Threat Analyst
3 days ago
Dentons US LLP is currently recruiting for a Threat Analyst. The Information Security Threat Analyst is responsible for proactively hunting for threats within client environments, developing and tuning SIEM use cases, and conducting in-depth investigations of security events. The role involves monitoring and operationalizing threat intelligence, engineering automation and SOAR playbooks to streamline detection and response and maintain comprehensive documentation of threat hunting activities. The analyst collaborates with internal teams to enhance security operations, participates in incident response, and continuously adapts to the evolving cyber threat landscape.
Responsibilities
- Analyze activity trends using a mix of tools and analytical methodologies to hunt for threats not otherwise detected by configured security alerts.
- Conduct threat scenario analysis to develop new use cases with relevant attack vectors; develop attack scenarios to formulate hunting strategies to identify threats undetected by existing controls.
- Perform in-depth investigation of events of interest identified during hunts or from security alerts as defined investigation and response procedures.
- Monitor, triage, and operationalize threat intelligence from commercial, open-source, ISAC/ISAO, and government sources.
- Correlate threat intelligence with internal telemetry to identify potential compromise and guide hunts and incident response.
- Create and deliver regular threat hunting and threat intelligence reports including hypotheses, datasets, findings, false positives, and detection/response improvements.
- Contribute to the tuning and development of SIEM use cases and other security control configurations to enhance threat detection capabilities.
- Define and track Security Operations metrics.
- Design, develop, and maintain automation and SOAR playbooks to streamline alert triage, enrichment, containment, and notification workflows.
- Automate routine operational tasks (e.g., IOC curation, asset/context lookups, quarantine, user suspension) to reduce MTTD/MTTR.
- Facilitate vulnerability management by correlating vuln data with exploits-in-the-wild; prioritize remediation based on risk and exposure.
- Participate in IR exercises to validate processes and IR capabilities.
- Other duties as assigned to fully meet the requirements of the position.
Required Qualifications
- Bachelor's degree/diploma in Computer Science, Information Security, or related field.
- Minimum 2 years of experience in Cyber Intelligence or as a Threat Hunter, ideally within a CIRT/SOC; hands-on experience with SIEM content and automation development.
- Direct prior experience with core security technologies such as SIEM, vulnerability scanners, anti-virus solutions, and EDRs.
- Strong knowledge of threat intelligence and threat hunting, including MITRE ATT&CK, kill chain, hypothesis-driven methods, and IOC lifecycle management.
- Demonstrated experience with SIEM platforms (e.g., Splunk, Microsoft Sentinel, Elastic): data onboarding, parsing, correlation rules, dashboards, and tuning.
- Experience with SOAR platforms (e.g., Splunk SOAR, Microsoft Sentinel automation, Swimlane) and building playbooks for enrichment and response.
- Strong analytical and investigative skills; knowledge of technical security controls and mitigations.
- Experience with advanced endpoint analytics and EDR tooling (e.g., CrowdStrike, Defender for Endpoint, Sophos).
- Good working knowledge of common security threats, industry best practices, and security technologies.
- 24x7 on-call availability for high severity incidents.
- Knowledge of digital forensics, malware analysis, penetration testing and ethical hacking.
- Proficiency in scripting languages (Python, PowerShell, shell) is a plus.
- Industry certifications are a strong asset (e.g., GIAC, Microsoft SC-200, Splunk Enterprise Security, AWS/Azure security certs).
Salary
Chicago Only DOE: $83,850 - $107,950
Washington DC Only DOE: $86,900 - $111,850
Dentons US LLP offers a competitive salary and benefits package including medical, dental, vision, 401k, profit sharing, short-term/long-term disability, life insurance, tuition reimbursement, paid time off, paid holidays and discretionary bonuses.
Dentons US LLP is an Equal Opportunity Employer - Disability/Vet. Pursuant to local ordinances, we will consider for employment qualified applicants with arrest and conviction records.
If you need any assistance seeking a job opportunity at Dentons US, LLP, or if you need reasonable accommodation with the application process, please call our Talent Acquisition Specialist at or contact us at
About DentonsRedefining possibilities. Together, everywhere. For more information visit
-
Lead Cyber Threat Analyst
23 hours ago
Washington, Washington, D.C., United States DirectViz Solutions, LLC Full time $120,000 - $180,000 per yearDirectViz Solutions, (DVS) is a rapidly growing government contractor that provides strategic services that meet mission IT needs for government customers. DVS provides innovative information technology solutions to government clients through the knowledge and expertise of our dedicated employees. DVS is an employee-centric employer that provides competitive...
-
Cyber Threat Intelligence Analyst
24 hours ago
Washington, Washington, D.C., United States Tyto Athene, LLC Full time $80,000 - $120,000 per yearTyto Athene is searching for a Cyber Threat Intelligence Analyst to support multiple cybersecurity workstreams within the Department of Health and Human Services (HHS). The individual will contribute to research, analysis, and operational support activities as part of HHS's Cybersecurity Operations (CSO) division. The role is instrumental in assisting with...
-
Senior Threat Intelligence Analyst, SEAR
3 days ago
Washington, Washington, D.C., United States Apple Full time $120,000 - $180,000 per yearAs part of our efforts to protect our users, Apple is looking for a world-class senior threat intelligence analyst to join a team of security researchers and threat intelligence analysts. This team works together and cross-functionally to drive efforts to solve security engineering challenges, with an emphasis on supporting decisions that provide the...
-
Sr. Cyber Threat Intelligence Analyst
3 days ago
Washington, Washington, D.C., United States cFocus Software Incorporated Full time $120,000 - $180,000 per yearcFocus Software seeks a Senior Cyber Threat Intelligence Analyst to join our program supporting AOUSC. This position is fully remote. This position requires active Public Trust clearance.Qualifications:8 years' experience in conducting in-depth analysis of cyber threats, including malware, phishing campaigns, and other attack vectors. This involves...
-
Insider Threat Program Hunt Team Analyst
2 weeks ago
Washington, Washington, D.C., United States Leidos Full time $183,300 per yearDescriptionThe Digital Modernization Sector at Leidos currently has an opening for a Hunt Analyst supporting the HEITS Contract as part of the Department of Homeland Security (DHS) Insider Threat Program (ITP). This is an exciting opportunity to use your experience to support, sustain, design and evolve the database backbone of the ITP. The ITP mission is to...
-
Senior Cyber Threat Intelligence Analyst
3 days ago
Washington, Washington, D.C., United States Valiant Solutions Full time $135,000 - $149,000 per yearPosition DescriptionValiant Solutions is seeking aSenior Cyber Threat Intelligence Analystto join our rapidly growing and innovative cybersecurity teamNamed one of theBest Places to Work in the Washington DC area for 11 consecutive years, Valiant is proud of our employee-centric culture and commitment to excellence. If you are interested in learning more...
-
Associate Analyst, Cyber Threat Intelligence
20 hours ago
Washington, Washington, D.C., United States Sony Full time $85,000 - $105,000Sony Corporation of America, located in New York, NY, is the U.S. headquarters of Sony Group Corporation, based in Tokyo, Japan. Sony's principal U.S. businesses include Sony Electronics Inc., Sony Interactive Entertainment LLC, Sony Music Entertainment, Sony Music Publishing and Sony Pictures Entertainment Inc. With some 900 million Sony devices in hands...
-
Incident Response Analyst
3 days ago
Washington, Washington, D.C., United States Tyto Athene Full time $80,000 - $120,000 per year:Tyto Athene is searching for an Incident Response Analyst to support swing shift activities. We believe our Security Operations Center (SOC) analysts form the backbone of our cybersecurity services. Take your career to the next level and join us as a Tier 2 SOC Analyst. You will play a critical role in conducting in-depth analyses and responding to...
-
Tier 2 Analyst
2 weeks ago
Washington, Washington, D.C., United States ARETEC Full time $90,000 - $120,000 per yearUs:At Aretec, Inc., we are catalysts for change within the federal government landscape. Specializing in advanced analytics, machine learning, data analysis, cybersecurity, and business optimization, we empower federal agencies to achieve their most critical missions. As a premier partner and prime vendor, we deliver innovative, high-impact solutions that...
-
Program Assistant, Critical Threats Project
22 hours ago
Washington, Washington, D.C., United States American Enterprise Institute Full time $50,000 - $54,000 per yearOverviewThe Critical Threats Project (CTP) at the American Enterprise Institute (AEI) is seeking a full-time, in-person program assistant. The person in this role should have a strong interest in advancing American national security and deterring threats to the US from Iran, the Salafi-jihadi movement, and great-power competition in the Middle East and...