> Markdown version of [/jobs/ext/1471522-cyber-threat-intelligence-analyst](https://www.wearedevelopers.com/jobs/ext/1471522-cyber-threat-intelligence-analyst). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Cyber Threat Intelligence Analyst - **Company:** Agile Defense - **Location:** Arlington, VA, United States - **Salary:** $120,000.0 - $145,000.0 - **Contract:** Permanent contract - **Skills:** Computer Telephony Integration, Data Files, Supervisory Control and Data Acquisition (SCADA), Open Source Intelligence, Cyber Threat Analysis, SC Clearance, Process Control Systems - **Published:** July 28, 2026 - **Apply:** https://www.clearancejobs.com/jobs/9062118/cyber-threat-intelligence-analyst ## About the Role A minimum Bachelor's with 5+ years of experience, MS 3+ years of experience or PHD 0+ years of experience. Years of Experience Years of experience depends on educational background., * Active Top-Secret Clearance. * Familiarity with dia writing standards, and applicable knowledge on icd203 & icd106 standards. * Understanding of indicators of compromise and how they are utilized with CTI. * Knowledge on how to use and implement the MITRE framework. * Working knowledge of what an APT is. * Know how to utilize TTP's from an APT to leverage against potential targets. Preferred Skills * ICS/SCADA/OT experience. * Experience working with ICS/SCADA/OT equipment and/or have certifications/education relating to industrial control systems. * Experienced with the People's Republic of China (PRC) threat in the context of the intelligence community world related to cybersecurity. ## Description Agile Defense is actively seeking a Cyber Threat Intelligence Analyst with background experience on People's Republic of China (PRC) to apply their technical and analytic expertise to evaluate advanced and emerging cyber threats targeting Federal Departments and Agencies (D/A) and National Critical Functions (NCF). The selected candidate will produce all-source, strategic cyber intelligence assessments using various industry and government tools and classified and unclassified data sets. They will Identify, Investigate, and pursue cyber events of significance and communicate findings to key decision makers via a broad range of intelligence products while adhering to intelligence tradecraft and methods. Position is contingent on successfully completing a program-based background investigation. Duties include: * Collect and analyze threat data from multiple sources (open-source intelligence, dark web, threat feeds, internal logs). * Identify threat actors, tactics, techniques, and procedures (TTPs) used in cyberattacks. * Assess vulnerabilities and risks to the organization based on current threat landscape. * Produce intelligence reports for security teams and leadership to guide decision-making., * Happy - Be Infectious. Happiness multiplies and creates a positive and connected environment where motivation and satisfaction have an outsized effect on everything we do. * Helpful - Be Supportive. Being helpful is the foundation of teamwork, resulting in a supportive atmosphere where collaboration flourishes, and collective success is celebrated. * Honest - Be Trustworthy. Honesty serves as our compass, ensuring transparent communication and ethical conduct, essential to who we are and the complex domains we support. * Humble - Be Grounded. Success is not achieved alone, humility ensures a culture of mutual respect, encouraging open communication, and a willingness to learn from one another and take on any task. * Hungry - Be Eager. Our hunger for excellence drives an insatiable appetite for innovation and continuous improvement, propelling us forward in the face of new and unprecedented challenges. * Hustle - Be Driven. Hustle is reflected in our relentless work ethic, where we are each committed to going above and beyond to advance the mission and achieve success. ## Related Videos - [Cyber Sleuth: Finding Hidden Connections in Cyber Data](https://www.wearedevelopers.com/videos/893-cyber-sleuth-finding-hidden-connections-in-cyber-data) - [Introduction to TXT](https://www.wearedevelopers.com/videos/30-introduction-to-txt) - [What makes Cybersecurity different for critical infrastructure?](https://www.wearedevelopers.com/videos/571-what-makes-cybersecurity-different-for-critical-infrastructure) - [Forecasting Cyber Attacks with Glassdoor Reviews - Lianne Potter](https://www.wearedevelopers.com/videos/2143-forecasting-cyber-attacks-with-glassdoor-reviews-lianne-potter) - [Reporting Active Exploits in 24 Hours: Are You Ready for the CRA?](https://www.wearedevelopers.com/videos/100248-reporting-active-exploits-in-24-hours-are-you-ready-for-the-cra) - [Implementing continuous delivery in a data processing pipeline](https://www.wearedevelopers.com/videos/73-implementing-continuous-delivery-in-a-data-processing-pipeline) ## Related Articles - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [Best Paying Jobs in Technology](https://www.wearedevelopers.com/magazine/256-best-paying-jobs-in-technology) - [What Industries Outside of AI Are Hiring The Most AI Experts?](https://www.wearedevelopers.com/magazine/98-what-industries-outside-of-ai-are-hiring-the-most-ai-experts) - [Dev Digest 216: CyberSec + Mythos, Stack Overflow for Agents & DOOM in TTF](https://www.wearedevelopers.com/magazine/728-dev-digest-216-cybersec-mythos-stack-overflow-for-agents-doom-in-ttf) - [Walking Into The Era of Supply Chain Risks](https://www.wearedevelopers.com/magazine/106-walking-into-the-era-of-supply-chain-risks)