> Markdown version of [/jobs/ext/2393251-senior-threat-intelligence-analyst](https://www.wearedevelopers.com/jobs/ext/2393251-senior-threat-intelligence-analyst). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Senior Threat Intelligence Analyst - **Company:** EXPEL INC - **Location:** Herndon, VA, United States (Remote available) - **Experience:** Expert - **Salary:** $126,500.0 - $170,000.0 - **Contract:** Permanent contract - **Skills:** Data Analysis, Cyber Security, Computer Programming, Intrusion Detection and Prevention, Network Protocols, Open Source Technology, Malware, Cyber Threat Analysis, Cybercrime - **Published:** August 4, 2026 - **Apply:** https://www.techcareers.com/job.asp?id=3342502166&tx=HT767TYI&pt=1&aff=0B19D771-A501-4A5E-8338-2A822B784D54&utm_source=Job%20Feed&utm_medium=textkernel&utm_campaign=DE&utm_term=0B19D771-A501-4A5E-8338-2A822B784D54 ## About the Role * Approximately 5 to 8 years of professional experience across threat intelligence, security operations, incident response, detection engineering, or a closely related discipline. * A strong understanding of common cyberattack vectors and the tools, techniques, and procedures used by threat actors. * Experience performing detailed incident reviews to identify root causes, exploited vulnerabilities, and attacker behavior. * The ability to evaluate intelligence from multiple sources and determine what is credible, relevant, and actionable. * Familiarity with malware analysis reports generated by automated sandboxing tools, along with the ability to perform basic manual inspection. * Strong technical writing skills and the ability to adapt your communication for technical, executive, customer, and public audiences. * Strong capability in at least one technical area such as data analysis, network protocols, operating systems, security controls, or programming. * Experience mentoring colleagues and sharing technical expertise in a constructive, collaborative way. * Strong analytical, project-management, and time-management skills. * The ability to manage multiple priorities while maintaining sound judgment and attention to detail. * Confidence partnering across Marketing, Engineering, Product, SOC, Threat Hunting, and Detection Engineering teams. * Clear written and verbal communication skills, including the ability to navigate disagreement and technical ambiguity constructively., Applicants must be authorized to work in the United States. The source job description does not specify whether immigration sponsorship is available, so that detail should be confirmed before posting. ## Description * Monitor and curate intelligence from open-source reporting, dark web communities, proprietary feeds, internal incidents, and other relevant sources. * Evaluate threat intelligence for credibility, relevance, likelihood, and operational value before translating it into actionable guidance. * Review security incidents identified through Expel's MDR service to uncover root causes, attacker TTPs, and exploited vulnerabilities. * Use internal incident data alongside external intelligence to identify emerging patterns and understand which threats are actively affecting customers. * Produce clear threat intelligence reports containing IOCs, TTPs, potential impact, and recommended mitigation strategies. * Communicate findings effectively to technical practitioners, customers, executive audiences, and cross-functional stakeholders. * Keep Expel's curated intelligence current by regularly processing internal incidents and external feeds through a Threat Intelligence Platform. * Partner closely with SOC, Threat Hunting, and Detection Engineering teams to support the tactical application of intelligence. * Research new technologies, techniques, and data sources that could strengthen Expel's threat intelligence capabilities. * Participate in intelligence-sharing communities and help build a positive reputation for Expel within the broader threat intelligence ecosystem. * Support strategic customer conversations and inquiries involving advanced threats and emerging attacker behavior. * Improve the processes, tools, and methodologies used to collect, assess, distribute, and operationalize threat intelligence. * Mentor junior and staff-level colleagues while serving as a trusted subject matter expert during complex incident reviews. ## Related Videos - [Cyber Sleuth: Finding Hidden Connections in Cyber Data](https://www.wearedevelopers.com/videos/893-cyber-sleuth-finding-hidden-connections-in-cyber-data) - [Data Science in Retail](https://www.wearedevelopers.com/videos/586-data-science-in-retail) - [Fighting the Next Wave of Cybercrime](https://www.wearedevelopers.com/videos/100331-fighting-the-next-wave-of-cybercrime) - [Enhancing Workload Security in Kubernetes](https://www.wearedevelopers.com/videos/356-enhancing-workload-security-in-kubernetes) - [Deep Fakes: The Lies We Can’t See](https://www.wearedevelopers.com/videos/1187-deep-fakes-the-lies-we-can-t-see) - [Real-world Threat Modeling](https://www.wearedevelopers.com/videos/936-real-world-threat-modeling) ## Related Articles - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Is Software Engineering Over-Saturated?](https://www.wearedevelopers.com/magazine/418-is-software-engineering-over-saturated) - [Fully Remote Software Engineer Jobs](https://www.wearedevelopers.com/magazine/447-fully-remote-software-engineer-jobs) - [What’s the Difference between a Junior, Mid, and Senior Developer?](https://www.wearedevelopers.com/magazine/238-what-s-the-difference-between-a-junior-mid-and-senior-developer) - [Top-Paying Tech Jobs (with Salaries)](https://www.wearedevelopers.com/magazine/372-top-paying-tech-jobs-with-salaries) - [The Most Popular IT Jobs on the Market](https://www.wearedevelopers.com/magazine/376-the-most-popular-it-jobs-on-the-market)