Senior Cyber Threat Intelligence Analyst
ECS FEDERAL LLC ·
- Work mode
- Hybrid
- Seniority
- Senior
- Category
- Security
- Salary
- USD 145,000 – 160,000 / year
Senior Cyber Threat Intelligence (CTI) Analyst supporting CISA's TESS program from Arlington, VA (hybrid). The analyst fuses classified, commercial, and open-source reporting to track state-sponsored adversaries, malicious infrastructure, IOCs, and TTPs, producing threat assessments and briefings using MITRE ATT&CK and the Diamond Model. Salary $145,000-$160,000.
Everforth ECS is seeking a Senior Cyber Threat Intelligence (CTI) Analyst to join our team in Arlington, VA (Hybrid).
ECS is seeking talented professionals to join our growing team supporting the Cybersecurity and Infrastructure Security Agency's (CISA) Technical Engineering and Support Services (TESS) program. TESS is CISA's integrated, capability-driven mission ecosystem designed to scale across mission and delivery spaces within the DHS/CISA/Cybersecurity Division/Joint Cyber Defense Collaborative. This is a hybrid role.
We are seeking a Senior Cyber Threat Intelligence Analyst to support federal cybersecurity and national-security missions through advanced cyber threat intelligence, intelligence fusion, adversary analysis, and defensive cyber operations.
This position will analyze classified, government, commercial, industry, partner, and open-source information to identify emerging threats, malicious infrastructure, vulnerabilities, indicators of compromise, and adversary tactics, techniques, and procedures. The analyst will translate technical and intelligence reporting into actionable products supporting cyber defenders, mission stakeholders, and senior leadership.
Key Responsibilities
- Conduct comprehensive Cyber Threat Intelligence (CTI) analysis using government, Intelligence Community, commercial, industry, partner, and open-source information.
- Research and track cyber threat actors, including state-sponsored adversaries, associated infrastructure, malware, capabilities, IOCs, and TTPs.
- Fuse technical and intelligence reporting to identify emerging cyber threats and assess their potential operational impact.
- Analyze, enrich, validate, and correlate malicious IP addresses, domains, infrastructure, malware, vulnerabilities, and other threat data.
- Apply analytical frameworks including MITRE ATT&CK and the Diamond Model to characterize adversary behavior and correlate threat activity.
- Produce threat assessments, intelligence products, threat-hunt referrals, defensive notifications, RFIs, and strategic communications.
- Support vulnerability and threat-response analysis to determine potential mission and operational impact.
- Collaborate with cyber defense, incident response, network operations, Intelligence Community, government, and industry partners.
- Develop and improve intelligence workflows covering data intake, enrichment, attribution, validation, prioritization, escalation, and dissemination.
- Identify opportunities to automate intelligence ingestion, analysis, correlation, and reporting.
- Develop SOPs, analytic methodologies, and training materials.
- Provide technical guidance and mentorship to cybersecurity and intelligence analysts.
- Brief emerging threats, adversary activities, and cyber risks to technical teams and senior stakeholders.
Salary Range: $145,000 - $160,000
General Description of Benefits