Cybersecurity Threat Intelligence Analyst

Jobtailor

Washington (District of Columbia)

On-site

USD 90,000 - 130,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

Jobtailor in Washington, DC seeks a Cyber Threat Intelligence professional to monitor and report on evolving threat trends affecting national security and critical infrastructure. You will conduct OSINT investigations, synthesize findings, and prepare executive briefings that translate technical risk into business implications.

Responsibilities include developing Power BI dashboards, maintaining Dataminr/Recorded Future integrations, supporting Incident Response, and updating stakeholders during

Qualifications

  • Bachelor’s degree or equivalent experience.
  • 4+ years in Cyber Threat Intelligence, Cyber Security Operations, Incident Response, Intelligence Analysis, or related fields in public or private sectors.
  • 4+ years applying the MITRE ATT&CK framework, cybercrime analysis, threat actor tactics and techniques, or cyber risk management principles.
  • 4+ years producing all-source intelligence reports, briefings, and assessments for technical and senior business audiences.
  • 4+ years utilizing threat intelligence platforms and OSINT tools such as Dataminr, Recorded Future, ZeroFox, Flashpoint, CrowdStrike, or Google SecOps/CTI.
  • 2+ years of experience in database and dashboard development, ideally with the Azure Databricks Lakehouse platform and Power BI.
  • Advanced degree or certifications such as GCTI, CTIA, CISSP, GIAC, SANS.
  • Excellent writing, verbal, and interpersonal skills.
  • Strong analytical, problem-solving, and communication skills, with the ability to translate complex cyber issues into clear and actionable insights.
  • Experience with the utility or energy industry.
  • Experience with AI and ML technologies in Cybersecurity.

Responsibilities

  • Monitor, analyze, track, and report on evolving threat trends related to the company, industry, or critical infrastructure and national security.
  • Conduct advanced OSINT research and investigations into cyber threat actors, origins, motives, TTPs, and geopolitical developments.
  • Assess how geopolitical and societal developments drive cyber activity and impact the organization.
  • Synthesize large volumes of multi-source intelligence into concise products and executive-level briefings for senior leaders.
  • Support tactical intelligence collection, monitoring indicators like IOCs or malicious IPs, and validation within NiSource systems.
  • Respond and support Cybersecurity or Physical Security teams during high-impact incidents.
  • Compile available intelligence into timely, high-confidence products for stakeholders.
  • Update key stakeholders during security or crisis events and translate technical information for business audiences.

Skills

Cyber Threat Intelligence
OSINT Research
MITRE ATT&CK Framework
Python (PySpark) Proficiency
Geopolitical Analysis

Education

Bachelor’s degree or equivalent experience
Advanced degree or industry certifications (GCTI, CTIA, CISSP, GIAC, SANS)

Tools

Dataminr
Recorded Future
ZeroFox
Flashpoint
CrowdStrike
Google SecOps/CTI
Azure Databricks Lakehouse
API Connections
Power BI

Job description

  • Monitor, analyze, track, and report on evolving threat trends related to the company, industry, or critical infrastructure and national security more broadly
  • Conduct advanced open-source intelligence (OSINT) research and investigations into cyber threat actors, origins, motives, TTPs, emerging trends, and geopolitical developments
  • Assess how geopolitical and societal developments drive cyber activity over time and impact the organization
  • Synthesize large volumes of multi-source intelligence and technical processes into concise products and executive-level briefings to ensure that senior leaders get a clear understanding of threat activity, related risks, business implications, and recommended mitigations or controls
  • Support tactical intelligence collection and reporting, including monitoring for indicators like IOCs or malicious IPs, leveraging tools for detection, and validation within NiSource systems, and providing actionable intelligence to Incident Response
  • Respond and support Cybersecurity or Physical Security teams during high-impact incidents
  • Compile available intelligence into timely, high-confidence products
  • Continue to update key stakeholders throughout a security or crisis event to provide essential information, translate technical information for a business audience, and support overall business response and recovery efforts
  • Assist in developing new intelligence reporting thresholds, templates, products, and data collection mechanisms
  • Develop and maintain intelligence metrics, dashboards, investigative records, and KPIs to ensure that team activities are measurable and aligned to business objectives
  • Utilize intelligence tools and platforms such as Dataminr, Recorded Future, ZeroFox, and other OSINT capabilities to support routine monitoring, investigations, and analysis
  • Facilitate and develop new data connections for Power BI dashboards (database development) used for insider risk detection and tracking
  • Perform regular updates to API connections and dashboards as the Insider Risk and Threat programs evolve
  • Collaborate closely with other team members and Cybersecurity verticals to conduct investigations, validate findings, support incident response efforts, and enhance information sharing across the physical and cyber disciplines
  • Participate periodically in procedural audits, analytic reviews, lessons-learned sessions, or after-action reports
  • Continuously refine sourcing strategies and help evaluate technology needs within the changing AI and information security environment
  • Contribute to updating team methodologies and build on intelligence tradecraft through professional development opportunities
  • Participate in collaborative benchmarking discussions with internal and external partners, including government and law enforcement agencies.
Requirements
  • Bachelor’s degree or equivalent experience
  • 4+ years of experience in Cyber Threat Intelligence, Cyber Security Operations, Incident Response, Intelligence Analysis, or related fields in the public or private sectors
  • 4+ years of experience applying the intelligence lifecycle, MITRE ATT&CK framework, cybercrime analysis, threat actor tactics and techniques, or cyber risk management principles
  • 4+ years of experience producing all-source intelligence reports, briefings, and assessments for both technical and senior business audiences
  • 4+ years of experience utilizing threat intelligence platforms and OSINT tools such as Dataminr, Recorded Future, ZeroFox, Flashpoint, CrowdStrike, or Google SecOps/CTI
  • 2+ years of experience in database and dashboard development, ideally with the Azure Databricks Lakehouse platform and Power BI
  • Proficiency in Python (PySpark) and Spark SQL for large-scale data transformation
  • Advanced degree or industry certifications such as GCTI, CTIA, CISSP, GIAC, SANS, or equivalent.
  • Excellent writing, verbal, and interpersonal skills.
  • Strong analytical, problem-solving, and communication skills, with the ability to translate complex cyber issues into clear and actionable insights.
  • Experience with the utility or energy industry.
  • Experience with AI and ML technologies in Cybersecurity.
Core Competencies

Demonstrates expertise in Cyber Threat Intelligence and Incident Response, utilizing advanced OSINT tools and methodologies to analyze and report on cyber threats. Proficient in developing intelligence products and dashboards that inform senior leadership and support organizational security objectives.

Highest-signal resume keywords
  • Cyber Threat Intelligence
  • OSINT Research
  • MITRE ATT&CK Framework
  • Power BI Dashboard Development
  • Python (PySpark) Proficiency
ATS Optimization Keywords
Hard Skills
  • Cyber Security Operations
  • Incident Response
  • Intelligence Analysis
  • Threat Actor Tactics
  • Cyber Risk Management
  • All-Source Intelligence Reporting
  • Data Transformation
  • Database Development
  • Threat Intelligence Platforms
  • Geopolitical Analysis
Soft Skills
  • Excellent Writing Skills
  • Strong Analytical Skills
  • Problem-Solving Skills
  • Communication Skills
  • Interpersonal Skills
Certifications & Qualifications
  • GCTI
  • CTIA
  • CISSP
  • GIAC
  • SANS
Industry Keywords
  • Utility Industry
  • Energy Industry
  • Cybersecurity
  • AI Technologies
  • ML Technologies
Tools & Technologies
  • Dataminr
  • Recorded Future
  • ZeroFox
  • Flashpoint
  • CrowdStrike
  • Google SecOps/CTI
  • Azure Databricks Lakehouse
  • API Connections
  • Intelligence Dashboards
  • Incident Response Tools
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Associate Director, Threat Management Center
Associate Director, Threat Management Center

Jobtailor • Town of Florida (NY)

On-site
USD 150,000 - 190,000
Manager, Threat Detection Engineer
Manager, Threat Detection Engineer

Jobtailor • Washington

On-site
USD 140,000 - 190,000
Senior Associate, Cyber Threat Intelligence
Senior Associate, Cyber Threat Intelligence

Jobtailor • New York (NY)

On-site
USD 85,000 - 120,000
Senior Security Engineer, AI Incident Response
Senior Security Engineer, AI Incident Response

Jobtailor • California (MO)

On-site
USD 180,000 - 230,000
Data Security Engineer, Exposure and Vulnerability Management
Data Security Engineer, Exposure and Vulnerability Management

Jobtailor • Town of Florida (NY)

On-site
USD 120,000 - 160,000
Lead Associate Principal, Adversarial Red Team
Lead Associate Principal, Adversarial Red Team

Jobtailor • United States

On-site
USD 170,000 - 210,000
Associate Cybersecurity Operations Researcher
Associate Cybersecurity Operations Researcher

Jobtailor • Pennsylvania

On-site
USD 90,000 - 130,000
Senior Cybersecurity Ops Analyst
Senior Cybersecurity Ops Analyst

Jobtailor • Santa Ana (CA)

On-site
USD 75,000 - 120,000
Cyber Threat Intelligence Analyst
Cyber Threat Intelligence Analyst

Digital Global Connectors • McLean (VA)

Hybrid
USD 120,000 - 170,000
Principal Security Engineer
Principal Security Engineer

Jobtailor • Town of Texas (WI)

On-site
USD 140,000 - 190,000