> Markdown version of [/jobs/ext/1664429-cyber-threat-operations-intelligence-analysts-ts-sci-with-poly](https://www.wearedevelopers.com/jobs/ext/1664429-cyber-threat-operations-intelligence-analysts-ts-sci-with-poly). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Cyber Threat Operations & Intelligence Analysts - TS/SCI with Poly - **Company:** Parsons Corporation - **Location:** Annapolis Junction, MD, United States - **Experience:** Expert - **Salary:** $134,100.0 - $241,400.0 - **Contract:** Permanent contract - **Skills:** Data Analysis, Communications Protocols, Cyber Security, Information Systems, Intelligence Analysis, Pcap, Log Files, Network Diagrams, Network Forensics, Packet Analyzer, Security Information and Event Management, TCP/IP, Wireshark, Snort (Software), Cyber Threat Analysis, Information Technology, Cybercrime, Splunk - **Published:** July 14, 2026 - **Apply:** https://www.nexxt.com/job.asp?id=3317985371&tx=FP8178FFQ&pt=1&aff=0B19D771-A501-4A5E-8338-2A822B784D54&utm_source=Job%20Feed&utm_medium=textkernel&utm_campaign=DE&utm_term=0B19D771-A501-4A5E-8338-2A822B784D54 ## About the Role * Must have a Bachelor's Degree in computer science, information systems, network forensics or other data analysis roles. * Ten (10+) years' experience working in the areas of intelligence, information security, network forensics, insider threat or security operations. * Specific understanding of key global areas of interest that pose threats to U.S. critical systems as well as an understanding of Advanced Persistent Threats (APTs), cyber actor motives and actions in depth. * Experience with reporting and IC analyst knowledge resources. * Experience with Elastic/Splunk or other Security Information and Event Management (SIEM) as well as experience creating visualizations and dashboards. * Exceptional ability to analyze, correlate, and synthesize threat data from diverse sources. * Ability to work with development teams and articulate requirements/enhancements to capabilities and tools. * Ability to perform log file analysis including creating threat intelligence reports that indicate findings, mitigations, and confidence. * Vast experience fanning advanced analytics, network diagrams, and other forms of associated knowledge to further understand systems, networks, environments, and adversaries. * Document findings and create detailed reports to ensure tradecraft is continually updated. Present results to technical and non-technical stakeholders * Superior written and verbal communication skills, including executive-level reporting and presentations. * Experience working with IC mission cybersecurity analysts on understanding the adversary and developing mission specific TTPs. * Ability to understand data in various formats to extract and enrich information to enhance its value. * Experience with XKS creating general queries, fingerprinting, and identifying atypical events. * Understanding of TCP/IP communication protocols and packet flows based on IP traffic; analysis of Packet Capture (PCAP) traffic in Wireshark * Familiarity writing signatures in Zeek and/or Snort ## Description Parsons is looking for a talented Threat Operations and Intelligence Analyst to join our growing team! In this role you will serve as a subject matter expert with deep domain knowledge in specific threat areas of interest across the globe. You will be responsible for analyzing, correlating, and operationalizing threat intelligence to support proactive defensive cyber activities. This role requires strong analytical skills with an IC mission background, technical expertise, and the ability to communicate complex findings to diverse audiences. You will work in close collaboration with a team of cyber analysts to pinpoint the highest levels of persistent cyber threats with the common goal to prevent and eradicate threats to critical U.S. systems. ## Related Videos - [Cyber Sleuth: Finding Hidden Connections in Cyber Data](https://www.wearedevelopers.com/videos/893-cyber-sleuth-finding-hidden-connections-in-cyber-data) - [An Applied Introduction to eBPF with Go](https://www.wearedevelopers.com/videos/1075-an-applied-introduction-to-ebpf-with-go) - [Our journey with Spring Boot in a microservice architecture](https://www.wearedevelopers.com/videos/511-our-journey-with-spring-boot-in-a-microservice-architecture) - [What makes Cybersecurity different for critical infrastructure?](https://www.wearedevelopers.com/videos/571-what-makes-cybersecurity-different-for-critical-infrastructure) - [Turning Container security up to 11 with Capabilities](https://www.wearedevelopers.com/videos/718-turning-container-security-up-to-11-with-capabilities) - [Debunking the Top 10 Myths about Web 3](https://www.wearedevelopers.com/videos/634-debunking-the-top-10-myths-about-web-3) ## Related Articles - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [Best Paying Jobs in Technology](https://www.wearedevelopers.com/magazine/256-best-paying-jobs-in-technology) - [Data Analyst Salary in the UK](https://www.wearedevelopers.com/magazine/278-data-analyst-salary-in-the-uk) - [The Overflow: Security and Privacy](https://www.wearedevelopers.com/magazine/715-the-overflow-security-and-privacy) - [Walking Into The Era of Supply Chain Risks](https://www.wearedevelopers.com/magazine/106-walking-into-the-era-of-supply-chain-risks)