Tier 3 Cyber Threat Intelligence Analyst
Leidos
Leidos is seeking a Tier 3 Cyber Threat Intelligence Analyst to join our team on a highly visible cyber security single-award IDIQ vehicle that provides Network Operations Security Operations (NOSC) support, cyber analysis, and application development.Department of Homeland Security (DHS), NOSC Support Services is a US Government program responsible to monitor, detect, analyze, mitigate, and respond to cyber threats and adversarial activity on the DHS Enterprise. DHS NOSC has primary responsibility for monitoring and responding to security events and incidents detected at the Trusted Internet Connection (TIC) and Policy Enforcement Point (PEP) and is responsible for directing and coordinating detection and response activities performed by each Component SOC. Direction and coordination are achieved through a shared DHS incident tracking system and other means of coordination and communication.The Cyber Threat Intel Analyst will need a strong cyber security background with experience with the following: Identify, track and investigate high priority threat campaigns, malicious actors with the interest, capability and TTPs (Techniques, Tactics and Procedures).Bring a comprehensive understanding, analyzing and tracking the cyber threat landscape, including identifying and analyzing cyber threats actors, APT TTPs and/or activities to enhance cybersecurity posture of the organization’s IT operating environment.Basic QualificationsThe candidate must currently possess a Top Secret/SCI Clearance.BS in IT related field and 8-12 years’ experience in an IT field, or MS in IT related field and 8+ years’ experience in an IT Field, with a minimum of 7 years of experience as a Tier III senior cyber security analyst performing intelligence analysis, collection management, and technical analysis.Two years of recent experience with host-based and network-based security monitoring solutions and to include security content recommendation or development (host based and network signatures).Maintain and drive the development of new reports of Cyber Threat Intelligence analysis to peers, management and customer teams for purposes of situational awareness and making threat intelligence actionable.Provide support to the Network Operations Security Center during incident response and threat hunting activities that include cyber threat analysis support, research, recommending relevant remediation and mitigation.Conduct trending and correlation of various cyber intelligence sources for the purposes of indicator collection, shifts in TTPs, attribution and establish countermeasures to increase cyber resiliency.Host-based and network-based forensics related to the identification of advanced cyber threat activities, intrusion detection, incident response, malware analysis, and security content development (e.g., signatures, rules etc.); and cyber threat intelligence.Deep understanding of the cyber "Pyramid of Pain", Cyber Kill Chain, MITRE ATT&CK and the Diamond Model. Analysts should be able to conduct in-depth research into threat actors, tools, infrastructure, and TTPs using these frameworks.Ability to correlate and enrich data from intelligence sources with internal logs, alerts, and incident data from Splunk and Analyst1 to drive threat hunting and detection initiatives.Strong written and oral communication skills.Preferred QualificationsMust have at least one of the following certifications:Must have one of the following certifications: CASP+ CE, CCNP-Security, CISA, CISSP (or Associate), GCED, GCIH, CCSPAdditionally preferred certifications held:SANS GCTIPrevious DOD, IC or Law Enforcement Intelligence or Counterintelligence Training/Experience.Knowledge of Structured Analytic TechniqueDeveloping scripts to support cyber threat detection that outputs results in a variety of formats, such as VB scripts, Python, C++, HTML, XML or other types most appropriate for the task.Proficient in one more of the following computer languages Python, Bash, Visual Basic or PowerShell to support cyber threat detection or reporting.Working familiarity with additional tools such as CrowdStrike Falcon, Tanium, Proofpoint TAP, and Zscaler.If you're looking for comfort, keep scrolling. At Leidos, we outthink, outbuild, and outpace the status quo — because the mission demands it. We're not hiring followers. We're recruiting the ones who disrupt, provoke, and refuse to fail. Step 10 is ancient history. We're already at step 30 — and moving faster than anyone else dares.Original Posting:September 9, 2026For U.S. Positions: While subject to change based on business needs, Leidos reasonably anticipates that this job requisition will remain open for at least 3 days with an anticipated close date of no earlier than 3 days after the original posting date as listed above.Pay Range:Pay Range -The Leidos pay range for this job level is a general guideline only and not a guarantee of compensation or salary. Additional factors considered in extending an offer include (but are not limited to) responsibilities of the job, education, experience, knowledge, skills, and abilities, as well as internal equity, alignment with market data, applicable bargaining agreement (if any), or other law.SummaryLocation: 10160 Washington DC; Chandler, AZ; Bay Saint Louis, MSType: Full time
- ...cybersecurity services provider in Chandler, Arizona seeks a Cyber Security Analyst to monitor, detect, and respond to cybersecurity... ...response playbooks, and engaging in proactive threat hunting. Candidates should have 3-5 years of relevant experience, a bachelor’s...Cyber
- ...Saturday. You will work in office 3 days per week and 1 day... ...researching potential cybersecurity threats to various systems,... ...degree in Information Technology, Cyber Security, Computer Science, or... ...multiple activities and lead junior analysts as neededUnderstanding of...CyberFull timeWork at officeLocal areaRemote work3 days per week
$104k - $166k
ResponsibilitiesPeraton's to hire an experienced Cyber Intelligence Analyst to support a SOC for its Federal Strategic Cyber group. Location: Chandler... ...warfare tactics, techniques, and procedures focused on the threat to networked weapons platforms and U.S. and DoD information...CyberContract workShift work- ...Tangent Technologies is currently seeking a qualified candidate to fulfill a role as a Security Operations Center (SOC) Tier I Cyber Security Analyst supporting the Department of Homeland Security located in Chandler, AZ. Cyber Security Analysts are needed to staff a 24...CyberFull timeLocal area
- ...selection and operational processes for running Threat and Vulnerability Management services and... ..., repeatable system processes to reduce Tier 1 effortsCollaborate with project teams to... ...be experienced in creating a strategic cyber security technology direction, aligning it...CyberContract workTemporary workWork at officeHome officeFlexible hours3 days per week
- ...selection and operational processes for running Threat and Vulnerability Management services and... ..., repeatable system processes to reduce Tier 1 efforts Collaborate with project... ...Must be experienced in creating a strategic cyber security technology direction, aligning it...CyberContract workTemporary workWork at officeHome officeFlexible hours3 days per week
$112k - $179k
...Cybersecurity Engineer for its Federal Strategic Cyber group. Location: Chandler, AZ or... ...resilient, scalable, and aligned with modern threat environments.You Will: Engineer and sustain... ...for AI/GenAI-enabled systems.Provide Tier III engineering support and technical leadership...CyberContract workShift work$104k - $166k
ResponsibilitiesPeraton's Cyber Mission sector is looking for a Sr Threat Hunter to support a SOC.Location: Chandler... ...:Conduct proactive, intelligence-driven threat hunting to identify... ...anomalous behavior.Collaborate with SOC analysts and incident response teams to validate...CyberContract workShift work$134.5k - $265.1k
Position Summary Our Deloitte Cyber team understands the unique challenges and opportunities... ...our clients navigate the ever-changing threat landscape. Through powerful solutions and... ...and access management implementation.• 3+ years with access control models —...CyberLocal areaVisa sponsorship- ...actively exploited vulnerabilities under the EU Cyber Resilience ActSecurity Standards &... ...SAE 21434, PSA Certified, SESIP, FIPS 140-3, Common Criteria, ETSI EN 303 645, NIST Cybersecurity... ...Duck, software composition analysis).Threat modeling familiarity (STRIDE, MITRE ATT&CK...CyberFull timeWork at office
- ...support for Web Content Filtering/Proxy and Threat/Malware infrastructure for the Client.... ...support teams and suppliers.Required Skills:3-5 years of experience directly managing Web... ...Network Operations, Information Security, Cyber Security or similar Network Security...Cyber
$134.5k - $265.1k
Position Summary Our Deloitte Cyber team understands the unique challenges and opportunities... ...our clients navigate the ever-changing threat landscape. Through powerful solutions and... ..., or architecting information systems.3+ years of experience with technical...CyberLocal areaVisa sponsorship$107.01k - $139.11k
...of Infrastructure Consultant 3, your Area Of Responsibility... ...equivalent framework awareness• Cyber incident lifecycle understanding... ...management concepts• Insider threat program awareness• Experience... ...Technology|Security Operations|Threat Intelligence Technical/Domain Skill 2...CyberFull timeTemporary workRelocationWeekend work$118.7k - $243.7k
...delivering with excellence. The ~3,000 professionals in DT - US deliver services including: Cyber SecurityTechnology... ...adapts to a rapidly changing threat landscape, changes in business... ...situational awareness, threat intelligence, and building a security culture...Cyber$122k - $240.5k
Position Summary Deloitte Cyber understands the unique challenges and opportunities... ...helps our clients navigate the ever-changing threat landscape. We simplify complexity, and... ...client goalsRequired QualificationsWe require 3-5 years of experience for all skill areas...CyberLocal area$159k - $305k
...serve as Product Owner for the Cyber Security Operations (CSO)... ...of capabilities that enhance threat detection, cyber monitoring, security... ..., product managers, threat intelligence, data science, and technology... ...military experience, education ~3+ years of experience leading...CyberFull timeWork experience placement- ...IT Manager, the Cybersecurity Analyst will be a key member of our divisional... ..., and people from evolving cyber threats. This individual will lead... ...Diploma or GED equivalency. 3+ years of hands-on experience... ...Relocation) Cyber Security Analyst Tier II (Phoenix) Phoenix, AZ $95,0...CyberFull timeRelocationRelocation package
- ...regulations intensify globally and threats to embedded systems grow more... ...-wide readiness for the EU Cyber Resilience Act and other... ...sensitive vulnerability cases.3. Threat Modeling & Product Risk... ...the use of applicable threat intelligence, emerging attack techniques, and...CyberFull timeWork at officeWorldwide
- ...how our zero-trust and zero-knowledge solutions defend against cyber threats at KeeperSecurity.com. About the Role Join an elite group... ...customers are supported and successful! Requirements ~3+ years of experience in full cycle SaaS sales or Account Management...CyberContract workTemporary workRemote work
- ...evidence to identify and detect foreign intelligence and international terrorist threats, and plan the appropriate... ...of Basic Training ~19 weeks and 3 days at the Counterintelligence Agent... ...~ Investigative Techniques ~ Cyber Operations About Our Organization...CyberPart timeImmediate start
$104k - $166k
...hire an experienced Penetration Tester for its Federal Strategic Cyber Group. Location: Chandler, AZ and Washington DC.Role and... ...operates at the critical nexus between traditional and nontraditional threats across all domains: land, sea, space, air, and cyberspace. The company...CyberContract workCurrently hiringShift work- ...Engineer, you will work alongside our engineering team to solve problems for our diverse customer base. Your contributions as part of the Tier 3 engineering team will set an example for lower Tiers in knowledge, experience, and leadership. Responsibilities of the Network...Work experience placementCasual workLocal areaRemote workMonday to FridayFlexible hours
- Description About the Role The Tier 2 Systems Engineer is responsible for basic or complex issues. Tier 2 will handle escalation calls/tickets... ..., network devices, and cloud systems. Tier 2 will alert Tier 3 team when unable to resolve. Responsibilities: The Tier 2 Systems...Work at officeAll shiftsFlexible hoursShift work
- ...SummaryWe are seeking an experienced Cyber Security Analyst to join our cybersecurity team. In this... ...and techniques to detect potential threats and vulnerabilities across a wide range... ...initiatives, leveraging threat intelligence and cybersecurityframeworks to identify...Cyber
- ...security and governance, including policy, risk, and enablement of cyber monitoring, detection, and response capabilities.· Experience... ...materially contributing to incident response, investigations, and threat-driven security initiatives.· Strong executive communication...CyberFull timeWork at officeRemote workWork visa2 days per week
- ...and employees. Find out more by visiting .Position SummaryThe Senior Cyber Security Specialist will be responsible for protecting the organization's computer systems and networks from cyber threats. This role involves identifying vulnerabilities, implementing security...CyberContract workWork at office
- ...for an IT professional with approximately 3 years of experience in a NOC, SOC, IT Help... ...Looking For: 3+ years of IT operations, NOC/SOC, Tier 1/2 Help Desk, technical support, or... ...Military operations experience in communications, cyber, logistics, or a related field is also...CyberShift workNight shift
- ...benefit both employers and employees. Find out more by visiting .Position SummaryAs a Cyber Security Specialist, you will play a critical role in protecting our organization from cyber threats. You will work closely with other IT and cyber security professionals to monitor,...CyberContract workTemporary workWork at officeRelocation packageFlexible hours
- ...functional areas including incident response, threat detection, and operational reporting •... ...execution of SOC activities aligned to cyber defense operations, security monitoring, and... ...Qualifications Experience : Three (3) or more years of supervisory experience...CyberFull timeContract workWork at officeWorldwideMonday to FridayWeekend workAfternoon shift
- ...clear guidance to othersThe teamOur Deloitte Cyber team understands the unique challenges and... ...our clients navigate the ever-changing threat landscape. Through powerful solutions and... ...days a week.Active Secret Clearance required.3+ years of experience withing the...Cyber
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Tier 3 Cyber Threat Intelligence Analyst. Be the first to apply!




