> Markdown version of [/jobs/ext/1957813-cyber-threat-intelligence-cti-analyst](https://www.wearedevelopers.com/jobs/ext/1957813-cyber-threat-intelligence-cti-analyst). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Cyber Threat Intelligence (CTI) Analyst - **Company:** Indigo It - **Location:** Fort Liberty, NC, United States - **Experience:** Expert - **Salary:** $90,000.0 - $110,000.0 - **Contract:** Permanent contract - **Skills:** Cloud Computing, Cyber Security, Information Technology Consulting, Computer Telephony Integration, Intelligence Analysis, Intrusion Detection and Prevention, Knowledge Management, Open Source Technology, Security Information and Event Management, Snort (Software), Mitre Att&ck, Malware, Cyber Threat Analysis, Purple Team (Cyber Security), Cyber Warfare, Blue Team (Cyber Security) - **Published:** August 6, 2026 - **Apply:** https://diversityjobs.com/main/sendform/8/8/28176/1/17836584?backUrl=%2Fcareer%2F17836584%2FCyber-Threat-Intelligence-Cti-Analyst-North-Carolina-Fort-Bragg ## About the Role * 5+ years experience performing Cyber Threat Intelligence analysis within a DoD, Intelligence Community, or federal cybersecurity environment. * Strong understanding of nation-state and advanced persistent threat (APT) actors, malware analysis, and cyber threat reporting. * Experience with threat intelligence platforms, SIEM technologies, detection engineering, and indicator management. * Knowledge of MITRE ATT&CK, Cyber Kill Chain, STIX/TAXII, and common threat intelligence methodologies. * Experience developing or validating detection signatures, YARA rules, Snort/Suricata signatures, or SIEM detection content is preferred. * Excellent analytical, written, and verbal communication skills with experience producing executive and technical intelligence products. * Active DoD Secret clearance with TS/SCI eligibility ## Description Founded in 2001, Indigo IT is an award winning information technology consulting and services company. We are a trusted services provider to government agencies seeking innovative Cloud, Cybersecurity, Knowledge Management, and Enterprise solutions. We know our defense, federal, and civilian customers have critical IT infrastructures that must remain reliable, available, and maximized. Indigo IT is mission focused and committed to maintaining a sense of urgency in anticipating and supporting our customers' technology goals and objectives. Our unique ability to think beyond today allows our clients to stay ahead of their IT challenges. As a Veteran-Friendly employer, we are proudly partnered with the Virginia Values Veterans (V3) Program, and a recipient of the HIRE Vets Gold Medallion Award, which recognizes our commitment to recruiting our nation's Veterans. Recognized on the Inc. 5000 list of America's fastest growing companies in 2020 & 2021 and named as one of the 2022 Best Places to Work in Virginia, we are always looking to hire top talent in the field - come join us today! The Cyber Threat Intelligence (CTI) Analyst is responsible for collecting, analyzing, and disseminating actionable cyber threat intelligence to support an Army contract. This role provides intelligence-driven analysis that enhances threat detection, informs Purple Team assessments, prioritizes remediation efforts, and improves the organization's overall cyber defense posture., * Collect, analyze, and correlate cyber threat intelligence from classified and open-source reporting to identify emerging threats, adversary activity, and attack trends. * Produce timely intelligence reports, threat assessments, and briefings for supported commanders, Regional Cyber Centers (RCC), ARCYBER, and cybersecurity leadership. * Provide actionable intelligence to support Blue Team detection engineering, threat hunting, and incident response activities. * Partner with Purple Team personnel to develop intelligence-driven assessment objectives and adversary emulation scenarios. * Develop, review, validate, and maintain detection signatures and indicators of compromise (IOCs), ensuring proper syntax, functionality, and minimal false positives before deployment. * Support continuous improvement of enterprise detection capabilities by reviewing and refining signature content, detection logic, and threat indicators. * Conduct signature development and testing within isolated environments prior to production implementation. * Track adversary tactics, techniques, and procedures (TTPs) using frameworks such as MITRE ATT&CK and provide recommendations to strengthen defensive capabilities. * Maintain awareness of emerging cyber threats and communicate relevant intelligence to stakeholders across the cybersecurity enterprise. ## Related Videos - [Cyber Sleuth: Finding Hidden Connections in Cyber Data](https://www.wearedevelopers.com/videos/893-cyber-sleuth-finding-hidden-connections-in-cyber-data) - [Enhancing Workload Security in Kubernetes](https://www.wearedevelopers.com/videos/356-enhancing-workload-security-in-kubernetes) - [Real-world Threat Modeling](https://www.wearedevelopers.com/videos/936-real-world-threat-modeling) - [Full Spectrum File Uploads](https://www.wearedevelopers.com/videos/870-full-spectrum-file-uploads) - [WeAreDevelopers LIVE - Yes, CSS Can Do That!](https://www.wearedevelopers.com/videos/1819-wearedevelopers-live-yes-css-can-do-that) - [Forecasting Cyber Attacks with Glassdoor Reviews - Lianne Potter](https://www.wearedevelopers.com/videos/2143-forecasting-cyber-attacks-with-glassdoor-reviews-lianne-potter) ## Related Articles - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Dev Digest 216: CyberSec + Mythos, Stack Overflow for Agents & DOOM in TTF](https://www.wearedevelopers.com/magazine/728-dev-digest-216-cybersec-mythos-stack-overflow-for-agents-doom-in-ttf) - [Dev Digest 164: AI Agents, AI Blindspots and MCP security problems](https://www.wearedevelopers.com/magazine/578-dev-digest-164-ai-agents-ai-blindspots-and-mcp-security-problems) - [Dev Digest 191: Malware interviews, EU ❤️ Open Source and Skilled Agents](https://www.wearedevelopers.com/magazine/645-dev-digest-191-malware-interviews-eu-open-source-and-skilled-agents) - [IT Salaries in UK](https://www.wearedevelopers.com/magazine/288-it-salaries-in-uk)