> Markdown version of [/jobs/ext/2272402-cloud-threat-analyst](https://www.wearedevelopers.com/jobs/ext/2272402-cloud-threat-analyst). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Cloud Threat Analyst - **Company:** ASRC Federal Holding Company - **Location:** Hanover, MD, United States (Remote available) - **Experience:** Experienced - **Salary:** $115,000.0 - $134,745.0 - **Contract:** Permanent contract - **Skills:** Big Data, Cloud Computing, Cyber Security, Identity and Access Management, Network Architecture, Comptia Pentest+ CE, Red Team (Cyber Security), Web Application Security, Security Information and Event Management, Software Vulnerability Management, Computer Network Operations, Cloud Platform System, Mitre Att&ck, Cyber Threat Analysis, SC Clearance, Cybercrime, Decoding, Vulnerability Analysis - **Published:** August 27, 2026 - **Apply:** https://dejobs.org/x/x/10AC4DB7AA234BCD8A3436B1B9922174/job/ ## About the Role * 2+ years of system-level cybersecurity experience in one of the following areas: * Cyber Security Analyst, Incident Response and Threat Hunting as part of a mid to large enterprise red team or threat hunt team. * Enterprise vulnerability management, endpoint security, or web security within a mid to large enterprise. * Active Top-Secret Clearance, eligible for TS/SCI. * Bachelor's degree in Information Security or related field, or equivalent combination of experience. * Must meet DoD 8140/8570.01-M IAM II or IAT Level II requirements (e.g., CCNA Security, CySA+, GICSP, Security+ CE, CND, SSCP, CAP, CASP+ CE, CISM, CISSP (or Associate), GSLC, CCISO, HCISPP, CEH, Pentest+, OSCP, CSSP-IR). At least one certification is required., * Able to read, decipher and understand system, network, or cloud logs * Knowledge of basic Enterprise and Network operations. * Knowledge of NIST Cybersecurity Framework and/or ISO 27001 (specifically focused on incident response procedures, including containment, eradication, and recovery.) * Basic understanding of Mitter Attack framework * Communication & Collaboration: Excellent written and verbal communication skills to effectively articulate technical findings and collaborate with diverse teams. ## Description ASRC Federal is hiring a Cloud Threat Analyst in support of our Defense Counterintelligence Security Agency (DCSA) program based out of Hanover MD. Team members may be required to report to Fort Meade daily if required, however Remote flexibility available! Telework offered with a requirement to be onsite up to one (1) day a week in Hanover MD. (5 days in the office has not been required to date), As the Cloud Threat Analyst, your primary duty is to safeguard our national security systems through proactive threat hunting and advanced threat detection activities. You will continuously monitor and analyze threat intelligence sources to stay informed about emerging threats, searching for signs of malicious activity across our network infrastructure, endpoints, and systems that evade traditional security solutions. A key part of your role involves developing and implementing new and innovative threat detection techniques and strategies, analyzing large datasets to identify patterns and anomalies indicative of malicious activities, and mapping adversary tactics to the MITRE ATT&CK framework. You will collaborate with other CSOC team members and stakeholders to respond to and investigate security incidents, perform in-depth forensic analysis to understand the nature and impact of threats, and provide detailed reports and briefings on threat hunting activities and findings to senior management., * Conduct proactive threat hunting activities to detect advanced threats that evade traditional security solutions * Continuously monitor and analyze threat intelligence sources to stay informed about emerging threats, vulnerabilities, and attack vectors * Search for signs of malicious activity across network infrastructure, endpoints, cloud environments, and systems * Develop and implement new and innovative threat detection techniques and strategies * Analyze large datasets using SIEM platforms and security analytics tools to identify patterns and anomalies indicative of malicious activities * Tune detection logic and alerting to reduce false positives and improve threat detection fidelity Threat Intelligence & Analysis * Leverage threat intelligence sources to identify emerging threats targeting federal environments and national security systems * Map adversary activity to MITRE ATT&CK framework and develop threat models * Analyze advanced persistent threats (APTs) and understand adversary tactics, techniques, and procedures (TTPs) * Recommend defensive improvements based on observed threat actor behaviors and attack patterns * Correlate threat intelligence with internal security events to identify potential compromises Incident Response & Investigation * Collaborate with other CSOC team members and stakeholders to respond to and investigate security incidents * Perform in-depth forensic analysis to understand the nature, scope, and impact of threats * Conduct root cause analysis and impact assessments for security incidents * Support containment, eradication, and recovery efforts during security incidents * Coordinate response actions with SOC analysts, engineering teams, system owners, and government stakeholders * Document incidents, response actions, and remediation recommendations in accordance with government reporting requirements Reporting & Documentation: * Provide detailed reports and briefings on threat hunting activities and findings to senior management * Develop and maintain threat hunting playbooks, processes, and procedures * Document lessons learned and contributed to the continuous improvement of security operations * Create and maintain technical documentation for detection rules, hunting queries, and analytical methodologies * Clearly document findings, response actions, and technical recommendations Continuous Improvement & Compliance * Participate in the development and refinement of security monitoring and incident response tools and processes * Assist with security documentation, evidence collection, and audit response * Validate security configurations against established baselines and policies * Stay current with the latest cybersecurity trends, threat actor TTPs, and defensive technologies ## Related Videos - [Fighting the Next Wave of Cybercrime](https://www.wearedevelopers.com/videos/100331-fighting-the-next-wave-of-cybercrime) - [Tour de Force: Open-Source LLM Inference Optimization from Simple to Sophisticated](https://www.wearedevelopers.com/videos/100099-tour-de-force-open-source-llm-inference-optimization-from-simple-to-sophisticated) - [Alibaba Big Data and Machine Learning Technology](https://www.wearedevelopers.com/videos/37-alibaba-big-data-and-machine-learning-technology) - [You can’t hack what you can’t see](https://www.wearedevelopers.com/videos/41-you-can-t-hack-what-you-can-t-see) - [Deep Fakes: The Lies We Can’t See](https://www.wearedevelopers.com/videos/1187-deep-fakes-the-lies-we-can-t-see) - [Challenges and Solutions for Efficient, Large-Scale Video Analysis](https://www.wearedevelopers.com/videos/2022-challenges-and-solutions-for-efficient-large-scale-video-analysis) ## Related Articles - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [What Are The Top Skills Required For Azure Developers?](https://www.wearedevelopers.com/magazine/77-what-are-the-top-skills-required-for-azure-developers) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [Best Paying Jobs in Technology](https://www.wearedevelopers.com/magazine/256-best-paying-jobs-in-technology) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [Walking Into The Era of Supply Chain Risks](https://www.wearedevelopers.com/magazine/106-walking-into-the-era-of-supply-chain-risks)