CrawlJobs Logo

Cyber Threat Analyst Level 3

United States, Annapolis Junction Employment contract · Job Posted June 14, 2026
Apply Position
Job Link Share

Job Description

Altamira Technologies has a long and successful history providing innovative solutions throughout the U.S. National Security community. Headquartered in McLean, Virginia, Altamira serves the defense, intelligence and homeland security communities worldwide by focusing on creating innovative solutions leveraging common standards in architecture, data and security. Altamira believes that our people and the culture of our company differentiate us from other companies. Threat Operations and Intelligence Analyst (TOPI like) to join our team. In this role you will serve as a subject matter expert with deep domain knowledge in specific threat areas of interest across the globe. You will be responsible for analyzing, correlating, and operationalizing threat intelligence to support proactive defensive cyber activities. This role requires strong analytical skills with an IC mission background, technical expertise, and the ability to communicate complex findings to diverse audiences. You will work in close collaboration with a team of cyber analysts to pinpoint the highest levels of cyber threats with the goal to prevent and eradicate threats to critical U.S. systems.

Job Responsibility

  • Analyzing, correlating, and operationalizing threat intelligence to support proactive defensive cyber activities
  • Working in close collaboration with a team of cyber analysts to pinpoint the highest levels of cyber threats with the goal to prevent and eradicate threats to critical U.S. systems

Requirements

  • Ten (10) years of experience with security operations, network forensics, insider threat
  • Bachelor’s degree in computer science, information systems, international relations, or other related field
  • Experience with XKS creating general queries, fingerprinting, and identifying atypical events
  • Experience with Elastic/Splunk/ or other Security Information and Event Management (SIEM) experience creating visualizations and dashboards
  • Understanding of TCP/IP communication protocols and packet flows based on IP traffic
  • analysis of Packet Capture (PCAP) traffic in Wireshark
  • Familiarity writing signatures in Zeek and/or Snort
  • Must have a bachelor’s degree in computer science, information systems, network forensics or other data analysis roles
  • Ten (10+) years’ experience working in the areas of intelligence, information security, network forensics, insider threat or security operations
  • Specific understanding of key global areas of interest that pose threats to U.S. critical systems as well as an understanding of Advanced Persistent Threats (APTs), cyber actor motives and actions in depth
  • Experience with reporting and IC analyst knowledge resources
  • Experience with Elastic/Splunk or other Security Information and Event Management (SIEM) as well as experience creating visualizations and dashboards
  • Exceptional ability to analyze, correlate, and synthesize threat data from diverse sources
  • Ability to work with development teams and articulate requirements/enhancements to capabilities and tools
  • Ability to perform log file analysis including creating threat intelligence reports that indicate findings, mitigations, and confidence
  • Vast experience fanning advanced analytics, network diagrams, and other forms of associated knowledge to further understand systems, networks, environments, and adversaries
  • Document findings and create detailed reports to ensure tradecraft is continually updated. Present results to technical and non-technical stakeholders
  • Superior written and verbal communication skills, including executive-level reporting and presentations
  • Experience working with IC mission cybersecurity analysts on understanding the adversary and developing mission specific TTPs

Looking for more opportunities?

Search for other job offers that match your skills and interests.

Similar Jobs for

Cyber Threat Analyst Level 3

8 matching positions

New

Cyber Threat Analyst Level 2

Altamira Technologies has a long and successful history providing innovative sol...
Location
Location
United States , Annapolis Junction
Salary
Salary:
Not provided
altamiracorp.com Logo
Altamira Technologies
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Seven (7) years of experience with security operations, network forensics, insider threat
  • Bachelor's degree in computer science, information systems, international relations, or other related field
  • Experience with XKS creating general queries, fingerprinting, and identifying atypical events
  • Experience with Elastic/Splunk/ or other Security Information and Event Management (SIEM) experience creating visualizations and dashboards
  • Understanding of TCP/IP communication protocols and packet flows based on IP traffic
  • analysis of Packet Capture (PCAP) traffic in Wireshark
  • Familiarity writing signatures in Zeek and/or Snort
  • Must have a bachelor’s degree in computer science, information systems, network forensics or other data analysis roles
  • Three (3+) years’ experience working in the areas of intelligence, information security, network forensics, insider threat or security operations
  • Research OSINT and current world event trends
Job Responsibility
Job Responsibility
  • Conduct research to maintain an in-depth understanding of emerging cyber threats
  • contribute to detection strategies
  • support a team of threat analysts with the goal to eradicate vulnerabilities to critical U.S. systems
Read More
Arrow Right

Computer Network Defense Analyst Level 3

As a Computer Network Defense Analyst (CNDA), you will use information collected...
Location
Location
United States , Fort Meade
Salary
Salary:
146300.00 - 160000.00 USD / Year
elevi.net Logo
ELEVI Associates
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Degree in Network Engineering, Systems Engineering, Information Technology, or related field (e.g., General Engineering, Computer Engineering, Electrical Engineering, Computer Science, Computer Forensics, Cyber Security, Software Engineering, Information Assurance, or Computer Security)
  • Up to 18 semester hours of military training/coursework in networking, computer science, or cyber topics is equivalent to an Associate degree
  • Well versed in cyber discovery and defense-in-depth of anomalous activity identified that is part of a known or unnamed Advanced Persistent Threat (APT)
  • Relevant experience with SIGINT and AMOD
  • Fluent with stored comms and passive resources
  • Demonstrative experience in crafting analytics to correlate events to identify and isolate malicious campaign
  • Fluent with the customers authoritative signature repository to implement appropriate defensive schemas and signatures
  • Experience with enhancement of findings with use of Machine Learning and AI for focused discovery efforts
Job Responsibility
Job Responsibility
  • Use information collected from a variety sources (e.g., intrusion detection systems, firewalls, network traffic logs, and host system logs) to identify potential vulnerabilities, respond to cyber events that occur, and defend against events that might occur
  • Help develop mitigations to strengthen network defenses and protect against attacks on network infrastructure devices or systems
  • Work may span the gamut of data transport possibilities, such as traditional wired networks, wireless transport (including Wi-Fi and cellular), collaborative platforms such as video teleconferencing, and the hardware and software that support it all
  • Be part of a team, working together with government, military, and contractor personnel to develop shared understandings of intelligence needs, mission relevance, and areas of expertise
  • Apply innate curiosity and analytical talent to form hypotheses, critically assess and choose analysis techniques, then query, merge, enrich, evaluate, and pivot within data to attain and share insights
  • Distill, document, contextualize and share findings--including any new tradecraft that you develop--with teammates, stakeholders, and intelligence consumers
What we offer
What we offer
  • Flexibility to balance quality work and personal lives
  • Competitive compensation
  • Benefits and learning and development opportunities
  • Broad and competitive mix of benefits options designed to support and protect employees and their families
  • Comprehensive benefits such as
  • healthcare, wellness, financial, retirement, family support, continuing education, and time off benefits
  • Financial and counseling services
  • Retirement options
  • Health insurance programs
  • Work/life benefits to address significant life problems as well as everyday problems involved in juggling work, family, and life
Read More
Arrow Right

Computer Network Defense Analyst Level 3

As a Computer Network Defense Analyst (CNDA), you will use information collected...
Location
Location
United States , Bluffdale
Salary
Salary:
126300.00 - 140000.00 USD / Year
elevi.net Logo
ELEVI Associates
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Degree in Network Engineering, Systems Engineering, Information Technology, or related field (e.g., General Engineering, Computer Engineering, Electrical Engineering, Computer Science, Computer Forensics, Cyber Security, Software Engineering, Information Assurance, or Computer Security)
  • Up to 18 semester hours of military training/coursework in networking, computer science, or cyber topics is equivalent to an Associate degree
  • Completion of military training in a relevant area such as JCAC (Joint Cyber Analysis Course), Undergraduate Cyber Training (UCT), Network Warfare Bridge Course (NWBC)/Intermediate Network Warfare Training (INWT), Cyber Defense Operations will be considered towards relevant experience requirement
  • Relevant experience must be in computer or information systems design/development, programming, information/cyber/network security, vulnerability analysis, penetration testing, computer forensics, information assurance, and/or systems engineering
  • Must have experience in network or system administration
  • Well versed in cyber discovery and defense-in-depth of anomalous activity identified that is part of a known or unnamed Advanced Persistent Threat (APT)
  • Must have relevant experience with SIGINT and AMOD
  • Must be fluent with stored comms and passive resources
  • Demonstrative experience in crafting analytics to correlate events to identify and isolate malicious campaign
  • Fluent with the customers authoritative signature repository to implement appropriate defensive schemas and signatures
Job Responsibility
Job Responsibility
  • Use information collected from a variety sources (e.g., intrusion detection systems, firewalls, network traffic logs, and host system logs) to identify potential vulnerabilities, respond to cyber events that occur, and defend against events that might occur
  • Help develop mitigations to strengthen network defenses and protect against attacks on network infrastructure devices or systems
  • Work may span the gamut of data transport possibilities, such as traditional wired networks, wireless transport (including Wi-Fi and cellular), collaborative platforms such as video teleconferencing, and the hardware and software that support it all
  • Be part of a team, working together with government, military, and contractor personnel to develop shared understandings of intelligence needs, mission relevance, and areas of expertise
  • Apply innate curiosity and analytical talent to form hypotheses, critically assess and choose analysis techniques, then query, merge, enrich, evaluate, and pivot within data to attain and share insights
  • Distill, document, contextualize and share findings--including any new tradecraft that you develop--with teammates, stakeholders, and intelligence consumers
What we offer
What we offer
  • Healthcare
  • Wellness
  • Financial
  • Retirement
  • Family support
  • Continuing education
  • Time off benefits
Read More
Arrow Right

Staff Security Analyst, Threat Intelligence

We are building an elite team, applying frontier technologies to the world’s big...
Location
Location
United States , Menlo Park
Salary
Salary:
191000.00 - 225000.00 USD / Year
robinhood.com Logo
Robinhood
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • 8–12+ years of total experience, including 3–5+ years operating at a senior or staff-level scope in threat intelligence, brand protection, or cyber investigations
  • Hands-on experience tracking criminal ecosystems tied to phishing, scams, impersonation, fraud, and infrastructure abuse, and the ability to move from isolated indicators to campaign- and actor-level analysis
  • Deep familiarity with domain registration patterns, DNS and certificate transparency analysis, cloud and hosting abuse across providers (e.g., AWS, GCP, Azure, VPS), and attacker monetization methods
  • Experience using OSINT tooling, SQL, Python, notebooks, SIEM or SOAR platforms, OpenCTI, and case management systems to analyze data and automate workflows
  • Ability to translate complex technical threats into clear business risk for technical teams and executive audiences through strong written and verbal communication
  • Experience mentoring others or leading initiatives across teams, with a high level of accountability and sound risk judgment in ambiguous situations
Job Responsibility
Job Responsibility
  • Proactively hunt and map criminal ecosystems targeting Robinhood and its customers, then translate intelligence into scalable systems and coordinated defenses that disrupt adversaries before they cause harm
  • Build and operationalize a comprehensive "Universe of Threats" by identifying, tracking, and prioritizing adversaries across phishing, scams, impersonation, fraud, and infrastructure abuse
  • Establish and mature a proactive threat intelligence lifecycle by developing industry partnerships, collaborating with trusted peers and federal authorities, and cultivating online personas to generate early warning capabilities that protect Robinhood’s business operations
  • Investigate attacker infrastructure across domains, DNS, certificate transparency logs, cloud providers, and telecom platforms, and convert findings into concrete detections, controls, and customer protections
  • Coordinate threat actor infrastructure takedowns with hosting providers, domain registrars, cloud platforms, and other infrastructure partners to disrupt adversary operations at scale
  • Design and automate intelligence workflows using OSINT tooling, enrichment pipelines, data analysis tools, and case management systems to scale analysis and reporting
  • Partner directly with Detection & Response, Automation, Customer Trust & Safety (Fraud and Financial Crimes), Security Engineering, Corporate Security, Risk, and executive leaders to prioritize threats based on measurable business risk
What we offer
What we offer
  • Challenging, high-impact work to grow your career
  • Performance-driven compensation with multipliers for outsized impact, bonus programs, equity ownership, and 401(k) matching
  • Best-in-class benefits to fuel your work, including 100% paid health insurance for employees with 90% coverage for dependents
  • Lifestyle wallet — a highly flexible benefits spending account for wellness, learning, and more
  • Employer-paid life & disability insurance, fertility benefits, and mental health benefits
  • Time off to recharge including company holidays, paid time off, sick time, parental leave, and more
  • Exceptional office experience with catered meals, events, and comfortable workspaces
  • Fulltime
Read More
Arrow Right

Senior Analyst, Cyber Security

The Senior Analyst, Cyber Security supports the Manager, Cybersecurity & Network...
Location
Location
Canada , Vancouver
Salary
Salary:
90300.00 - 129000.00 USD / Year
canfor.com Logo
Canfor
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Degree or diploma in IT or related field
  • 5+ years enterprise experience across multi-site environments
  • Professional-level Security certifications preferred
  • Strong troubleshooting, documentation, and communication skills
  • Hands‑on experience with Microsoft Defender, Sentinel, Purview, or equivalent
  • Experience managing cloud security for Azure/M365/SaaS
  • Demonstrated ability to collaborate with MDR/SOC teams
  • Experience with privacy legislation (PIPEDA, BC PIPA)
  • Experience developing or maintaining incident response playbooks
  • Threat-informed defense (MITRE ATT&CK familiarity)
Job Responsibility
Job Responsibility
  • Plan, design, and implement enterprise security solutions
  • Resolve Tier 3 incidents and outages
  • Execute security projects and coordinate vendors
  • Maintain accurate documentation, runbooks, and inventories
  • Support for Zero Trust architecture, including network segmentation, identity hardening, and continuous monitoring
  • Responsibilities related to cloud security across Azure, M365, SaaS, and hybrid workloads
  • Oversight of third‑party risk, recognizing increased vendor dependence
  • Work with MDR (Managed Detection & Response) providers such as Arctic Wolf to improve detection, triage, and response maturity
  • Responsibilities related to governance frameworks (NIST CSF 2.0, CIS Controls v8)
  • Integration with privacy compliance (PIPEDA, BC PIPA) and corporate policy governance
What we offer
What we offer
  • performance-based incentive plans
  • recognition programs
  • benefits
  • paid leaves
  • pension plans with base and matching contributions
  • savings options
  • robust health & well-being initiatives
  • development of our talent
  • value proposition that promotes diversity, equity and inclusion
  • Fulltime
Read More
Arrow Right

Cyber Security Operations Lead

Morgan Sindall Group are looking for a Cyber Security Operations Lead role, to s...
Location
Location
United Kingdom , Coventry
Salary
Salary:
Not provided
morgansindall.com Logo
Morgan Sindall Plc
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • A minimum of 3 A levels or equivalent education (e.g. C&G, HND / HNC)
  • Good written and spoken English
  • Evidence of interest in Information Technology, Information Security or Data Protection
Job Responsibility
Job Responsibility
  • Oversee day-to-day security operations
  • Supervision and support of Operations analysts
  • Triage and remediation of incidents
  • Threat hunting
  • Performing scheduled checks
  • Assisting with user queries
  • Monitoring and maintaining our security controls
  • Own the operational relationship with our outsourced Security Operations Centre
  • Work with the Engineering function of the team to onboard and run new security controls
  • Develop and maintain an appropriate set of reporting metrics
  • Fulltime
Read More
Arrow Right

Defense Critical Infrastructure Analyst

Amentum is seeking a dynamic and innovative Defense Critical Infrastructure Anal...
Location
Location
United States , Camp H.M. Smith
Salary
Salary:
145000.00 - 165000.00 USD / Year
amentum.com Logo
Amentum
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Bachelor’s Degree, or at least 10 years of experience supporting the Department of Defense (DoD), in lieu of degree
  • At least 3 years of experience working in cybersecurity, with a focus on critical infrastructure protection and cyber vulnerability analysis
  • At least 2 years of experience on a military staff (Service HQ, Combatant Command, OSD, JS, or Component Command)
  • Experience pertaining to DoD physical and information security regulations and policies
  • Knowledge of Strategic Mission Assurance Data System (SMADS), and/or a service specific Critical Asset Management System (CAMS), in-depth knowledge of the Joint Staff Action Process (JSAP)
  • Excellent oral and written communication skills
  • Proficient at authoring analytical or policy documents
  • Proficient at Microsoft Office applications (Word, Excel, PowerPoint)
  • Minimum 1 year of experience working with AI / Language Model (LM) tools
  • Must have an active Top-Secret clearance and be SCI eligible
Job Responsibility
Job Responsibility
  • Support USINDOPACOM through the identification of DoD/Non-DoD interdependencies linking infrastructure systems across USINDOPACOM mission sets
  • Support USINDOPACOM Mission Assurance Process through established program objectives and milestones with additional planning efforts in antiterrorism/force protection/ mission assurance assessments
  • Prepare information papers and reports to inform Flag and General Officers (FO/GO) on risk to critical assets and identified critical capabilities to USINDOPACOM missions and functions
  • Participate in and support critical infrastructure related conferences including those hosted by Joint Staff (JS) and Office of the Assistant Secretary of Defense - Homeland Defense and Global Security (HD&GS) and Deputy Assistant Secretary of Defense - Defense Continuity and Mission Assurance (DC&MA)
  • Integrate and synchronize efforts of strategic national and theater level critical infrastructure programs
  • works with mission / asset owners to ensure infrastructure investment strategies reflect USINDOPACOM operational and strategic interests
  • Identify and develop processes, procedures, and technology solutions that build a responsive situational awareness capability as well as the tools integral to supporting current and future operational planning execution
  • Contribute to the sharing and understanding of Mission Assurance (MA) risk management through a cross functional awareness of criticality, threat, vulnerability, and resilient mitigation
  • Coordinate within staff (to include the Joint Intelligence Operations Center (JIOC)) and with other DoD and Non-DoD agencies to include Combatant Commands, Military Services, subordinate components, federal and state agencies and Department of State
  • Facilitate, coordinate, and collaborate with USINDOPACOM subordinate commands and units regarding MA assessment and reporting in support of programming, and DCI processes
What we offer
What we offer
  • Health, dental, and vision insurance
  • Paid time off and holidays
  • Retirement benefits (including 401(k) matching)
  • Educational reimbursement
  • Parental leave
  • Employee stock purchase plan
  • Tax-saving options
  • Disability and life insurance
  • Pet insurance
  • Fulltime
Read More
Arrow Right

Soc Lead

The Global Security Operations Centre (SOC) is a critical part of the organisati...
Location
Location
United Kingdom
Salary
Salary:
Not provided
admiralgroup.co.uk Logo
Admiral Group Plc
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • 4+ years’ experience in SOC operations and security monitoring
  • Minimum 3 years’ experience leading and developing high‑performing teams
  • Strong understanding of SIEM platforms
  • Proven knowledge of MITRE ATT&CK, Cyber Kill Chain, and modern threat actor behaviours
  • Experience in global follow‑the‑sun SOC operations (desirable but not mandatory)
  • Strong communication, report writing, presentation, and stakeholder‑facing skills
  • Experience with SOAR technologies
  • Experience with detection content and playbooks
  • Familiarity with cloud environments (Azure, GCP) and cloud security practices
  • Background in AI/ML security tools or LLM integration within SOC workflows
Job Responsibility
Job Responsibility
  • Lead, mentor, and develop SOC analysts across three countries
  • Oversee day‑to‑day SOC monitoring activities
  • Provide expert guidance during investigations, escalations, and complex security incidents
  • Ensure all security events are triaged, investigated, documented, and remediated
  • Maintain high levels of situational awareness
  • Contribute to the long‑term SOC strategy
  • Drive maturity improvements aligned with frameworks
  • Identify and implement opportunities to enhance analyst effectiveness
  • Lead annual/quarterly SOC roadmap planning and execution
  • Drive adoption of AI‑assisted automated triage and machine‑learning‑based threat analysis
What we offer
What we offer
  • 33 days holiday (including bank holidays) when they join us, increasing the longer you stay with us, up to a maximum of 38 days (including bank holidays)
  • Option to buy or sell up to an additional five days of annual leave
  • Eligible for up to £3,600 of free shares each year after one year of service
  • Flexible working
  • Simply Health
  • Private Health Cover
  • Critical Illness Cover
  • Cycle to Work Scheme
  • 24-Hour Ecare
  • Financial & Mortgage Advice
  • Fulltime
Read More
Arrow Right