Threat Intelligence Analyst [JOB ID 20260923]

Phoenix Cyber

Columbus (OH)

On-site

USD 90,000 - 130,000

Full time

7 days ago
Be an early applicant
Application generator

Don’t send a generic resume — generate a resume and cover letter tailored to this exact role.

Get past ATS filters

Job summary

Phoenix Cyber is seeking a Threat Intelligence Analyst focused on Operational Technology to join our client delivery team. You will collect, review, and translate threat intelligence into actionable reports for cybersecurity analysts and engineers.

The role requires 6+ years IT, 2+ years OT/ICS/SCADA threat analysis, ATT&CK for ICS, NIST knowledge, and strong OT network understanding. Active Top Secret clearance is required for incident analysis and remediation.

Qualifications

  • Minimum 6 years of relevant IT experience.
  • Minimum 2 years hands-on OT/ICS/SCADA threat analysis experience.
  • Working understanding of industrial protocols and lower-level control architecture.
  • Experience applying ATT&CK for ICS, SPARTA, or Cyber Kill Chain to dissect campaigns.
  • Understanding of the NIST Framework.
  • Active Top Secret Security Clearance required.

Responsibilities

  • Collects, reviews, and identifies cybersecurity threat intelligence from open sources and reporting to inform analysts.
  • Provides support to content developers and cybersecurity engineers in identifying gaps in protection and detection.
  • Reviews logs and network events for signs of attack or APTs.
  • Performs root cause analysis and supports remediation for OT cybersecurity incidents.
  • Acts as the Subject Matter Expert on OT cybersecurity issues.

Skills

Threat intelligence analysis
OT/ICS/SCADA security
ATT&CK for ICS
NIST Framework
Security clearance

Job description

Phoenix Cyberis looking for a Threat Intelligence Analyst, with Operational Technology (OT) focus, to join our client delivery team.

Job Description:
  • Collects, reviews, and identifies cybersecurity threat intelligence from open source and intelligence reporting to analyze and provide actionable threat reporting and briefings for cybersecurity analysts.
  • Provides support to content developers and cybersecurity engineers in identifying gaps in protection and detection ofsystems.
  • Reviews log and networkevents and alerts related to systems for signs of attack or Advanced Persistent Threats.
  • Performs root cause analysis and supportsremediation efforts for incidents related to Operational Technology cybersecurity incidents.
  • Acts as theSubject Matter Expert on OT cybersecurity related issues.
Requirements:
  • Minimum 6 years of relevant IT experience
  • Minimum 2 years of hands-on experience analyzing, securing, or threat-modeling Operational Technology (OT), Industrial Control Systems (ICS), or SCADA environments(Experience limited to enterprise IT security will not satisfy this requirement.)
  • Working understanding of common industrial communication protocols and lower-level control architecture.
  • Demonstrated experience applying ATT&CK for IC S, SPARTA, or Cyber Kill Chain for IC S to dissect adversary campaigns and analyze cyber-physical attack paths.
  • Understanding of the NIST Framework
  • Understanding of threats and vulnerabilities in OT environments.
  • Must havean activeTop SecretSecurity Clearance

Phoenix Cyber is a national provider of cybersecurity engineering services, operations services, sustainment services and managed security services to organizations determined to strengthen their security posture and enhance the processes and technology used by their security operations team.

Phoenix Cyberis an equal opportunity employer and complies with Executive Order 11246, Section 503 of the Rehabilitation Act of 1973, the Vietnam Era Veteran's Readjustment Assistance Act (VEVRAA), all amendments to these regulations, and applicable executive orders, federal, and state regulations. Applicants are considered without attention to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, and/or veteran status.

Phoenix Cyberparticipates in E-Verify to confirm the employment eligibility of all newly-hired employees. To learn more about E-Verify, including your rights and responsibilities, go to https://www.e-verify.gov/

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Threat Intelligence Analyst [JOB ID 20260923]
Threat Intelligence Analyst [JOB ID 20260923]

Phoenix Cyber • Washington

On-site
USD 140,000 - 180,000
Threat Intelligence Analyst [JOB ID 20260923]
Threat Intelligence Analyst [JOB ID 20260923]

Phoenix Cyber • Washington

On-site
USD 140,000 - 190,000
Threat Intelligence Analyst [JOB ID 20260923]
Threat Intelligence Analyst [JOB ID 20260923]

phoenixcybersecurity • Washington

On-site
USD 130,000 - 160,000
OT Threat Intelligence Analyst with Top Secret Clearance
OT Threat Intelligence Analyst with Top Secret Clearance

Phoenix Cyber • Washington

On-site
USD 140,000 - 190,000
OT Threat Intelligence Analyst – ICS/SCADA Focus
OT Threat Intelligence Analyst – ICS/SCADA Focus

phoenixcybersecurity • Washington

On-site
USD 130,000 - 160,000
OT Threat Intelligence Analyst – ICS/SCADA Focus
OT Threat Intelligence Analyst – ICS/SCADA Focus

Phoenix Cyber • Washington

On-site
USD 140,000 - 180,000
OT Threat Intelligence Analyst ICS/SCADA Focus Top Secret
OT Threat Intelligence Analyst ICS/SCADA Focus Top Secret

Phoenix Cyber • Columbus (OH)

On-site
USD 90,000 - 130,000
Operational Technology Threat Intelligence Analyst New Columbus, OH
Operational Technology Threat Intelligence Analyst New Columbus, OH

Electrosoft • Columbus (OH)

Hybrid
USD 90,000 - 130,000
OPERATIONAL TECHNOLOGY THREAT INTELLIGENCE ANALYST
OPERATIONAL TECHNOLOGY THREAT INTELLIGENCE ANALYST

iP-Plus Consulting, Inc. • Columbus (OH)

On-site
USD 120,000 - 150,000
SOC Analyst [JOB ID 20260319]
SOC Analyst [JOB ID 20260319]

Phoenix Cyber • Phoenix (AZ)

On-site
USD 60,000 - 80,000