Onsite SOC Threat-Hunting & Intelligence Fusion Analyst

Leidos Inc

Alexandria (VA)

On-site

USD 108,000 - 195,000

Full time

14 days+
Application generator

Stand out for this role — generate a tailored resume and cover letter in about a minute.

Get past ATS filters

Job summary

Leidos is seeking a Cyber Intelligence Fusion Analyst for the DISA GSM-O II program. The role supports the J361 SOC Fusion mission at the Mark Center, Alexandria, VA, operating 100% onsite during business hours.

You will synthesize all-source threat reporting, conduct structured threat hunts, and deliver tailored briefings to senior leadership. The role requires DoD clearance, advanced threat intelligence, and hands-on experience with SIEM/EDR, MITRE ATT&CK, and threat-hunting techniques.

Qualifications

  • Active Top Secret clearance; SCI eligibility preferred.
  • Bachelor's degree in cybersecurity, information technology, computer science, intelligence studies, or related field and 8+ years of relevant experience.
  • 4+ years in cybersecurity operations, threat intelligence, or incident response.
  • DoD 8140 IAT Level II baseline; CSSP Analyst certification preferred.
  • MITRE ATT&CK, Cyber Kill Chain or similar framework experience.
  • Experience with high-volume SIEM/EDR data and enterprise telemetry.
  • Ability to work onsite at the Mark Center, Alexandria, VA.

Responsibilities

  • Ingest and analyze cyber threat reporting from OSINT, government, and commercial sources to identify threats.
  • Correlate threat intel with SIEM/EDR/NetFlow/PCAP telemetry to assess malicious activity.
  • Conduct threat hunts and develop detections, signatures, and analytic queries.
  • Characterize adversary infrastructure, malware, and TTPs using MITRE frameworks.
  • Develop hunt plans, playbooks, and dissemination of findings in AARs and briefings.
  • Provide threat context during incidents and mentor junior analysts.

Skills

Threat hunting
Threat intelligence
Analytic tradecraft
Executive briefings

Education

Bachelor's degree in cybersecurity or related field

Tools

Splunk
Elastic
Microsoft Defender for Endpoint
Microsoft Sentinel
Wireshark
PCAP
NetFlow

Job description

Leidos is seeking a Cyber Intelligence Fusion Analyst for the DISA GSM-O II program. The role supports the J361 SOC Fusion mission at the Mark Center, Alexandria, VA, operating 100% onsite during business hours.

You will synthesize all-source threat reporting, conduct structured threat hunts, and deliver tailored briefings to senior leadership. The role requires DoD clearance, advanced threat intelligence, and hands-on experience with SIEM/EDR, MITRE ATT&CK, and threat-hunting techniques.

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Onsite Cyber Threat Fusion Analyst | SOC Threat Hunter
Onsite Cyber Threat Fusion Analyst | SOC Threat Hunter

TEKsystems • Alexandria (VA)

On-site
USD 76,000 - 83,000
Medical, dental & vision
401(k) matching
Paid time off
+1
Threat-Hunting Cyber Intelligence Fusion Analyst
Threat-Hunting Cyber Intelligence Fusion Analyst

Leidos • Alexandria (VA)

On-site
USD 108,000 - 195,000
Cyber Fusion Analyst: Threat Intelligence & Defense Ops
Cyber Fusion Analyst: Threat Intelligence & Defense Ops

Leidos • Odenton (MD)

On-site
USD 131,000 - 237,000
Senior Cyber Fusion Analyst Threat Intel & Response
Senior Cyber Fusion Analyst Threat Intel & Response

Leidos Inc • Odenton (MD)

On-site
USD 131,300 - 237,350
Cyber Threat Fusion Analyst | DoDIN Defender
Cyber Threat Fusion Analyst | DoDIN Defender

Leidos Inc • Odenton (MD)

On-site
USD 108,000 - 195,000
Senior Cyber Fusion Analyst - Threat Detection & Response
Senior Cyber Fusion Analyst - Threat Detection & Response

Via Logic LLC • Odenton (MD)

On-site
USD 131,000 - 238,000
Cyber Fusion & Threats Analyst — DoDIN Defense Expert
Cyber Fusion & Threats Analyst — DoDIN Defense Expert

Leidos • Odenton (MD)

On-site
USD 108,000 - 195,000
Threat Intel & Fusion Cyber Analyst (TS/SCI)
Threat Intel & Fusion Cyber Analyst (TS/SCI)

Via Logic LLC • Washington

Hybrid
USD 87,000 - 157,000
Health and Wellness programs
Competitive compensation
Paid Leave
+1
Cyber Fusion & Threats Analyst — DoDIN Defense Ops
Cyber Fusion & Threats Analyst — DoDIN Defense Ops

Via Logic LLC • Odenton (MD)

On-site
USD 108,000 - 195,000
Senior Defensive Cyber Operations Analyst | DoD TS/SCI
Senior Defensive Cyber Operations Analyst | DoD TS/SCI

Leidos • Odenton (MD)

On-site
USD 108,000 - 195,000