Cyber Threat Intelligence (CTI) Analyst

Edgewater Federal Solutions
Bethesda, MD, United States
7 days ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Compensation
$160,000.0 - $180,000.0
Working hours
Regular working hours

Tech stack

Amazon Web Services Application Layers Microsoft Azure Cyber Security Computer Networks Computer Telephony Integration Open Source Technology Mitre Att&ck Malware Cyber Threat Analysis Tactics, Techniques and Procedures (TTPs)

Job description

Edgewater Federal Solutions is currently seeking a Cyber Threat Intelligence (CTI) Analyst to provide support to an Edgewater Federal government contract., Become an integral part of a diverse team.

  • Establish and maintain complete intelligence cycle operations to support enterprise cyber security, accounting for strategic, operational, and tactical intelligence needs.
  • Use open source, government-provided and commercially provided intelligence in support of cyber security.
  • Potentially attend classified briefings that may help inform intelligence efforts.
  • Develop and brief status updates to the Federal Team.
  • Research known adversarial Tactics, Techniques and Procedures (TTPs) to identify foundational components, isolate associated host or network events, and enable threat mitigation, detection, and response.
  • Produce comprehensive cyber security reports including sourced and summarized threat intelligence, threat hunt findings and limitations, and present recommendations to system owners, cyber defenders, and policy makers.
  • Disseminate timely Indicators of Compromise (IOCs) and warnings of cyber threat activity against the U.S. and NIH-owned and operated hosts and networks.
  • Identify and provide high quality sources of indicators of attack and compromise to the team for application to the sensor array.
  • Participate in hunt, computer network defense, and incident response activities Conduct stakeholder analysis, determine client’s goals and objectives, and identify appropriate strategies to support the client’s mission/vision.
  • Create an NIH Cyber Threat Profile and analysis.
  • Complete job/system-related training as required by NIH.

Requirements

  • BS/BA degree (additional years of experience in cyber security reduce this educational requirement).
  • 12 or more years work experience.
  • Sound cyber security knowledge foundation, to include sufficient understanding of networking and application layer protocols.
  • Knowledge of the cyber kill chain and/or diamond model.
  • The ability to handle stress and work well under pressure and ambiguity.
  • The ability to make decisions and resolve problems effectively - seek out information and data to evaluate, prioritize and formulate best solutions and practices.
  • The ability to multi-task, work independently and as part of a team, and deal with sudden shifts in project priorities.
  • Working knowledge of enterprise toolsets and platforms (e.g., M365 Suite, Azure Cloud, and/or AWS).
  • Working knowledge of SecOps platforms (e.g., Tenable).
  • Technical aptitude for effective participation in hunt, computer network defense, and incident response activities, to include ability to reconstruct events based on in-depth analysis of network, endpoint, and log data.
  • Experience tracking threat actors and their TTPs, * One or more certifications in information security (such as GCIA, GCIH, CEH, CISSP, SSCP, Sec+, etc.)
  • Experience and effective participation in hunt, computer network defense, and incident response activities
  • Malware analysis skills and experience
  • Intelligence community experience

About the company

Edgewater Federal Solutions is a privately held government contracting firm located in Frederick, MD. The company was founded in 2002 with the vision of being highly recognized and admired for supporting customer missions through employee empowerment, exceptional services and timely delivery. Edgewater Federal Solutions is ISO 9001, 20000-1, 270001 certified, appraised at CMMI Level 3 Maturity for Development and Services, and has been named in the Top Workplaces in the Greater Washington Area Small Companies since 2018.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on diversityjobs.com

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

4:11 min

Introduction to cloud-native application developer security

Micah Silverman · WWC 2022

1:38 min

Using language models to self-detect and flag software vulnerabilities

Julian Totzek-Hallhuber Julian Totzek-Hallhuber · WWC Europe 2026

5:11 min

Deploying manual Seccomp profiles to block malware

Dimitrij Klesev +1 · LIVE

4:01 min

Finding personal fulfillment in the cybersecurity industry

LIVE

3:44 min

Current industry adoption and future security initiatives

Alexander Allmendinger · LIVE

1:23 min

Understanding the complexity of cybersecurity domains

Jennifer Reif · LIVE

Videos

See all

Related articles

See all