Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

Cyber Intelligence Fusion Analyst

$107.9k - $195.05k

Leidos

Leidos has a current job opportunity for a Cyber Intelligence Fusion Analyst on the DISA GSM-O II TN24 Penetration Handling, Incident, System Health (PHISH) Support Services II program. This position supports the J361 Security Operations Center (SOC) Fusion mission at the Mark Center, Alexandria, Virginia. The team operates 100% onsite at the Mark Center during normal business hours, Monday through Friday.Position SummaryThe Cyber Intelligence Fusion Analyst serves as the proactive analysis and threat-hunting engine for the J361 SOC. The analyst synthesizes all-source threat reporting to conduct structured threat hunts, perform proactive environment sweeps, and deliver tailored analytical reports and briefings to senior leadership.The position combines cyber operations, threat intelligence, and analytic tradecraft to identify, characterize, and mitigate threats affecting tenants and subscribers throughout the National Capital Region. Responsibilities include correlating external intelligence with enterprise telemetry, mapping adversary TTPs, recommending detections and countermeasures, and providing threat context during incident investigations across classified, unclassified, and cloud environments.Primary ResponsibilitiesIngest, analyze, and synthesize cyber threat reporting from OSINT, government reporting, commercial threat-intelligence platforms, and other authorized sources to identify threats relevant to the environment.Correlate external threat intelligence with enterprise SIEM, EDR, endpoint, network, packet capture (PCAP), NetFlow, proxy, firewall, IDS/IPS, SSL decryption, session, and system-log telemetry to identify and assess malicious activity.Conduct proactive IOC sweeps and hypothesis-driven threat hunts to identify activity associated with emerging adversary campaigns, vulnerabilities, malware, targeted threats, and stealthy or evasive adversary behavior.Characterize adversary infrastructure, malware, tooling, and TTPs using MITRE ATT&CK, Cyber Kill Chain, and other applicable threat-modeling frameworks; assess potential risk to enterprise assets, tenants, and mission operations.Develop hunt plans, adversary profiles, analytic methodologies, detection logic, and complex query strategies; plan, coordinate, and execute ad hoc threat hunts; document findings and recommendations in AARs; and other required mission products.Develop, validate, and recommend countermeasures, including SIEM correlation searches, analytic content, custom signatures, and blocking recommendations, to improve prevention, detection, and response to known adversarial TTPs; technically vet suspicious indicators before submitting detection or blocking nominations.Produce recurring and ad hoc threat reports, intelligence assessments, executive summaries, situational-awareness updates, time-sensitive threat notifications, and strategic threat assessments.Translate technical telemetry, forensics, intelligence reporting, and analytic findings into clear, actionable technical, operational, and executive-level summaries; prepare and deliver recurring and on-demand briefings to leadership, tenant organizations, and mission partners.Serve as a subject matter expert on adversary tradecraft and provide threat context, intelligence support, and analytic recommendations to incident responders and other SOC teams during active investigations.Develop and maintain SOPs, work instructions, hunt methodologies, analytic playbooks, detection use cases, and knowledge-management artifacts; identify capability and workflow gaps, recommend improvements, and enhance automation for enrichment, case management, reporting, dashboards, and metrics.Provide technical leadership on complex hunts and investigations; mentor junior analysts and contribute to team training and professional development.Basic QualificationsActive Top Secret security clearance with ability to obtain SCIBachelor’s degree in cybersecurity, information technology, computer science, intelligence studies, or a related technical discipline and 8+ years of relevant experience; additional relevant experience, cybersecurity education, or industry certifications may be substituted for a degree.4+ years of experience supporting cybersecurity operations, cyber threat intelligence, threat hunting, incident response, cyber network defense, or a closely related cyber mission.Must meet DoD 8140 IAT Level II baseline certification requirements before starting work and possess, or obtain and maintain within the required program timeframe, a DoD 8140 CSSP Analyst (CSSP-A) certification.Demonstrated experience applying MITRE ATT&CK, Cyber Kill Chain, or comparable frameworks to characterize adversary activity, TTPs, attack lifecycles, vulnerabilities, malware behaviors, and indicators.Hands-on experience conducting hypothesis-driven threat hunts, developing detection logic and analytic queries, and pivoting from external threat reporting, IOCs, and OSINT to internal enterprise telemetry.Demonstrated experience querying, analyzing, and correlating high-volume SIEM, EDR, endpoint, network, NetFlow, packet, log, and other host- or network-based security data; working knowledge of TCP/IP, common ports and protocols, network traffic flow, OSI model, system administration, defense-in-depth, and enterprise security architecture.Strong written, verbal, analytical, and collaboration skills, including the ability to produce technical and executive-level reports and briefings; ability to work independently, manage competing priorities, and work effectively with technical and non-technical mission partners.Ability to work 100% onsite at the Mark Center during normal business hours; schedule flexibility may be required to support mission requirements.Preferred QualificationsTS/SCI eligibility, including eligibility for reciprocal acceptance, preferred.Advanced cybersecurity certifications, such as CISSP, CASP+, CySA+, CEH, GIAC GCIH, GCIA, GCED, GCTI, or comparable credentials.Experience supporting DISA, Department of Defense networks, Cyber Security Service Provider operations, Cyber Protection Teams, or a large enterprise SOC.Experience conducting threat hunting and cyber investigations across NIPRNet, SIPRNet, JWICS, cloud, commercial, or similarly complex enterprise environments.Experience using SIEM, EDR, threat-intelligence, and network-analysis tools—such as Splunk, Elastic, Microsoft Defender for Endpoint, Microsoft Sentinel, Google Threat Intelligence, VirusTotal, Wireshark, PCAP, and NetFlow—to develop or tune correlation searches, detection rules, signatures, threat blocks, analytic queries, dashboards, and automated enrichment workflows.Familiarity with commercial threat-intelligence platforms; malware analysis; digital and network forensics; endpoint telemetry; intrusion detection; vulnerability research; cloud security; and intelligence-driven defense methodologies, including MITRE ATT&CK and Cyber Kill Chain.Familiarity with query languages and scripting tools, such as SPL, KQL, Lucene, SQL, Python, PowerShell, and Unix/Linux command-line utilities.Experience producing intelligence products, operational reports, and executive briefings for senior executives, General Officer/Flag Officer, Senior Executive Service, or equivalent leadership; demonstrated ability to lead complex cyber investigations or threat hunts and mentor junior technical staff.If you're looking for comfort, keep scrolling. At Leidos, we outthink, outbuild, and outpace the status quo — because the mission demands it. We're not hiring followers. We're recruiting the ones who disrupt, provoke, and refuse to fail. Step 10 is ancient history. We're already at step 30 — and moving faster than anyone else dares.Original Posting:September 3, 2026For U.S. Positions: While subject to change based on business needs, Leidos reasonably anticipates that this job requisition will remain open for at least 3 days with an anticipated close date of no earlier than 3 days after the original posting date as listed above.Pay Range:Pay Range $107,900.00 - $195,050.00The Leidos pay range for this job level is a general guideline only and not a guarantee of compensation or salary. Additional factors considered in extending an offer include (but are not limited to) responsibilities of the job, education, experience, knowledge, skills, and abilities, as well as internal equity, alignment with market data, applicable bargaining agreement (if any), or other law.SummaryLocation: Alexandria, VAType: Full time

Vacancy posted 3 days ago
Similar jobs that could be interesting for youBased on the Cyber Intelligence Fusion Analyst in Alexandria, VA vacancy
  •  ...security. Make an impact by using your expertise to protect our country from threats. Job Description How A Cyber Threat Intelligence (Fusion) Analyst Will Make an Impact  The successful applicant should be expected to identify potential cyber threats, determine... 
    Cyber
    Immediate start

    General Dynamics Information Technology

    Reston, VA
    a month ago
  • $86k - $138k

    ResponsibilitiesPeraton is hiring an experienced Cyber Intelligence Analyst for our Federal Strategic Cyber Programs.Location: Rosslyn, VA. Hybrid...  ...at all levels of classification, facilitating seamless fusion of information.Fuse information from multiple classification... 
    Cyber
    Contract work
    Worldwide
    Shift work

    Peraton Corporation

    Arlington, VA
    18 hours ago
  • $104k - $166k

    Responsibilities Peraton is hiring an experienced Open‑Source Cyber Threat Intelligence Analyst for our Federal Strategic Cyber Programs.Location:...  ...infrastructure.Act as a core participant in I&W’s fusion cell, integrating OSINT findings with technical telemetry... 
    Cyber
    Full time
    Contract work
    Shift work

    Peraton Corporation

    Arlington, VA
    18 hours ago
  • Required Qualifications:Experience with intelligence analysis principles or cyber threat intelligence (CTI) principles, including the ability to collect, analyze, and assess threat information.Specific experience conducting CTI analysis focused on China cyber threatsExperience... 
    Cyber

    Maania Consultancy Services

    Arlington, VA
    4 days ago
  • $140k - $160k

    Job DescriptionEverforth ECS is seeking a Mid Cyber Threat Intelligence (CTI) Analyst to join our team in Arlington, VA (Hybrid). We are seeking a skilled and analytical Mid Cyber Threat Intelligence (CTI) SME to support the organization's cyber defense program through... 
    Cyber

    ECS Federal

    Arlington, VA
    2 days ago
  •  ...pivotal in enhancing our resilience against evolving global cyber threats.As a Cybersecurity Intelligence Vice President at JPMorganChase within the...  ...alongside a Security Operations Center (SOC) or Cyber Fusion Center environmentFamiliarity with industry-standard threat... 
    Cyber

    JP Morgan Chase

    Washington DC
    3 days ago
  •  ...Job Description Job Description Synertex is seeking an All-Source Cyber Threat Intelligence Analyst to support a national cybersecurity organization client in Arlington, VA. This organization focuses on reducing risk to national infrastructure and growing resilience... 
    Cyber
    Work at office

    Synertex LLC

    Arlington, VA
    3 days ago
  •  ...Job Description Job Description Cyber Threat intelligence Analyst II Location: Onsite (CONUS) / Shift Work Clearance: Active TS/SCI (DHS EOD Suitability required) Company: Argo Cyber Systems, LLC – Service-Disabled Veteran-Owned Small Business (SDVOSB) About... 
    Cyber
    Shift work

    Argo Cyber Systems

    Arlington, VA
    6 days ago
  •  ...flexibility, and ingenuity to strengthen and protect our nation’s vital interests. Requisition #: 1617 Job Title: Cyber Threat Intelligence Analyst Location: On-Site, Arlington, VA Clearance Level: Top Secret, Must Have Clearance to Start Job Description... 
    Cyber

    Agile Defense

    Arlington, VA
    25 days ago
  •  ...is supporting a customer by delivering intelligence support to customer through proactively...  ...identifying, analyzing, and responding to cyber threats to inform the customer’s vulnerability...  ...’s Security Plus (SEC+) • Intelligence Analyst Certified (IAC) • Certified Threat... 
    Cyber
    Full time
    Local area
    Flexible hours

    BCMC

    Arlington, VA
    21 days ago
  • DescriptionThreat Intelligence AnalystDescription Threat Intelligence Analyst with strong knowledge and experience with Department of Defense and Intelligence Community...  ..., social, and political environments relating to cyber and virtual environments. This position requires... 
    Cyber
    For contractors
    Work at office
    Shift work

    Science Applications International Corporation

    Arlington, VA
    4 days ago
  •  ...environment facing the Department of Defense, the Intelligence Community, and federal law enforcement...  ..., scientific analysis, cutting-edge cyber defense, and intelligence analysis....  ...Organized Crime Drug Enforcement Task Force Fusion Center (OFC) and the International... 
    Cyber
    Contract work
    Local area
    Relocation
    Flexible hours

    Bridge Defense

    Washington DC
    1 day ago
  •  ...Senior Intelligence Analyst 2 Circle, Inc. is seeking a highly skilled Senior Intelligence Analyst to directly support research and development...  .... Deliver in-depth analysis on electronic warfare, cyber operations, threat finance, and economic warfare. Advise... 
    Cyber

    2 Circle

    Arlington, VA
    3 days ago
  • $112k - $179k

    ResponsibilitiesPeraton is currently hiring Sr Industrial Control System Cyber Threat Intelligence Analyst for its Federal Strategic Cyber programs.Location: On-site role in Arlington, VA.In this role, you will:Fuse multiple intelligence sources to develop products, recommendations... 
    Cyber
    Contract work
    Currently hiring
    Shift work

    Peraton Corporation

    Arlington, VA
    1 day ago
  • $150k

     ...Corporation has an IMMEDIATE NEED to identify an All-Source Intelligence Analyst - Senior (NGB/J2) who will be seated in Arlington, VA. If interested...  ...Homeland Defense, Homeland Security, Medical Intelligence, Cyber Intelligence, Information/Influence Operations, and Critical... 
    Cyber
    Contract work
    For contractors
    Immediate start
    Work from home
    Shift work

    Celestar

    Arlington, VA
    1 day ago
  • $117.54k - $180k

     ...platforms and logistics, and intelligence operations.HII designs, develops...  ...decision-making. With data fusion and mission management...  ...from C5ISR, AI and Big Data, cyber operations and synthetic training...  ...Technologies is seeking Targeting Analysts near Springfield, VA! As part... 
    Cyber
    Full time
    Local area
    Remote work
    Worldwide

    HII Mission Technologies Division

    Springfield, VA
    2 days ago
  • $117.54k - $160k

     ...platforms and logistics, and intelligence operations.HII designs, develops...  ...decision-making. With data fusion and mission management...  ...from C5ISR, AI and Big Data, cyber operations and synthetic training...  ...Imagery Intelligence (IMINT) Analyst near Springfield, VA! As part... 
    Cyber
    Full time
    Local area
    Remote work
    Worldwide

    HII Mission Technologies Division

    Springfield, VA
    2 days ago
  • $96.13k - $133k

     ...platforms and logistics, and intelligence operations.HII designs, develops...  ...decision-making. With data fusion and mission management...  ...intelligence, insider threat, cyber threat intelligence, information...  ...tasks common to an intelligence analyst position, including providing... 
    Cyber
    Full time
    Work experience placement
    Work at office
    Local area
    Immediate start
    Worldwide

    HII Mission Technologies Division

    Washington DC
    18 hours ago
  • $150k

     ...Type Full-time Description Senior All-Source Intelligence Analyst At Celestar, a B&A Company, we foster and embrace a distinct...  ...(IAA), Homeland Defense/Security, Medical Intelligence, Cyber Intelligence, Information Operations, and Critical... 
    Cyber
    Full time
    Work at office
    Local area
    Shift work

    Bart and Associates Inc

    Arlington, VA
    4 days ago
  • Business Computers Management Consulting Group, LLC (BCMC) is seeking an experienced Incident Manager to proactively gather and analyze CTI for vulnerability management and operational decision support. You will identify emerging threats, coordinate with stakeholders, ...
    Cyber
    2 days per week
    3 days per week

    Business Computers Management Consulting Group

    Arlington, VA
    4 days ago
  • $99k - $225k

    Cyber Threat Intelligence Analyst Subject Matter ExpertThe Opportunity:  As a cyber threat intel analyst, you know the key to detecting and deterring malicious activity is quality risk-based intelligence that maps to a tactical behavior. At Booz Allen, you can apply your... 
    Cyber
    Full time
    Contract work
    Part time
    Work at office
    Local area
    Remote work

    Booz Allen Hamilton

    Arlington, VA
    3 days ago
  • $55 - $60 per hour

    DescriptionThe Cyber Intelligence Fusion Analyst serves as the proactive analysis and threat-hunting engine for the J361 SOC. The analyst synthesizes all-source threat reporting to conduct structured threat hunts, perform proactive environment sweeps, and deliver tailored... 
    Cyber
    Contract work
    Temporary work
    Interim role

    TEKsystems

    Alexandria, VA
    3 days ago
  • $121k - $132k

     ...Cyber Intelligence Analyst Washington, District of Columbia, United States 1400-383 Full-Time/Regular We are seeking a highly experienced Cyber Intelligence Analyst to monitor, assess, brief, and support critical cyber operations across the Department of War... 
    Cyber
    Full time
    Immediate start
    Flexible hours

    Core4ce

    Washington DC
    2 days ago
  •  ...Cyber Intelligence Analyst Syntelligent Analytic Solutions, LLC provides uniquely qualified personnel with the expertise and tools needed to fulfill our customers' management and technical requirements in the intelligence, defense, homeland security and commercial... 
    Cyber
    Full time
    Immediate start
    Shift work

    Syntelligent Analytic Solutions

    Washington DC
    3 days ago
  • $86.8k - $198k

    Cyber Intelligence AnalystThe Opportunity:As a cyber intelligence analyst, you know that detailed threat analysis gives organizations a critical edge. At Booz Allen, you can leverage your expertise in cyber intelligence to develop innovative solutions that will shape the... 
    Cyber
    Full time
    Contract work
    Part time
    Work at office
    Local area
    Remote work

    Booz Allen Hamilton

    Washington DC
    18 hours ago
  • $144.5k - $195.5k

     ...Required: None Job Family: Intelligence Operations and Analysis Job Qualifications...  ...seeking a Senior Principal Intelligence Analyst to support our analytics teams in...  ...mission-ready capabilities in AI, cloud, cyber and software development. Join our Talent... 
    Cyber
    Contract work
    Temporary work
    Immediate start
    Remote work
    Worldwide
    Flexible hours

    General Dynamics Information Technology

    Arlington, VA
    2 days ago
  • $96.13k - $131k

     ...platforms and logistics, and intelligence operations.HII designs, develops...  ...decision-making. With data fusion and mission management...  ...applicants and awardees. The analyst will conduct comprehensive due...  ...from C5ISR, AI and Big Data, cyber operations and synthetic training... 
    Cyber
    Full time
    Work experience placement
    Work at office
    Local area
    Immediate start
    Worldwide

    HII Mission Technologies Division

    Washington DC
    4 days ago
  • $86.8k - $198k

     ...Cyber Intelligence Analyst The Opportunity: As a cyber intelligence analyst, you know that detailed threat analysis gives organizations a critical edge. At Booz Allen, you can leverage your expertise in cyber intelligence to develop innovative solutions that will... 
    Cyber
    Full time
    Contract work
    Part time
    Work at office
    Local area
    Remote work

    Booz Allen Hamilton

    Washington DC
    4 days ago
  •  ...Job Description Job Description Synertex is seeking a Senior Cyber Threat & Adversary Intelligence Analyst to support a national cybersecurity organization client in Arlington, VA. This organization focuses on reducing risk to national infrastructure and growing resilience... 
    Cyber

    Synertex LLC

    Arlington, VA
    3 days ago
  •  ...security missions worldwide.Job Description*** This position is contingent upon contract award ***OverviewSOSi is seeking a Cyber Intelligence Analyst III to support cyber threat intelligence activities in alignment with our customer. This role is responsible for... 
    Cyber
    Contract work
    Casual work
    Work at office
    Remote work
    Worldwide

    SOSi

    Washington DC
    1 day ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to Cyber Intelligence Fusion Analyst. Be the first to apply!