Cyber Threat Intelligence Analyst, Mid

Booz Allen Hamilton

Bethesda (MD)

On-site

USD 62,000 - 141,000

Full time

11 hours ago
Be an early applicant
Application generator

Turn this role into an interview — a resume and cover letter built around what this employer wants.

Get past ATS filters

Job summary

Booz Allen Hamilton seeks a Cyber Threat Intelligence Analyst (Mid) to support our SOC by collecting, analyzing, and correlating threat data from multiple sources. You will operationalize ThreatConnect, enrich investigations, and produce actionable intelligence for leadership and mission stakeholders.

Ideal candidates have 2+ years in CTI/SOC roles, experience with threat intel platforms, and strong communication skills to brief technical and non-technical audiences.

Qualifications

  • :2+ years CTI/SOC support/incident response experience.
  • Experience collecting, analyzing, and correlating intelligence from open and closed sources.
  • Experience managing or administering threat intelligence platforms
  • Experience with ISACs, AIS, or federal information-sharing programs
  • Knowledge of MITRE ATT&CK and TTPs
  • Ability to develop actionable intelligence products for technical and non-technical audiences
  • Ability to brief leadership and produce high-quality analytic products
  • Ability to obtain Public Trust or Suitability/Fitness determination
  • Bachelor’s degree in a related field

Responsibilities

  • :Support SOC with CTI, threat enrichment, and investigations.
  • Develop and disseminate intelligence products (reports, alerts, briefings) for SOC operations and leadership.
  • Facilitate intelligence sharing across interagency and cross-industry communities such as ISACs and AIS.

Skills

CTI analysis
SOC support
Threat intelligence
Executive briefing
Interagency collaboration
Public Trust eligibility
Brief leadership
Analytic reporting
MITRE ATT&CK knowledge

Education

Bachelor’s degree

Tools

ThreatConnect

Job description

The Opportunity

As a cyber threat intelligence (CTI) analyst, you know how to support a Security Operations Center (SOC) by collecting, analyzing, and correlating CTI from a wide range of open‑source, commercial, government, and industry partners. This role manages and operationalizes ThreatConnect to enrich SOC investigations, identify emerging threats, and maintain high‑quality intelligence workflows. The analyst develops and disseminates actionable intelligence products such as reports, alerts, and briefings, to inform SOC operations, leadership, and mission stakeholders. The position also facilitates intelligence sharing and collaboration across interagency and cross‑industry communities such as ISACs and AIS, ensuring timely exchange of relevant threat information. Additionally, the analyst contributes to the maturity of the CTI program by conducting annual capability assessments, identifying gaps, and developing strategic roadmaps to enhance intelligence processes, tooling, and integration with SOC operations.

Job Number: R0248299

Cyber Threat Intelligence Analyst, Mid

The Opportunity

As a cyber threat intelligence (CTI) analyst, you know how to support a Security Operations Center (SOC) by collecting, analyzing, and correlating CTI from a wide range of open‑source, commercial, government, and industry partners. This role manages and operationalizes ThreatConnect to enrich SOC investigations, identify emerging threats, and maintain high‑quality intelligence workflows. The analyst develops and disseminates actionable intelligence products such as reports, alerts, and briefings, to inform SOC operations, leadership, and mission stakeholders. The position also facilitates intelligence sharing and collaboration across interagency and cross‑industry communities such as ISACs and AIS, ensuring timely exchange of relevant threat information. Additionally, the analyst contributes to the maturity of the CTI program by conducting annual capability assessments, identifying gaps, and developing strategic roadmaps to enhance intelligence processes, tooling, and integration with SOC operations.

Cyber threats are evolving. Booz Allen is committed to creating an environment where you not only keep pace with the industry, but propel it forward. With access to academic programs, certifications, and opportunities to use expert tradecraft, we’ll continuously invest in you so you can create the career you want as you grow.

Join us. The world can’t wait.

You Have:
  • 2+ years of experience in CTI, SOC support, or incident response, including intelligence analysis or threat research
  • Experience collecting, analyzing, and correlating intelligence from open and closed sources, including government, commercial, and industry feeds
  • Experience managing or administering threat intelligence platforms
  • Experience with intelligence sharing frameworks and communities, including ISACs, AIS, or federal information‑sharing programs
  • Knowledge of cyber threat actor tactics, techniques, and procedures (TTPs), and frameworks such as MITRE ATT&CK
  • Ability to develop actionable intelligence products such as reports, alerts, and briefings, for technical and non‑technical audiences
  • Ability to brief leadership and produce high‑quality analytic products
  • Ability to obtain and maintain a Public Trust or Suitability/Fitness determination based on client requirements
  • Bachelor’s degree
Nice If You Have:
  • Experience supporting SOC investigations with threat enrichment, indicator analysis, or adversary profiling
  • Experience with structured analytic techniques used in intelligence analysis
  • Experience with ThreatConnect playbooks, indicator management, or intelligence lifecycle workflows
  • Experience conducting CTI program maturity assessments, gap analyses, or roadmap development
  • Knowledge of Zero Trust, EDR technologies, or modern enterprise security architectures
  • Knowledge of malware analysis fundamentals, network forensics, or threat hunting concepts
  • Possession of strong written and verbal communication skills
  • CompTIA CySA+, GIAC Cyber Threat Intelligence (GCTI), GIAC Open-Source Intelligence (GOSI), Certified Threat Intelligence Analyst (CTIA), CISSP, or similar Industry Certifications
Vetting

Applicants selected will be subject to a government investigation and may need to meet eligibility requirements of the U.S. government client.

Compensation

At Booz Allen, we celebrate your contributions, provide you with opportunities and choices, and support your total well‑being. Our offerings include health, life, disability, financial, and retirement benefits, as well as paid leave, professional development, tuition assistance, work‑life programs, and dependent care. Our recognition awards program acknowledges employees for exceptional performance and superior demonstration of our values. Full‑time and part‑time employees working at least 20 hours a week on a regular basis are eligible to participate in Booz Allen’s benefit programs. Individuals that do not meet the threshold are only eligible for select offerings, not inclusive of health benefits. We encourage you to learn more about our total benefits by visiting the Resource page on our Careers site and reviewing Our Employee Benefits page.

Salary at Booz Allen is determined by various factors, including but not limited to location, the individual’s particular combination of education, knowledge, skills, competencies, and experience, as well as contract‑specific affordability and organizational requirements. The projected compensation range for this position is $62,000.00 to $141,000.00 (annualized USD). The estimate displayed represents the typical salary range for this position and is just one component of Booz Allen’s total compensation package for employees. This posting will close within 90 days from the Posting Date.

Identity Statement

As part of the hiring process, we will ask you to complete an identity verification process that leverages advanced biometrics and artificial intelligence to ensure authenticity and protect against identity fraud. You are expected to be on camera during interviews and assessments. We reserve the right to take your picture to verify your identity and prevent fraud.

Candidate AI Usage Policy

AI is a part of our daily work at Booz Allen, and we are committed to the responsible and ethical use of AI tools. However, we want to ensure a fair candidate process based on your own skills and knowledge. As part of this commitment, the use of artificial intelligence (AI) or other tools to assist with responses during interviews (whether in‑person or virtual) is prohibited unless permission is explicitly provided.

Work Model
  • Remote: If this position is listed as remote, there may still be occasions when you are required to work in person at a Booz Allen or customer facility.
  • Hybrid: If this position is listed as hybrid, you will be expected to work from a Booz Allen facility frequently, in alignment with leadership expectations and the needs of the role. You may also be required to work from or visit a customer facility.
  • Onsite: If this position is listed as onsite, work will primarily be performed at a Booz Allen office or customer facility, where employees will collaborate directly with colleagues and customers as required by the role.
Commitment to Non‑Discrimination

All qualified applicants will receive consideration for employment without regard to disability, status as a protected veteran or any other status protected by applicable federal, state, local, or international law.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Cyber Threat Intelligence Analyst, Mid
Cyber Threat Intelligence Analyst, Mid

Phase2 Technology • Bethesda (MD)

On-site
USD 62,000 - 141,000
Cyber Threat Intelligence Analyst
Cyber Threat Intelligence Analyst

Booz Allen Hamilton • Huntsville (AL)

On-site
USD 62,000 - 141,000
Cyber Intelligence Analyst
Cyber Intelligence Analyst

Phase2 Technology • Fort Meade (MD)

Hybrid
USD 77,000 - 176,000
Cyber Threat Intelligence Analyst
Cyber Threat Intelligence Analyst

Booz Allen Hamilton • Washington

Hybrid
USD 78,000 - 176,000
Cyber Intelligence Analyst
Cyber Intelligence Analyst

Booz Allen Hamilton • Fort Meade (MD)

On-site
USD 78,000 - 176,000
Cyber Intelligence Analyst
Cyber Intelligence Analyst

Booz Allen Hamilton • Washington

On-site
USD 87,000 - 198,000
Cyber Intelligence Analyst
Cyber Intelligence Analyst

Phase2 Technology • Lakewood (CO)

Hybrid
USD 99,000 - 225,000
Health benefits
Retirement benefits
Paid leave
Cyber Intelligence Analyst
Cyber Intelligence Analyst

Booz Allen Hamilton • Lakewood (CO), Northern (KY)

On-site
USD 99,000 - 225,000
Cyber Analyst, Junior
Cyber Analyst, Junior

Booz Allen Hamilton • Washington

On-site
USD 53,000 - 108,000
Security Operations Analyst, Mid
Security Operations Analyst, Mid

Booz Allen Hamilton • Huntsville (AL)

On-site
USD 62,000 - 141,000