ManTech logo

Cyber Threat Intelligence Analyst

ManTech

Lorton, VAJobNo compensation foundTracked 3w agoSeen in employer's feed 4 days ago

Most applications go out cold — see where you stand first. No sign-up to start.

At a glance

Compensation
No compensation found
Location
Lorton, VA
Work Authorization
Not specified

Requirements

Credentials this posting asks for.

DoD 8570 IAT Level 2 CertificationTS/SCI clearanceBachelor's degree

Job overview

ManTech is hiring a Cyber Threat Intelligence Analyst. ManTech seeks a motivated, career‑oriented Cyber Threat Intelligence Analyst to join its team in Lorton, VA, focusing on deep research into social engineering and cyber‑attack campaigns while collaborating with data scientists, investigators, engineers, and partners to counter threats.

Key focus areas include Identify and analyze techniques relevant to protection systems to proactively raise awareness., Produce intelligence on the attack landscape that drives actionable protection enhancements., and Prototype new detection methods and experiment with data sources, tools, and methods..

Important skills include SQL, Python, C#, Regex, Azure Data Explorer - KQL, and MITRE ATT&CK Framework. Preferred (not required): Cyber Threat Intelligence In Cloud Environments, Azure Sentinel, Defender For Cloud, and Microsoft Defender Threat Intelligence.

Skills & qualifications

RequiredNice to have

Skills

SQLPythonC#RegexAzure Data Explorer - KQLMITRE ATT&CK FrameworkCyber Kill ChainResearchWritingThreat HuntingThreat ModelingDigital ForensicsReverse EngineeringPhishingPenetration TestingCyber Threat Intelligence in Cloud EnvironmentsAzure SentinelDefender for CloudMicrosoft Defender Threat IntelligenceCommon Vulnerabilities and Exposures (CVE) TrackingRemediation

Qualifications

Bachelor's Degree or 1 Additional Year of Experience5 Years of Experience in Security Operations, Malware Analysis, Threat Intelligence, Cyber Incident Response, and/or Penetration TestingDoD 8570 IAT Level 2 Certification3+ Years of Data Analysis and Scripting ExperienceTop-Secret Clearance With SCI EligibilityCISSPCISACISMSANSGCIAGCIHMITRE ATT&CK Certification

Full job description

MANTECH is seeking a motivated, career and customer-oriented Cyber Threat Intelligence Analyst to join our team in Lorton, VA.

The core responsibility of the Cyber Threat Intelligence Analyst is to conduct deep research into social engineering and cyber-attack campaigns and collaborate closely with data scientists, researchers, investigators, engineers, and internal & external partners to counter these threats. This person will own the Cyber Threat Operations Center (CTOC) Threat Intelligence processes and procedures. This role may include the need to work outside of core hours on high priority investigations and may also include on-call responsibilities.

Responsibilities include but are not limited to:

  • Identify and analyze techniques that are relevant to our protection systems, being proactive to bring awareness to the activity prior to any compromise.

  • Produce intelligence on the attack landscape that drives actionable protectionenhancements into our product, services, and infrastructure.

  • Prototype new detection methods and experiment with new data sources, tools, and methods for proactively identifying and monitoring attacker campaigns and changes in the attack landscape.

  • Collaborate effectively and share actionable curated intelligence with internal and external stakeholders to help them drive impact and disruption through their workflows.

  • Recommend and make appropriate updates to CTOC Threat Intelligence processes, procedures, and tools; publish intelligence on novel social engineering techniques and campaigns.

  • Mentor others and contribute to an inclusive and collaborative team culture.

Minimum Qualifications:

  • Bachelor’s degree and at least 5 years of experience in the areas of Security Operations, Malware analysis, Threat Intelligences, Cyber Incident Response, and / or Penetration Testing. Additional 1 year of experience may be substituted in lieu of a degree.

  • Current DoD 8570 IAT Level 2 certification or the ability to obtain one within 3 months of starting on contract.

  • 3+ years of data analysis and scripting experience (SQL, Python, C#, Regex, Azure Data Explorer – KQL, etc.)

  • Possess the ability to immediately take ownership of the role and operate with minimal guidance.

  • Experience with the MITRE ATT&CK Framework, the Cyber Kill Chain and/or other tools used for threat intelligence or hunting.

  • Proficient in research and writing (e.g. SOPs, threat intelligence reports, etc.)

  • Awareness of modern security related subjects and trends such as threat hunting and modeling, digital forensics, reverse engineering, phishing, and penetration testing.

Preferred Qualifications:

  • Experience with Cyber Threat Intelligence in Cloud environments.

  • CISSP, CISA, CISM, SANS, GCIA, GCIH, MITRE ATT&CK and/or OSCP certifications

  • Desire to acquire Microsoft SC-200

  • Experience with Azure Sentinel, Defender for Cloud and/or Microsoft Defender Threat Intelligence is desired.

  • Familiarity with Common Vulnerabilities and Exposures (CVE) tracking and remediation.

Clearance Requirements:

  • Must have an current/active Top-Secret Clearance with SCI Eligibility.

Physical Requirements:

  • Sedentary Work

MANTECH International Corporation considers all qualified applicants for employment without regard to disability or veteran status or any other status protected under any federal, state, or local law or regulation.

If you need a reasonable accommodation to apply for a position with MANTECH, please email us at [email protected] and provide your name and contact information.

You've read the whole posting — now see how you match it.