Cyber Threat Intelligence Analyst
$107.9k - $195.05kLeidos
Description The Leidos Digital Modernization sector is looking for a Cyber Threat Intelligence Analyst to support a Defensive Cyber Operations (DCO) team in Washington, DC. This position is expected to become available in Summer 2026. Our team provides mission critical, 24/7 operational support to the customer's mission of protecting federal networked systems and services from cyber threats impacting national security. We are looking for a self-starter who is capable of independently performing their daily tasks but also works well within a team that requires significant coordination and communication. This hybrid position is primarily on-site, with potential for up to 20% telework. While this position will primarily work during core hours (0600 - 1600), this position will be supporting a team of analysts working 24/7 rotating shifts (days, swings, nights). As such, occasional shift work or weekend work may be required to fill unexpected gaps in coverage.
PRIMARY RESPONSIBILITIES:
Produce High-Value Intelligence: Lead the production of strategic, operational, and tactical intelligence reports to inform stakeholders of emerging threats, actor motivations, and potential impacts. Adversary Characterization: Analyze adversary tactics, techniques, and procedures (TTPs) using frameworks likeMITRE ATT&CKto develop comprehensive profiles of Advanced Persistent Threats (APTs) relevant to the enterprise. Intelligence Lifecycle Management: Drive the end-to-end intelligence cycle, including developing Priority Intelligence Requirements (PIRs), managing collection plans, and disseminating actionable intelligence to defensive teams. Threat Modeling & Forecasting: Maintain proactive situational awareness by evaluating DoD, IC, and open-source reporting to forecast shifts in the threat landscape and identify systemic vulnerabilities before they are exploited. Indicator Lifecycle Management: Evaluate the fidelity of Indicators of Compromise (IOCs) and Indicators of Behavior (IOBs); manage the ingestion, enrichment, and expiration of threat data within a Threat Intelligence Platform (TIP). Support Hunt & DCO Operations: Provide the intelligence foundation for Hunt missions and Defensive Cyber Operations (DCO) by delivering "Indications & Warnings" and actionable pivot points for internal investigations. Automated Intelligence Integration: Design solutions to automate the delivery of threat data to security controls (SIEM/SOAR/Firewalls) and develop scripts to streamline data collection and correlation. Strategic Advisory: Provide recommendations for executive-level decision-making regarding risk management, security architecture improvements, and intelligence-driven defense strategies.BASIC QUALIFICATIONS:
Bachelor's Degreewith 8+ yrs of experience orMaster's Degreewith 6+ yrs of relevant experience; additional years of experience may be substituted in lieu of degrees. DoD 8570 IAT Level II/III: Must hold an IAT Level II or higher certification (or obtain within 180 days). (e.g., CompTIA Security +, CySA+, GSEC and SSCP) or (CASP+ CE, CCNP Security, CISA, GCED, and GCIH) DoD 8570 CSSP Analyst: Must hold a CSSP Analyst certification (or obtain within 180 days). (e.g., CompTIA CySA+, Cloud+, GIAC Global Information Assurance Certification (GCIA)) DoD 8570 CSSP Infrastructure Support: Must hold a CSSP Infrastructure Support certification (or obtain within 180 days). (e.g., CompTIA CySA+, Cloud+, EC-Council CEH, CND, CHFI, GIAC GICSP, and ISC2 SSCP) Technical Proficiency: Strong knowledge of networking protocols, computing security elements (IDS/IPS, Firewalls), and experience with data correlation and analysis. Security Clearance: Current DoD TS/SCI security clearance and ability to pass additional customer suitability screenings prior to start and maintain throughout employment .PREFERRED SKILLS:
Advanced Threat Analysis:Demonstrated expertise in analyzing malware reports, forensic data, and packet captures to extract actionable intelligence. Framework Proficiency:Expert-level understanding of theCyber Kill Chainand Diamond Model of Intrusion Analysis. Intelligence Platforms:Experience utilizing Threat Intelligence Platforms (TIPs) such as Anomali, ThreatConnect, or MISP. Analytical Writing:Strong ability to translate technical findings into concise, non-technical briefings for senior leadership. Scripting & Querying:Proficiency with Python or PowerShell for data scraping/automation; familiarity with SPL, KQL, or Elastic DSL for querying large datasets. Cloud & Infrastructure:Experience analyzing threats targeting AWS, Azure, O365, and containerized environments. Global Landscape Knowledge:Deep understanding of geopolitical trends and how they influence cyber-adversary activity. #ms If you're looking for comfort, keep scrolling. At Leidos, we outthink, outbuild, and outpace the status quo - because the mission demands it. We're not hiring followers. We're recruiting the ones who disrupt, provoke, and refuse to fail. Step 10 is ancient history. We're already at step 30 - and moving faster than anyone else dares. Original Posting: March 12, 2026 For U.S. Positions: While subject to change based on business needs, Leidos reasonably anticipates that this job requisition will remain open for at least 3 days with an anticipated close date of no earlier than 3 days after the original posting date as listed above. Pay Range: Pay Range $107,900.00 - $195,050.00 The Leidos pay range for this job level is a general guideline onlyand not a guarantee of compensation or salary. Additional factors considered in extending an offer include (but are not limited to) responsibilities of the job, education, experience, knowledge, skills, and abilities, as well as internal equity, alignment with market data, applicable bargaining agreement (if any), or other law. About Leidos Leidos is an industry and technology leader serving government and commercial customers with smarter, more efficient digital and mission innovations. Headquartered in Reston, Virginia, with 47,000 global employees, Leidos reported annual revenues of approximately $16.7 billion for the fiscal year ended January 3, 2025. For more information, visit . Pay and Benefits Pay and benefits are fundamental to any career decision. That's why we craft compensation packages that reflect the importance of the work we do for our customers. Employment benefits include competitive compensation, Health and Wellness programs, Income Protection, Paid Leave and Retirement. More details are available at . Securing Your Data Beware of fake employment opportunities using Leidos' name. Leidos will never ask you to provide payment-related information during any part of the employment application process (i.e., ask you for money), nor will Leidos ever advance money as part of the hiring process (i.e., send you a check or money order before doing any work). Further, Leidos will only communicate with you through emails that are generated by the Leidos.com automated system - never from free commercial services (e.g., Gmail, Yahoo, Hotmail) or via WhatsApp, Telegram, etc. If you received an email purporting to be from Leidos that asks for payment-related information or any other personal information (e.g., about you or your previous employer), and you are concerned about its legitimacy, please make us aware immediately by emailing us at View email address on click.appcast.io . If you believe you are the victim of a scam, contact your local law enforcement and report the incident to the U.S. Federal Trade Commission ( . Commitment to Non-Discrimination All qualified applicants will receive consideration for employment without regard to sex, race, ethnicity, age, national origin, citizenship, religion, physical or mental disability, medical condition, genetic information, pregnancy, family structure, marital status, ancestry, domestic partner status, sexual orientation, gender identity or expression, veteran or military status, or any other basis prohibited by law. Leidos will also consider for employment qualified applicants with criminal histories consistent with relevant laws.REQNUMBER: R-00178197
All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability or veteran status. Leidos will consider qualified applicants with criminal histories for employment in accordance with relevant Laws. Leidos is an equal opportunity employer/disability/vet. Leidos- Job Title Required Qualifications: Experience with intelligence analysis principles or cyber threat intelligence (CTI) principles, including the ability to collect, analyze, and assess threat information. Specific experience conducting CTI analysis focused on China cyber...Cyber
$70k - $85k
A cybersecurity support provider is seeking motivated individuals to deliver intelligence support by analyzing and responding to cyber threats. The position requires U.S. citizenship, an active TS/SCI clearance, and 5+ years of experience in relevant fields. Responsibilities...Cyber$140k - $160k
Everforth ECS is seeking a Mid Cyber Threat Intelligence (CTI) Analyst to join our team in Arlington, VA (Hybrid) . This position is contingent upon award. We are seeking a skilled and analytical Mid Cyber Threat Intelligence (CTI) SME to support the organization's cyber...Cyber- ...Job Description Job Description Synertex is seeking a Cyber Threat Intelligence Analyst to support a national cybersecurity organization client in Arlington, VA. This organization focuses on reducing risk to national infrastructure and growing resilience to cyber and...Cyber
- Peraton is seeking an OpenSource Cyber Threat Intelligence Analyst to join the I&W fusion cell in Northern VA. You will collect OSINT, track APT actors, and fuse findings with technical telemetry to produce high-quality assessments for diverse audiences. Role involves frequent...Cyber
$70k - $85k
...Suitability required) Company: Argo Cyber Systems, LLC - Service-... ...systems from evolving cyber threats. We combine technical... ...supporting a customer by delivering intelligence support to customer through proactively... ...Plus (SEC+) Intelligence Analyst Certified (IAC) Certified...CyberShift work$100k - $110k
Cyber Threat Intelligence Analyst Job Number : 32285 Location : Arlington, VA Job Description : Cyber Threat Intelligence Analyst Arlington, VA Support mission-critical cyber threat intelligence for the Department of Homeland Security by analyzing and identifying...CyberFull timeFlexible hours$104k - $166k
Responsibilities Peraton is hiring an experienced Open‑Source Cyber Threat Intelligence Analyst for our Federal Strategic Cyber Programs. Location: Northern VA. Full-time, on‑site role. Travel: For this role, you must be able to travel up to two weeks at a time, both foreign...CyberFull timeContract workShift work- ...flexibility, and ingenuity to strengthen and protect our nation’s vital interests. Requisition #: 1617 Job Title: Cyber Threat Intelligence Analyst Location: On-Site, Arlington, VA Clearance Level: Top Secret, Must Have Clearance to Start Job Description...Cyber
- ...is supporting a customer by delivering intelligence support to customer through proactively... ...identifying, analyzing, and responding to cyber threats to inform the customer’s vulnerability... ...Security Plus (SEC+) • Intelligence Analyst Certified (IAC) • Certified Threat...CyberLocal areaFlexible hours
$77.6k - $176k
Cyber Threat Intelligence Analyst The Opportunity: Are you interested in understanding not only who is targeting an organization, but how they could get in through the technologies, vendors, and services it depends on? Join a cybersecurity team supporting one of the world...CyberFull timeContract workPart timeWork at officeLocal areaRemote work- ...nation’s safety and security. Make an impact by using your expertise to protect our country from threats. Job Description How A Cyber Threat Intelligence (Fusion) Analyst Will Make an Impact The successful applicant should be expected to identify potential cyber...CyberImmediate start
- ...experience in conducting in-depth analysis of cyber threats, including malware, phishing campaigns,... ...in collecting and aggregating threat intelligence from various sources, such as... ...Position Senior Cyber Threat Intelligence Analyst Number of Openings 1 Exempt/...CyberFull timePart timeWork at office
- Everforth ECS in Arlington, VA (Hybrid) is seeking a Mid Cyber Threat Intelligence (CTI) Analyst to join our team. The role focuses on collection, analysis, and dissemination of actionable threat intelligence to strengthen threat detection and incident response. The successful...Cyber
- Everforth ECS in Arlington, VA is seeking a Mid Cyber Threat Intelligence (CTI) Analyst to join our hybrid team. This role focuses on collecting and analyzing cyber threat intelligence from open-source, commercial, and government sources to support security operations and...Cyber
$160k - $180k
Everforth ECS is seeking a Senior Cyber Threat Intelligence (CTI) Analyst to join our team in Arlington, VA (Hybrid). This position is contingent upon award. This position is seeking an experienced Senior Cyber Threat Intelligence (CTI) Subject Matter Expert (SME) to lead...Cyber- BCMC is seeking a Cyber Threat Intelligence professional to support vulnerability management by proactively gathering and analyzing CTI, disseminating timely insights to inform operational decisions. You will identify emerging threats, vulnerabilities, and countermeasures...Cyber
- Booz Allen Hamilton seeks a Cyber Threat Intelligence Analyst, Mid, to support a Security Operations Center by collecting, analyzing, and correlating CTI from open sources, government, and industry feeds. This role operationalizes ThreatConnect to enrich investigations...CyberRemote job
- Leidos is seeking a Tier 3 Cyber Threat Intelligence Analyst to join our team supporting DHS NOSC services. You will identify and investigate high-priority threat campaigns, track adversaries and TTPs, and deliver actionable intelligence to improve cyber resiliency across...Cyber
- Peraton is seeking an Open-Source Cyber Threat Intelligence Analyst for the Federal Strategic Cyber Programs. Location: Northern VA, on-site, full-time. Travel up to two weeks at a time is required. You will gather Open-Source intelligence across surface/deep/dark web,...CyberFull time
- BCMC is seeking a seasoned Incident Manager to support cyber threat intelligence efforts for a critical VM program. The role focuses on gathering and analyzing CTI to guide operational decisions, identify emerging threats and collaborate with stakeholders to implement mitigations...Cyber
- Peraton is seeking a Jr Industrial Control System Cyber Threat Intelligence Analyst to safeguard critical infrastructure by integrating multiple intelligence sources to create actionable insights and recommendations. Location: On-site in Arlington, VA. The role supports...Cyber
- ...Manager to proactively gather and analyze CTI for vulnerability management and operational decision support. You will identify emerging threats, coordinate with stakeholders, and produce comprehensive CTI reports. The role requires TS/SCI clearance, DHS suitability, and the...Cyber2 days per week3 days per week
$86k - $138k
Responsibilities Peraton is currently hiring a Jr Industrial Control System Cyber Threat Intelligence Analyst for its Federal Strategic Cyber programs. Location: On-site in Arlington, VA. About the Role: As a Jr Industrial Control System Cyber Threat Intelligence Analyst...CyberContract workCurrently hiringShift work$112k - $179k
...the critical nexus between traditional and nontraditional threats across all domains: land, sea, space, air, and cyberspace... ...is currently hiring Sr Industrial Control System Cyber Threat Intelligence Analyst for its Federal Strategic Cyber programs. Location: On-...CyberContract workTemporary workCurrently hiringShift work$130k - $180k
...and delivered by operating with a product mindset, prioritizing speed, ownership, and execution over bureaucracy. Lead Cyber Threat Intelligence Analyst Location: Onsite - Government-controlled secure facility Terms: Full-time Salary: $130-$180k DOE Clearance: Active...CyberFull timeWork experience placementFlexible hoursShift work- ...Senior Threat Intelligence Analyst McLean, Virginia; Mountain View, California, United States Company Overview ID.me is the next-generation... ...~5+ years of experience in threat intelligence, cyber threat hunting, fraud intelligence, or a closely related discipline...CyberFull timeWork at officeRemote work
$121k - $132k
...Cyber Intelligence Analyst Washington, District of Columbia, United States 1400-383 Full-Time/Regular We are seeking a highly experienced... ...candidate will collect, analyze, and report cybersecurity threats, vulnerabilities, risks, and incidents while providing...CyberFull timeImmediate startFlexible hours$86.8k - $198k
...Cyber Intelligence Analyst The Opportunity: As a cyber intelligence analyst, you know that detailed threat analysis gives organizations a critical edge. At Booz Allen, you can leverage your expertise in cyber intelligence to develop innovative solutions that will...CyberFull timeContract workPart timeWork at officeLocal areaRemote work$156.75k - $260k
...safeguarding critical assets. Your leadership will be pivotal in enhancing our resilience against evolving global cyber threats. ~ As a Cybersecurity Intelligence Vice President at JPMorganChase within the Cybersecurity Operations group, you will play a critical role in...Cyber
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Cyber Threat Intelligence Analyst. Be the first to apply!
- remote cyber security analyst Washington DC
- information security consultant Washington DC
- cyber security analyst Washington DC
- cyber threat intelligence analyst Washington DC
- intelligence analyst part time Washington DC
- criminal intelligence analyst Washington DC
- senior intelligence analyst Washington DC
- military intelligence analyst Washington DC
- intelligence analyst Washington DC
- all-source intelligence analyst Washington DC


