> Markdown version of [/jobs/ext/3138152-cyber-threat-analysts](https://www.wearedevelopers.com/jobs/ext/3138152-cyber-threat-analysts). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Cyber Threat Analysts - **Company:** ClearBridge Technology Group - **Location:** United States - **Experience:** Experienced - **Salary:** $116,480.0 - $168,480.0 - **Contract:** Permanent contract - **Skills:** Artificial Intelligence, JIRA, Apache Lucene, Communications Protocols, Elasticsearch, Intrusion Detection and Prevention, NetFlow, Packet Analyzer, Logstash, Kusto Query Language, Security Information and Event Management, Mitre Att&ck, Cyber Threat Analysis, 3-tier Architectures, Kibana, Cyber Warfare - **Published:** September 29, 2026 - **Apply:** https://www.dice.com/job-detail/cce96eb0-b6e8-4331-b8fc-43ca002b391a ## About the Role * Must have an active TS / SCI clearance. * At least 4 years of experience working in Cyber Threat Intelligence, all-source cyber analysis, threat hunting or SOC tier 2 / tier 3 Operations and a Bachelors degree (military experience will suffice if candidates do not have a degree. * Prior experience analyzing and correlating network protocol telemetry, NetFlow, proxy logs and raw packet captures to reconstruct complex intrusion paths. * Experience querying SIEM platforms, specifically Elasticsearch, Logstash, Kibana (ELK) / Elastic Defend using KQL or Lucene query syntax. * Understanding of adversary TTPs, threat actor attribution and operational mapping, ideally using the MITRE ATT&CK framework. * Experience writing incident documentation, standard operating procedures and containment playbooks in JIRA. * Must hold a valid certification or degree meeting DOD 8140.03 / DCWF Work Role Code 532 Cyber Defense Incident Responder (at the intermediate proficiency level) prior to being onsite. * Any of the following certifications, CySA+, GIAC CGTI, EC-C CEH, CND, Security+, etc. Preferred or Nice to Have Skills: * Operational experience analyzing telemetry from Corelight (Zeek), Darktrace, MDR or Palo Alto Advanced Threat Prevention (ATP). * Experience utilizing AI prompting tools (Gemini, Grok) to automate threat hunting data collection and indicator extraction.