2

Full Time Cyber Fusion Analyst Jobs (NOW HIRING)

Position Summary The Cyber Intelligence Fusion Analyst serves as the proactive analysis and threat-hunting engine for the J361 SOC. The analyst synthesizes all-source threat reporting to conduct ...

The Leidos Defense Group has an opening for a Cyber Security Fusion Analyst on the DISA GSM-O II ... GSM-O II provides network operations and cyber defense support to the Defense Information Systems ...

The Leidos Defense Group has an opening for a Cyber Security Fusion Analyst on the DISA GSM-O II ... GSM-O II provides network operations and cyber defense support to the Defense Information Systems ...

Position Summary The client is looking for a Cyber Threat Fusion Analyst. This position will support the Joint Service Provider (JSP) Defensive Cyber Operations (DCO) organization with Cyber Threat ...

The Leidos Digital Sector has a current job opportunity for a Cyber Fusion and Threats Analyst on our GSM-O II DISA Command Comprehensive Support Services (DCCSS) program supporting the 24x7 ...

The Leidos Digital Sector has a current job opportunity for a Cyber Fusion and Threats Analyst on our GSM-O II DISA Command Comprehensive Support Services (DCCSS) program supporting the 24x7 ...

Description The Leidos Digital Sector has a current job opportunity for a Cyber Fusion and Threats Analyst on our GSM-O II DISA Command Comprehensive Support Services (DCCSS) program supporting the ...

Cyber Fusion Manager

Lake Forest, IL · On-site

$123K - $205K/yr

... full-time employees (accrual prorated based on employment start date) and 6 company holidays per ... Provide threat analysis, hunting and operationalization identifying attacker behaviors, leading ...

Cyber Fusion Manager

Lake Forest, IL · On-site

$123K - $205K/yr

... full-time employees (accrual prorated based on employment start date) and 6 company holidays per ... Provide threat analysis, hunting and operationalization identifying attacker behaviors, leading ...

Cyber Fusion Manager

Lake Forest, IL · On-site

$123K - $205K/yr

... full-time employees (accrual prorated based on employment start date) and 6 company holidays per ... Provide threat analysis, hunting and operationalization identifying attacker behaviors, leading ...

Working as a cyber fusion expert, you will conduct research and evaluate technical and all-source ... You will analyze network events to determine the impact on current operations and conduct all ...

Working as a cyber fusion expert, you will conduct research and evaluate technical and all-source ... You will analyze network events to determine the impact on current operations and conduct all ...

Working as a cyber fusion expert, you will conduct research and evaluate technical and all-source ... You will analyze network events to determine the impact on current operations and conduct all ...

next page

Showing results 1-20

Full Time Cyber Fusion Analyst information

See salary details

$44.5K

$107.5K

$151K

How much do full time cyber fusion analyst jobs pay per year?

As of Sep 7, 2026, the average yearly pay for full time cyber fusion analyst in the United States is $107,522.00, according to ZipRecruiter salary data. Most workers in this role earn between $91,500.00 and $126,500.00 per year, depending on experience, location, and employer.

What is the difference between Full Time Cyber Fusion Analyst vs Security Operations Center (SOC) Analyst?

AspectFull Time Cyber Fusion AnalystSecurity Operations Center (SOC) Analyst
CertificationsCompTIA Security+, CISSP, CEHCompTIA Security+, GIAC, CEH
Work EnvironmentCollaborative, cross-departmental teams, strategic focus24/7 monitoring, incident response, alert analysis
Industry UsageUsed across industries for integrated security strategiesPrimarily in security monitoring centers

Full Time Cyber Fusion Analysts focus on integrating threat intelligence, incident response, and security operations across departments, often working strategically. SOC Analysts primarily monitor security alerts, investigate incidents, and respond to threats in a dedicated security operations environment. Both roles require similar certifications but differ in scope and daily responsibilities.

More about Full Time Cyber Fusion Analyst jobs

What cities are hiring for Full Time Cyber Fusion Analyst jobs?

Cities with the most Full Time Cyber Fusion Analyst job openings:

What are the most commonly searched types of Cyber Fusion Analyst jobs?

The most popular types of Cyber Fusion Analyst jobs are:

What states have the most Full Time Cyber Fusion Analyst jobs?

States with the most job openings for Full Time Cyber Fusion Analyst jobs include:

Infographic showing various Full Time Cyber Fusion Analyst job openings in the United States as of August 2026, with employment types broken down into 89% Full Time, 6% Part Time, and 5% Contract. Highlights an 82% Physical, 7% Hybrid, and 11% Remote job distribution, with an average salary of $107,522 per year, or $51.7 per hour.

Cyber Intelligence Fusion Analyst

Leidos

Alexandria, VA • On-site

$107K - $195K/yr

Full-time

Medical, Retirement, PTO

Posted 4 days ago


Leidos rating

8.3

Company rating: 8.3 out of 10

Based on 153 frontline employees who took The Breakroom Quiz

81st of 500 rated business services


Job description

Description

Leidos has a current job opportunity for a Cyber Intelligence Fusion Analyst on the DISA GSM-O II TN24 Penetration Handling, Incident, System Health (PHISH) Support Services II program. This position supports the J361 Security Operations Center (SOC) Fusion mission at the Mark Center, Alexandria, Virginia. The team operates 100% onsite at the Mark Center during normal business hours, Monday through Friday.

Position Summary

The Cyber Intelligence Fusion Analyst serves as the proactive analysis and threat-hunting engine for the J361 SOC. The analyst synthesizes all-source threat reporting to conduct structured threat hunts, perform proactive environment sweeps, and deliver tailored analytical reports and briefings to senior leadership.

The position combines cyber operations, threat intelligence, and analytic tradecraft to identify, characterize, and mitigate threats affecting tenants and subscribers throughout the National Capital Region. Responsibilities include correlating external intelligence with enterprise telemetry, mapping adversary TTPs, recommending detections and countermeasures, and providing threat context during incident investigations across classified, unclassified, and cloud environments.

Primary Responsibilities

  • Ingest, analyze, and synthesize cyber threat reporting from OSINT, government reporting, commercial threat-intelligence platforms, and other authorized sources to identify threats relevant to the environment.
  • Correlate external threat intelligence with enterprise SIEM, EDR, endpoint, network, packet capture (PCAP), NetFlow, proxy, firewall, IDS/IPS, SSL decryption, session, and system-log telemetry to identify and assess malicious activity.
  • Conduct proactive IOC sweeps and hypothesis-driven threat hunts to identify activity associated with emerging adversary campaigns, vulnerabilities, malware, targeted threats, and stealthy or evasive adversary behavior.
  • Characterize adversary infrastructure, malware, tooling, and TTPs using MITRE ATT&CK, Cyber Kill Chain, and other applicable threat-modeling frameworks; assess potential risk to enterprise assets, tenants, and mission operations.
  • Develop hunt plans, adversary profiles, analytic methodologies, detection logic, and complex query strategies; plan, coordinate, and execute ad hoc threat hunts; document findings and recommendations in AARs; and other required mission products.
  • Develop, validate, and recommend countermeasures, including SIEM correlation searches, analytic content, custom signatures, and blocking recommendations, to improve prevention, detection, and response to known adversarial TTPs; technically vet suspicious indicators before submitting detection or blocking nominations.
  • Produce recurring and ad hoc threat reports, intelligence assessments, executive summaries, situational-awareness updates, time-sensitive threat notifications, and strategic threat assessments.
  • Translate technical telemetry, forensics, intelligence reporting, and analytic findings into clear, actionable technical, operational, and executive-level summaries; prepare and deliver recurring and on-demand briefings to leadership, tenant organizations, and mission partners.
  • Serve as a subject matter expert on adversary tradecraft and provide threat context, intelligence support, and analytic recommendations to incident responders and other SOC teams during active investigations.
  • Develop and maintain SOPs, work instructions, hunt methodologies, analytic playbooks, detection use cases, and knowledge-management artifacts; identify capability and workflow gaps, recommend improvements, and enhance automation for enrichment, case management, reporting, dashboards, and metrics.
  • Provide technical leadership on complex hunts and investigations; mentor junior analysts and contribute to team training and professional development.

Basic Qualifications

  • Active Top Secret security clearance with ability to obtain SCI
  • Bachelor’s degree in cybersecurity, information technology, computer science, intelligence studies, or a related technical discipline and 8+ years of relevant experience; additional relevant experience, cybersecurity education, or industry certifications may be substituted for a degree.
  • 4+ years of experience supporting cybersecurity operations, cyber threat intelligence, threat hunting, incident response, cyber network defense, or a closely related cyber mission.
  • Must meet DoD 8140 IAT Level II baseline certification requirements before starting work and possess, or obtain and maintain within the required program timeframe, a DoD 8140 CSSP Analyst (CSSP-A) certification.
  • Demonstrated experience applying MITRE ATT&CK, Cyber Kill Chain, or comparable frameworks to characterize adversary activity, TTPs, attack lifecycles, vulnerabilities, malware behaviors, and indicators.
  • Hands-on experience conducting hypothesis-driven threat hunts, developing detection logic and analytic queries, and pivoting from external threat reporting, IOCs, and OSINT to internal enterprise telemetry.
  • Demonstrated experience querying, analyzing, and correlating high-volume SIEM, EDR, endpoint, network, NetFlow, packet, log, and other host- or network-based security data; working knowledge of TCP/IP, common ports and protocols, network traffic flow, OSI model, system administration, defense-in-depth, and enterprise security architecture.
  • Strong written, verbal, analytical, and collaboration skills, including the ability to produce technical and executive-level reports and briefings; ability to work independently, manage competing priorities, and work effectively with technical and non-technical mission partners.
  • Ability to work 100% onsite at the Mark Center during normal business hours; schedule flexibility may be required to support mission requirements.

Preferred Qualifications

  • TS/SCI eligibility, including eligibility for reciprocal acceptance, preferred.
  • Advanced cybersecurity certifications, such as CISSP, CASP+, CySA+, CEH, GIAC GCIH, GCIA, GCED, GCTI, or comparable credentials.
  • Experience supporting DISA, Department of Defense networks, Cyber Security Service Provider operations, Cyber Protection Teams, or a large enterprise SOC.
  • Experience conducting threat hunting and cyber investigations across NIPRNet, SIPRNet, JWICS, cloud, commercial, or similarly complex enterprise environments.
  • Experience using SIEM, EDR, threat-intelligence, and network-analysis tools—such as Splunk, Elastic, Microsoft Defender for Endpoint, Microsoft Sentinel, Google Threat Intelligence, VirusTotal, Wireshark, PCAP, and NetFlow—to develop or tune correlation searches, detection rules, signatures, threat blocks, analytic queries, dashboards, and automated enrichment workflows.
  • Familiarity with commercial threat-intelligence platforms; malware analysis; digital and network forensics; endpoint telemetry; intrusion detection; vulnerability research; cloud security; and intelligence-driven defense methodologies, including MITRE ATT&CK and Cyber Kill Chain.
  • Familiarity with query languages and scripting tools, such as SPL, KQL, Lucene, SQL, Python, PowerShell, and Unix/Linux command-line utilities.
  • Experience producing intelligence products, operational reports, and executive briefings for senior executives, General Officer/Flag Officer, Senior Executive Service, or equivalent leadership; demonstrated ability to lead complex cyber investigations or threat hunts and mentor junior technical staff.

If you're looking for comfort, keep scrolling. At Leidos, we outthink, outbuild, and outpace the status quo — because the mission demands it. We're not hiring followers. We're recruiting the ones who disrupt, provoke, and refuse to fail. Step 10 is ancient history. We're already at step 30 — and moving faster than anyone else dares.

Original Posting:September 3, 2026

For U.S. Positions: While subject to change based on business needs, Leidos reasonably anticipates that this job requisition will remain open for at least 3 days with an anticipated close date of no earlier than 3 days after the original posting date as listed above.

Pay Range:Pay Range $107,900.00 - $195,050.00

The Leidos pay range for this job level is a general guideline only and not a guarantee of compensation or salary. Additional factors considered in extending an offer include (but are not limited to) responsibilities of the job, education, experience, knowledge, skills, and abilities, as well as internal equity, alignment with market data, applicable bargaining agreement (if any), or other law.

About Leidos

Leidos is an industry and technology leader serving government and commercial customers with smarter, more efficient digital and mission innovations. Headquartered in Reston, Virginia, with 47,000 global employees, Leidos reported annual revenues of approximately $16.7 billion for the fiscal year ended January 3, 2025. For more information, visit www.Leidos.com.

Pay and Benefits

Pay and benefits are fundamental to any career decision. That's why we craft compensation packages that reflect the importance of the work we do for our customers. Employment benefits include competitive compensation, Health and Wellness programs, Income Protection, Paid Leave and Retirement. More details are available at www.leidos.com/careers/pay-benefits.

Securing Your Data

Beware of fake employment opportunities using Leidos’ name. Leidos will never ask you to provide payment-related information during any part of the employment application process (i.e., ask you for money), nor will Leidos ever advance money as part of the hiring process (i.e., send you a check or money order before doing any work). Further, Leidos will only communicate with you through emails that are generated by the Leidos.com automated system – never from free commercial services (e.g., Gmail, Yahoo, Hotmail) or via WhatsApp, Telegram, etc. If you received an email purporting to be from Leidos that asks for payment-related information or any other personal information (e.g., about you or your previous employer), and you are concerned about its legitimacy, please make us aware immediately by emailing us at LeidosCareersFraud@leidos.com.

If you believe you are the victim of a scam, contact your local law enforcement and report the incident to the U.S. Federal Trade Commission.

Commitment to Non-Discrimination

All qualified applicants will receive consideration for employment without regard to sex, race, ethnicity, age, national origin, citizenship, religion, physical or mental disability, medical condition, genetic information, pregnancy, family structure, marital status, ancestry, domestic partner status, sexual orientation, gender identity or expression, veteran or military status, or any other basis prohibited by law. Leidos will also consider for employment qualified applicants with criminal histories consistent with relevant laws.


What Leidos employees say

Pay

Benefits

Hours and flexibility

Workplace

Get the full story on Breakroom


Leidos logo

About Leidos

Sourced by ZipRecruiter

At Leidos, we deliver innovative solutions through the efforts of our diverse and talented people who are dedicated to our customers' success. We empower our teams, contribute to our communities, and operate sustainable practices. Everything we do is built on a commitment to do the right thing for our customers, our people, and our community.

Industry

It services

Company size

10,000+ Employees

Headquarters location

Reston, VA, US

Social media