> Markdown version of [/jobs/ext/2155546-threat-analyst-us-remote](https://www.wearedevelopers.com/jobs/ext/2155546-threat-analyst-us-remote). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Threat Analyst (US Remote) - **Company:** Cofense Inc. - **Location:** Leesburg, VA, United States (Remote available) - **Contract:** Permanent contract - **Skills:** Microsoft Word, Microsoft Excel, Amazon Web Services, Antivirus Softwares, CompTIA Security+, Cyber Security, Information Systems, Data Sharing, Web Browsers, Microsoft PowerPoint, Productivity Software, Regular Expressions, Phishing, Malware, Information Technology - **Published:** August 20, 2026 - **Apply:** https://diversityjobs.com/main/sendform/8/8/28176/1/18009159?backUrl=%2Fcareer%2F18009159%2FThreat-Analyst-Us-Remote-Virginia-Leesburg ## About the Role * Ability to apply critical thinking to threat investigations * Ability to recognize the need for prompt escalation of malware review * Working knowledge of networking, operating systems, email Infrastructures, anti-virus programs, and advanced threat detection systems * Skilled with common end-user applications, web browsers, and productivity applications such as MS Word, Excel, and PowerPoint that are commonly targeted by malware * Flexibility to work evening hour shifts as the job necessitates. * Demonstrate the ability to apply critical thinking to threat investigations * Strong verbal and written communication and organizational skills. * Strong critical thinking and operational judgment skills. * Ability to work in a fast-paced, team-oriented environment. * Basic understanding of email protocols, headers, and formats. * Ability to learn new techniques for conducting malware analysis. * Ability to learn and quickly implement tradecraft standards. * Ability to exercise independent judgment and creative problem-solving techniques. * Regex and YARA rule creation nice to have, * 1+ years of IT security experience or security education * Degree in Computer Science, Information Systems, Cybersecurity, or equivalent experience preferred. * Demonstrated experience to perform phishing and malware analysis * Certification in one major technology provider or Malware Analysis and Incident Response preferred + CEH, GCIA, Security+, MCSA/MCSE, VCP, CCNA/CCNE, Network+, A+, CCSP, AWS Architect, etc. ## Description Purpose of Position: Reporting to the Manager of Threat Analysts, the Threat Analyst is responsible for the analysis and processing of phishing threats reported by our customers and providing details and guidance to help customers mitigate identified threats., * Monitor systems for customer reported emails * Analyze phishing campaigns and related threats to identify patterns * Gather intelligence information from analyzed malware for dissemination to customers. * Assess reported emails to determine if an email poses a threat or is benign * Identify malicious nature of threats and provide details and guidance to the customer on how to mitigate the threat * Initiate threat analysis tickets for email threats * Maintain ownership of tickets opened for customers including updating, communicating and documenting resolutions for customers * Write rules, signatures, and descriptors for data sharing and automation technologies * Leverage malware analysis platforms and technologies to identify malware infrastructure and tactics as needed. * Assist in production of monthly customer reports * Identify process improvements to add efficiency and effectiveness to our services * Other duties as assigned. ## Related Videos - [Real-world Threat Modeling](https://www.wearedevelopers.com/videos/936-real-world-threat-modeling) - [Smart City, Smart Mobility](https://www.wearedevelopers.com/videos/954-smart-city-smart-mobility) - [Passkeys: Truly Phishing-Resistant? Implementation and Pitfalls](https://www.wearedevelopers.com/videos/100156-passkeys-truly-phishing-resistant-implementation-and-pitfalls) - [Enhancing Workload Security in Kubernetes](https://www.wearedevelopers.com/videos/356-enhancing-workload-security-in-kubernetes) - [Cyber Sleuth: Finding Hidden Connections in Cyber Data](https://www.wearedevelopers.com/videos/893-cyber-sleuth-finding-hidden-connections-in-cyber-data) - [Checkmate: 5 Real Incidents That Can End a Software Company](https://www.wearedevelopers.com/videos/100126-checkmate-5-real-incidents-that-can-end-a-software-company) ## Related Articles - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Dev Digest 191: Malware interviews, EU ❤️ Open Source and Skilled Agents](https://www.wearedevelopers.com/magazine/645-dev-digest-191-malware-interviews-eu-open-source-and-skilled-agents) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [Fully Remote Software Engineer Jobs](https://www.wearedevelopers.com/magazine/447-fully-remote-software-engineer-jobs) - [Walking Into The Era of Supply Chain Risks](https://www.wearedevelopers.com/magazine/106-walking-into-the-era-of-supply-chain-risks) - [Is Software Engineering Over-Saturated?](https://www.wearedevelopers.com/magazine/418-is-software-engineering-over-saturated)