Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

Threat Analyst

$83.85k - $107.95k

Dentons US LLP

Threat Analyst

Chicago, IL, USKansas City, MO, USHouston, TX, USAtlanta, GA, USWashington DC, DC, USSt. Louis, MO, USPhoenix, AZ, USDallas, TX, US

May 28, 2026

Dentons US LLP is currently recruiting for a Threat Analyst. The Information Security Threat Analyst is responsible for proactively hunting for threats within client environments, developing and tuning SIEM use cases, and conducting in-depth investigations of security events. The role involves monitoring and operationalizing threat intelligence, engineering automation and SOAR playbooks to streamline detection and response and maintain comprehensive documentation of threat hunting activities. The analyst collaborates with internal teams to enhance security operations, participates in incident response, and continuously adapts to the evolving cyber threat landscape.

Responsibilities

  • Analyze activity trends using a mix of tools and analytical methodologies to hunt for threats not otherwise detected by configured security alerts.

  • Conduct threat scenario analysis to develop new use cases with relevant attack vectors; develop attack scenarios to formulate hunting strategies to identify threats undetected by existing controls.

  • Perform in-depth investigation of events of interest identified during hunts or from security alerts as defined investigation and response procedures.

  • Monitor, triage, and operationalize threat intelligence from commercial, open-source, ISAC/ISAO, and government sources.

  • Correlate threat intelligence with internal telemetry to identify potential compromise and guide hunts and incident response.

  • Create and deliver regular threat hunting and threat intelligence reports including hypotheses, datasets, findings, false positives, and detection/response improvements.

  • Contribute to the tuning and development of SIEM use cases and other security control configurations to enhance threat detection capabilities.

  • Define and track Security Operations metrics.

  • Design, develop, and maintain automation and SOAR playbooks to streamline alert triage, enrichment, containment, and notification workflows.

  • Automate routine operational tasks (e.g., IOC curation, asset/context lookups, quarantine, user suspension) to reduce MTTD/MTTR.

  • Facilitate vulnerability management by correlating vuln data with exploits-in-the-wild; prioritize remediation based on risk and exposure.

  • Participate in IR exercises to validate processes and IR capabilities.

  • Other duties as assigned to fully meet the requirements of the position.

Required Qualifications

  • Bachelor’s degree/diploma in Computer Science, Information Security, or related field.

  • Minimum 2 years of experience in Cyber Intelligence or as a Threat Hunter, ideally within a CIRT/SOC; hands-on experience with SIEM content and automation development.

  • Direct prior experience with core security technologies such as SIEM, vulnerability scanners, anti-virus solutions, and EDRs.

  • Strong knowledge of threat intelligence and threat hunting, including MITRE ATT&CK, kill chain, hypothesis-driven methods, and IOC lifecycle management.

  • Demonstrated experience with SIEM platforms (e.g., Splunk, Microsoft Sentinel, Elastic): data onboarding, parsing, correlation rules, dashboards, and tuning.

  • Experience with SOAR platforms (e.g., Splunk SOAR, Microsoft Sentinel automation, Swimlane) and building playbooks for enrichment and response.

  • Strong analytical and investigative skills; knowledge of technical security controls and mitigations.

  • Experience with advanced endpoint analytics and EDR tooling (e.g., CrowdStrike, Defender for Endpoint, Sophos).

  • Good working knowledge of common security threats, industry best practices, and security technologies.

  • 24x7 on-call availability for high severity incidents.

  • Knowledge of digital forensics, malware analysis, penetration testing and ethical hacking.

  • Proficiency in scripting languages (Python, PowerShell, shell) is a plus.

  • Industry certifications are a strong asset (e.g., GIAC, Microsoft SC-200, Splunk Enterprise Security, AWS/Azure security certs).

Salary

Chicago Only DOE: $83,850 - $107,950

Washington DC Only DOE: $86,900 - $111,850

Dentons US LLP offers a competitive salary and benefits package including medical, dental, vision, 401k, profit sharing, short-term/long-term disability, life insurance, tuition reimbursement, paid time off, paid holidays and discretionary bonuses.

Dentons US LLP is an Equal Opportunity Employer - Disability/Vet. Pursuant to local ordinances, we will consider for employment qualified applicants with arrest and conviction records.

If you need any assistance seeking a job opportunity at Dentons US, LLP, or if you need reasonable accommodation with the application process, please call our Talent Acquisition Specialist at View phone number on click.appcast.io or contact us at View email address on click.appcast.io.

About Dentons

Redefining possibilities. Together, everywhere. For more information visit

Nearest Major Market: Chicago

Vacancy posted 6 days ago
Similar jobs that could be interesting for youBased on the Threat Analyst in Washington DC vacancy
  •  ...Description Job Description H4 Enterprises are currently seeking the following: POSITION SUMMARY Insider Threat Information Systems Security - Senior Data Analyst will be responsible for analyzing, detecting, and mitigating potential insider threats within an... 
    Suggested
    For contractors
    Work at office

    H4 Enterprises

    Arlington, VA
    1 day ago
  • $62k - $141k

    Phase2 Technology is seeking a CBRN Analyst in Arlington, Virginia. This role involves utilizing analytical skills to support CBRN threat prediction and operational planning for the Air Force. Your insights will enhance national security and readiness. The ideal candidate... 
    Suggested

    Phase2 Technology

    Arlington, VA
    13 hours ago
  • THIS POSITION REQUIRES A CURRENT TOP SECRET/SCI w/CI poly level clearance. Core One seeks a CI and Insider Threat Data Analyst in support of an Intelligence Community customer. Candidates should have a strong record of achievement in the IC and experience. Previous... 
    Suggested
    For contractors

    Core One

    Bethesda, MD
    1 day ago
  •  ...Job Description Job Description The Garrett Group is currently seeking an Insider Threat HUB Analyst to join our team in the National Capital Region/Washington DC area. This role is integral to enhancing our capabilities in addressing insider threats effectively within... 
    Suggested
    Civilian Contractor

    The Garrett Group

    Washington DC
    28 days ago
  •  ...in lieu of a degree. Experience performing processing, triage, threat analysis, and response to cyber incident reports. Experience...  ...hiring Sr Industrial Control System Cyber Threat Intelligence Analyst for its Federal Strategic Cyber programs. Location: Arlington,... 
    Suggested
    Currently hiring

    Peraton

    Arlington, VA
    13 hours ago
  • Location: On-site in Arlington, VA. Peraton is currently hiring a Jr Industrial Control System Cyber Threat Intelligence Analyst for its Federal Strategic Cyber programs. Minimum Qualifications: LU Bachelor’s degree and 2 years of experience, or Associate’s degree and... 
    Currently hiring

    Peraton

    Arlington, VA
    13 hours ago
  • Terrestris Global Solutions in Washington, DC is seeking a Senior Security Operations Analyst to monitor and respond to cybersecurity threats. The candidate will analyze security events, manage incident response, and support the National Indian Gaming Commission's cybersecurity... 

    Terrestris Global Solutions

    Washington DC
    2 days ago
  •  ...Insider Threat Analyst Information Technology -- Software Development/Engineering Alexandria, VA • Full-Time/Regular Core4ce is seeking a talented Insider Threat Analyst to join our team in Alexandria, VA. The ideal candidate will support the government customer... 
    Full time
    Work at office
    Immediate start
    Flexible hours

    Core4ce

    Alexandria, VA
    2 days ago
  • $128.1k - $239.6k

     ...mature the firm’s enterprise security.   In an Active Defense Analyst, we are looking for someone who has experience in Information...  ..., thus enhancing the abilities of defensive teams. In the threat hunting capacity, the analyst will identify security vulnerabilities... 
    Summer holiday
    Local area
    Remote work
    Flexible hours
    Night shift
    Weekend work

    EY

    Washington DC
    5 days ago
  • $107.9k - $195.05k

     ...eidos has a current job opportunity for an Insider Threat/UAM (User Activity Monitoring) Analyst at the Mark Center in Alexandria, VA. POSITION SUMMARY: This position will serve as a member of DISA J-6 User Activity Monitoring (UAM) Team. UAM analysts triage, analyze... 
    For contractors

    Leidos Holdings Inc.

    Alexandria, VA
    13 hours ago
  •  ...Bureau of International Security (ISN), Office of Cooperative Threat Reduction (CTR)’s global programs aimed at reducing threats posed...  ...material, equipment, and expertise. The Senior Analyst will provide advanced professional, scientific, and technical... 
    Contract work
    Work at office

    Dynamics ATS Organic

    Washington DC
    25 days ago
  •  ...Cyber Threat intelligence Analyst II Location: Onsite (CONUS) / Shift Work Clearance: Active TS/SCI (DHS EOD Suitability required) Company: Argo Cyber Systems, LLC - Service-Disabled Veteran-Owned Small Business (SDVOSB) About Argo Cyber Systems Argo... 
    Shift work

    Argo Cyber Systems

    Arlington, VA
    2 days ago
  •  ...through proactively identifying, analyzing, and responding to cyber threats to inform the customer’s vulnerability management (VM) efforts....  ...Hacker (CEH) • CompTIA’s Security Plus (SEC+) • Intelligence Analyst Certified (IAC) • Certified Threat Intelligence Analyst (C|TIA... 
    Local area
    Flexible hours

    BCMC, LLC

    Arlington, VA
    4 days ago
  • $100k - $110k

     ...Cyber Threat Intelligence Analyst Job Number : 32285 Location : Arlington, VA Job Description : Cyber Threat Intelligence Analyst Arlington, VA Support mission-critical cyber threat intelligence for the Department... 
    Full time
    Flexible hours

    Allyon, Inc.

    Arlington, VA
    4 days ago
  • A technology solutions provider in Washington, DC is seeking an Information System Security Analyst to safeguard sensitive data and computer systems. Responsibilities include monitoring network activity for breaches, conducting vulnerability assessments, and ensuring compliance... 

    Tla Llc

    Washington DC
    4 days ago
  •  ...Cyber Threat Intelligence Analyst Nightwing provides technically advanced full-spectrum cyber, data operations, systems integration and intelligence mission support services to meet our customers' most demanding challenges. Our capabilities include cyber space operations... 
    Contract work
    Immediate start

    Nightwing

    Arlington, VA
    1 day ago
  •  ...Category: Insider Threat Hub Analyst(s) Location: Washington DC Citizenship Required: United States Citizenship Clearance Type: Background Telecommute: In Office Shift: 1st Shift (United States of America) Travel Required: Positions Available... 
    Contract work
    Work at office
    Remote work
    Worldwide
    Shift work
    Day shift

    TMPC INC

    Washington DC
    13 hours ago
  • $5,200 per month

     ...Analyst Position at the American Enterprise Institute's Critical Threats Project The Critical Threats Project (CTP) at the American Enterprise Institute (AEI) produces detailed, objective analysis and forecasts of America's core national security challenges and concrete... 
    Full time
    Work experience placement
    Internship
    Immediate start
    Weekend work
    Afternoon shift
    1 day per week

    American Enterprise Institute

    Washington DC
    4 days ago
  •  ...application due to a disability, contact this employer to ask for an accommodation or an alternative application process. Mobile Threat & Forensics Analyst FullTime Cybersecurity Serv Washington, DC, US Location: Arlington, VA (Hybrid: Onsite & Remote) Clearance Required:... 
    Full time
    Remote work
    Monday to Friday

    Special-Aerospace-Security-Services-Inc

    Washington DC
    1 day ago
  • TRM Labs is seeking a Threat Intelligence Analyst in Washington, D.C. to lead intelligence production on scams, including romance fraud and crypto crimes. The ideal candidate will have over 3 years of relevant experience and strong skills in blockchain analysis and AI tools... 

    TRM Labs

    Washington DC
    13 hours ago
  • $110k - $160k

    CHAOS Industries is seeking a SOC Analyst II to enhance its growing Security Operations team. This mid-level position involves key responsibilities such as monitoring and investigating cyber threats across various systems. The ideal candidate should have 3-5 years of experience... 

    CHAOS Industries

    Washington DC
    4 days ago
  •  ...winning cybersecurity services firm focused on high‑profile, high‑threat private and public‑sector customers who demand proven security...  ..., and more. Position Senior Cyber Threat Intelligence (CTI) Analyst (Top Secret Clearance) Responsibilities Lead cyber threat intelligence... 

    ShorePoint, LLC

    Washington DC
    13 hours ago
  • $110k - $125k

    Amentum is seeking a Counterintelligence (CI) Analyst in Washington, D.C., to provide all-source analytic support to defense intelligence...  ...and analyze political and military developments to produce threat assessments. An active Top Secret (TS) SCI clearance is required... 

    Amentum

    Washington DC
    1 day ago
  • Special Aerospace Security Services, Inc. is seeking a Mobile Threat & Forensics Analyst to support cybersecurity operations in Arlington, VA. The role focuses on mobile threats, forensic investigations, and malware analysis. Candidates must hold an active Secret clearance... 
    Remote work

    Special-Aerospace-Security-Services-Inc

    Washington DC
    1 day ago
  • $107.9k - $195.05k

    Leidos has an opening for an Insider Threat/UAM Analyst at the Mark Center in Alexandria, VA. This role includes triaging and analyzing user activity monitoring alerts, documenting findings, and providing recommendations to enhance the UAM program. Candidates must have... 

    Leidos

    Alexandria, VA
    4 days ago
  • AEI in Washington, DC, is offering an internship opportunity through its Critical Threats Project (CTP). Interns will analyze the ongoing Israel-Hamas War, monitor regional media, and conduct research while receiving training in intelligence analysis. Candidates should... 
    Internship

    AEI

    Washington DC
    13 hours ago
  • Koitecc Solutions is seeking a full-time Cyber Data Analyst with an Active Top Secret clearance, to work onsite in Arlington, Virginia. The role involves analyzing large cybersecurity datasets, developing dashboards, and collaborating with cybersecurity analysts to provide... 
    Full time

    Koitecc Solutions

    Arlington, VA
    1 day ago
  • A technology consulting firm in Arlington seeks a Cyber Threat Intelligence Analyst to support operational decision-making by providing timely intelligence on cyber threats. This role requires U.S. Citizenship and an active TS/SCI clearance, with a minimum of two years... 

    Limelight Health

    Arlington, VA
    3 days ago
  • RiVidium is seeking a Cyber Threat Intelligence Specialist to support Military Community and Family Policy in Alexandria, VA. This role entails collecting and analyzing threat information, collaborating with SOC for improved preparedness, and translating intelligence into... 

    Rividium

    Alexandria, VA
    13 hours ago
  •  ...global consulting firm in Washington is seeking an Active Defense Analyst to enhance its cybersecurity efforts. This role involves...  ...experience in information security, demonstrating expertise in threat intelligence and incident response. Candidates should possess knowledge... 
    Flexible hours

    Ernst & Young Oman

    Washington DC
    3 days ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to Threat Analyst. Be the first to apply!