ECS

Cyber Hunt Team Leader

ECS  •  $140k - $160k/yr  •  Virginia (Onsite)  •  6 hours ago
Apply
AI can make mistakes so check important info. Chat history is never stored.

Job Description

Everforth ECS is seeking a Cyber Hunt Team Leader who lives in close proximity to the National Capital Region (NCR) to join a premier, enterprise-scale cybersecurity program supporting a major federal civilian agency.

Please Note: This position is contingent upon contract award.

Salary Range: $140,000 - $160,000

This flagship initiative unifies 24x7x365 Security Operations (SOC), proactive threat hunting, and advanced Security Engineering and Architecture into a cohesive defensive mission. As a key leader on this program, you will drive the protection of highly sensitive, national-level financial and personally identifiable information (PII). You will be at the forefront of modernizing the agency's cyber posture, implementing advanced automation, and ensuring continuous operational resilience across a massive, highly complex federal IT enterprise.

As the Cyber Hunt Team Leader, you will direct and execute proactive threat hunting operations, leading a skilled team in uncovering advanced threats concealed within complex federal networks and systems. Working closely with SOC analysts, Cyber Threat Intelligence (CTI) teams, and agency stakeholders, you will develop and refine detection strategies, lead threat emulation exercises, and deliver actionable intelligence that reduces risk across the enterprise.

Position Responsibilities:

  • Lead proactive threat hunting missions and advanced analytics to identify and neutralize threats before they impact agency operations.
  • Serve as an incident response lead, proactive/persistent hunt lead, and project/technical lead for the Hunt Team.
  • Coordinate with SOC, CTI, and other business partners and government teams to identify and mitigate advanced persistent threats (APTs).
  • Develop threat hypotheses, detection logic, and a comprehensive knowledge base of Indicators of Compromise (IoCs).
  • Support Purple Team exercises and threat emulation activities to validate and improve the agency's defensive posture.
  • Oversee and coordinate analysis and development of capabilities related to network analysis and network device integrity for incident response and proactive threat hunting.
  • Lead teams in responding to critical network intrusions across the federal enterprise.
  • Provide leadership and program management for large-scale hunt operations, identifying technical roadmaps for the use of new and emerging technologies to maximize hunt capabilities across network, endpoint, and cloud-based environments.
  • Develop and continuously improve threat hunting methodologies, playbooks, and standard operating procedures.
  • Serve as a trusted liaison between hunt team personnel and agency stakeholders, facilitating clear communication and timely issue resolution.

Present findings, risk recommendations, and threat intelligence to senior government officials in a clear, actionable format.

Qualifications

  • U.S. Citizenship required.
  • 10+ years of cybersecurity experience, with demonstrated expertise in threat hunting, incident response, and adversary tracking.
  • Remote but within close proximity to the NCR.
  • Active Public Trust 6c clearance, or the ability to obtain and maintain one.
  • At least one of the following certifications: CISSP, GCIH, GCFA, or CEH.
  • Hands-on experience with EDR/NDR platforms, SIEM tools, MITRE ATT&CK framework, and threat emulation methodologies.
  • Strong understanding of operating systems, networking, and adversary tactics, techniques, and procedures (TTPs).
  • Experience leading threat hunting teams within a Security Operations Center (SOC) environment.
  • Proven ability to develop threat hypotheses and translate complex technical findings into clear, actionable intelligence for both technical teams and executive audiences.
  • Excellent written and verbal communication skills, with a track record of producing high-quality federal security documentation.

Desired Skills

  • Bachelor's degree in Cybersecurity, Information Technology, Computer Science, or a related field or equivalent professional experience.
  • One of the following certifications:
    • Certified Information Security Manager (CISM)
    • GIAC Cyber Threat Intelligence (GCTI)
    • GIAC Cloud Threat Detection (GCTD)
    • MITRE ATT&CK Defender (MAD)
  • Familiarity with federal cybersecurity frameworks including NIST RMF, NIST SP 800-53, and FedRAMP compliance requirements.
  • Experience supporting continuous monitoring programs and coordinating with SOC teams on POA&M remediation tracking.
  • Prior experience working on large-scale federal civilian agency programs with complex, multi-stakeholder environments.
  • Experience conducting or supporting ICS/OT and cloud-based threat hunting operations.
  • Familiarity with cyber threat intelligence platforms and the structured analysis of threat actor campaigns.
  • Ability to provide strategic guidance that enhances and optimizes an agency's overall cybersecurity posture.
  • Experience with DevSecOps pipelines, vulnerability management tools, and cloud-native security technologies.

ECS Federal LLC is an equal opportunity employer and does not discriminate or allow discrimination on the basis any characteristic protected by law. All qualified applicants will receive consideration for employment without regard to disability, status as a protected veteran or any other status protected by applicable federal, state, or local jurisdiction law.

Everforth ECS is the federal segment of Everforth, a $4B global organization with over 10,000 employees. Our nearly 3,500 professionals deliver advanced technology solutions in data and AI, cybersecurity, and enterprise transformation, serving defense, intelligence, and federal civilian agencies.

Our work powers mission-critical outcomes, strengthens technology partnerships, and creates meaningful opportunities for our people. We are defined by a commitment to excellence in delivery, a culture of innovation, and an environment where talent can thrive and grow.

We value:

  • Attracting and developing top talent and high-performing teams
  • Fostering a culture that is engaging, accountable, and mission-driven


Meet the challenge. Make a difference with Everforth ECS!

ECS

About ECS

ECS is a fast-growing 4,000-person, $1.2B provider of advanced technology solutions for federal civilian, defense, intelligence, and commercial customers. We tackle complex client challenges with smart, scalable solutions in data and AI, cybersecurity, and digital transformation. Our collective work empowers customers’ missions, strengthens our partners, inspires our employees, and grows our company.

To achieve our purpose — to tackle the missions that matter most and create a lasting impact on our customers, employees, and community — we are committed to excellence in growth, customer delivery, technology innovation, and employee engagement.  

We believe in:

• Attracting, developing, and retaining top talent

• Building high-performing teams

• Creating an engaging employee environment

• Acting with social responsibility

• Having a positive impact on our community

Our core values: Excellence, Drive, Grit, and Community. We keep these values at the heart of all we do. We’re looking for driven individuals who want to solve meaningful challenges and help shape the future of national security and public service. If you’re ready to make a difference, you’ll find your team here.

Industry
IT & Software
Company Size
1,001-5,000 employees
Headquarters
Fairfax, VA
Year Founded
1993
Social Media