Senior Threat Intelligence Analyst

Trellix

Reston (VA)

On-site

USD 120,000 - 170,000

Full time

13 days ago

Get more replies from employers

Send a job-specific resume in minutes.

Benefits offered by this job

Retirement Plans
Medical, Dental and Vision Coverage
Paid Time Off
Community Involvement Support

Job summary

Trellix Guardians Group is seeking a Threat Intelligence Analyst to collaborate with customers, assess threats, and deliver finished intelligence. You will work within the Trellix threat intel team to support 24x7 monitoring, risk assessments, and incident response with a focus on APTs, TTPs, and geopolitical context.

The role is on-site at Fort Belvoir, Virginia, reporting to the Senior Manager of Threat Intelligence.

Qualifications

  • 5+ years of intelligence gathering, analysis, and reporting experience.
  • Experience with OSINT collection methods and tools is vital.
  • Background working within a SOC to monitor, respond, and remediate detected issues.
  • Active Top Secret SCI clearance is required; ongoing eligibility.

Responsibilities

  • Serve as a cyber threat intelligence subject matter expert and trusted advisor.
  • Integrate with customers’ operations‑intelligence cycles to inject cyber threat intelligence.
  • Collaborate with Trellix employees, customers, and third parties to defend the customer’s network.
  • Develop information requirements and establish priorities.
  • Identify intelligence gaps and opportunities to improve sharing and utility.
  • Create tailored research, data collection, analysis, and reporting strategies.
  • Draft responses to RFIs and other information requests.
  • Perform all‑source research using Trellix tools and open sources.
  • Produce high‑quality written and oral reporting for diverse audiences.
  • Map relationships between malicious activity and global events.
  • Deliver threat intelligence presentations to technical and executive audiences.

Skills

OSINT collection
SOC experience
SIEM tools
Threat hunting
MITRE ATT&CK
D3FEND framework
Cyber Kill Chain
XDR/EDR
Report writing
Analytical techniques

Education

Bachelor’s degree (asset)
8140 IAT III
8140 IASAE II

Tools

SIEM tools

Job description

About Trellix
Trellix is a global company redefining the future of cybersecurity. The company’s comprehensive, open, and native cybersecurity platform helps organizations confronted by today’s most advanced threats gain confidence in the protection and resilience of their operations. Trellix, along with an extensive partner ecosystem, accelerates technology innovation through artificial intelligence, automation, and analytics to empower over 50,000 business and government customers with responsibly architected security. More at https://trellix.com .

Role Overview:

Trellix Threat Intelligence is a portfolio of solutions and services from our team of experts including our cybersecurity product team, Trellix Guardians Group, and our Advanced Research Centre (ARC). We help defend our customers against everyday threats with the tight collaboration between both our product team and our threat researchers working together in real time.

The Trellix Guardians deliver cyber threat intelligence, assessment, education, and incident response services to global customers to enable them to prepare, detect, and respond to the wide array of malicious cyber activity that persistently threatens organizations across all industry sectors.

The Threat Intelligence Analyst will collaborate with customers to enhance their cyber threat intelligence capabilities by leveraging the experience, knowledge, tools, and data of the Trellix cyber defense enterprise. The role is responsible for delivering cyber threat intelligence services, which include knowledge of sophisticated threat actors and associated tactics, techniques, and procedures, along with research, collection, analysis, and reporting of finished intelligence. The role will support customer security operations including planning and risk assessment, vulnerability assessment, 24x7x365 monitoring, and incident response.

About the Role:

The Threat Intelligence Analyst will report to the Senior Manager of the threat intelligence branch of Trellix Guardians. This is an on-site role at a customer facility at Fort Belvoir in Virginia. As a member of the Guardians, the Analyst will collaborate with Guardian teammates, members of the ARC, Trellix Professional Services Consultants, and third‑party partners. The analyst will serve as a primary customer interface and will become immersed in customer operations through rapid learning and establishing relationships. This is a resident analyst role supporting a customer in a full‑time capacity.

Responsibilities:
  • Serve as a cyber threat intelligence subject matter expert and trusted advisor.
  • Integration with customers’ operations‑intelligence cycles is required to effectively inject cyber threat intelligence.
  • Collaborate with Trellix employees, customers, and third parties to collectively support the defense of the customer’s network and mission elements.
  • Develop information/intelligence requirements and establish associated priorities.
  • Identify intelligence gaps and uncover opportunities to improve intelligence sharing and utility.
  • The role involves creating tailored strategies for research, data collection, analysis, and reporting focused on customers’ areas of interest.
  • Draft comprehensive responses to customer requests for information/intelligence (RFIs).
  • Perform all‑source research and analysis using Trellix tools, data sets, third‑party tools, and open sources.
  • Produce high‑quality written and oral reporting, including active participation in peer review and quality assurance.
  • Map relationships between malicious cyber activity and global events, such as geopolitical shifts, natural disasters, or crises.
  • Deliver expert threat intelligence presentations to diverse customer teams, ranging from technical staff to senior executives (General/Flag Officers, SES/SIS, and C‑Suite).
  • Maintain an up‑to‑the‑minute understanding of the cyber threat landscape, including APTs, motivations, attack vectors, and TTPs.
About You:
  • Self‑motivation and a genuine passion for cybersecurity are essential.
  • A keen interest in tracking threat actors drives your daily work.
  • Strong proficiency in structured analytical techniques is required, including Quality of Information Checks, ACH, Key Assumptions Checks, and Gap Analysis.
  • Critical thinking skills allow you to remain objective and avoid analytical biases.
  • The ability to produce clear, complete, and concise reporting under tight deadlines with extreme attention to detail is a must.
  • Expertise includes a deep understanding of cyber threats, attack vectors, detection capabilities, and countermeasures.
  • Experience with open‑source intelligence (OSINT) collection methods and tools is vital.
  • Background working within a Security Operations Center (SOC) to monitor, respond, and remediate detected issues.
  • A clear grasp of organizational Incident Management processes as they relate to threats and vulnerabilities.
  • Technical knowledge of XDR/EDR, Endpoint Security tools (AV, whitelisting, etc.), and Threat Hunting.
  • High‑level comprehension of malware types, detection methods, and analysis.
  • Familiarity with industry frameworks such as MITRE ATT&CK and D3FEND, the Cyber Kill Chain, and the Diamond Model.
  • Proven track record of identifying and mitigating cyber threats using various detection strategies.
  • Solid understanding of technical vulnerabilities and their associated risks.
  • Hands‑on experience with SIEM tools and collaborating closely with SIEM Analysts on event correlation and analysis.
  • 5+ years of intelligence gathering, analysis, and reporting experience.
  • A Bachelor’s degree in information security, cyber discipline, political science or a related analytical field is not required but considered an asset.
  • Certifications: the candidate needs to have, or be willing to get, the 8140 IAT III and 8140 IASAE II certificates.
  • Clearance Requirement: Active Top Secret SCI clearance
Company Benefits and Perks:

We believe that the best solutions are developed by teams who embrace each other's unique experiences, skills, and abilities. We work hard to create a dynamic workforce where we encourage everyone to bring their authentic selves to work every day. We offer a variety of social programs, flexible work hours and family‑friendly benefits to all of our employees.

  • Retirement Plans
  • Medical, Dental and Vision Coverage
  • Paid Time Off
  • Support for Community Involvement

We're serious ab out our commitment to a workplace where everyone can thrive and contribute to our industry‑leading products and customer support, which is why we prohibit discrimination and harassment based on race, color, religion, gender, national origin, age, disability, veteran status, marital status, pregnancy, gender expression or identity, sexual orientation or any other legally protected status.

Our Commitment to You:

At Trellix, we are committed to creating a safe and trustworthy experience for our customers, employees, and candidates. Please be aware that fraudulent recruiting activity can occur through fake job postings or impersonated communications.

Trellix conducts interviews through professional channels only and does not use text messages, instant messaging, or group chats for interviews. We will never request sensitive personal information—such as your date of birth, Social Security number, or national ID number—during the interview process.

Trellix also does not require candidates to pay fees, purchase products or services, or process payments of any kind as part of the recruiting or hiring process. And Trellix will never keep any original work authorization documents that we may be required to review during the hiring process.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Cyber Threat Hunter (TS/SCI Clearance Required)
Cyber Threat Hunter (TS/SCI Clearance Required)

Trellix • Fairfax (VA)

On-site
USD 120,000 - 170,000
Retirement Plans
Medical, Dental and Vision Coverage
Paid Time Off
+1
Cyber Threat Hunter (TS/SCI Clearance Required)
Cyber Threat Hunter (TS/SCI Clearance Required)

Trellix • Fort Belvoir (VA)

On-site
USD 130,000 - 170,000
Retirement Plans
Medical, Dental and Vision Coverage
Paid Time Off
+1
Cleared Cyber Security Engineer
Cleared Cyber Security Engineer

Trellix • Baltimore (MD)

On-site
USD 120,000 - 170,000
Staff Solution Consultant
Staff Solution Consultant

Trellix • Fairfax (VA)

On-site
USD 90,000 - 120,000
Retirement Plans
Medical, Dental and Vision Coverage
Paid Time Off
+2
Regional Sales Director – Department of Defense & Intelligence Community
Regional Sales Director – Department of Defense & Intelligence Community

Trellix • Fairfax (VA)

On-site
USD 175,000 - 275,000
Retirement Plans
Medical, Dental and Vision Coverage
Paid Time Off
+1
Cleared Cyber Security Engineer
Cleared Cyber Security Engineer

Trellix • New York (NY)

On-site
USD 140,000 - 190,000
Retirement Plans
Medical, Dental and Vision Coverage
Paid Time Off
+2
VP, Product Management, Security Platforms
VP, Product Management, Security Platforms

Trellix • United States

On-site
USD 190,000 - 270,000
Retirement Plans
Medical, Dental and Vision Coverage
Paid Time Off
+1
Senior Manager, Transformation
Senior Manager, Transformation

Trellix • United States

On-site
USD 150,000 - 180,000
Retirement Plans
Medical, Dental and Vision Coverage
Paid Time Off
+2
Channel Account Manager
Channel Account Manager

Trellix • Dallas (TX)

On-site
USD 135,000 - 165,000
Retirement Plans
Medical Coverage
Dental Coverage
+4
Channel Account Manager
Channel Account Manager

Trellix • Austin (TX)

On-site
USD 135,000 - 165,000
Retirement Plans
Medical, Dental and Vision Coverage
Paid Time Off
+2