Cyber Threat Intelligence Analyst

1 day ago


Washington, Washington, D.C., United States Tyto Athene, LLC Full time $80,000 - $120,000 per year

Tyto Athene is searching for a Cyber Threat Intelligence Analyst to support multiple cybersecurity workstreams within the Department of Health and Human Services (HHS). The individual will contribute to research, analysis, and operational support activities as part of HHS's Cybersecurity Operations (CSO) division. The role is instrumental in assisting with the development, review, and management of cybersecurity initiatives and projects, specifically those aimed at protecting HHS and its partners in the Healthcare and Public Health (HPH) sector. This position requires a foundation in cybersecurity concepts, proficiency in research methodologies, and familiarity with both open and closed intelligence sources. The analyst will work closely with senior cybersecurity professionals to enhance HHS's capabilities in identifying and mitigating threats, as well as in maintaining strong relationships with key stakeholders and partners

Responsibilities:

  • Support a full Cybersecurity Threat Intelligence lifecycle
  • Collect open source, classified, and internal intelligence artifacts from investigations for actionable mitigation and technical control recommendations
  • Apply intelligence reporting and knowledge of the security network toward the discovery of suspicious activity and to prevent and/or detect future incidents
  • Support standardization of threat responses
  • Provide ad-hoc executive intelligence briefings
  • Deliver concise weekly strategic and tactical intelligence reports
  • Assess and outline the implications of reports to the client
  • Support process improvement of the current cyber threat program and alignment with the strategic program

Threat Intelligence Collection and Analysis: Conduct exhaustive reviews of open-source cybersecurity reporting, including industry blogs, security forums, and public vulnerability databases. Access and analyze closed-source reporting from trusted partners and paid threat intelligence services, including tools like Intel 471 and Mandiant. Implement automated tools for continuous monitoring of threat landscapes, including the dark web, hacking forums, and other relevant sources. Prioritize intelligence gathering on threats specifically targeting HHS systems.

Threat Actor Profiling: Assist in the development and maintenance of comprehensive threat actor profiles, detailing their motivations, capabilities, historical activities, and preferred tactics. This includes conducting link analysis to identify connections between different threat actors and campaigns.

Product Development: Develop cybersecurity products such as white papers, analyst notes, and legislative analysis reports to support internal decision-making and inform the broader HPH sector. Support the creation of tailored threat briefings for various audiences, including technical teams and executive leadership, ensuring that stakeholders understand key threats and their impact.

Classified and Specialized Research: Maintain proficiency in specialized Intelligence Community (IC) tools such as Intelink, Lucky, OSE, Pulse, TAC, and Wire. Assist in the integration of classified information with unclassified data to enhance threat intelligence analysis. Conduct classified research and prepare intelligence reports for audiences with varying levels of security clearance (up to TS/SCI).

Information Sharing and Relationship Building: Develop relationships with classified information custodians across HHS to facilitate necessary information sharing. Engage with external cybersecurity organizations to facilitate the exchange of information. Participate in classified briefings and contribute to information sharing initiatives aimed at enhancing collective cybersecurity defenses.

Support Threat Briefings: Develop and deliver threat briefings that cater to both technical and non-technical audiences. This includes assisting in the development of detailed threat landscape reports and intelligence summaries for leadership, using qualitative and quantitative analysis, and integrating findings from tools such as Intel 471 and Mandiant.

Collaboration and Stakeholder Engagement: Assist in building relationships with both internal and external cybersecurity stakeholders, including industry partners. Support efforts to enhance the sharing of threat intelligence and ensure that the HHS Cybersecurity Operations team remains informed on emerging threats and vulnerabilities.

Qualifications

Required:

  • Bachelors degree and 4 years of experience
  • CompTIA Security+, or Certified Ethical Hacker (CEH), or GIAC Cyber Threat Intelligence (GCTI)
  • Strong knowledge related to the current state of cyber adversary tools, techniques, and tactics
  • Broad understanding of network architecture and network security methods, including capabilities and limitations.
  • Experience with basic malware analysis
  • Strong analytical skills and the ability to effectively research, write, communicate, and brief varying levels of audiences to include at the executive level

Desired:

  • Experience with operational security, including security operations center (SOC), incident response, malware analysis, or IDS and IPS analyses is a plus
  • Knowledge of the TCP/IP networking stack and network IDS technologies, a plus

Location:

  • This is a hybrid role with expectations of being on the client site at times in Washington, DC

Clearance: TS/SCI Eligible

About Tyto Athene

Compensation:

  • Compensation is unique to each candidate and relative to the skills and experience they bring to the position. This does not guarantee a specific salary as compensation is based upon multiple factors such as education, experience, certifications, and other requirements, and may fall outside of the above-stated range.

Benefits:

  • Highlights of our benefits include Health/Dental/Vision, 401(k) match, Paid Time Off, STD/LTD/Life Insurance, Referral Bonuses, professional development reimbursement, and parental leave.
Tyto Athene is a trusted leader in IT services and solutions, delivering mission-focused digital transformation that drives measurable success. Our expertise spans four core technology domains—Network Modernization, Hybrid Cloud, Cybersecurity, and Enterprise IT—empowering our clients with cutting-edge solutions tailored to their evolving needs. With over 50 years of experience, Tyto Athene proudly support Defense, Intelligence, Space, National Security, Civilian, Health, and Public Safety clients across the United States and worldwide.  At Tyto Athene, we believe that success starts with our people. We foster a collaborative, innovative, and mission-driven environment where every team member plays a critical role in shaping the future of technology. Are you ready to join #TeamTyto?  Tyto Athene, LLC is an Equal Opportunity Employer; all qualified applicants will receive consideration for employment without regard to race, color, religion, sex, [sexual orientation, gender identity,] national origin, disability, status as a protected veteran, or any characteristic protected by applicable law.

  • Washington, Washington, D.C., United States cFocus Software Incorporated Full time $120,000 - $180,000 per year

    cFocus Software seeks a Senior Cyber Threat Intelligence Analyst to join our program supporting AOUSC. This position is fully remote. This position requires active Public Trust clearance.Qualifications:8 years' experience in conducting in-depth analysis of cyber threats, including malware, phishing campaigns, and other attack vectors. This involves...


  • Washington, Washington, D.C., United States Sony Full time $85,000 - $105,000

    Sony Corporation of America, located in New York, NY, is the U.S. headquarters of Sony Group Corporation, based in Tokyo, Japan. Sony's principal U.S. businesses include Sony Electronics Inc., Sony Interactive Entertainment LLC, Sony Music Entertainment, Sony Music Publishing and Sony Pictures Entertainment Inc. With some 900 million Sony devices in hands...


  • Washington, Washington, D.C., United States Valiant Solutions Full time $135,000 - $149,000 per year

    Position DescriptionValiant Solutions is seeking aSenior Cyber Threat Intelligence Analystto join our rapidly growing and innovative cybersecurity teamNamed one of theBest Places to Work in the Washington DC area for 11 consecutive years, Valiant is proud of our employee-centric culture and commitment to excellence. If you are interested in learning more...


  • Washington, Washington, D.C., United States Apple Full time $120,000 - $180,000 per year

    As part of our efforts to protect our users, Apple is looking for a world-class senior threat intelligence analyst to join a team of security researchers and threat intelligence analysts. This team works together and cross-functionally to drive efforts to solve security engineering challenges, with an emphasis on supporting decisions that provide the...


  • Washington, Washington, D.C., United States DirectViz Solutions, LLC Full time $120,000 - $180,000 per year

    DirectViz Solutions, (DVS) is a rapidly growing government contractor that provides strategic services that meet mission IT needs for government customers. DVS provides innovative information technology solutions to government clients through the knowledge and expertise of our dedicated employees. DVS is an employee-centric employer that provides competitive...

  • Threat Analyst

    3 days ago


    Washington, Washington, D.C., United States Dentons Full time $83,850 - $111,850

    Dentons US LLP is currently recruiting for a Threat Analyst. The Information Security Threat Analyst is responsible for proactively hunting for threats within client environments, developing and tuning SIEM use cases, and conducting in-depth investigations of security events.  The role involves monitoring and operationalizing threat intelligence,...


  • Washington, Washington, D.C., United States JPMorgan Chase Full time $120,000 - $250,000 per year

    Harness your expertise to shape robust cybersecurity strategies and safeguard critical assets. Your leadership will be pivotal in enhancing our resilience against evolving global cyber threats.As the Cybersecurity Intelligence Vice President at JPMorgan Chase within the Cybersecurity and Tech Controls team, you will play a critical role in safeguarding the...


  • Washington, Washington, D.C., United States Constellation West Full time $120,000 - $150,000 per year

    2 All-Source Intelligence Analysts (Senior)Required QualificationsMust possess a currently active Top Secret/SCI security clearance and DHS suitability.Bachelor's degree or higher from an accredited institution.Preferred concentrations: Intelligence, National Security, Homeland Security, Regional Studies, Computer Science, Cybersecurity, Computer...


  • Washington, Washington, D.C., United States General Dynamics Information Technology Full time $82,000 - $120,000 per year

    Type of Requisition:RegularClearance Level Must Currently Possess:Top Secret/SCIClearance Level Must Be Able to Obtain:Top Secret SCI + PolygraphPublic Trust/Other Required:NoneJob Family:Cyber and IT Risk ManagementJob Qualifications:Skills:Cybersecurity, Event Security, Security Audit, Splunk (Inactive)Certifications:NoneExperience:8 + years of related...


  • Washington, Washington, D.C., United States S2Technologies, LLC Full time $70,000 - $130,000 per year

    Position Title: Intelligence Watch OfficerPosition OverviewS2Technologiesis seeking a Intelligence Watch Officer to provide support to the Department of Homeland Security (DHS) office of Intelligence and Analysis (I&A). The Office supports a number of functions regarding protecting US interests and interacts across DHS and with State, Local, Tribal, and...