Cyber Threat Intelligence Analyst (DoD Secret Clearance)

Martin Incorporated
Houston, TX, United States
about 2 months ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Experienced
Experience required
2 years minimum
Working hours
Regular working hours
Job source

Tech stack

Microsoft Windows Bash Shell Cyber Security Linux File Systems Networking Hardware Intrusion Detection and Prevention Python (Programming Language) Packet Analyzer NT File System (NTFS) Open Source Technology Windows PowerShell
+7 more
Software Asset Management Scripting Mitre Att&ck Cyber Threat Analysis SC Clearance Information Technology Cybercrime

Job description

MartinFed has an opening for a Cyber Threat Intelligence Analyst to join our team of talented and diverse individuals. The Cyber Threat Intelligence Analyst proactively discovers and manages threats and vulnerabilities that put the Agency at risk. They are responsible for the collection, processing, and dissemination of cyber threat intelligence for Government leadership and security stakeholders.

The Analyst will be expected to produce documents, present briefings, and provide recommendations to a wide range of audiences; including both technical and non-technical stakeholders., * Collect cyber threat information from multiple sources and disciplines, including but not limited to Government agencies in the Intelligence Community and open-source channels.

  • Process and analyze collected information to identify threats and vulnerabilities that could impact the environment.
  • Monitor open-source channels to identify and report hostile actions targeting the Agency.
  • Track and utilize attacker IOCs and TTPs to identify patterns of adversary activity over time.
  • Produce intelligence products (written, verbal) for Government leadership and security stakeholders.
  • Collaborate with internal and external cyber intelligence groups.
  • Conduct asset identification, network discovery, and software inventory.
  • Embrace a culture of continuous service improvement and service excellence.
  • Stay up to date on security industry trends, threats, vulnerabilities, and APT activity.
  • Provide risk assessments and develop reporting for Government leadership.
  • Create and maintain SOPs and workflows related to cyber threat intelligence functions and operational requirements.

Requirements

Do you have experience in Threat intelligence?, Do you have a Bachelor’s degree?, * Bachelor’s Degree in Computer Science, or related technical field.

  • Must be a US Citizen with ability to obtain and maintain a Government Top Secret/SCI security clearance.
  • 2-4 years’ progressive work experience within Information Security.
  • At least 2 years’ experience in a threat hunting, intrusion detection or threat intelligence role.
  • At least 2 years’ experience with technical writing and developing technical documents.
  • Strong experience analyzing various log formats such as those from endpoints, networking devices, and authentication services.
  • Experience with analyzing raw packet capture.
  • Scripting capabilities (Python, PowerShell, Bash, Shell).
  • Understanding of how to collect IOCs and utilize them to identify intrusions.
  • Extensive knowledge of current and past malware, attack methodologies, and adversaries.
  • Knowledge of incident response methodologies and technologies.
  • Experience applying frameworks such as the Cyber Kill Chain, Diamond Model and MITRE ATT&CK.
  • Understanding of current industry trends and emerging threats.
  • Strong oral, written, and presentation abilities.
  • Able to operate collectively within a small, team, sometimes with minimal oversight., * Master’s Degree in Computer Science or related technical field.
  • Holds an intermediate level, industry recognized, certification (GCIA/GCIH/GCFA/GNFA/GCTI/GREM)
  • 3+ years of experience in a threat intelligence, or cyber threat intelligence role.
  • Experience in intelligence collection, analysis, and creation of products.
  • Experience working with a Threat Intelligence Platform (MISP, Anomali, X-Force, etc)
  • Deep knowledge related to the functionality of Windows OS, Mac OS-X, and Linux Operating systems and associated file systems (NTFS, HFS, ext, exFAT, etc)
  • Strong scripting capabilities (Python, PowerShell, Bash, Shell).
  • Preferred TS/SCI clearance, but only SECRET is required.
  • Experience operating in classified environments.

PHYSICAL REQUIREMENTS & ENVIRONMENTAL CONDITIONS

  • Inside office environment.
  • Working on a computer for long periods of time.
  • May involve long period of sitting at a desk.
  • Work must be performed on-site at Johnson Space Center.
  • The work environment is fast-paced and sometimes involves extreme deadline pressures.

About the company

Founded in 2007 in Huntsville, AL, MartinFed provides the U.S. government with customer-focused, performance-based solutions using technology and an empowered workforce as an engine to drive its customers’ missions. Our goal is to attract the best and brightest within their field.

We invest in our people because they are our greatest asset. They cultivate our purpose, embody and reflect our core values, and define our culture. MartinFed’s core values that set us apart are the following:

  • Be Driven - We are fueled by the hunger to learn more and do more.
  • Be Curious - We engage in continuous improvement - never accepting the status quo.
  • Be Humble - We seek honest feedback to strengthen our relationships.
  • Pursue Excellence - We strive to achieve extraordinary results and do not settle for mediocrity.

Strive for excellence and consider joining our growing team today!

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on indeed.com

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

52 sec

Running persistent Linux environments directly on Windows

Ben Breard Ben Breard · World Congress 2025

1:04 min

Introduction to Bitcoin script parsing tools

Steve Shadders · LIVE

4:34 min

Motivational categories behind modern cybercriminal activities

Mauro Verderosa · LIVE

3:21 min

Introduction to automotive security and digital forensics

Martin Schmiedecker · LIVE

3:55 min

Demonstrating .NET installation on Debian and Azure Linux

Silvano Coriani Silvano Coriani · Europe 2026 Virtual

4:01 min

Finding personal fulfillment in the cybersecurity industry

LIVE

Videos

See all

Related articles

See all