Cyber Threat Hunt & Forensics Analyst Job at Stondoh Secure Digital Solutions, Washington State

Ym1YVmQzTm81U1NKVVBmOGlRbGlVdmxhUlE9PQ==
  • Stondoh Secure Digital Solutions
  • Washington State

Job Description

Stondoh Secure Digital Solutions is seeking a Cyber Threat Hunt & Forensics Analyst to:

  • Ingest and analyze multi-source threat intelligence, including adversary research and MITRE ATT&CK–mapped Tactics, Techniques, and Procedures (TTPs) , to understand relevant and emerging threats.

  • Develop and refine threat hypotheses based on intelligence, environmental context, and observed behavioral patterns.

  • Conduct proactive cyber threat hunting across enterprise networks, endpoints, cloud environments, and log datasets to identify malicious, suspicious, or anomalous activity that evades existing security controls.

  • Apply deep technical knowledge of network protocols, services, and operating system internals to analyze telemetry, validate hypotheses, and differentiate benign from malicious behavior.

  • Analyze adversary tradecraft across email, application, cloud, and operating system environments to improve behavioral understanding and detection strategy.

  • Identify detection gaps and recommend improvements to hunting techniques, analytics, and security monitoring based on hunt outcomes.

  • Perform forensics and malware analysis , as needed, to validate threat hunting findings and extract supporting Indicators of Compromise (IOCs), including support for forensic evidence preservation when required.

Salary Range: $107,000 – $135,000

Retirement Benefits: 401(k) with 3% Safe Harbor + 3% Employer Match

Clearance Required: Active Secret

(Non-SCIF role; occasional secure facility access as needed)

Required Skills

  • Strong written and verbal communication skills to clearly document findings and communicate technical conclusions.

  • Ability to apply threat intelligence , including MITRE ATT&CK, to understand adversary behavior and inform hypothesis-driven hunting.

  • Proficiency in proactive cyber threat hunting across enterprise networks, endpoints, cloud environments, and log datasets.

  • Ability to develop and refine detections and analytics based on observed adversary behavior and hunt outcomes.

  • Strong understanding of attacker tradecraft across email, application, and cloud-based threat vectors.

  • Advanced knowledge of networking fundamentals (TCP/IP, DNS, SMTP, DHCP) to analyze telemetry and network activity.

  • Advanced knowledge of operating system internals and security mitigations across major platforms (Windows, Linux, macOS, mobile).

Desired Skills

  • Experience performing digital forensics on network, host, or memory artifacts to validate threat hunting findings.

  • Experience analyzing malware or anomalous code to determine malicious intent and functionality.

  • Experience using forensic tools such as EnCase, Sleuthkit, or FTK.

  • Experience preserving and handling digital evidence , including maintenance of chain of custody.

  • Scripting or automation experience (e.g., Python, PowerShell, Bash ) to support hunting workflows.

  • Experience using SIEM platforms and query languages (e.g., Splunk, Sentinel).

  • Experience producing threat intelligence products , including written reports or briefings.

Desired Certifications / Experience

  • Bachelor's degree or higher.

  • 7+ years of experience performing cyber threat hunting and supporting forensic analysis in support of enterprise or government incident response.

Position Responsibilities

  • Analyze threat intelligence and adversary frameworks (including MITRE ATT&CK and the Azure Threat Research Matrix ) to identify relevant tactics, techniques, gaps, and detection shortfalls.

  • Plan and execute intelligence-driven and hypothesis-based cyber threat hunts across enterprise environments.

  • Research and correlate large datasets and telemetry to uncover novel attack techniques, track adversary tradecraft, and investigate security alerts.

  • Design, develop, and enhance cloud-native threat detections and analytics , including support for automated detection capabilities.

  • Apply structured methodologies (e.g., Agile) to organize threat hunting activities, intelligence analysis, and reporting of outcomes.

  • Analyze logs and supporting artifacts to validate threat hunting findings and determine adversary activity and scope.

  • Perform digital forensics and evidence handling , as required, including creation of forensically sound copies and preservation of chain of custody, and produce clear technical reporting.

This is a full-time position supporting a U.S. Government civilian agency and is available immediately for a qualified candidate with the appropriate technical expertise and an active Secret clearance.

Job Tags

Full time, Immediate start,

Similar Jobs

Always Best Care Senior Services - Philly, Lower Bucks & Del...

Registered Nurse (Per Diem) Job at Always Best Care Senior Services - Philly, Lower Bucks & Del...

 ...skilled care in the comfort of their own home. Our dedicated professional staff of nurses, therapists, social workers, and home health aides work in unison with the patients, families...  ...* Holds a current CPR card* Requires travel from one assignment to another on the same... 

Maxion Corp

Virtual Data Entry Clerk Job at Maxion Corp

 ...skills and backgrounds whether youve been an administrative assistant, data entry clerk, typist, customer service rep, or even a...  ...This Job: Flexibility at Its Best: Work part-time or full-time, from anywhere, and on a schedule that fits your... 

Wabtec

Locomotive Materials Specialist Job at Wabtec

 ...Americas team, you will be responsible for helping our customers maintain their fleet of GE/Wabtec locomotives by providing exceptional materials management and logistics support. You will be part of a team made up of Wabtec technical and materials experts, all working to... 

Planet Group

Remote Sr. Medical Writer Job at Planet Group

 ...Experience in medical writing. Evidence of medical writing career development desirable, eg, American Medical Writers Association certificate, Editor in Life Sciences certificate, or relevant training through Drug Information Association. EXPERIENCE Relevant Experience... 

WillScot

Senior Manager of Search Engine Marketing Job at WillScot

 ...experienced strategic SEM lead to manage our significant Paid Search Marketing budget. This role is responsible for developing and executing...  ...3rd party agency leadership. Experience with multiple Search Engine platforms include both traditional search engines like Google...