About this Cyber Threat Hunt Analyst - Junior, Mid-Level & Senior [U.S. Citizenship, Top Secret Clearance w/SCI Eligibility Required] role at Via Logic LLC
Start Your Adventure at Via Logic
Location: Primarily onsite at a government site in Ashburn, VA. Specific worksite expectations will be confirmed for the assignment.
Type: Full-time, W-2
Compensation: $100,000–$153,000 annually, depending on experience, qualifications, and assignment
Experience: Junior: 1+ years; Mid-Level: 5+ years; Senior: 7+ years of relevant experience
Threat hunting starts with a question: What could be happening that our existing defenses haven’t caught? At Via Logic, you’ll help answer that question through proactive investigations that protect systems supporting U.S. Customs and Border Protection. We are hiring for multiple openings across junior, mid-level, and senior experience levels through this posting. Whether you’re building your threat hunting skills or bringing years of investigative experience, we’ll consider you for the opening that fits your background.
Anticipated annual salary ranges by level are:
- Junior: $100,000–$115,000
- Mid-Level: $115,000–$144,000
- Senior: $120,000–$153,000
Eligibility & Clearance Requirements
Due to CBP requirements, applicants must:
- Be a U.S. citizen.
- Hold a Top Secret security clearance with SCI eligibility at the time of assignment.
- Meet and maintain CBP suitability requirements for access to government facilities and systems.
- Be available to work onsite, primarily in Ashburn, VA, with specific worksite and travel expectations confirmed for the assignment.
SCI eligibility means you are eligible to be considered for access to certain compartmented intelligence information. Access for a specific assignment requires separate government authorization and a need to know. Please include your current clearance status and SCI eligibility when applying.
Your Mission
- Conduct proactive hunts across networks, endpoints, systems, and high-value assets to identify compromises and advanced threats that may evade existing security controls.
- Develop and test hunting hypotheses using threat intelligence, adversary tactics, techniques, and procedures, and knowledge of the environment.
- Gather and analyze logs, endpoint telemetry, network activity, and other security data to identify suspicious behavior and indicators of compromise.
- Use threat intelligence, open-source research, and frameworks such as MITRE ATT&CK to support scheduled and ad hoc hunts.
- Coordinate with incident responders, system owners, and other technical teams to validate findings, distinguish malicious activity from authorized behavior, and support follow-up investigations.
- Document hunt methods, findings, potential impact, and recommendations in clear reports that support action.
- Help improve detection rules, alerts, workflows, and security coverage based on hunt findings and purple team exercises.
- Maintain hunting procedures and playbooks, share lessons learned, and contribute to the team’s investigative methods.
What You Bring to the Expedition
- Relevant experience in threat hunting, security operations, incident response, digital forensics, malware analysis, or related technical work.
- Ability to interpret security logs, endpoint activity, and network data to investigate suspicious behavior.
- Familiarity with SIEM, endpoint detection and response, network analysis, or other security investigation tools.
- Understanding of attacker behavior, indicators of compromise, operating systems, and network protocols.
- Sound judgment about validating evidence, escalating findings, and involving other technical teams.
- Clear writing and communication skills, including the ability to explain technical findings and recommend practical next steps.
We are considering candidates at three levels:
- Junior - 1+ years: You bring technical foundations and experience working with security data. You’ll support hunts, investigate findings with guidance, and build your investigative skills.
- Mid-Level - 5+ years: You bring hands-on investigative experience and can carry out assigned hunts, evaluate evidence, and coordinate findings with other teams.
- Senior - 7+ years: You bring depth in complex investigations, help refine hunting methods and detection coverage, and share your expertise with other analysts.
Preferred qualifications:
- A bachelor’s degree in Computer Science, Cybersecurity, Information Technology, Engineering, or a related field.
- Experience with scripting, automation, malware analysis, digital forensics, detection engineering, or purple team exercises.
Tell us where you have the strongest experience and which areas you want to develop further.
Your Route Into Via Logic
One posting, three experience levels. Tell us about the environments you’ve supported, the tools you’ve used, and the investigations or hunts you’ve contributed to. Include your current clearance status and SCI eligibility so we can assess your fit for the available openings.
Why Explorers Stay
- Healthcare coverage and paid time off that give you room to take care of life outside work.
- Teammates who share knowledge, pitch in, and help each other grow.
- Opportunities to deepen your specialty and explore adjacent areas of cybersecurity as new assignments open up.
- Meaningful work protecting systems that support a federal mission.
How We Work
- These positions work primarily onsite at a government site in Ashburn, VA. Specific worksite and travel expectations will be confirmed for the assignment.
- You’ll collaborate with Via Logic teammates, government partners, and other technical teams using tools approved for your work environment.
- Core task coverage is generally weekdays, 8:30 a.m.–5:00 p.m. Eastern Time. Mission needs may require surge support or travel to other CBP locations. We’ll discuss assignment expectations before moving forward.
- When virtual meetings are part of the work, we expect active participation and use video when appropriate and permitted by the client environment.