> Markdown version of [/jobs/ext/2639252-cssp-threat-hunting-analyst-junior](https://www.wearedevelopers.com/jobs/ext/2639252-cssp-threat-hunting-analyst-junior). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # CSSP Threat Hunting Analyst, Junior - **Company:** TekSynap Corporation - **Location:** Fort Belvoir, VA, United States - **Experience:** Starter - **Salary:** $90,000.0 - $140,000.0 - **Contract:** Permanent contract - **Skills:** Network Analysis, Data Structures, Intrusion Detection and Prevention, Network Architecture, Packet Analyzer, Parsing, Mitre Att&ck, Cyber Threat Analysis, SC Clearance, Cybercrime, Cyber Warfare - **Published:** August 5, 2026 - **Apply:** https://dejobs.org/x/x/D0B40289E6924D679F7C7CDCCBD0766B/job/ ## About the Role * Clearance: Active Top-Secret Clearance with SCI eligibility required. * Compliance & Certifications: * DoD 8570/8140 IAT Level II * DoD 8570/8140 CSSP Analyst * Experience: Minimum 2 to 5 years of progressive experience in cybersecurity operations, threat hunting, or incident response with a Bachelor's degree (or 1 to 3 years with a Master's degree, or 0 to 1 years with a PhD). * Direct CSSP or SOC Experience is required. * Education: BA/BS College degree., While performing the duties of this job, the employee is regularly required to use hands to handle, feel, touch; reach with hands and arms; talk and hear. The employee is regularly required to stand; walk; sit; climb or balance; and stoop, kneel, crouch, or crawl. The employee is regularly required to lift up to 10 pounds. The employee is frequently required to lift up to 25 pounds; and up to 50 pounds. The vision requirements include close vision, distance vision, peripheral vision, depth perception, and ability to adjust focus. WORK AUTHORIZATION/SECURITY CLEARANCE * U.S Citizenship Required * Top Secret Clearance with SCI Eligibility. ## Description The CSSP Threat Hunting Analyst, Jr., serves as a proactive cyber defense specialist within our Prime Contract supporting the Defense Threat Reduction Agency (DTRA). This role is dedicated to uncovering, identifying, and neutralizing hidden or advanced cyber threats that evade traditional signature-based detection mechanisms. By applying threat intelligence, formulating logical hunt hypotheses, and performing direct host and network analysis, the analyst strengthens the overall defense-in-depth posture of the DTRA CSSP and its subscriber networks in strict compliance with DoD operational guidelines. Key Responsibilities: * Develop, test, and document proactive threat-hunting hypotheses to identify and neutralize threats before they cause damage. Construct and execute hunts based on threat intelligence, behavioral anomalies, and detailedattack path analysis (https://www.wiz.io/academy/attack-path-analysis) . * Dig through diverse telemetry datasets spanning cloud resources, identity systems, workloads, and network infrastructure. Correlate disparate events across network and host endpoints to reconstruct complex adversary attack campaigns. * Collect and analyze network and host artifacts, including logs, system images, and packet captures. * Provide expert technical support and perform real-time cyber defense incident handling tasks (including forensic collections, intrusion tracking, and direct system remediation) in strict accordance with the DoD Instruction 8530.01 guidelines. * Create detection use cases based on current threat vectors, the MITRE ATT&CK framework, and Government direction. Actively partner with engineering teams to automate these use cases, striving to keep false-positive rates below 10%. * Create threat-informed searches to find threat actor aligned malicious cyber activity. Coordinate with Threat Detection Engineering to establish and enhance long term detection strategies. * Make technical recommendations for correlation rules, filters, signatures, and playbooks. Track, validate, and provide monthly metrics on configuration refinement requests. * Leverage the CSSP Data Element Dictionary (DED) and Data Quality Scoring (DQS) parameters, such as Parsing Success Rate (PSR) and Field Completeness Score (FCS), to ensure hunting operations rely exclusively on high-fidelity, trusted telemetry. ## Related Videos - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [Fighting the Next Wave of Cybercrime](https://www.wearedevelopers.com/videos/100331-fighting-the-next-wave-of-cybercrime) - [Tips and Tricks for Working with JSON](https://www.wearedevelopers.com/videos/1229-tips-and-tricks-for-working-with-json) - [Deep Fakes: The Lies We Can’t See](https://www.wearedevelopers.com/videos/1187-deep-fakes-the-lies-we-can-t-see) - [Building a Compiler with C#](https://www.wearedevelopers.com/videos/116-building-a-compiler-with-c) - [Cyber Sleuth: Finding Hidden Connections in Cyber Data](https://www.wearedevelopers.com/videos/893-cyber-sleuth-finding-hidden-connections-in-cyber-data) ## Related Articles - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [Walking Into The Era of Supply Chain Risks](https://www.wearedevelopers.com/magazine/106-walking-into-the-era-of-supply-chain-risks) - [The Overflow: Security and Privacy](https://www.wearedevelopers.com/magazine/715-the-overflow-security-and-privacy) - [Dev Digest 152: Chrome Extensions Hack, CSS Spy Sheets, Deepseek OSS AI](https://www.wearedevelopers.com/magazine/540-dev-digest-152-chrome-extensions-hack-css-spy-sheets-deepseek-oss-ai) - [Understanding and Mitigating Common Web Vulnerabilities](https://www.wearedevelopers.com/magazine/565-understanding-and-mitigating-common-web-vulnerabilities)