This candidate will lead cyber threat intelligence analysis and overall production to support operational and executive decision-making. Additionally, translate threat data into actionable assessments and briefs that guide prioritization and responses. This role calls for using structured analytic frameworks to connect adversary behavior to risk across enterprise assets & operate in classified contexts to supports rapid, deadline-driven tasking.
Role Responsibilities
- Gather, analyze, and interpret threat intelligence from various sources to identify emerging cyber threats and trends.
- Produce cyber threat intelligence outputs (assessments, briefs, reporting).
- Apply cyber intel lifecycle processes to collection, analysis, and dissemination.
- Use ATT&CK/D3FEND/Diamond Model methods to structure analysis.
- Generate queries/reports and leverage intel tooling (graphing/link analysis).
- Support technical analysis of enterprise assets using threat intelligence.
- Brief senior stakeholders and support high-tempo mission requirements.
- Collaborate with internal teams to integrate threat intelligence feeds into security tools and systems, including SIEM solutions like Splunk and Elastic.
Role Qualifications
- Bachelor’s degree required.
- 7 years intelligence-related experience.
- Prior intel-community management/supervision experience managing projects/tasks against tight deadlines.
- Experience with the cyber intelligence lifecycle.
- Knowledge of MITRE ATT&CK and D3FEND.
- Skill generating queries and reports.
- Experience with threat intelligence technologies including graphing/link analysis tools.
- Experience with CTI concepts/implementation and using CTI for technical analysis of enterprise assets.
- Experience with Diamond Model of Intrusion Analysis.
- CISM / CySA+ / GCIA AND CFE, Network+, Security+ or CEH.
- Active TS/SCI may be required.