commercial environments.
  • Ensure production of high‑quality indicators of compromise, detection artifacts, and adversary capability assessments that support national cyber defense operations.
Thread Hunt Operations Management
  • Oversee full spectrum hunt and incident response engagements, onsite and/or remote, ensuring teams identify threats, assess impact, and recommend remedial actions to local stakeholders.
  • Direct continuous analysis of established and atypical cyber‑defense sensor data, endpoint activity, network flows, cloud telemetry, and communications data to detect adversarial behavior and anomalous activity.
  • Ensure teams maintain continuous awareness of emerging attack techniques, threat actors, tools, and methodologies to remain effective and up to date.
  • Oversee both classified and unclassified delivery of federal stakeholder‑branded analytic products, intelligence deliverables, threat assessments, and technical reports that contextualize adversary activity.
  • Determine mechanisms for timely and accurate release of indicators to maintain a proactive threat posture against cyber threat actors.
  • Prepare, support the delivery, and oversee the creation of on‑demand and formal reporting to ensure timely and accurate reporting of shifting threat actor TTPs regardless of attribution.
Host‑Based, Network, Cloud, and OT/ICS Forensics Leadership
  • Oversee simultaneously deployed teams performing forensic examination across host systems and digital media (phones, hard drives, memory images, etc.).
  • Direct network forensics operations to identify attacker behavior, develop network signatures, analyze traffic and configurations, and produce authoritative forensic reports.
  • Oversee cloud…
To View & Apply for jobs on this site that accept applications from your location or country, tap the button below to make a Search.
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).
 
 
 
Search for further Jobs Here:
(Try combinations for better Results! Or enter less keywords for broader Results)
Location
Increase/decrease your Search Radius (miles)
0
200
Filters
Education Level
Experience Level (years)
Posted in last:
Salary