Adversary Network Intelligence Analyst

Mantech International Corporation
Stafford, VA, United States
1 day ago
Apply on www.dice.com
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Experienced
Experience required
2 years minimum
Working hours
Regular working hours
Job source

Tech stack

Border Gateway Protocol Network Analysis Cloud Computing Profiling Signals Intelligence Modems Data Cleansing Domain Name System (DNS) Enhanced Interior Gateway Routing Protocol Intelligence Analysis OSI Models Python (Programming Language)
+15 more
Link Analysis Networking Basics Network Diagrams Routing Open Shortest Path First (OSPF) Open Source Intelligence Parsing Pattern Recognition Cloud Services TCP/IP Scripting Transport Layer Security Mitre Att&ck Cyber Threat Analysis Cybercrime

Job description

  • Adversary Network Mapping:Reconstruct complex, fragmented target networks and characterize logical/physical topologies, IP assets, domains, cloud services, and C2 nodes from diverse intelligence feeds.
  • Vulnerability & Vector Identification:Identify ingress points, vulnerable interface nodes, and structural weaknesses across hardware, modems, fiber optics, and satellite links; evaluate adversary operational security (OPSEC) practices and evasion tactics.
  • Multi-Source Intelligence Fusion:Correlate technical network telemetry with all-source intelligence (OSINT, SIGINT-derived insights, malware reporting) to build comprehensive assessments of adversary capabilities, intent, and infrastructure lifecycles.
  • Red C2 & Threat Profiling:Conduct deep-dive analysis of foreign C2 systems, organizational hierarchies, and doctrine to help command elements predict how adversary leadership issues tactical directives.
  • Finished Intelligence Production:Author timely, accurate intelligence products?including technical assessments, briefings, network diagrams, and threat reports?tailored for USMC intelligence officers, tactical planners, and strategic leadership.
  • Operational & Tradecraft Support:Partner with cyber operators and collection managers to support targeting, disruption efforts, and collection refinement. Contribute to the development of analytical tradecraft, methodologies, and tools for large-scale network parsing.

Requirements

  • Bachelor?s degree and at least 3 years of related experience in DoD/IC network analysis or cyber threat intelligence. An additional 2 years of experience may be substituted inlieu ofdegree.
  • Strong technical understanding of networking fundamentals (OSI model, TCP/IP, DNS, TLS, cloud infrastructure) and routing protocols (BGP, OSPF, EIGRP).
  • Proven capability in structured intelligence analysis (link analysis, pattern recognition) under Intelligence Community Analytic Standards.
  • Practical experience with technical research tools (passive DNS, certificate transparency, WHOIS/RDAP, and network visualization platforms)., * C2 & Red System Modeling:Deep knowledge of foreign C2 systems, military communication doctrines, and infrastructure correlation with specific intrusion sets or campaigns.
  • Scripting & Data Enrichment:Working knowledge of scripting languages (Python preferred) to automate data enrichment and parse massive metadata sets.
  • Frameworks & Disruption:Familiarity with the MITRE ATT&CK framework and experience supporting collection management, threat hunting, or takedown/disruption operations.
  • Certifications:Active industry credentials such as CompTIA (Network+, A+, ITF), GIAC Cyber Threat Intelligence (GCTI), or Certified Threat Intelligence Analyst (CTIA).

Clearance Requirements:

  • Must have a current / active Top Secret / SCI clearance.

Physical Requirements:

  • Must be able to remain in a stationary position 50%.
  • Needs to occasionally move about inside the office to access file cabinets, office machinery, etc.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.dice.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

5:02 min

Mapping distributed compute paradigms to modern vehicles

Joachim Werner · LIVE

4:07 min

Understanding home gateway communication protocols and server configuration

Milica Aleksic Milica Aleksic +1 · World Congress 2023

2:56 min

Open-sourcing a complex parsing library for game data

Johan Hutting Johan Hutting · World Congress 2024

1:23 min

Understanding the complexity of cybersecurity domains

Jennifer Reif · LIVE

2:58 min

Adapting the STRIDE threat model for MCP deployments

Jose Manuel Ortega Jose Manuel Ortega · Europe 2026 Virtual

3:50 min

Queues in TCP stacks and continuous network connections

Clemens Vasters Clemens Vasters · World Congress 2022

Videos

See all

Related articles

See all