Senior Cyber Threat Analyst

Mantech International Corporation
Denver, CO, United States
17 days ago
Apply on www.clearancejobs.com
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
5 years minimum
Working hours
Regular working hours

Tech stack

CompTIA Security+ Cyber Security Intelligence Analysis Log Analysis Security Information and Event Management Mitre Att&ck Cyber Threat Analysis Microsoft Sentinel Splunk

Job description

  • Conducting proactive threat hunts to uncover previously undetected adversary behavior, performing in-depth host and network log analysis, and delivering systematic threat assessments
  • Managing cyber intelligence requirements and focusing cyber intelligence collection efforts; identifying emerging cyber technologies, capabilities, or weapons which pose a threat to US or Allied systems
  • Producing comprehensive cybersecurity reports, providing sourced and summarized threat intelligence, outlining threat hunt findings and limitations, and presenting recommendations to system owners, cyber defenders, and policy makers
  • Researching known adversarial Tactics, Techniques, and Procedures (TTPs) to identify foundational components, isolate associated host or network events, and enable threat mitigation, detection, and response
  • Creating custom cybersecurity dashboards to monitor host and network activity, enabling rapid identification of successful and unsuccessful intrusion attempts
  • Performing analysis, correlation, and attribution of incidents to Advanced Persistent Threat (APT) groups
  • Conducting research and analysis of APT infrastructure and malicious binaries, external cyber threat intelligence reporting, and production

Requirements

MANTECH seeks a motivated, career and customer-oriented Senior Cyber Threat Analyst to join our team in Denver, CO., * Bachelor’s degree or 4+ additional years of cyber experience in lieu of a degree

  • 5+ years of cybersecurity experience
  • IAT Level II certification (GSEC, Security+, SSCP, or CCNA-Security)
  • Experience with related security technology or disciplines such as Incidents and Warnings Management, Cybersecurity Operations, or Cybersecurity Engineering
  • Demonstrated experience conducting proactive threat hunts across host, network, endpoint, and security telemetry.
  • Experience analyzing system, network, endpoint, and security logs to identify anomalous activity, Indicators of Compromise (IOCs), and adversary behavior.
  • Experience conducting cyber threat intelligence analysis, including assessing adversary capabilities, intent, infrastructure, and potential impact., * Familiarity with SIEM and security analytics platforms such as Splunk, Microsoft Sentinel, Elastic, or similar technologies.
  • Experience using threat intelligence frameworks, standards, and methodologies such as MITRE ATT&CK, Cyber Kill Chain or related frameworks.
  • Experience creating custom detection signatures, analytic rules, correlation logic, or threat-hunting queries.
  • Experience developing custom cybersecurity dashboards and visualizations to monitor host, network, and security activity.

Clearance Requirements:

  • Must have an active TS/SCI w/Polygraph

Physical Requirements:

  • The person in this position must be able to remain in a stationary position 50% of the time. Occasionally move about inside the office to access file cabinets, office machinery, or to communicate with co-workers, management, and customers, via email, phone, and or virtual communication, which may involve delivering presentations.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.clearancejobs.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

1:38 min

Using language models to self-detect and flag software vulnerabilities

Julian Totzek-Hallhuber Julian Totzek-Hallhuber · World Congress 2026 Europe

11:18 min

Addressing audience questions on security and microservice architectures

Reinhard Kugler · LIVE

2:38 min

Establishing comprehensive monitoring and log management

Michael Eder +1 · LIVE

4:01 min

Finding personal fulfillment in the cybersecurity industry

LIVE

4:19 min

Introduction to network security and endpoint monitoring architectures

Christoph Ruggenthaler · LIVE

3:48 min

Leveraging multi-agent systems for autonomous software testing

Ondřej Gróf Ondřej Gróf · World Congress 2026 Europe

Videos

See all

Related articles

See all