Cyber Threat Intelligence for Operational Technology (OT) and Critical Infrastructure, Lead
Mitre
Why choose between doing meaningful work and having a fulfilling life? At MITRE, you can have both. That's because MITRE people are committed to tackling our nation's toughest challenges—and we're committed to the long-term well-being of our employees. MITRE is different from most technology companies. We are a not-for-profit corporation chartered to work for the public interest, with no commercial conflicts to influence what we do. The R&D centers we operate for the government create lasting impact in fields as diverse as cybersecurity, healthcare, aviation, defense, and enterprise transformation. We're making a difference every day—working for a safer, healthier, and more secure nation and world. Our workplace reflects our values. We offer competitive benefits, exceptional professional development opportunities for career growth, and a culture of innovation that embraces adaptability, collaboration, technical excellence, and people in partnership. If this sounds like the choice you want to make, then choose MITRE - and make a difference with us.Department Summary:The Modeling, Intelligence, and Simulation for Critical Infrastructure Department (L542) is committed to protecting and strengthening our nation’s critical infrastructure. We analyze infrastructure systems and adversary threats to inform risk mitigation and drive stakeholder decisions. Our work integrates expertise in critical infrastructure, cybersecurity, and all-source intelligence, leveraging technical skills across MITRE to develop analytical tools and models that support intelligence collection, risk assessment, mission assurance, and system interoperability.We focus on full-spectrum cyber operations, including advancing defensive operations to secure both civilian and military infrastructure. Our team develops and maintains MITRE technologies for OT cybersecurity, conducts critical infrastructure assessments, and collaborates with government sponsors on research, lab test environments, and strategic policy guidance. We share our thought leadership within MITRE and across the industry through conferences, presentations, and publications, driving the state-of-the-art in cybersecurity for operational technologies.Our team includes experts in Operational Technology (Detection Engineers, Embedded Device Specialists, Cybersecurity Experts), Cyber Intelligence, Cyber Policy, and Modeling/Simulation. This diverse expertise allows us to deliver tailored solutions that address the unique needs of government and private sector stakeholders focused on operational technologies in critical infrastructure.Roles & Responsibilities:Apply cyber threat intelligence expertise to assist sponsors or private owner/operators in securing critical infrastructure and performing cyber operations.Guide government sponsors or private owner/operators in building and advancing their cyber threat intelligence capabilities and programs.Track and analyze adversary tactics, techniques, and procedures (TTPs) relevant to industrial control systems (ICS), Operational Technology (OT), and space system OT, impacting critical infrastructure and national security missions.Support cyber threat modeling, risk assessments, and mission impact analyses for critical infrastructure and space systems based on unclassified and classified sources.Fuse multiple intelligence sources to develop products and recommendations for sponsors to support mission assurance and risk-informed decision-making.Monitor and analyze emerging threats, vulnerabilities, and supply chain risks affecting ICS/OT and Space OT technologies.Serve as a subject matter expert (SME) in cyber threat intelligence with a focus on ICS/OT-relevant threats, working closely with OT engineers and domain experts.Brief sponsors and senior leaders on threat trends, risks, and mitigation strategies to enhance mission assurance.Produce and deliver artifacts and strategic briefings that synthesize classified and unclassified reporting into clear, decision-focused insights for senior leaders.Partner with sponsors to identify key intelligence gaps, prioritize collection, and provide feedback to collectors to improve coverage of priority threats.Contribute to thought leadership (e.g., white papers, best practice guides, methodologies) on threat-informed defense, cyber risk assessment, and CTI tradecraft for critical infrastructure.Basic Qualifications:Typically requires a minimum of 8 years of related experience with a bachelor’s degree; or 6 years and a master’s degree; or a PhD with 3 years’ experience; or equivalent combination of related education and work experience.Degree in Computer Science, Cybersecurity, Information Systems, Intelligence Studies, Strategic Intelligence, or related field.Deep understanding of adversary TTPs, including frameworks and models such as ATT&CK, SPARTA, Diamond Model, and Cyber Kill Chain.Experience with or strong interest in industrial control systems (ICS), Operational Technology (OT), SCADA environments, space system OT, or demonstrated ability to rapidly learn new mission domains while applying cyber threat intelligence expertise.Ability to lead discussions, collaborate across different teams and organizations, and brief technical and non-technical stakeholders.Experience collecting, analyzing, and correlating intelligence from unclassified and classified sources, including government, commercial, and industry feeds.Must be a US citizen with a TS clearance.This position requires a minimum of 3 days a week on-site at MITRE or government locations.Preferred Qualifications: Demonstrated experience applying frameworks like ATT&CK to real-world campaigns and mapping adversary TTPs to security controls, risk assessments, or defensive measures.Experience developing and publishing methodologies or best practices for threat-informed defense, cyber risk assessments, or mapping ATT&CK techniques to security controls.Experience designing and implementing CTI knowledge management artifacts (e.g., report templates, playbooks, data models, or visualizations such as attack flows or campaign maps).Experience providing analytic support to national cyber defense organizations (e.g., CISA, DoD, IC) or allied partners, including campaign tracking and threat trend analysis.Experience conducting and presenting in-depth analysis of APT campaigns or cyber-enabled intellectual property theft for policy-makers or international stakeholders.Demonstrated track record of leading multi-disciplinary analysis efforts or small teams to deliver high-impact products for demanding government sponsors.Significant hands-on cyber experience—particularly in operational technology (OT) or control systems—within one or more mission domains such as space systems, weapons systems, emerging technologies, critical infrastructure sectors, intelligence analysis, policy, mission assurance, technical targeting, or command and control (C2).Advanced knowledge of ICS/OT architectures (e.g., PLCs, DCS, SCADA) and industrial protocols (e.g., Modbus, DNP3, OPC).Experience applying structured analytic techniques and intelligence tradecraft in a government or intelligence-community environment.History of building trusted relationships with demanding customers or leaders.Excellent interpersonal skills, judgment, discretion, and tact.Deep technical expertise in one or more areas including modeling and simulation, systems engineering, mission engineering, OT countermeasures, threat emulation, or susceptibility assessment and analysis.Advanced degree in Computer Science, Cybersecurity, Information Systems, Intelligence Studies, or a related field.Candidates with deep cyber threat intelligence and intelligence tradecraft experience who are motivated to grow their ICS/OT expertise are strongly encouraged to apply.This requisition requires the candidate to have a minimum of the following clearance(s):Top SecretThis requisition requires the hired candidate to have or obtain, within one year from the date of hire, the following clearance(s):Top Secret/SCISalary compensation range and midpoint:$158,800 - $198,500 - $238,200 AnnualWork Location Type:OnsiteIt is unlawful in Massachusetts to require or administer a lie detector test as a condition of employment or continued employment. An employer who violates this law shall be subject to criminal penalties and civil liability.Commitment to Non-DiscriminationAll qualified applicants will receive consideration for employment without regard to disability, status as a protected veteran or any other status protected by applicable federal, state, local or international law.MITRE intends to maintain a website that is fully accessible to all individuals. If you are unable to search or apply for jobs and would like to request a reasonable accommodation for any part of MITRE’s employment process, please email View email address on click.appcast.io for general support and View email address on click.appcast.io for intern positions. This service is for individuals requiring reasonable accommodation requests. Please note that vendor solicitations will not receive a reply.Benefits information may be found here.Copyright 1997-2026, The MITRE Corporation. All rights reserved. MITRE is a registered trademark of The MITRE Corporation. Material on this site may be copied and distributed with permission only. Job SummaryJob number: R115910Profession: Engineering
$112k - $179k
...Industrial Control System Cyber Threat Intelligence Analyst for its... ...investigate current threats in operational technology, specific critical infrastructure sectors, and mission... ...as required.Research OT defensive tactics,... ...galaxy. As the world’s leading mission capability integrator...CyberIntelligenceContract workCurrently hiringShift work- ...different from most technology companies.... ...centers we operate for the... ...with us.The Critical Infrastructure Protection Department... ...MITRE’s Cyber-Physical... ...non-kinetic threats and ensuring... ...Technology (OT) Device... ...cyber threat intelligence expertise to... ....Ability to lead discussions,...CyberIntelligenceWork experience placementInternshipLocal area
$160k - $200k
...an American space technology company... ...unmatched access to critical information from... ...Umbra’s ecosystem operates through three business... ...talented Senior Cyber Threat Operations Engineer... ...grasp of threat intelligence, and strong critical... ...posture.Lead incident response...CyberIntelligencePermanent employmentFull timeWork at officeLocal areaRemote workWorldwide$115.2k - $180k
...with All-Domain Operations (ADO), a... ...HII’s Mission Technologies division. All-... ...logistics, and intelligence operations.HII... ...Anti‑Tamper / Critical Program Information... ...of AT policy, threat analysis,... ...Technologies is leading the next evolution... ...and Big Data, cyber operations and...CyberIntelligenceFull timeWork experience placementLocal areaWorldwide- ...different from most technology companies. We are... ...R&D centers we operate for the... ...risk management for critical infrastructure systems and associated... ...understanding of established cyber capabilities (e.g... ...FEND, D3FEND for OT, ATT&CK, ATT&CK... ...in risk terms, lead complex...CyberFor contractorsWork experience placementInternshipLocal area
- ...Industrial Control System Cyber Threat Intelligence Analyst for its... ..., including critical infrastructure sectors. Familiarity... .... You will support operational teams and senior leaders... ...to operational technology environments. Key... ...operational technology (OT), critical...CyberIntelligenceCurrently hiring
- ...experienced Threat Informed... ...identity, cyber defense, application... ...industry leading practices.... ...threat intelligence program... ...mission-critical industry... ...malware, infrastructure, indicators... ...cloud, and OT data sources... ...security operations, with... ...countries. Technology is at the...CyberIntelligenceFull timeWork experience placementLive inWork at officeLocal area
- ...comprehensive range of cyber mission areas.... ...website at: Title: Sr. Operational Technology (OT) Security... ...matters, including threat analysis, risk mitigation... ...assessments of OT systems and infrastructure. This includes the... ...within the Intelligence Community and Law Enforcement...CyberIntelligenceFull timeContract workWork at office
$104k - $166k
ResponsibilitiesPeraton is Cyber Threat Analyst -... ...to deliver intelligence-driven insights... ...personnel and critical infrastructure.Collaborate... ...As the world’s leading mission capability... ...solutions and technologies to protect our... ...allies. Peraton operates at the critical...CyberIntelligenceFull timeContract workOverseasShift work$62k - $141k
Operational Technology Cyber Engineer, MidThe Opportunity:Conduct cybersecurity assessments... ...design engineering, and threat monitoring of non-IT... ...RMF)Ability to learn about OT and ICS cybersecurityAbility... ...biometrics and artificial intelligence to ensure authenticity and...CyberIntelligenceFull timeContract workPart timeWork at officeLocal areaRemote work- ...different from most technology companies. We are a... ...The R&D centers we operate for the government create... ...is seeking a Cyber Threat Intelligence Analyst with deep, cross... ...and deliver mission-critical solutions to the nation... ...in critical infrastructure, space, or weapon systems...CyberIntelligenceWork experience placementInternshipLocal area
- ...CERT Security Operations team is... ...that address critical and... ...understanding emerging technologies and... ..., National Cyber Centers, and... ...involving risk, threat, and... ...including leading commercial... ...security and intelligence organizations... ...with critical infrastructure sectors....CyberIntelligenceFull timeWork experience placementRelocation package
$104k - $166k
...experienced Cyber Threat Analyst (I&W)... ...Analyst1 threat intelligence platform... ...developments, emerging technologies and threats... ...related infrastructure.Familiarity with... ...and critical thinking skillsKnowledge... ...the world’s leading mission... ...allies. Peraton operates at the...CyberIntelligenceFull timeContract workShift work$120k - $145k
...seamless integration of advanced technologies, elite minds, and... ...Requisition #: 1617 Job Title: Cyber Threat Intelligence Analyst Location: Hybrid,... ...Agencies (D/A) and National Critical Functions (NCF). The... ...Preferred Skills ICS/SCADA/OT experience. Experience working...CyberIntelligence2 days per week$112k - $179k
Cyber Network Security Analyst job... ...As the world’s leading mission... ...solutions and technologies that keep people... ...agencies across the intelligence, space, cyber,... ...on related threats & vulnerabilities... ...signatures to operational sensors, and... ...a variety of OT, host, and network...CyberIntelligenceInternshipLocal area$100k
...industrial world against cyber attacks. Our threat detection... ...states that target Operational Technology (OT) systems and networks... ..., you will play a critical role in enhancing... ...to threat intelligence and threat hunting... ...from application, infrastructure, and endpoint. *...CyberIntelligencePermanent employmentWork at officeRelocation$104k - $166k
...seeking a Mobile Threat Analyst for... ...Federal Strategic Cyber programs.... ...information and intelligence analysis of... ...locations to provide operational briefings and... ....Demonstrated critical, creative, and... ...the world’s leading mission... ...solutions and technologies to protect our...CyberIntelligenceFull timeContract workWorldwideOverseasShift work$135k - $216k
...seeking an experienced IT Operations Infrastructure Services Lead (ISL) to join our national intelligence program in Northern... .... Research new technology and advise on purchases... ...operates at the critical nexus between traditional... ...and nontraditional threats across all domains:...IntelligenceContract workTemporary workShift work$131.3k - $149.8k
...Enterprise Services Risk Operations (ESRO) organization... ...and developing technologies, as well as critical business strategies... ...management, cyber, network connectivity... ...security or technology threats and risks... ...learning and artificial intelligence; data management; third...CyberIntelligenceFull timePart timeLocal areaShift work$112k - $179k
ResponsibilitiesAs an Space Operations Assessment... ...supporting a critical national... ...operations, cyber effects... ...closely with Intelligence Community (IC)... ...making, assess threats, and advance effects... ...As the world’s leading mission... ...solutions and technologies to protect our...CyberIntelligenceContract workShift work$104k - $166k
...Analyst (ICS/OT/SCADA) for its... ...Federal Strategic Cyber group.... ...incidents across critical infrastructure sectors and working... ...proactive threat hunts, and contribute... ...technical operations and forensic... ...As the world’s leading mission... ...solutions and technologies to protect our...CyberContract workCurrently hiringShift work1 day per week- ...can be integrated into red cyber operations. What You'll Be Doing:... ...Demonstrated expertise in OT-based cyberspace operations... ...areas of defense, security, intelligence, infrastructure, and environmental. We... ...sustaining our nation's most critical assets, from Earth to cyberspace...CyberIntelligenceFlexible hours
$69.4k - $158k
Technology Partnerships Operations SpecialistThe Opportunity:Join Booz Allen... ...Partnerships Lead and help shape meaningful... ...partners in AI and Cyber.As a Technology Partnerships... ..., and apply critical thinking to operational... ...and artificial intelligence to ensure authenticity...CyberIntelligenceFull timeContract workPart timeWork at officeLocal areaRemote work$104k - $166k
ResponsibilitiesPeraton's Cyber Mission... ...for a Sr Threat Hunter to... ...proactive, intelligence-driven... ...XDR platforms.Lead root cause analysis... ..., and operational briefings for... ...Information Technology, Computer Science... ..., CSSP Infrastructure Support, or... ...operates at the critical nexus...CyberIntelligenceContract workShift work$83.59k - $150k
...with All-Domain Operations (ADO), a... ...HII’s Mission Technologies division. All-... ...logistics, and intelligence operations.HII... ...employee grows, leads, and contributes... ...Open-Source Threat Network Disruption... ...mission-critical operations through... ...surveillance, cyber, engineering,...CyberIntelligenceFull timeWork experience placementWork at officeLocal areaWorldwide$186.64k - $292.69k
...global media and technology company. From... ...Director, Security Operations and Incident Response, you will lead the enterprise cyber defense function... ...cybersecurity threats across Comcast.... ...day. This is a critical leadership role... ...alignment to threat intelligence, adversary tradecraft...CyberIntelligenceFull timeWork at officeRemote workWorldwideNight shift$180k - $225k
...Solutions Architect - Cyber Operations to work in a hybrid... ...governments, and critical infrastructure partners. The ideal... ...operations, including threat detection and... ...Drive Strategic Growth: Lead strategy and planning... ...defense and threat intelligence services & capabilities...CyberIntelligenceContract workLocal area- ...speed. Investing in technology and prototypes... ...a dynamic Cyber Operations Officer to drive... ...strategic planning, intelligence integration, and... ...complex AI-driven threats are addressed... ...Responsibilities Lead the planning,... ...within adversary AI infrastructure and related...CyberIntelligence
- True Zero Technologies, a veteran-owned... ...is seeking a Threat Exposure & Attack... ...the greatest operational threat to the... ..., threat intelligence, penetration... ...of enterprise cyber exposure. Rather... ...paths, asset criticality, penetration... ...changes in infrastructure, cloud...CyberIntelligence
- ...integration of advanced technologies, elite minds, and... ...on Cybersecurity Operations Center (CSOC)... ...skillsets in cyber security, to develop... ..., and Cyber Threat Intelligence (skills in more than... ...a technical team lead within the SOC, and... ...security and critical civilian missions...CyberIntelligenceShift work
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Cyber Threat Intelligence for Operational Technology (OT) and Critical Infrastructure, Lead. Be the first to apply!
- cyber McLean, VA
- cyber sales McLean, VA
- private intelligence McLean, VA
- intelligence McLean, VA
- counter intelligence McLean, VA
- director competitive intelligence McLean, VA
- intelligence specialist McLean, VA
- artificial intelligence - machine learning intern McLean, VA
- military intelligence McLean, VA
- signals intelligence McLean, VA

