> Markdown version of [/jobs/ext/3575042-cyber-threat-hunt-analyst](https://www.wearedevelopers.com/jobs/ext/3575042-cyber-threat-hunt-analyst). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Cyber Threat Hunt Analyst - **Company:** VIA Inc - **Location:** Ashburn, VA, United States - **Experience:** Starter - **Salary:** $100,000.0 - $153,000.0 - **Contract:** Permanent contract - **Skills:** Network Analysis, Cyber Security, Digital Forensics, Intrusion Detection and Prevention, Log Analysis, Network Protocols, Open Source Technology, Security Information and Event Management, Scripting, Mitre Att&ck, Malware, Information Technology, Cybercrime, Purple Team (Cyber Security) - **Published:** October 4, 2026 - **Apply:** https://startup.jobs/cyber-threat-hunt-analyst-junior-mid-level-senior-us-citizenship-top-secret-clearance-w-sci-eligibility-required-via-logic-llc-10275803 ## About the Role * Relevant experience in threat hunting, security operations, incident response, digital forensics, malware analysis, or related technical work. * Ability to interpret security logs, endpoint activity, and network data to investigate suspicious behavior. * Familiarity with SIEM, endpoint detection and response, network analysis, or other security investigation tools. * Understanding of attacker behavior, indicators of compromise, operating systems, and network protocols. * Sound judgment about validating evidence, escalating findings, and involving other technical teams. * Clear writing and communication skills, including the ability to explain technical findings and recommend practical next steps. We are considering candidates at three levels: * Junior - 1+ years: You bring technical foundations and experience working with security data. You'll support hunts, investigate findings with guidance, and build your investigative skills. * Mid-Level - 5+ years: You bring hands-on investigative experience and can carry out assigned hunts, evaluate evidence, and coordinate findings with other teams. * Senior - 7+ years: You bring depth in complex investigations, help refine hunting methods and detection coverage, and share your expertise with other analysts. Preferred qualifications: * A bachelor's degree in Computer Science, Cybersecurity, Information Technology, Engineering, or a related field. * Experience with scripting, automation, malware analysis, digital forensics, detection engineering, or purple team exercises. ## Description * Conduct proactive hunts across networks, endpoints, systems, and high-value assets to identify compromises and advanced threats that may evade existing security controls. * Develop and test hunting hypotheses using threat intelligence, adversary tactics, techniques, and procedures, and knowledge of the environment. * Gather and analyze logs, endpoint telemetry, network activity, and other security data to identify suspicious behavior and indicators of compromise. * Use threat intelligence, open-source research, and frameworks such as MITRE ATT&CK to support scheduled and ad hoc hunts. * Coordinate with incident responders, system owners, and other technical teams to validate findings, distinguish malicious activity from authorized behavior, and support follow-up investigations. * Document hunt methods, findings, potential impact, and recommendations in clear reports that support action. * Help improve detection rules, alerts, workflows, and security coverage based on hunt findings and purple team exercises. * Maintain hunting procedures and playbooks, share lessons learned, and contribute to the team's investigative methods., * These positions work primarily onsite at a government site in Ashburn, VA. Specific worksite and travel expectations will be confirmed for the assignment. * You'll collaborate with Via Logic teammates, government partners, and other technical teams using tools approved for your work environment. * Core task coverage is generally weekdays, 8:30 a.m.-5:00 p.m. Eastern Time. Mission needs may require surge support or travel to other CBP locations. We'll discuss assignment expectations before moving forward. * When virtual meetings are part of the work, we expect active participation and use video when appropriate and permitted by the client environment.