Cyber Threat Analyst

ANALYGENCE

Linthicum (MD)

On-site

USD 90,000 - 130,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

Tharros is seeking a Cyber Threat Analyst to support the DoD Cyber Crime Center (DC3). This role provides cyber threat intelligence analysis, proactive threat hunting, malware triage support, and analytical reporting.

You will produce intelligence reports, analyze adversary TTPs using MITRE ATT&CK, and correlate OSINT with internal data to strengthen threat assessments and incident response.

Qualifications

  • Bachelor's degree in Cybersecurity, Information Technology, Computer Science, Intelligence Studies, or a related discipline.
  • Experience supporting cyber threat intelligence, cyber operations, SOC, or cyber defense missions.
  • Experience analyzing network traffic, security events, endpoint telemetry, and cyber threat indicators.
  • Knowledge of MITRE ATT&CK, Cyber Kill Chain, NIST CSF, and cyber intelligence tradecraft.
  • Experience using SIEM platforms and threat intelligence tools.

Responsibilities

  • Produce cyber threat intelligence reporting identifying emerging threat actors, campaigns, malware, vulnerabilities, and indicators of compromise impacting Defense Industrial Base organizations.
  • Conduct proactive threat hunting activities by analyzing network traffic, endpoint telemetry, and security event data to identify malicious activity and previously unknown threats.
  • Analyze adversary tactics, techniques, and procedures (TTPs) using frameworks such as MITRE ATTACK to develop actionable intelligence products.
  • Correlate intelligence from OSINT, commercial threat feeds, and internal reporting to enrich threat assessments and identify intelligence gaps.
  • Perform indicator analysis, IOC enrichment, suspicious file triage, and malware submission analysis to support cyber investigations.
  • Support cyber forensic investigations through evidence coordination, compromised media intake, and collaboration with forensic laboratories.
  • Develop technical intelligence reports, threat assessments, and executive-level analytical products to support cybersecurity decision-making.
  • Assist in the development and enhancement of threat intelligence platforms, data analytics workflows, and automated intelligence processes.
  • Collaborate with cyber analysts, incident responders, and intelligence professionals to improve threat detection, investigation, and mitigation efforts.
  • Maintain accurate documentation, analytical products, and intelligence records in accordance with established DCISE tradecraft and reporting standards.
  • Support cyber information sharing activities with Defense Industrial Base partners by providing timely, actionable threat intelligence and defensive recommendations.
  • Contribute to the continuous improvement of cyber threat intelligence methodologies, standard operating procedures, and analytical best practices.

Skills

Threat intelligence analysis
Threat hunting
Analytical writing
Communication
Adversary TTPs analysis
Collaboration across teams

Education

Bachelor's degree in Cybersecurity/IT/CS/Intelligence Studies

Tools

CrowdStrike
Intel 471
Recorded Future
MITRE ATT&CK
GCTI/GREM/GCIH

Job description

Overview

Tharros is seeking a Cyber Threat Analyst to support the DoD Cyber Crime Center (DC3). This position provides cyber threat intelligence analysis, proactive threat hunting, malware triage support, and analytical reporting.

Responsibilities
  • Produce cyber threat intelligence reporting identifying emerging threat actors, campaigns, malware, vulnerabilities, and indicators of compromise impacting Defense Industrial Base organizations.
  • Conduct proactive threat hunting activities by analyzing network traffic, endpoint telemetry, and security event data to identify malicious activity and previously unknown threats.
  • Analyze adversary tactics, techniques, and procedures (TTPs) using frameworks such as MITRE ATTACK to develop actionable intelligence products.
  • Correlate intelligence from OSINT, commercial threat feeds, and internal reporting to enrich threat assessments and identify intelligence gaps.
  • Perform indicator analysis, IOC enrichment, suspicious file triage, and malware submission analysis to support cyber investigations.
  • Support cyber forensic investigations through evidence coordination, compromised media intake, and collaboration with forensic laboratories.
  • Develop technical intelligence reports, threat assessments, and executive-level analytical products to support cybersecurity decision-making.
  • Assist in the development and enhancement of threat intelligence platforms, data analytics workflows, and automated intelligence processes.
  • Collaborate with cyber analysts, incident responders, and intelligence professionals to improve threat detection, investigation, and mitigation efforts.
  • Maintain accurate documentation, analytical products, and intelligence records in accordance with established DCISE tradecraft and reporting standards.
  • Support cyber information sharing activities with Defense Industrial Base partners by providing timely, actionable threat intelligence and defensive recommendations.
  • Contribute to the continuous improvement of cyber threat intelligence methodologies, standard operating procedures, and analytical best practices.
Qualifications
  • Active Top Secret/SCI clearance eligibility
  • Bachelor's degree in Cybersecurity, Information Technology, Computer Science, Intelligence Studies, or a related discipline
  • Experience supporting cyber threat intelligence, cyber operations, Security Operations Centers (SOC), or cyber defense missions
  • Experience analyzing network traffic, security events, endpoint telemetry, and cyber threat indicators
  • Knowledge of cyber threat intelligence methodologies, intelligence lifecycle processes, and threat actor analysis
  • Familiarity with MITRE ATTACK, Cyber Kill Chain, NIST Cybersecurity Framework, and cyber intelligence tradecraft
  • Experience using SIEM platforms and threat intelligence tools to identify and investigate malicious cyber activity
  • Strong analytical, technical writing, and communication skills
  • Ability to work collaboratively across multidisciplinary cyber operations and intelligence teams
Preferred Qualifications
  • Prior DCISE, CISA, or DC3 operational experience
  • Familiarity with threat intelligence platforms (CrowdStrike, Intel 471, Recorded Future, or equivalent)
  • GIAC certifications (GCTI, GREM, GCIH) or equivalent technical credentials
  • Experience producing finished intelligence products under IC analytic standards
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Cyber Threat Intelligence Analyst | Proactive Threat Hunter
Cyber Threat Intelligence Analyst | Proactive Threat Hunter

ANALYGENCE • Linthicum (MD)

On-site
USD 90,000 - 130,000
Cyber Threat Intelligence & Hunting Analyst
Cyber Threat Intelligence & Hunting Analyst

Jimmy Jazz • Homeland Park (MD)

On-site
USD 90,000 - 130,000
Cyber Threat Analyst
Cyber Threat Analyst

Jimmy Jazz • Homeland Park (MD)

On-site
USD 90,000 - 130,000
DCISE Technical Lead
DCISE Technical Lead

ANALYGENCE • Linthicum (MD)

On-site
USD 120,000 - 160,000
Cyber Threat Intelligence Analyst
Cyber Threat Intelligence Analyst

Digital Global Connectors • McLean (VA)

Hybrid
USD 120,000 - 170,000
ME00600-Cyber Threat Analyst (Multiple Positions)
ME00600-Cyber Threat Analyst (Multiple Positions)

Momentum Engineering, Inc. • Maryland

On-site
USD 80,000 - 130,000
11 paid holidays
Minimum of 3 weeks PTO
Company sponsored group medical plan
+2
All-Source Intelligence Analyst
All-Source Intelligence Analyst

ANALYGENCE • Fort Meade (MD)

On-site
USD 80,000 - 110,000
Cyber Program Operations Specialist (TS/SCI)
Cyber Program Operations Specialist (TS/SCI)

ANALYGENCE • Fort Meade (MD)

On-site
Cyber Security Threat Intelligence Analyst II
Cyber Security Threat Intelligence Analyst II

The Intersect Group • Phoenix (AZ)

On-site
USD 90,000 - 120,000
Cyber Threat Intelligence Lead
Cyber Threat Intelligence Lead

Agile Defense • Reston (VA)

On-site
USD 120,000 - 150,000