> Markdown version of [/jobs/ext/566203-cyber-threat-analyst-ts-sci-with-polygraph](https://www.wearedevelopers.com/jobs/ext/566203-cyber-threat-analyst-ts-sci-with-polygraph). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Cyber Threat Analyst (TS/SCI with Polygraph) - **Company:** Red Alpha - **Location:** Annapolis Junction, MD, United States - **Experience:** Expert - **Salary:** $165,000.0 - $225,000.0 - **Contract:** Permanent contract - **Skills:** Cyber Security, Computer Networks, Network Security, Pcap, Network Forensics, Network Monitoring, Packet Analyzer, Security Information and Event Management, Transmission Control Protocol (TCP), Wireshark, Snort (Software), Cyber Threat Analysis, Information Technology, Cybercrime, Splunk, Vulnerability Analysis - **Published:** June 14, 2026 - **Apply:** https://www.indeed.com/viewjob?jk=33ae26da57bdea6e ## About the Role Do you have experience in Threat intelligence?, Do you have a Bachelor's degree?, * Bachelor's Degree in Computer Science or a related technical discipline from an accredited institution * Atleast seven (7) years of relevant experience in the areas of intelligence, information security, network forensics, or security operations. * Ability to analyze and enrich data from multiple sources to generate actionable intelligence. * Experience with XKS for querying, fingerprinting, and identifying anomalous activity. * Proficiency with SIEM tools such as Elastic, Splunk, or similar platforms. * Strong understanding of TCP/IP networking, packet analysis, and Wireshark. * Experience developing detection signatures using Zeek and/or Snort. * Knowledge of common cyber threats, attack vectors, and network defense strategies. * Experience designing and implementing network monitoring and threat detection solutions. * Ability to collaborate with technical teams to enhance cybersecurity capabilities. * Strong documentation, reporting, and communication skills for technical and non-technical audiences. ## Description * Conduct advanced analysis of network traffic to identify, investigate, and assess potential cyber threats. * Monitor and analyze security events using SIEM platforms and other network monitoring tools. * Perform packet-level analysis using PCAP data and network forensic tools to identify suspicious or anomalous activity. * Develop and refine detection methods, signatures, and monitoring strategies to improve threat visibility. * Create queries, perform fingerprinting, and identify atypical events using specialized analytic platforms. * Analyze and enrich data from multiple sources to generate actionable intelligence and security insights. * Collaborate with development and engineering teams to define requirements and enhance cybersecurity capabilities. * Evaluate common attack vectors and recommend defensive measures to strengthen network security. * Document investigative findings, methodologies, and threat assessments in detailed reports. * Present technical findings and recommendations to both technical and non-technical stakeholders. * Support continuous improvement of cyber tradecraft, monitoring processes, and threat detection capabilities. ## Related Videos - [Cyber Sleuth: Finding Hidden Connections in Cyber Data](https://www.wearedevelopers.com/videos/893-cyber-sleuth-finding-hidden-connections-in-cyber-data) - [How I saved 200K/yr in direct costs writing 0 code lines in K8s](https://www.wearedevelopers.com/videos/1055-how-i-saved-200k-yr-in-direct-costs-writing-0-code-lines-in-k8s) - [Our journey with Spring Boot in a microservice architecture](https://www.wearedevelopers.com/videos/511-our-journey-with-spring-boot-in-a-microservice-architecture) - [Let’s write an exploit using AI](https://www.wearedevelopers.com/videos/1004-let-s-write-an-exploit-using-ai) - [MySQL Protocol Features You Should Be Aware Of](https://www.wearedevelopers.com/videos/100267-mysql-protocol-features-you-should-be-aware-of) - [Checkmate: 5 Real Incidents That Can End a Software Company](https://www.wearedevelopers.com/videos/100126-checkmate-5-real-incidents-that-can-end-a-software-company) ## Related Articles - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [Best Paying Jobs in Technology](https://www.wearedevelopers.com/magazine/256-best-paying-jobs-in-technology) - [Dev Digest 191: Malware interviews, EU ❤️ Open Source and Skilled Agents](https://www.wearedevelopers.com/magazine/645-dev-digest-191-malware-interviews-eu-open-source-and-skilled-agents) - [Dev Digest 216: CyberSec + Mythos, Stack Overflow for Agents & DOOM in TTF](https://www.wearedevelopers.com/magazine/728-dev-digest-216-cybersec-mythos-stack-overflow-for-agents-doom-in-ttf) - [Data Analyst Salary in the UK](https://www.wearedevelopers.com/magazine/278-data-analyst-salary-in-the-uk)