> Markdown version of [/jobs/ext/2698471-adversary-network-intelligence-analyst](https://www.wearedevelopers.com/jobs/ext/2698471-adversary-network-intelligence-analyst). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Adversary Network Intelligence Analyst - **Company:** Mantech International Corporation - **Location:** Stafford, VA, United States - **Experience:** Experienced - **Contract:** Permanent contract - **Skills:** Border Gateway Protocol, Network Analysis, Cloud Computing, Profiling, Signals Intelligence, Modems, Data Cleansing, Domain Name System (DNS), Enhanced Interior Gateway Routing Protocol, Intelligence Analysis, OSI Models, Python (Programming Language), Link Analysis, Networking Basics, Network Diagrams, Routing, Open Shortest Path First (OSPF), Open Source Intelligence, Parsing, Pattern Recognition, Cloud Services, TCP/IP, Scripting, Transport Layer Security, Mitre Att&ck, Cyber Threat Analysis, Cybercrime - **Published:** September 3, 2026 - **Apply:** https://www.dice.com/job-detail/0b8aeb0b-4eaf-4fbc-ad5e-ea77b008eee9 ## About the Role * Bachelor?s degree and at least 3 years of related experience in DoD/IC network analysis or cyber threat intelligence. An additional 2 years of experience may be substituted inlieu ofdegree. * Strong technical understanding of networking fundamentals (OSI model, TCP/IP, DNS, TLS, cloud infrastructure) and routing protocols (BGP, OSPF, EIGRP). * Proven capability in structured intelligence analysis (link analysis, pattern recognition) under Intelligence Community Analytic Standards. * Practical experience with technical research tools (passive DNS, certificate transparency, WHOIS/RDAP, and network visualization platforms)., * C2 & Red System Modeling:Deep knowledge of foreign C2 systems, military communication doctrines, and infrastructure correlation with specific intrusion sets or campaigns. * Scripting & Data Enrichment:Working knowledge of scripting languages (Python preferred) to automate data enrichment and parse massive metadata sets. * Frameworks & Disruption:Familiarity with the MITRE ATT&CK framework and experience supporting collection management, threat hunting, or takedown/disruption operations. * Certifications:Active industry credentials such as CompTIA (Network+, A+, ITF), GIAC Cyber Threat Intelligence (GCTI), or Certified Threat Intelligence Analyst (CTIA). Clearance Requirements: * Must have a current / active Top Secret / SCI clearance. Physical Requirements: * Must be able to remain in a stationary position 50%. * Needs to occasionally move about inside the office to access file cabinets, office machinery, etc. ## Description * Adversary Network Mapping:Reconstruct complex, fragmented target networks and characterize logical/physical topologies, IP assets, domains, cloud services, and C2 nodes from diverse intelligence feeds. * Vulnerability & Vector Identification:Identify ingress points, vulnerable interface nodes, and structural weaknesses across hardware, modems, fiber optics, and satellite links; evaluate adversary operational security (OPSEC) practices and evasion tactics. * Multi-Source Intelligence Fusion:Correlate technical network telemetry with all-source intelligence (OSINT, SIGINT-derived insights, malware reporting) to build comprehensive assessments of adversary capabilities, intent, and infrastructure lifecycles. * Red C2 & Threat Profiling:Conduct deep-dive analysis of foreign C2 systems, organizational hierarchies, and doctrine to help command elements predict how adversary leadership issues tactical directives. * Finished Intelligence Production:Author timely, accurate intelligence products?including technical assessments, briefings, network diagrams, and threat reports?tailored for USMC intelligence officers, tactical planners, and strategic leadership. * Operational & Tradecraft Support:Partner with cyber operators and collection managers to support targeting, disruption efforts, and collection refinement. Contribute to the development of analytical tradecraft, methodologies, and tools for large-scale network parsing. ## Related Videos - [Cyber Sleuth: Finding Hidden Connections in Cyber Data](https://www.wearedevelopers.com/videos/893-cyber-sleuth-finding-hidden-connections-in-cyber-data) - [An Applied Introduction to eBPF with Go](https://www.wearedevelopers.com/videos/1075-an-applied-introduction-to-ebpf-with-go) - [Tips and Tricks for Working with JSON](https://www.wearedevelopers.com/videos/1229-tips-and-tricks-for-working-with-json) - [Turning Container security up to 11 with Capabilities](https://www.wearedevelopers.com/videos/718-turning-container-security-up-to-11-with-capabilities) - [Building a Compiler with C#](https://www.wearedevelopers.com/videos/116-building-a-compiler-with-c) - [What makes Cybersecurity different for critical infrastructure?](https://www.wearedevelopers.com/videos/571-what-makes-cybersecurity-different-for-critical-infrastructure) ## Related Articles - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [Dev Digest 164: AI Agents, AI Blindspots and MCP security problems](https://www.wearedevelopers.com/magazine/578-dev-digest-164-ai-agents-ai-blindspots-and-mcp-security-problems) - [Dev Digest 191: Malware interviews, EU ❤️ Open Source and Skilled Agents](https://www.wearedevelopers.com/magazine/645-dev-digest-191-malware-interviews-eu-open-source-and-skilled-agents) - [Dev Digest 210: AI Agents Are Go! Is MCP Dead? LLMs Crack Anonymity](https://www.wearedevelopers.com/magazine/709-dev-digest-210-ai-agents-are-go-is-mcp-dead-llms-crack-anonymity) - [Everything a Developer Needs to Know About MCP with Neo4j](https://www.wearedevelopers.com/magazine/604-everything-a-developer-needs-to-know-about-mcp-with-neo4j) - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking)