Tier 3 Cyber Threat Intelligence Analyst
Leidos
Leidos is seeking a Tier 3 Cyber Threat Intelligence Analyst to join our team on a highly visible cyber security single-award IDIQ vehicle that provides Network Operations Security Operations (NOSC) support, cyber analysis, and application development.Department of Homeland Security (DHS), NOSC Support Services is a US Government program responsible to monitor, detect, analyze, mitigate, and respond to cyber threats and adversarial activity on the DHS Enterprise. DHS NOSC has primary responsibility for monitoring and responding to security events and incidents detected at the Trusted Internet Connection (TIC) and Policy Enforcement Point (PEP) and is responsible for directing and coordinating detection and response activities performed by each Component SOC. Direction and coordination are achieved through a shared DHS incident tracking system and other means of coordination and communication.The Cyber Threat Intel Analyst will need a strong cyber security background with experience with the following: Identify, track and investigate high priority threat campaigns, malicious actors with the interest, capability and TTPs (Techniques, Tactics and Procedures).Bring a comprehensive understanding, analyzing and tracking the cyber threat landscape, including identifying and analyzing cyber threats actors, APT TTPs and/or activities to enhance cybersecurity posture of the organization’s IT operating environment.Basic QualificationsThe candidate must currently possess a Top Secret/SCI Clearance.BS in IT related field and 8-12 years’ experience in an IT field, or MS in IT related field and 8+ years’ experience in an IT Field, with a minimum of 7 years of experience as a Tier III senior cyber security analyst performing intelligence analysis, collection management, and technical analysis.Two years of recent experience with host-based and network-based security monitoring solutions and to include security content recommendation or development (host based and network signatures).Maintain and drive the development of new reports of Cyber Threat Intelligence analysis to peers, management and customer teams for purposes of situational awareness and making threat intelligence actionable.Provide support to the Network Operations Security Center during incident response and threat hunting activities that include cyber threat analysis support, research, recommending relevant remediation and mitigation.Conduct trending and correlation of various cyber intelligence sources for the purposes of indicator collection, shifts in TTPs, attribution and establish countermeasures to increase cyber resiliency.Host-based and network-based forensics related to the identification of advanced cyber threat activities, intrusion detection, incident response, malware analysis, and security content development (e.g., signatures, rules etc.); and cyber threat intelligence.Deep understanding of the cyber "Pyramid of Pain", Cyber Kill Chain, MITRE ATT&CK and the Diamond Model. Analysts should be able to conduct in-depth research into threat actors, tools, infrastructure, and TTPs using these frameworks.Ability to correlate and enrich data from intelligence sources with internal logs, alerts, and incident data from Splunk and Analyst1 to drive threat hunting and detection initiatives.Strong written and oral communication skills.Preferred QualificationsMust have at least one of the following certifications:Must have one of the following certifications: CASP+ CE, CCNP-Security, CISA, CISSP (or Associate), GCED, GCIH, CCSPAdditionally preferred certifications held:SANS GCTIPrevious DOD, IC or Law Enforcement Intelligence or Counterintelligence Training/Experience.Knowledge of Structured Analytic TechniqueDeveloping scripts to support cyber threat detection that outputs results in a variety of formats, such as VB scripts, Python, C++, HTML, XML or other types most appropriate for the task.Proficient in one more of the following computer languages Python, Bash, Visual Basic or PowerShell to support cyber threat detection or reporting.Working familiarity with additional tools such as CrowdStrike Falcon, Tanium, Proofpoint TAP, and Zscaler.If you're looking for comfort, keep scrolling. At Leidos, we outthink, outbuild, and outpace the status quo — because the mission demands it. We're not hiring followers. We're recruiting the ones who disrupt, provoke, and refuse to fail. Step 10 is ancient history. We're already at step 30 — and moving faster than anyone else dares.Original Posting:September 9, 2026For U.S. Positions: While subject to change based on business needs, Leidos reasonably anticipates that this job requisition will remain open for at least 3 days with an anticipated close date of no earlier than 3 days after the original posting date as listed above.Pay Range:Pay Range -The Leidos pay range for this job level is a general guideline only and not a guarantee of compensation or salary. Additional factors considered in extending an offer include (but are not limited to) responsibilities of the job, education, experience, knowledge, skills, and abilities, as well as internal equity, alignment with market data, applicable bargaining agreement (if any), or other law.SummaryLocation: 10160 Washington DC; Chandler, AZ; Bay Saint Louis, MSType: Full time
$87.1k - $157.45k
Leidos is seeking a Cyber Tier 1 Deputy Team Lead to join our team on a highly visible cyber... ...analyze, mitigate, and respond to cyber threats and adversarial activity on the DHS Enterprise... ...will remain open for at least 3 days with an anticipated close date of no...CyberFull timeHome officeAll shiftsShift workNight shiftAfternoon shift- ...Cyber Security Solutions R&D Analyst We are seeking a Cyber Security Solutions R&D Analyst to support research... ...the ability to translate emerging threats and requirements into actionable solutions... ...experience At least three (3) years of experience in cybersecurity...CyberImmediate startFlexible hours
$99k - $225k
Cybersecurity Risk Assessment SpecialistThe Opportunity: Cyber threats are everywhere, and the constantly evolving nature of these threats... ...cross-domain data transfer systems, securing environmental intelligence, and managing cyber risk across all classification levels...CyberFull timeContract workPart timeWork at officeLocal areaRemote work$77.5k - $176k
...used to generate and maintain environmental intelligence and data supporting fleet safety.As a... ...oceanographic data through the maintenance, cyber hardening, and configuration of critical... ....Join us. The world can’t wait.You Have: 3+ years of experience administering Red...CyberFull timeContract workPart timeWork at officeLocal areaRemote work$70k - $80k
...CSIRT Analyst (Computer Security Incident Response Team) Location: Stennis, MS Employment... ...monitoring, incident response, and threat mitigation operations within a Security Operations... ...is critical to minimizing the impact of cyber incidents, coordinating recovery...CyberFull timeImmediate startFlexible hoursShift workNight shiftRotating shift$107.9k - $195.05k
...security measures into systems, ensuring they are resilient against threats and vulnerabilities. This role requires a deep understanding of... ...that this job requisition will remain open for at least 3 days with an anticipated close date of no earlier than 3 days after...Full timeWork at officeImmediate startNight shift$23 - $45 per hour
...inside airport terminals in Bay Saint Louis. These professionals focus on identifying suspicious behavior and preventing potential threats before they occur. No prior experience is required and training is provided. Position Details Openings : Bay Saint Louis and...Shift work- ...Location: 213 Carol Avenue Northwest Fort Walton Beach, FL 32548 Event Details: ???? September 16 19, 2026 ? 8:00 AM 3:30 PM CT About CBP U.S. Customs and Border Protection (CBP), a component of the U.S. Department of Homeland Security (DHS), is...Local area
- ...paid training program to gain skills and certifications in traffic control, emergency response, crowd control, crime prevention, intelligence recording, patrols, traffic control, community engagement, conducting investigations, weapons operation, use of non-lethal force...Full timeContract workPart timeImmediate startRelocation packageFlexible hours
- 11X - Infantryman - New Cash Bonus Job Overview: Are you looking for an adventure? As an infantryman, you will challenge yourself daily to overcome your limits using a variety of tactical weaponry and coordinated team movement drills to detect and overcome the...Full timeContract workPart timeImmediate startRelocation packageFlexible hours
$70 - $80 per hour
...policy, Ts/sci, Security, Information security, Systems security, Cyber security, Cissp certification, Active secret clearance,... ...criminal penalties and civil liability. Use of Artificial Intelligence (AI): We may use Artificial Intelligence (AI) to support parts...CyberContract workTemporary work- ...database design principles. Experienced with the use of Artificial Intelligence (AI) to help accelerate performance. Preferred Qualifications... ...across the data lifecycle. Collaborate with scientists, analysts, software developers, and mission stakeholders to deliver data...Full timeInterim roleWork at office
- Description DOCS Health is seeking talented General Dentists, Endodontists, and Oral Surgeons to bring essential dental care directly to our Military Service Members. Join our team in a unique opportunity to conduct dental exams and treatments that ensure soldiers are ...Local areaFlexible hoursWeekend work
- DOCS Health Dental Opportunities DOCS Health is seeking talented General Dentists, Endodontists, and Oral Surgeons to bring essential dental care directly to our Military Service Members. Join our team in a unique opportunity to conduct dental exams and treatments that...Local areaFlexible hoursWeekend work
- ...Security Engineer (ISSE) with extensive experience supporting Risk Management Framework (RMF) accreditation activities within the Intelligence Community (IC) . This position will support a focused, approximately one-year effort to transition existing operational...Full timeImmediate start
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Tier 3 Cyber Threat Intelligence Analyst. Be the first to apply!



