Threat Hunter

The Challenge:

Are you looking for an active role in detecting advanced cyber threats that are the highest concern to the most important commercial companies? Instead of letting the attackers come to us, let’s go find them. Cyber threats are evolving, and perimeter security and automated protection aren’t enough—it’s time to go threat hunting. 

We’re looking for cybersecurity professionals with experience in Incident Response, Cyber Threat Intelligence, and Detection and Response who can think like an adversary. This is an opportunity to use your analytical skills and gain network defense experience. As a cyber threat hunter on our team in support of critical national security missions, you'll play a proactive active role in detecting advanced cyber threats that are the highest concern before they strike. You'll apply experience in IT and OT Incident Response, Cyber Threat Intelligence, and Detection and Response and leverage analytical skills and tradecraft to find the adversary in attack surface blind spots to close gaps and harden networks. You'll also employ critical thinking, new tools, and approaches to develop, test, and deploy security analytics to strengthen enterprise defenses. This position is a hybrid role with a combination of working at a Booz Allen office or client site and working remotely.

Empower change with us.

You Have:

  • 5+ years of experience with cybersecurity operations, threat hunting, incident response, incident analysis, or penetration testing

  • Experience with information security and assessment frameworks

  • Knowledge of threat hunting and threat actors’ tactics, techniques, and procedures

  • Experience analyzing and manipulating security data

  • TS/SCI clearance with a polygraph

  • HS diploma or GED

Nice If You Have:

  • Experience with the intelligence community

  • Experience with SEIM platforms

  • Experience with collection and detection tools, including host-based and network-based tools, such as Zeek, Snort, Arkime, Sysmon, commercial EDRs, or commercial AVs

  • Bachelor’s degree preferred

  • DoD 8750 IAT and IAM Certifications


Applicants selected will be subject to a security investigation and may need to meet eligibility requirements for access to classified information; TS/SCI clearance with polygraph is required.

Build Your Career:

Rewarding work, fun challenges, and a ton of investment in our people—that’s Booz Allen cyber. When you join Booz Allen, we’ll help you develop the career you want.

  • Competitions — From programming competitions at our PyNights (Python competition and learning events) to competing in CTFs, we’ve got plenty of chances for you to show off your skills.

  • Paid Research — Have an innovative idea to explore or hypothesis to test? You can participate in challenges via our crowdsourcing platform, the Garage, and other programs to be awarded dedicated time and/or funding to advance your skills.

  • Cyber University — CyberU has more than 5000 instructor-led and self-paced cyber courses, a free online library that you can access from just about anywhere—including your phone—and certification exam prep guides that include practical assessments to prepare you for your exam.

  • Academic Partnerships — In addition to our tuition reimbursement benefit, we’ve partnered with University of Maryland University College to offer two graduate certificate programs in cybersecurity—fully funded without a tuition cap.

  • Maker/Hackerspaces — Race drones, print 3D gadgets, drink coffee from our Wi-Fi coffee maker, and get hands-on training on tools and tech from in-house experts in our dedicated maker and hackerspaces.

We’re an equal employment opportunity/affirmative action employer that empowers our people to fearlessly drive change – no matter their race, color, ethnicity, religion, sex (including pregnancy, childbirth, lactation, or related medical conditions), national origin, ancestry, age, marital status, sexual orientation, gender identity and expression, disability, veteran status, military or uniformed service member status, genetic information, or any other status protected by applicable federal, state, local, or international law.

Not ready to apply? Join our talent community and sign up for job alerts.