Threat Intelligence Analyst Jobs
Threat Intelligence Analyst jobs are open across defense contractors, financial services, healthcare, and technology, at every level from junior analyst to principal and director, with specializations in malware analysis, threat hunting, and nation-state actor tracking. Find a role that fits from the openings below and apply directly.
Find JobsOverview
Showing 5 of 79+ Threat Intelligence Analyst jobs











Description
Leidos is seeking a Senior Supply Chain Risk Management Threat Intelligence Lead Analyst to provide advanced, high-level technical and analytical support to the FAA’s Counterintelligence (CI) Supply Chain Risk Management (SCRM) program. The program is responsible for identifying, assessing, and mitigating foreign intelligence, nation-state, and cybersecurity threats to the FAA’s supply chain, critical infrastructure, and enterprise networks. Embedded as a senior leader within a 4-person team, this position focuses on threat landscapes, adversarial intent, and geopolitical vulnerability modeling. Providing independent, authoritative all-source intelligence analysis, the senior analyst designs analytic methodologies using Open Source Intelligence (OSINT) and corporate registries to uncover hidden Foreign Ownership, Control, or Influence (FOCI), technology transfer risks, and strategic threat trends targeting the aviation industrial base. This role oversees the evaluation of physical, technical, and personnel vulnerabilities, including sophisticated hardware/firmware threats and insider risks, to produce exquisite intelligence briefings that guide FAA executive leadership and empower the broader SCRM framework.
Primary Responsibilities:
- Act as lead analyst ensuring strict quality control, mentoring, and analytical integrity across all FAA CI SCRM products.
- Conduct proactive threat analysis of foreign suppliers, third-party software developers, and hardware manufacturers to identify nation-state activity and strategic threat trends targeting the FAA.
- Utilize OSINT and corporate registries to screen prospective FAA vendors and evaluate the supply chain for Foreign Ownership, Control, or Influence (FOCI) indicators, foreign partnerships, and technology transfer threats.
- Monitor specialized threat feeds, nation-state activities, and geopolitical shifts to identify, evaluate, and mitigate strategic supply chain risks to the FAA.
- Support the FAA Insider Risk Program by identifying and analyzing personnel concerns, anomalous vendor behaviors, and internal vulnerabilities.
- Evaluate threat vectors including malicious hardware or software modifications, supply chain transit interdiction, and counterfeit electronic components.
- Synthesize complex data to produce clear, actionable Supplier Threat Profiles, Country Risk Profiles, link-analysis diagrams, and timely threat alerts/advisories for FAA program managers, technical teams, and executive decision-makers.
- Translate highly complex counterintelligence findings, technical hardware/software vulnerabilities, and macroeconomic geopolitical risks into exquisite intelligence briefings, dashboards, and executive decision packages tailored specifically for senior FAA leadership.
- Formulate performance metrics and program reports for executive leadership.
- Maintain critical operational and collaborative relationships with external stakeholders, including the FAA Chief Information Officer (CIO), Cybersecurity and Infrastructure Security Agency (CISA), Federal Bureau of Investigation (FBI), Department of Homeland Security (DHS), and the broader Intelligence Community (IC).
- Coordinate and facilitate SCRM training and awareness campaigns for acquisition personnel and program offices.
Basic Qualifications:
- Citizenship: U.S. Citizenship required.
- Clearance: Active Top Secret/SCI clearance is required.
- Education: Bachelor’s or Master’s degree in Supply Chain, Intelligence Studies, National Security, Logistics, Data Science, Cybersecurity, Information Technology, Computer Science, Computer Engineering, or a related technical discipline. (Equivalent professional experience or specialized military/federal training may be substituted).
- Experience: 12+ years of professional experience as an Intelligence Analyst (All-Source, Cyber, Counterintelligence, or Open-Source Intelligence) or senior-level experience in third-party risk management (TPRM), Cyber Supply Chain Risk Management (C-SCRM), technical risk assessments, IT auditing, cybersecurity risk management, or infrastructure defense in a federal or highly regulated commercial environment.
- Analytical Capability: Proven experience using corporate registries, commercial databases, and OSINT techniques to analyze corporate structures, trace components, and evaluate FOCI.
- Technical Skills: Proficiency with due diligence or corporate intelligence platforms (e.g., Sayari, Altana, Interos, Maltego) and/or data modeling.
- Communication Skills: Exceptional written and verbal communication skills, with a proven track record of translating complex intelligence and technical risk data into clear, concise executive briefs and formal written reports for non-technical stakeholders and delivering briefing materials to C-suite or flag-level leadership.
Preferred Qualifications:
- Completion of formal military or federal intelligence training courses focusing on threat network analysis or open-source collection.
- High proficiency with advanced OSINT search techniques, corporate filing retrieval systems, and international trade/shipping databases.
- Familiarity with the acquisition frameworks and an understanding of how supply chain intelligence feeds into federal procurement lifecycles.
- Prior experience supporting threat intelligence or counterintelligence infrastructure defense missions specifically for critical infrastructure or a federal agency.
If you're looking for comfort, keep scrolling. At Leidos, we outthink, outbuild, and outpace the status quo — because the mission demands it. We're not hiring followers. We're recruiting the ones who disrupt, provoke, and refuse to fail. Step 10 is ancient history. We're already at step 30 — and moving faster than anyone else dares.
Original Posting:
July 31, 2026
For U.S. Positions: While subject to change based on business needs, Leidos reasonably anticipates that this job requisition will remain open for at least 3 days with an anticipated close date of no earlier than 3 days after the original posting date as listed above.
Pay Range:
Pay Range $116,350.00 - $210,325.00The Leidos pay range for this job level is a general guideline only and not a guarantee of compensation or salary. Additional factors considered in extending an offer include (but are not limited to) responsibilities of the job, education, experience, knowledge, skills, and abilities, as well as internal equity, alignment with market data, applicable bargaining agreement (if any), or other law.
About Leidos
Leidos is an industry and technology leader serving government and commercial customers with smarter, more efficient digital and mission innovations. Headquartered in Reston, Virginia, with 47,000 global employees, Leidos reported annual revenues of approximately $16.7 billion for the fiscal year ended January 3, 2025. For more information, visit www.Leidos.com.
Pay and Benefits
Pay and benefits are fundamental to any career decision. That's why we craft compensation packages that reflect the importance of the work we do for our customers. Employment benefits include competitive compensation, Health and Wellness programs, Income Protection, Paid Leave and Retirement. More details are available at www.leidos.com/careers/pay-benefits.
Securing Your Data
Beware of fake employment opportunities using Leidos’ name. Leidos will never ask you to provide payment-related information during any part of the employment application process (i.e., ask you for money), nor will Leidos ever advance money as part of the hiring process (i.e., send you a check or money order before doing any work). Further, Leidos will only communicate with you through emails that are generated by the Leidos.com automated system – never from free commercial services (e.g., Gmail, Yahoo, Hotmail) or via WhatsApp, Telegram, etc. If you received an email purporting to be from Leidos that asks for payment-related information or any other personal information (e.g., about you or your previous employer), and you are concerned about its legitimacy, please make us aware immediately by emailing us at LeidosCareersFraud@leidos.com.
If you believe you are the victim of a scam, contact your local law enforcement and report the incident to the U.S. Federal Trade Commission.
Commitment to Non-Discrimination
All qualified applicants will receive consideration for employment without regard to sex, race, ethnicity, age, national origin, citizenship, religion, physical or mental disability, medical condition, genetic information, pregnancy, family structure, marital status, ancestry, domestic partner status, sexual orientation, gender identity or expression, veteran or military status, or any other basis prohibited by law. Leidos will also consider for employment qualified applicants with criminal histories consistent with relevant laws.
Threat Intelligence Analyst Jobs by Experience Level
See All 79 Threat Intelligence Analyst Jobs
Find roles that match your experience and apply in just a few clicks.
Find JobsThreat Intelligence Analyst Job Market
Who's Hiring



Top Industries Hiring
- Technology & Software11
- Retail2
- Cybersecurity1
- Artificial Intelligence1
- Construction & Real Estate1
What Employers Look For
The qualifications that appear most often in threat intelligence analyst jobs.
- Bachelor's degree in cybersecurity, computer science, information systems, or a related field
- Proficiency with threat intelligence platforms such as Recorded Future, ThreatConnect, or MISP
- Experience applying the MITRE ATT&CK framework to analyze and attribute adversary behavior
- Familiarity with malware analysis, reverse engineering tools, or YARA rule development
- Active or eligibility for a U.S. security clearance, particularly for federal and defense roles
- Industry certifications such as GIAC GCTI, GCFE, or CompTIA CySA+ preferred or required
Tips for Your Threat Intelligence Analyst Job Search
Tailor your resume to threat types
Hiring managers scan for whether you've worked on specific threat categories like APT groups, ransomware campaigns, or insider threats. Name the threat actors and campaigns you've analyzed rather than listing generic security tasks.
Certify before targeting cleared roles
Many defense and federal contractor postings require or prefer a current security clearance alongside certifications like GIAC GREM or GCTI. Clarify your clearance level and certification status in your resume header so screeners don't have to dig.
Apply early to roles that fit
Migrate Mate lists threat intelligence analyst openings from across the United States in one place, so you can find roles that match and apply directly to each listing.
Show your intelligence production samples
Analysts who can share sanitized finished intelligence reports, threat briefs, or YARA rules get callbacks faster. Build a portfolio of redacted work product that demonstrates how you structure analysis and communicate findings to non-technical stakeholders.
Match your tool stack to the job description
Postings vary sharply between platforms like Recorded Future, Mandiant Advantage, MISP, and OpenCTI. Skim the tools listed in each posting and lead with the ones you've used in your cover letter and skills section.
Prepare for a structured analytical exercise
Many final-round interviews include a live or take-home exercise where you pivot on an indicator of compromise and present findings. Practice narrating your process aloud, not just arriving at the right answer, since interviewers score your reasoning as much as your conclusion.
Threat Intelligence Analyst Jobs: Frequently Asked Questions
Which companies are hiring the most threat intelligence analysts?
The companies hiring the most threat intelligence analysts right now include Google, Amazon, and Booz Allen Hamilton, with the largest share of openings in Virginia, Maryland, and Texas, based on current listings on Migrate Mate as of August 2026. Defense contractors, large financial institutions, and managed security service providers consistently make up the bulk of active hiring.
How many threat intelligence analyst jobs are remote?
About 58% of threat intelligence analyst openings are fully remote or hybrid as of August 2026, though positions requiring a security clearance are almost always on-site or in secure facilities. Strategic intelligence roles focused on open-source research and finished reporting tend to offer the most remote flexibility compared to hands-on malware analysis or incident response-adjacent positions.
How do you become a threat intelligence analyst?
Start by building a foundation in networking, operating systems, and security fundamentals through coursework or entry-level security operations center work. Develop hands-on skills in threat hunting, indicator analysis, and the MITRE ATT&CK framework. Pursue certifications like GIAC GCTI or CompTIA CySA+, build a portfolio of sanitized analysis samples, and target junior analyst or SOC tier-two roles that include an intelligence component to earn your first dedicated posting.
Can you get a threat intelligence analyst job with little experience?
Yes, but you need to compensate with demonstrable analytical output. Contribute to open-source threat intelligence communities, publish blog posts attributing publicly documented campaigns, or complete capture-the-flag competitions with a forensics or threat analysis focus. Many employers will consider candidates from adjacent roles like security operations center analyst or incident responder who can show they've already done intelligence work as part of their day job.
What does the threat intelligence analyst interview process look like?
Most processes run three to four rounds. A recruiter screen covers your background and clearance status, followed by a technical interview where you walk through a past investigation or attribution case. A practical exercise, either take-home or live, asks you to pivot on indicators and present findings. Final rounds often include a panel with senior analysts or a hiring manager focused on how you communicate intelligence to non-technical audiences.
Where can I find and apply to threat intelligence analyst jobs?
You can find and apply to threat intelligence analyst jobs on Migrate Mate, which lists current openings from employers across the United States. Search the listings to find roles that match your experience, clearance level, and specialization, then apply directly to each one that fits.
See All 79 Threat Intelligence Analyst Jobs
Find roles that match your experience and apply in just a few clicks.
Find Jobs