Threat Intelligence Analyst

Motion Recruitment

Irving (TX)

On-site

USD 90,000 - 130,000

Full time

6 days ago
Be an early applicant
Application generator

Stand out for this role — generate a tailored resume and cover letter in about a minute.

Get past ATS filters

Job summary

Motion Recruitment's Irving, TX client is seeking a Threat Intelligence Analyst for a 12+ month contract. This onsite role focuses on collecting and analyzing OSINT from open sources, the dark web, and feeds to inform security decisions.

You will produce finished intelligence, support detection and response, and guide vulnerability prioritization. The role requires 3+ years in threat intel, a Bachelor's degree, and certifications such as GCTI, GCFA, CTIA, or CISSP.

Qualifications

  • Bachelor's degree in Cybersecurity, Intelligence Studies, or related field.
  • Working knowledge of MITRE ATT&CK, the intelligence cycle, and structured analytic techniques.
  • Experience analyzing malware behavior, IOCs, and adversary infrastructure at a working level.
  • Familiarity with SIEM, EDR, and threat intelligence platform tooling.
  • Strong written and verbal communication skills, able to translate technical findings for non-technical audiences.

Responsibilities

  • Monitor OSINT, closed forums, dark web sources, ISAC/ISAO feeds, and commercial threat feeds.
  • Track threat actor groups, campaigns, malware families, and TTPs mapped to MITRE ATT&CK.
  • Analyze IOCs, malware samples, and adversary infrastructure to assess relevance and risk.
  • Correlate external threat data with internal telemetry to identify targeting or exposure.
  • Produce and disseminate finished intelligence (advisories, actor profiles, trend reports).
  • Provide tailored intelligence briefings to SOC, incident responders, and executives.

Skills

MITRE ATT&CK knowledge
Structured analytic techniques
OSINT monitoring
Threat intelligence lifecycle
Analytical writing & briefing

Education

Bachelor's degree (Cybersecurity / Intelligence Studies)

Tools

SIEM
EDR
Threat Intelligence Platform (TIP)

Job description

Our Irving, TX Client is seeking a Threat Intelligence Analyst for a 12+ month contract opportunity. Onsite 5x a week.

  • Monitor open-source intelligence (OSINT), closed forums, dark web sources, ISAC/ISAO feeds, and commercial threat feeds for relevant activity
  • Track threat actor groups, campaigns, malware families, and TTPs mapped to MITRE ATT&CK
  • Analyze indicators of compromise (IOCs), malware samples, and adversary infrastructure to assess relevance and risk
  • Correlate external threat data with internal telemetry, logs, and detections to identify targeting or exposure
Produce and disseminate finished intelligence
  • Write finished intelligence products, including threat advisories, actor profiles, campaign briefs, and trend reports
  • Deliver tailored intelligence briefings to SOC analysts, incident responders, and executive and board-level stakeholders
  • Maintain a prioritized threat landscape view specific to the organization's industry, geography, and technology stack
  • Track and report on threat intelligence program KPIs, such as report timeliness, actionability, and stakeholder feedback
Support detection, response, and vulnerability prioritization
  • Translate intelligence into detection logic, hunting hypotheses, and SIEM/EDR content in partnership with detection engineering
  • Provide threat context during incident response to support scoping, attribution, and containment decisions
  • Prioritize vulnerability remediation using exploitation likelihood, threat actor interest, and active exploitation data
  • Support red team, purple team, and adversary emulation exercises with current TTP and actor-based scenarios
Manage intelligence infrastructure and sources
  • Administer and tune the threat intelligence platform (TIP), including feed integration and IOC lifecycle management
  • Evaluate, onboard, and manage commercial and open-source intelligence feeds and vendor relationships
  • Maintain intelligence collection requirements and refine them based on stakeholder needs and changes in the threat landscape
  • Apply structured analytic techniques and the intelligence cycle to reduce bias and improve confidence levels in assessments
Program and stakeholder engagement
  • Build and maintain relationships with industry ISACs, law enforcement, and peer intelligence teams for information sharing
  • Contribute to the organization's threat intelligence strategy, standards, and playbooks
  • Train SOC, IR, and Vulnerability Management teams on how to consume and apply intelligence products
  • Brief leadership on emerging threats, sector-specific risk, and geopolitical developments that may affect the organization
Years of Experience
  • 3+ years of experience in threat intelligence, security operations, incident response, or a related security discipline
Required Qualifications (Non-Negotiable)
  • Bachelor's degree in Cybersecurity, Computer Science, Intelligence Studies, or related field, or equivalent experience
  • Working knowledge of MITRE ATT&CK, the intelligence cycle, and structured analytic techniques
  • Experience analyzing malware behavior, IOCs, and adversary infrastructure at a working level
  • Familiarity with SIEM, EDR, and threat intelligence platform tooling
  • Strong written and verbal communication skills, with the ability to translate technical findings for non-technical audiences
  • Ability to prioritize and manage multiple concurrent intelligence requirements under time pressure
  • Sound analytic judgment, including the ability to state confidence levels and acknowledge uncertainty in assessments
Education & Certification Requirements
  • Bachelor’s degree in Cybersecurity, Intelligence Studies, or related field
  • Industry certifications such as GCTI, GCFA, CTIA, or CISSP

Posted By: Jamie Prater

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Threat Intelligence Analyst — Onsite, 5x/Week
Threat Intelligence Analyst — Onsite, 5x/Week

Motion Recruitment • Irving (TX)

On-site
USD 90,000 - 130,000
Cyber Threat Intelligence Analyst
Cyber Threat Intelligence Analyst

Check Point Software Technologies • Dallas (TX)

On-site
USD 65,000 - 90,000
Sr Cyber Threat Intelligence Analyst
Sr Cyber Threat Intelligence Analyst

PRI Technology • Austin (TX)

On-site
USD 90,000 - 120,000
Threat Intelligence Analyst II — Tactical Threat Insights
Threat Intelligence Analyst II — Tactical Threat Insights

WaveStrong, Inc. • Los Angeles (CA)

On-site
USD 80,000 - 100,000
Security Threat Intelligence Lead (W2 Contract only/ No 3rd Parties)
Security Threat Intelligence Lead (W2 Contract only/ No 3rd Parties)

CBTS • Irving (TX)

On-site
USD 120,000 - 170,000
Threat Intelligence Analyst / Security Analyst Tier II
Threat Intelligence Analyst / Security Analyst Tier II

WaveStrong, Inc. • Los Angeles (CA)

On-site
USD 80,000 - 100,000
Mid Cyber Threat Intelligence (CTI) Analyst
Mid Cyber Threat Intelligence (CTI) Analyst

ECS • Arlington (VA)

On-site
USD 140,000 - 160,000
Cyber Threat Intelligence Analyst Subject Matter Expert - Must have an active TS / SCI Clearanc[...]
Cyber Threat Intelligence Analyst Subject Matter Expert - Must have an active TS / SCI Clearanc[...]

Synertex LLC • Arlington (VA)

On-site
USD 140,000 - 190,000
Competitive PTO
11 Paid Government Holidays
401k with 6% match
+1
Threat Intelligence Analyst (Sr., Jr. Multiple Roles)
Threat Intelligence Analyst (Sr., Jr. Multiple Roles)

Fabergent • Herndon (VA)

On-site
USD 110,000 - 140,000
Cyber Threat Intelligence (Fusion) Analyst - TS/SCI with Polygraph
Cyber Threat Intelligence (Fusion) Analyst - TS/SCI with Polygraph

General Dynamics Information Technology • Washington

On-site
USD 120,000 - 150,000