> Markdown version of [/jobs/ext/1833378-cyber-intelligence-analyst-remote](https://www.wearedevelopers.com/jobs/ext/1833378-cyber-intelligence-analyst-remote). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Cyber Intelligence Analyst - Remote - **Company:** United Parcel Service, Inc. - **Location:** Louisville, KY, United States (Remote available) - **Salary:** $86,640.0 - $160,500.0 - **Contract:** Permanent contract - **Skills:** Microsoft Windows, Amazon Web Services, Data Analysis, Microsoft Azure, Unix, Cyber Security, Linux, IP Routing, OllyDBg, Open Source Technology, Reverse Engineering, Security Information and Event Management, TCP/IP, Google Cloud, In-Plane Switching (IPS), Mitre Att&ck, Malware, Cyber Threat Analysis, Firewalls (Computer Science), Cybercrime - **Published:** July 18, 2026 - **Apply:** https://www.oriontalent.com/search-jobs/career/11628608/cyber-intelligence-analyst-remote-kentucky-ky-louisville ## About the Role * Experience as Security Operations Center (SOC) Analyst or relevant Cyber Security focused incident response and handling roles * Experience in Malware Reverse Engineering and Sandboxing * Experience with SIEM Technology * Significant experience with Linux, TCP/IP, UNIX, MS-Windows, IP Routing, Firewalls and IPS * Understanding of behavioral based threat models, including ATT&CK, Cyber Kill Chain, Diamond Model, etc. * Deep understanding of advanced cyber threats targeting enterprises, along with the tools, tactics, and procedures used by those threats * Demonstrated experience using Open Source (OllyDbg, Radare, GDB, etc.) malware analysis tools * Ability to analyze shellcode, and packed and obfuscated code, and their associated algorithms * Ability to develop network and host-based signatures to identify specific malware. Recommend heuristic or anomaly-based detection methods * Subject matter expertise in the detection, analysis and mitigation of malware * Experience with Information Security Research, Malware Reverse Engineering, Cyber Threat Analysis, Windows Operating System and Data Analysis * Knowledge of Research skills, Technical Writing, Information Security Research, Security Incident Response, Security Risk Assessment/Analysis * Bachelors degree or other college equivalent is preferred. * Incident response focused certifications such as GIAC GSEC (401), GCIH (504), GMON (511) or equivalent knowledge level preferred. * Public cloud (AWS, Azure, GCP) certifications are preferred., Must be a U.S. Citizen or National of the U.S., an alien lawfully admitted for permanent residence, or an alien authorized to work in the U.S. for this employer. ref: (R26009716_LOUISVILLE) 14 hours ago ## Description The Cyber Intelligence Analyst participates in the identification, tracking, monitoring, containment and mitigation of information security threats. He/She performs analysis of endpoint and network data utilizing established processes and tools to perform threat identification, analysis, containment and remediation. This position is responsible for the documentation of security events and their resolution. The Cyber Intelligence Analyst communicates with and educates clients and asset owners to ensure understanding of processes and procedures, complex security topics and protocols, and risk resolution methodologies. The Cyber Intelligence Analyst will be required to provide support on a rotating basis. ## Related Videos - [An Applied Introduction to eBPF with Go](https://www.wearedevelopers.com/videos/1075-an-applied-introduction-to-ebpf-with-go) - [The Developer Workstation Blind Spot: Why Your Security Stack Can't See What Matters Most](https://www.wearedevelopers.com/videos/100254-the-developer-workstation-blind-spot-why-your-security-stack-can-t-see-what-matters-most) - [Docker network without Docker](https://www.wearedevelopers.com/videos/1418-docker-network-without-docker) - [WeAreDevelopers LIVE - Node and Package Security](https://www.wearedevelopers.com/videos/2138-wearedevelopers-live-node-and-package-security) - [Turning Container security up to 11 with Capabilities](https://www.wearedevelopers.com/videos/718-turning-container-security-up-to-11-with-capabilities) - [What makes Cybersecurity different for critical infrastructure?](https://www.wearedevelopers.com/videos/571-what-makes-cybersecurity-different-for-critical-infrastructure) ## Related Articles - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Fully Remote Software Engineer Jobs](https://www.wearedevelopers.com/magazine/447-fully-remote-software-engineer-jobs) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [Data Analyst Salary in the UK](https://www.wearedevelopers.com/magazine/278-data-analyst-salary-in-the-uk) - [Is Software Engineering Over-Saturated?](https://www.wearedevelopers.com/magazine/418-is-software-engineering-over-saturated) - [Dev Digest 191: Malware interviews, EU ❤️ Open Source and Skilled Agents](https://www.wearedevelopers.com/magazine/645-dev-digest-191-malware-interviews-eu-open-source-and-skilled-agents)