1

Cyber Threat Emulation Jobs (NOW HIRING)

This position requires deep expertise in threat analysis, malware research, and adversary emulation within highly regulated environments. Responsibilities: * Lead cyber threat analysis and ...

Lead Cyber Threat Analyst

Washington, DC · On-site

$165K - $200K/yr

This position requires deep expertise in threat analysis, malware research, and adversary emulation within highly regulated environments.Responsibilities:Lead cyber threat analysis and intelligence ...

Cyber threat emulation to assess defensive posture and capabilities while in a controlled environment * Threat hunting to identify advanced persistent threats * Technical writing in support of ...

New

Cyber Defense Analyst

Washington, DC · On-site

$120K - $160K/yr

Cyber threat emulation to assess defensive posture and capabilities while in a controlled environment * Threat hunting to identify advanced persistent threats * Technical writing in support of ...

New

Cyber Defense Analyst

Baltimore, MD · On-site

$120K - $160K/yr

Cyber threat emulation to assess defensive posture and capabilities while in a controlled environment * Threat hunting to identify advanced persistent threats * Technical writing in support of ...

New

Threat Hunt Analyst

Lakewood, CO · Hybrid

$99K - $225K/yr

... cyber defensive operations * Experience conducting threat hunting in cloud or hybrid environments such as AWS, Azure, or containerized infrastructure * Experience with threat emulation or purple ...

Cyber Defense Analyst

Annapolis, MD · On-site

$120K - $160K/yr

Cyber threat emulation to assess defensive posture and capabilities while in a controlled environment * Threat hunting to identify advanced persistent threats * Technical writing in support of ...

New

Cyber Defense Analyst

Washington, DC · On-site

$120K - $160K/yr

Cyber threat emulation to assess defensive posture and capabilities while in a controlled environment * Threat hunting to identify advanced persistent threats * Technical writing in support of ...

New

Threat Hunt Analyst

Lakewood, CO · On-site

$99K - $225K/yr

... cyber defensive operations * Experience conducting threat hunting in cloud or hybrid environments such as AWS, Azure, or containerized infrastructure * Experience with threat emulation or purple ...

Research and remain up to date with emerging threats and Threat Emulation methodologies. * Map Cyber Key Terrain and generate priority target lists. * Engage in project meetings to gain knowledge of ...

Threat Hunt Analyst

Lakewood, CO · On-site +1

$99K - $225K/yr

... cyber defensive operations * Experience conducting threat hunting in cloud or hybrid environments such as AWS, Azure, or containerized infrastructure * Experience with threat emulation or purple ...

Research and remain up to date with emerging threats and Threat Emulation methodologies. * Map Cyber Key Terrain and generate priority target lists. * Engage in project meetings to gain knowledge of ...

Showing results 41-60

Cyber Threat Emulation information

See salary details

$34K

$112.9K

$176K

How much do cyber threat emulation jobs pay per year?

As of Aug 10, 2026, the average yearly pay for cyber threat emulation in the United States is $112,871.00, according to ZipRecruiter salary data. Most workers in this role earn between $91,500.00 and $130,000.00 per year, depending on experience, location, and employer.

What are the most common challenges faced by professionals in cyber threat emulation roles?

Professionals in Cyber Threat Emulation often face the challenge of staying ahead of constantly evolving threat landscapes, requiring ongoing learning and adaptation of new techniques. Another common challenge is ensuring realistic simulations without disrupting business operations, as emulating real threats must be done safely within production or test environments. Collaboration with IT, security teams, and sometimes executive leadership is crucial to ensure findings are actionable and prioritized correctly. Additionally, balancing technical depth with clear communication to non-technical stakeholders is essential for driving security improvements.

What is cyber threat emulation?

Cyber threat emulation is the process of simulating real-world cyber attacks to test and evaluate an organization's security defenses. This practice involves replicating the tactics, techniques, and procedures (TTPs) used by cybercriminals or advanced persistent threats (APTs) to assess how well security systems and staff can detect and respond to threats. The goal is to identify vulnerabilities and improve incident response without causing actual harm to systems. Cyber threat emulation is commonly used in red teaming and penetration testing exercises.

What are the key skills and qualifications needed to thrive as a cyber threat emulation specialist?

To thrive as a Cyber Threat Emulation specialist, you need a solid understanding of cybersecurity principles, network protocols, and penetration testing methodologies, often backed by a degree in information security or related field. Familiarity with tools such as Metasploit, Cobalt Strike, and knowledge of frameworks like MITRE ATT&CK, along with certifications like OSCP or CEH, are typically required. Strong analytical thinking, attention to detail, and effective communication skills help in assessing threats and conveying findings to stakeholders. These skills are crucial for simulating realistic cyberattacks, identifying vulnerabilities, and enhancing an organization’s security posture.

What is the difference between Cyber Threat Emulation vs Penetration Tester?

AspectCyber Threat EmulationPenetration Tester
CertificationsCEH, OSCP, CISSPCEH, OSCP, CPT
Work EnvironmentSimulates real-world attack scenarios to test defensesIdentifies vulnerabilities by attempting to exploit them
Employer & Industry UsageUsed by security teams to assess security postureHired by organizations to find security weaknesses
Search & Comparison IntentOften compared for security testing rolesRelated but focuses more on vulnerability discovery

Cyber Threat Emulation and Penetration Testing both involve security assessments, but emulation focuses on mimicking real-world attack scenarios to evaluate defenses, while penetration testing aims to find and exploit vulnerabilities. Both roles require similar certifications and are used within security teams to strengthen organizational security.

More about Cyber Threat Emulation jobs
What cities are hiring for Cyber Threat Emulation jobs? Cities with the most Cyber Threat Emulation job openings:
What states have the most Cyber Threat Emulation jobs? States with the most job openings for Cyber Threat Emulation jobs include:
Infographic showing various Cyber Threat Emulation job openings in the United States as of August 2026, with employment types broken down into 93% Full Time, 3% Part Time, and 4% Contract. Highlights an 87% Physical, 4% Hybrid, and 9% Remote job distribution, with an average salary of $112,871 per year, or $54.3 per hour.

Lead Cyber Threat Analyst

Evolver

Washington, DC • On-site

Other

Medical, Dental, Vision, Retirement, PTO

Re-posted 7 days ago


Job description

Evolver Federal is seeking a Lead Cyber Threat Analyst to fulfil a requirement for a potential government client. The Lead Cyber Threat Analyst is responsible for identifying, analyzing, and mitigating advanced cyber threats targeting federal systems and critical infrastructure. This role focuses on proactive threat hunting, intelligence analysis, and developing strategies to detect and disrupt adversary tactics, techniques, and procedures (TTPs). The Lead Cyber Threat Analyst will lead a team of analysts, collaborate with SOC and incident response teams, and provide actionable intelligence to strengthen the organization's cybersecurity posture. This position requires deep expertise in threat analysis, malware research, and adversary emulation within highly regulated environments.
Responsibilities:
  • Lead cyber threat analysis and intelligence operations to identify emerging threats and vulnerabilities.
  • Conduct proactive threat hunting across enterprise and cloud environments using advanced analytics.
  • Analyze adversary TTPs and develop detection strategies aligned with MITRE ATT&CK framework.
  • Oversee malware analysis, reverse engineering, and forensic investigations for complex incidents.
  • Integrate threat intelligence feeds into SOC workflows and detection platforms.
  • Leverage AI-driven threat detection techniques to enhance predictive and adaptive security capabilities.
  • Apply Zero Trust principles across detection, response, and access control strategies to strengthen enterprise resilience.
  • Implement cloud-native security solutions to safeguard workloads and data in multi-cloud environments.
  • Prepare and deliver executive-level threat reports, risk assessments, and strategic recommendations.
  • Collaborate with SOC, incident response, and engineering teams to enhance detection and response capabilities.
  • Maintain and update threat intelligence platforms and knowledge bases.
  • Support development of playbooks for threat hunting and incident response automation.
  • Ensure compliance with federal cybersecurity frameworks (NIST 800-series, RMF, TIC 3.0).
  • Mentor and coach junior analysts to develop technical expertise and career growth.
  • Manage cross-functional SOC projects, ensuring alignment between threat analysis, incident response, and engineering teams.
  • Drive process improvements and best practices across SOC operations to enhance efficiency and resilience.

Basic Qualifications:
  • Bachelor's Degree in Computer Science, Information Management (IM), Information Technology, Engineering, or equivalent with 6 years of technical experience and 4 years' experience in IT Solutions at senior management
  • Certified Information Systems Security Professional (CISSP)
  • Certified Security Analyst, Certified Ethical Hacker, or similar certifications
  • Project Management Institute (PMI) Project Management Professional (PMP) (Highly Recommended)
  • Information Technology Infrastructure Library (ITIL) 4 Foundation
  • 10 years of successful enterprise experience in an IT or technology-related field, with the last 5 years, on large government technical BPAs/contracts
  • with the ability to pass a comprehensive government background check

Preferred Qualifications:
  • Experience managing or supporting cybersecurity operations, including SOC functions, in a federal or highly regulated environment
  • Experience leading cybersecurity programs within federal civilian agencies
  • Master's degree in a technical or management-related field
  • GIAC (GCTI, GCFA) or AWS/Azure security certifications
  • Knowledge of RMF, NIST 800-series, OMB A-130, and TIC 3.0 policies
  • Experience with performance-based contracts and cross-functional team leadership
  • Strong communication skills, including experience delivering executive briefings and incident communications
  • Expertise in threat intelligence platforms (TIPs) and SIEM tools (Splunk, Elastic).
  • Familiarity with SOAR platforms and automation for threat detection and response.
  • Experience with malware reverse engineering and memory forensics.
  • Strong knowledge of MITRE ATT&CK, Cyber Kill Chain, and threat modeling methodologies.
  • Hands-on experience with cloud threat analysis (AWS, Azure, Google Cloud Platform) and container security.
  • Ability to lead advanced threat hunting campaigns and mentor junior analysts.
  • Understanding of nation-state threat actors and advanced persistent threats (APTs).
  • Experience integrating threat intelligence into vulnerability management and risk scoring.
  • Knowledge of scripting languages (Python, PowerShell) for automation and custom detection.

Evolver Federal is an equal opportunity employer and welcomes all job seekers. It is the policy of Evolver Federal not to discriminate based on race, color, ancestry, religion, gender, age, national origin, gender identity or expression, sexual orientation, genetic factors, pregnancy, physical or mental disability, military/veteran status, or any other factor protected by law.
Actual salary will depend on factors such as skills, qualifications, experience, market and work location. Evolver Federal offers competitive benefits, including health, dental and vision insurance, 401(k), flexible spending account, and paid leave (including PTO and parental leave) in accordance with our applicable plans and policies.