ICS Threat Intelligence Strategist (OT/SCADA)

Peraton

Arlington (VA)

On-site

USD 100,000 - 130,000

Full time

14 days+
Application generator

Turn this role into an interview — a resume and cover letter built around what this employer wants.

Get past ATS filters

Job summary

A leading cybersecurity provider is seeking a Sr Industrial Control System Cyber Threat Intelligence Analyst. In this role, you will fuse intelligence sources to inform organizational priorities and analyze cyber threats across critical infrastructure. You need a degree and relevant experience, along with strong analytical skills and familiarity with ICS/SCADA systems. U.S. citizenship and an active security clearance are required.

Qualifications

  • Bachelor’s degree and 8 years, or Associate’s degree and 10 years, or HS and 12+ years experience.
  • Experience with ICS/OT/SCADA systems.
  • Hands-on experience with threat analysis tools.

Responsibilities

  • Fuse multiple intelligence sources to develop products.
  • Perform research on current threats in operational technology.
  • Analyze data to derive facts regarding capabilities and intentions.

Skills

Threat analysis
Cybersecurity tools
Operational technology knowledge
Analytical research
Collaboration skills

Education

Bachelor’s degree
Associate’s degree
High School diploma

Tools

VirusTotal
Maltego
Shodan
Exploit-db

Job description

Minimum Qualifications:

  • Bachelor’s degree and 8 years of experience, or an Associate’s degree and 10 years, or HS and 12+ years of experience in lieu of a degree.
  • Experience performing processing, triage, threat analysis, and response to cyber incident reports.
  • Experience with industrial Control Systems (ICS), Operational technology (OT), Supervisory Control and Data Acquisition (SCADA) systems, and the underlying principles necessary to ensure security and safe function of ICS systems.
  • Experience connecting open-source information with network and/or host-based anomalies (e.g., identifying cyber threat intelligence about suspicious processes, finding new insights through tools such as VirusTotal, understanding of how to find threat intelligence about malformed HTTP traffic, etc.).
  • Hands-on experience with open-source cyber threat/related tools (e.g., VirusTotal, Maltego, Shodan, exploit-db, etc.).
  • Experience researching and analyzing cyber threats across either a) multiple industries or b) multiple timeframes. Including but not limited to the critical infrastructure sectors.
  • Practical experience using common threat intelligence analysis models such as MITRE ATT&CK, the Diamond Model, and the Cyber Kill Chain to incorporate into client reports.
  • Experience producing and completing all-source (unclassified and classified) finished intelligence assessments that adhere to the ICD203 analytic tradecraft standards.
  • Proven ability to collaborate and establish key threat intelligence partnerships to bolster information sharing and defenses.
  • U.S. citizenship required.
  • An Active Top Secret Security Clearance with SCI eligibility.
    • Additionally, have the ability to obtain/maintain DHS EOD agency clearance prior to starting.

Preferred Qualifications:

  • SANS Global Industrial Cyber Security Professional (GICSP).
  • SANS GIAC Response and Industrial Defense (GRID).
  • SANS GIAC Cyber Threat Intelligence (GCTI).

Peraton is currently hiring Sr Industrial Control System Cyber Threat Intelligence Analystfor its Federal Strategic Cyber programs.

Location: On-site role in Arlington, VA.

In this role, you will:

  • Fuse multiple intelligence sources to develop products, recommendations, and inform priorities for the organization.
  • Perform research and investigate current threats in operational technology, specific critical infrastructure sectors, and mission areas to inform senior leaders and drive priorities for operational teams, including the forward deployed incident response and threat hunting functions.
  • Analyze collected data to derive facts and projections concerning capabilities, intentions, attack approaches—research resource allocations, motivations, tendencies, personalities.
  • Contribute to profiling adversarial behavior with respect to identified system attacks in the context of the critical infrastructure mission.
  • Research and review cyber warfare tactics, techniques, and procedures focused on the threat to information networks.
  • Prepare assessments and cyber threat profiles of current and planned products based on recent and current trends within ICS/SCADA.
  • Escalate new or high threats to the Cyber Physical Forensics Section as required.
  • Research OT defensive tactics, techniques, and procedures (TTPs) for detecting and responding to cyber threats.
  • Map ICS activity and threats using MITRE ATT&CK Framework .
  • Seamlessly work alongside a team of host, network, and cloud forensic analysts to meet the mission requirements for both incident response and threat hunting engagements.
  • Serve as subject matter expert (SME) for ICS Security activities.
  • Identify potential open-source vulnerabilities existing within ICS/SCADA.
  • Identify and assess current and emerging threats and vulnerabilities as they relate to homeland security.
  • Identify classified threat intelligence reporting related to ICS/SCADA and analyze for adversary intent and capability.
  • Develop and maintain analytical procedures to meet changing requirements.
  • Produces high-quality papers, presentations, recommendations, and findings for senior US government intelligence and operations officials.
  • Serve as a customer facing SME supporting them achieve success with the technology for their overall ICS security efforts.
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Sr Industrial Control System Cyber Threat Intelligence Analyst with OT/CTI/Threat Hunt experience
Sr Industrial Control System Cyber Threat Intelligence Analyst with OT/CTI/Threat Hunt experience

Peraton • Arlington (VA)

On-site
USD 100,000 - 130,000
Cyber Incident Response Analyst with OT/ICS/SCADA / Travel & Active TS
Cyber Incident Response Analyst with OT/ICS/SCADA / Travel & Active TS

Peraton • Arlington (VA)

On-site
USD 104,000 - 166,000
Threat Hunter for OT/ICS - TS Cleared Analyst
Threat Hunter for OT/ICS - TS Cleared Analyst

Peraton • Arlington (VA)

On-site
USD 86,000 - 138,000
Industrial Cyber Threat Hunter & Intelligence Analyst
Industrial Cyber Threat Hunter & Intelligence Analyst

Peraton • Arlington (VA), Northern (KY)

Hybrid
USD 86,000 - 138,000
Senior Cyber Manager
Senior Cyber Manager

Peraton • Washington

On-site
USD 120,000 - 170,000
ICS Threat Hunt Analyst / Active Top Secret
ICS Threat Hunt Analyst / Active Top Secret

Peraton • Arlington (VA)

On-site
USD 86,000 - 138,000
ICS/OT-Cybersecurity Engineer/Network Security Engineer
ICS/OT-Cybersecurity Engineer/Network Security Engineer

LSI - Logical Systems Inc. • Memphis (TN)

On-site
USD 85,000 - 110,000
Jr Industrial Control System Cyber Threat Intelligence Analyst / Active Top Secret, SCI eligibility
Jr Industrial Control System Cyber Threat Intelligence Analyst / Active Top Secret, SCI eligibility

Peraton • Arlington (VA)

On-site
USD 86,000 - 138,000
Local Defender Cybersecurity SOC Analyst Threat Analyst
Local Defender Cybersecurity SOC Analyst Threat Analyst

COLSA Corporation • California

On-site
USD 180,000 - 230,000
Cyber Threat Intelligence (Fusion) Analyst - TS/SCI with Polygraph
Cyber Threat Intelligence (Fusion) Analyst - TS/SCI with Polygraph

General Dynamics Information Technology • Washington

On-site
USD 120,000 - 150,000