Cybersecurity Threat Analyst Subject Matter Expert IV

invictusic

Colorado Springs (CO)

On-site

USD 140,000 - 210,000

Full time

3 days ago
Be an early applicant
Application generator

A complete application in a minute — tailored resume and cover letter, ready to send.

Get past ATS filters

Job summary

invictusic is seeking a Cybersecurity Threat Analyst Subject Matter Expert IV to serve as senior technical authority for proactive threat hunting in the SOC at Colorado Springs, CO. You will drive hunt lifecycle development and ensure findings feed incident response and engineering teams.

The role requires 8+ years in threat hunting/adversary analysis, DoD/IC experience, and TS/SCI clearance with CI polygraph. Bachelor's in a technical field and DoD 8570 II certification are required.

Qualifications

  • Bachelor’s degree in a technical discipline; 4 years may substitute
  • Minimum of eight (8) years of relevant experience
  • Expert-level threat hunting and adversary analysis
  • Expert knowledge of adversary TTPs, MITRE ATT&CK, threat intelligence operationalization
  • Current DoD 8570 IAT II or IAM II certification
  • Experience in a DoD or IC environment
  • Current TS/SCI clearance with CI polygraph

Responsibilities

  • Serve as the senior technical authority for proactive threat hunting and adversary-focused analysis within the SOC
  • Lead development of the SOC threat-hunting methodology, hunt lifecycle, prioritization model, documentation standards, quality criteria, and integration with watch operations and engineering
  • Proactively search across enterprise network, endpoint, identity, SIEM, and other security telemetry for indicators of compromise and behavioral evidence of malicious activity that has evaded automated detection
  • Develop and direct advanced hunt campaigns based on threat intelligence, adversary TTPs, mission priorities, predictive/advanced analytics, environmental changes, incidents, and identified detection gaps
  • Assess and validate analytical or predictive models and determine whether identified patterns represent meaningful adversary behavior, benign activity, or require additional collection and analysis
  • Lead complex analytical pivots across multiple sources and enclaves and direct expansion of scope when evidence indicates broader adversary activity
  • Ensure actionable hunt findings are transitioned to incident response, watch operations, detection engineering, or security engineering with clear evidence and recommended actions
  • Provide senior technical input to daily/weekly SOC reporting, leadership briefings, threat assessments, and defensive priorities
  • Establish reusable hunt playbooks, analytical techniques, ATT&CK mappings, queries, knowledge repositories, and lessons-learned processes
  • Mentor threat analysts at all levels and provide technical leadership for exercises, training, and proficiency development
  • Identify telemetry and detection blind spots and work with engineering teams to improve collection, analytics, enrichment, and automated detection coverage

Skills

Threat hunting
Adversary analysis
Cyber defense
MITRE ATT&CK
Threat intelligence

Education

Bachelor's degree in a technical discipline

Tools

SIEM
Threat hunting tooling
DoD/IC experience
DoD 8570 IAT II / IAM II

Job description

Title: Cybersecurity Threat Analyst Subject Matter Expert IV

Location: Colorado Springs, CO

Clearance: TS/SCI with the ability to obtain and maintain a CI polygraph

Job Details:

  • Serve as the senior technical authority for proactive threat hunting and adversary-focused analysis within the SOC
  • Lead development of the SOC threat-hunting methodology, hunt lifecycle, prioritization model, documentation standards, quality criteria, and integration with watch operations and engineering
  • Proactively search across enterprise network, endpoint, identity, SIEM, and other security telemetry for indicators of compromise and behavioral evidence of malicious activity that has evaded automated detection
  • Develop and direct advanced hunt campaigns based on threat intelligence, adversary TTPs, mission priorities, predictive/advanced analytics, environmental changes, incidents, and identified detection gaps
  • Assess and validate analytical or predictive models and determine whether identified patterns represent meaningful adversary behavior, benign activity, or require additional collection and analysis
  • Lead complex analytical pivots across multiple sources and enclaves and direct expansion of scope when evidence indicates broader adversary activity
  • Ensure actionable hunt findings are transitioned to incident response, watch operations, detection engineering, or security engineering with clear evidence and recommended actions
  • Provide senior technical input to daily/weekly SOC reporting, leadership briefings, threat assessments, and defensive priorities
  • Establish reusable hunt playbooks, analytical techniques, ATT&CK mappings, queries, knowledge repositories, and lessons-learned processes
  • Mentor threat analysts at all levels and provide technical leadership for exercises, training, and proficiency development
  • Identify telemetry and detection blind spots and work with engineering teams to improve collection, analytics, enrichment, and automated detection coverage

Requirements:

  • Bachelor's degree from an accredited institute in a technical discipline applicable to the position; an additional 4 years of may be substituted in lieu of a degree
  • Minimum of eight (8) years of relevant experience in addition to education level
  • Expert-level hands-on experience in threat hunting, adversary analysis, advanced cyber defense analysis, or closely related work
  • Demonstrated experience leading complex hunt campaigns and identifying malicious activity not detected through routine alerting
  • Expert knowledge of adversary TTPs, MITRE ATT&CK, threat intelligence operationalization, network/endpoint/identity telemetry, and analytical methodologies
  • Experience establishing or materially improving a threat-hunting or proactive cyber-defense program
  • Experience translating hunt findings into detection engineering requirements and measurable defensive improvements
  • Must possess current DoD 8570 IAT II or IAM II certification
  • Experience working in a DoD or IC environment
  • Current active TS/SCI clearance, with the ability to obtain and maintain a CI polygraph

Equal Opportunity Employer/Veteran/Disabled

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Cybersecurity Threat Analyst Subject Matter Expert IV
Cybersecurity Threat Analyst Subject Matter Expert IV

Invictus International Consulting, LLC. • Colorado Springs (CO)

On-site
USD 130,000 - 190,000
Cybersecurity Threat Analyst Subject Matter Expert IV
Cybersecurity Threat Analyst Subject Matter Expert IV

Invictus International • Colorado Springs (CO)

On-site
USD 150,000 - 190,000
Cybersecurity Threat Analyst Subject Matter Expert IV
Cybersecurity Threat Analyst Subject Matter Expert IV

Invictus International Consulting, LLC. • Alexandria (VA)

On-site
USD 140,000 - 190,000
Cybersecurity Threat Analyst Subject Matter Expert IV
Cybersecurity Threat Analyst Subject Matter Expert IV

Invictus International • Alexandria (VA)

On-site
USD 150,000 - 190,000
Cybersecurity Threat Analyst Subject Matter Expert IV
Cybersecurity Threat Analyst Subject Matter Expert IV

Invictus International Consulting, LLC • Colorado Springs (CO)

On-site
USD 161,000 - 219,000
Cybersecurity Threat Analyst Subject Matter Expert IV
Cybersecurity Threat Analyst Subject Matter Expert IV

Invictus International Consulting, LLC • Alexandria (VA)

On-site
USD 171,000 - 209,000
Cybersecurity Threat Analyst Subject Matter Expert IV
Cybersecurity Threat Analyst Subject Matter Expert IV

invictusic • Alexandria (VA)

On-site
USD 150,000 - 190,000
Senior Cybersecurity Threat Hunter III
Senior Cybersecurity Threat Hunter III

Invictus International Consulting, LLC • Colorado Springs (CO)

On-site
USD 158,000 - 193,000
Senior Cybersecurity Threat Hunter III
Senior Cybersecurity Threat Hunter III

Invictus International Consulting, LLC. • Colorado Springs (CO)

On-site
USD 120,000 - 170,000
Senior Cybersecurity Threat Hunter III
Senior Cybersecurity Threat Hunter III

Invictus International • Colorado Springs (CO)

On-site
USD 130,000 - 190,000