128 cyber threat intelligence jobs at 86 companies in United States
2mo
Save
Mark Applied
Hide
2mo
Cyber Threat Intelligence Analyst
Arlington, Virginia, United States
HybridFull Time
Agile Defense: Provides IT modernization and cybersecurity for federal government agencies.
5+ YOE5+ years in cyber threat intelligence with TS clearance; experience with CTI, MITRE framework, DIA/ICD standards; knowledge of PRC threat; ICS/SCADA a plus.
MITRE framework, DIA writing standards, ICD203, ICD106, Indicators of Compromise, Threat Intelligence Tools
United States or United Kingdom or Singapore or San Francisco or Los Angeles or New York City or Washington, D.C. or London
RemoteFull Time
TRM Labs: Provides AI-powered intelligence solutions that help public and private sector agencies investigate and disrupt illicit activity.
3+ YOE3+ years in cyber threat intelligence or related investigations; experience producing finished intelligence products, strong OSINT and attribution skills, AI fluency, and excellent written and verbal communication.
Booz Allen HamiltonNYSE: BAH: Provides technology and management consulting services to diverse organizations.
2+ YOE2+ years in cyber threat intelligence or related field, ability to conduct technical research, produce intelligence assessments, ILR/DLPT 2/2 in Arabic/Mandarin/Russian, Secret clearance, DoD 8140 or Security+.
State StreetNYSE: STT: Provides investment servicing and management to institutional investors.
5+ YOE5+ years intelligence experience supporting large organizations, cyber intelligence preferred. BS in relevant field preferred, security certs (CISSP,CISM,GCTI) a plus, MITRE ATT&CK familiarity, Python/PowerShell exposure, strong analytic and communication skills.
Booz Allen HamiltonNYSE: BAH: Consulting and technology services for government and commercial clients
2+ YOE2+ years cyber or intelligence experience, Secret clearance, bachelor's in related field or 6+ years experience in lieu, DoD 8140 including Security+, ILR/DLPT 2/2 in Arabic, Mandarin, or Russian preferred.
ManTech: Provides technology solutions for defense and intelligence agencies.
5+ YOERequires Bachelor’s + 5+ years in security operations/threat intelligence or equivalent experience, active DoD 8570 IAT Level 2+, 3+ years scripting/data analysis (SQL, Python, C#, KQL), MITRE ATT&CK experience, TS/SCI clearance.
SQL, Python, C#, Regex, Azure Data Explorer, Kusto Query Language (KQL), MITRE ATT&CK, Cyber Kill Chain, Microsoft Azure Sentinel, Microsoft Defender for Cloud, Microsoft Defender Threat Intelligence
TC EnergyToronto Stock Exchange: TRP: Operates energy infrastructure including natural gas pipelines and power plants.
10+ YOE10+ years in threat intelligence, intelligence, security, or related risk discipline; relevant degree or technical certification; experience aggregating cyber/physical/geopolitical intelligence and producing finished intelligence for senior leaders.
By Light Professional IT Services: Provides IT systems engineering and cybersecurity solutions for federal agencies.
Research and analyze emerging cyber threats and adversary TTPs, develop intelligence-driven scenarios and MSEL injects, produce briefings and written intelligence products; bachelor\u0002s degree required.
MaximusNYSE: MMS: Provides government health and human services program administration.
10+ YOEActive TS/SCI clearance, Bachelor's in Intelligence/Cybersecurity, 10+ years CTI experience, DoD 8140 GCTI or CTIH, experience with ThreatConnect, Recorded Future, OSINT; MITRE ATT&CK and CrowdStrike Falcon X preferred.
ThreatConnect, Recorded Future, OSINT, MITRE ATT&CK, CrowdStrike Falcon X
IMRI: Provides cybersecurity and IT engineering services for government agencies.
12+ YOE12+ years IT/cyber experience with 5+ years in CTI; experience with CTI platforms and OSINT tools; strong analysis, reporting, and communication skills.
Anomali, Shodan, Maltego, PassiveTotal, VirusTotal, Recorded Future, ThreatConnect, Cyber Kill Chain, MITRE ATT&CK Framework, Diamond Model
Tharros: Provides specialized cybersecurity defense and vulnerability research services.
10+ YOEActive TS/SCI eligibility, bachelor’s in a related field, 10+ years supporting threat intelligence/operations/SOC, SIEM and IOC analysis experience, familiarity with MITRE ATT&CK and cyber frameworks, strong analytical and writing skills.
ParsonsNYSE: PSN: Provides engineering and technology services for infrastructure and defense.
10+ YOEActive Top Secret/SCI with polygraph required; Bachelor's in CS/IS or related; 10+ years in intelligence/infosec/network forensics/security operations; experience with Elastic, Splunk/SIEM, Wireshark, Zeek, Snort; strong analytic and reporting skills.
Elastic, Splunk, Security Information and Event Management (SIEM), Wireshark, Packet Capture (PCAP), Zeek, Snort, XKS
Group-IB: Global provider of intelligence-driven cybersecurity and fraud protection solutions.
Deep experience investigating cybercrime and dark web ecosystems; knowledge of North America threat landscape, MITRE ATT&CK, network and OS fundamentals; scripting with Python/Bash; experience with VirusTotal, Urlscan, Shodan, RiskIQ and public sandboxes; US work authorization required.
Huntsville or Suffolk or Virginia or Maryland or Florida or Texas
OnsiteFull Time
Command Post Technologies: Providing cybersecurity and engineering services to government defense agencies.
20+ YOEBachelor's in a technical discipline, 20+ years supporting threat intelligence/cyber/EW or related missions, active Top Secret/SCI clearance, expertise in adversary TTPs and translating intelligence into threat emulation requirements.
FS-ISAC: Provides cybersecurity intelligence and resilience for the financial sector.
8+ YOE8+ years in cyber threat intelligence or related discipline, bachelor’s degree required, Top Secret/SCI clearance eligible, advanced analytic skills, AI-enabled tool experience, executive briefing and mentorship experience.
Threat Intelligence Platforms (TIPs), Security Information and Event Management (SIEM), Open-Source Intelligence (OSINT), Python, PowerShell, SQL, Microsoft Excel, Microsoft PowerPoint, Microsoft Word
NCR VoyixNYSE: VYX: Provides digital commerce software and services for retail and restaurants.
5+ YOE5+ years in threat hunting, intelligence, or incident response; experience with CrowdStrike and SIEM (Splunk, Microsoft Sentinel); strong MITRE ATT&CK knowledge; proficiency in KQL, SQL, or SPL.