1

Threat Intelligence Analyst Jobs (NOW HIRING)

The core responsibility of the Cyber Threat Intelligence Analyst is to conduct deep research into social engineering and cyber-attack campaigns and collaborate closely with data scientists ...

Showing results 21-40

Threat Intelligence Analyst information

See salary details

$41K

$100.1K

$154.5K

How much do threat intelligence analyst jobs pay per year?

As of Jul 30, 2026, the average yearly pay for threat intelligence analyst in the United States is $100,058.00, according to ZipRecruiter salary data. Most workers in this role earn between $77,000.00 and $120,500.00 per year, depending on experience, location, and employer.

What is the difference between Threat Intelligence Analyst vs Security Analyst?

AspectThreat Intelligence AnalystSecurity Analyst
Primary FocusGathering, analyzing, and interpreting threat data to anticipate cyber threatsMonitoring, detecting, and responding to security incidents
Skills & CertificationsCybersecurity certifications (e.g., CISSP, GIAC), threat analysis skillsSecurity certifications (e.g., CompTIA Security+, CISSP), incident response skills
Work EnvironmentResearch teams, threat intelligence platforms, cybersecurity firmsSecurity operations centers (SOCs), IT departments

While both roles focus on cybersecurity, Threat Intelligence Analysts specialize in analyzing threat data to predict future attacks, whereas Security Analysts focus on detecting and responding to ongoing security incidents. Understanding these differences helps organizations assign the right roles for proactive versus reactive security measures.

How does a Threat Intelligence Analyst typically collaborate with other cybersecurity teams within an organization?

Threat Intelligence Analysts work closely with various cybersecurity teams, such as incident response, security operations centers (SOC), and vulnerability management. They share actionable intelligence on emerging threats, provide context for alerts, and help prioritize risks based on current threat landscapes. Regular communication and collaboration ensure that detection rules are updated, investigations are informed by the latest intelligence, and the organization’s defenses remain proactive. This cross-functional teamwork is essential to building a unified and effective security posture.

What are the key skills and qualifications needed to thrive as a Threat Intelligence Analyst, and why are they important?

To thrive as a Threat Intelligence Analyst, you need a deep understanding of cybersecurity principles, threat analysis, and risk assessment, often supported by a degree in computer science or a related field. Familiarity with tools like SIEM platforms, threat intelligence feeds, and certifications such as CISSP or GIAC are commonly required. Strong analytical thinking, attention to detail, and effective communication skills help analysts interpret data and convey actionable insights. These skills and qualities are essential for proactively identifying and mitigating cyber threats to protect organizational assets.

What does a Threat Intelligence Analyst do?

A Threat Intelligence Analyst is responsible for identifying, assessing, and reporting on cybersecurity threats that could impact an organization. They collect and analyze data from various sources to detect potential cyberattacks, malware, and security breaches. Their insights help organizations understand their risk exposure and develop strategies to protect critical assets. Threat Intelligence Analysts often work closely with other cybersecurity professionals to strengthen defenses and respond to incidents effectively.
More about Threat Intelligence Analyst jobs
What cities are hiring for Threat Intelligence Analyst jobs? Cities with the most Threat Intelligence Analyst job openings:
What are the most commonly searched types of Threat Intelligence Analyst jobs? The most popular types of Threat Intelligence Analyst jobs are:
Who are the top companies hiring for Threat Intelligence Analyst jobs? The top employers for Threat Intelligence Analyst jobs are:
What states have the most Threat Intelligence Analyst jobs? States with the most job openings for Threat Intelligence Analyst jobs include:
Infographic showing various Threat Intelligence Analyst job openings in the United States as of July 2026, with employment types broken down into 89% Full Time, 6% Part Time, 1% Temporary, and 4% Contract. Highlights an 83% Physical, 7% Hybrid, and 10% Remote job distribution, with an average salary of $100,058 per year, or $48.1 per hour.

Cyber Threat Intelligence Analyst

ManTech International

Lorton, VA • On-site

$141K - $236K/yr

Full-time

Medical, Life, Retirement, PTO

Re-posted 14 days ago


ManTech rating

9.0

Company rating: 9.0 out of 10

Based on 14 frontline employees who took The Breakroom Quiz

33rd of 246 rated software companies


Job description

General information
Requisition #
R67065
Locations
USA-VA-Lorton
Posting Date
04/15/2026
Security Clearance Required
TS/SCI
Remote Type
Onsite
Time Type
Full time
Description & Requirements
Shape the future of defense with MANTECH! Join a team dedicated to safeguarding our nation through advanced tech and innovative solutions. Since 1968, we've been a trusted partner to the Department of Defense, delivering cutting-edge projects that make a real impact. Dive into exciting opportunities in Cybersecurity, IT, Data Analytics and more. Propel your career forward and be part of something extraordinary. Your journey starts now-protect and innovate with MANTECH!
MANTECH is seeking a motivated, career and customer-oriented Cyber Threat Intelligence Analyst to join our team in Lorton, VA.
The core responsibility of the Cyber Threat Intelligence Analyst is to conduct deep research into social engineering and cyber-attack campaigns and collaborate closely with data scientists, researchers, investigators, engineers, and internal & external partners to counter these threats. This person will own the Cyber Threat Operations Center (CTOC) Threat Intelligence processes and procedures. This role may include the need to work outside of core hours on high priority investigations and may also include on-call responsibilities.
Responsibilities include but are not limited to:
  • Identify and analyze techniques that are relevant to our protection systems, being proactive to bring awareness to the activity prior to any compromise.
  • Produce intelligence on the attack landscape that drives actionable protection
    enhancements into our product, services, and infrastructure.
  • Prototype new detection methods and experiment with new data sources, tools, and methods for proactively identifying and monitoring attacker campaigns and changes in the attack landscape.
  • Collaborate effectively and share actionable curated intelligence with internal and external stakeholders to help them drive impact and disruption through their workflows.
  • Recommend and make appropriate updates to CTOC Threat Intelligence processes, procedures, and tools; publish intelligence on novel social engineering techniques and campaigns.
  • Mentor others and contribute to an inclusive and collaborative team culture.

Minimum Qualifications:
  • Bachelor's degree and at least 5 years of experience in the areas of Security Operations, Malware analysis, Threat Intelligences, Cyber Incident Response, and / or Penetration Testing. Additional 1 year of experience may be substituted in lieu of a degree.
  • ACTIVE DoD 8570 IAT Level 2 or Higher Certification upon start
  • 3+ years of data analysis and scripting experience (SQL, Python, C#, Regex, Azure Data Explorer - KQL, etc.)
  • Possess the ability to immediately take ownership of the role and operate with minimal guidance.
  • Experience with the MITRE ATT&CK Framework, the Cyber Kill Chain and/or other tools used for threat intelligence or hunting.
  • Proficient in research and writing (e.g. SOPs, threat intelligence reports, etc.)
  • Awareness of modern security related subjects and trends such as threat hunting and modeling, digital forensics, reverse engineering, phishing, and penetration testing.

Preferred Qualifications:
  • Experience with Cyber Threat Intelligence in Cloud environments.
  • CISSP, CISA, CISM, SANS, GCIA, GCIH, MITRE ATT&CK and/or OSCP certifications
  • Desire to acquire Microsoft SC-200
  • Experience with Azure Sentinel, Defender for Cloud and/or Microsoft Defender Threat Intelligence is desired.
  • Familiarity with Common Vulnerabilities and Exposures (CVE) tracking and remediation.

Clearance Requirements:
  • Must have an current/active Top-Secret Clearance with SCI Eligibility.

Physical Requirements:
  • Sedentary Work

The projected compensation range for this position is $141,500.00-$236,000.00. There are differentiating factors that can impact a final salary/hourly rate, including, but not limited to, Contract Wage Determination, relevant work experience, skills and competencies that align to the specified role, geographic location (For Remote Opportunities), education and certifications as well as Federal Government Contract Labor categories. In addition, MANTECH invests in its employees beyond just compensation. MANTECH's benefits offerings include, dependent upon position, Health Insurance, Life Insurance, Paid Time Off, Holiday Pay, short-term and long-term Disability, Retirement and Savings, Learning and Development opportunities, wellness programs as well as other optional benefit elections.
MANTECH considers all qualified applicants for employment without regard to disability or veteran status or any other status protected under any federal, state, or local law or regulation.
If you need a reasonable accommodation to apply for a position with MANTECH, please email us at careers@mantech.com and provide your name and contact information.

What ManTech employees say

Pay

Benefits

Hours and flexibility

Workplace

Get the full story on Breakroom