Sr Industrial Control System Cyber Threat Intelligence Analyst with OT/CTI/Threat Hunt experience

Peraton
Arlington, VA

Program Overview

About The Role

Peraton is currently hiring Sr Industrial Control System Cyber Threat Intelligence Analyst for its Federal Strategic Cyber programs.

Location: Arlington, VA.

In this role, you will:

  • Fuse multiple intelligence sources to develop products, recommendations, and inform priorities for the organization.
  • Perform research and investigate current threats in operational technology, specific critical infrastructure sectors, and mission areas to inform senior leaders and drive priorities for operational teams, including the forward deployed incident response and threat hunting functions.
  • Analyze collected data to derive facts and projections concerning capabilities, intentions, attack approaches—research resource allocations, motivations, tendencies, personalities; and contribute to profiling adversarial behavior with respect to identified system attacks in the context of the critical infrastructure mission.
  • Research and review cyber warfare tactics, techniques, and procedures focused on the threat to information networks.
  • Prepare assessments and cyber threat profiles of current and planned products based on recent and current trends within ICS/SCADA.
  • Escalate new or high threats to the Cyber Physical Forensics Section as required.
  • Research OT defensive tactics, techniques, and procedures (TTPs) for detecting and responding to cyber threats.
  • Map ICS activity and threats using MITRE ATT&CK Framework .
  • Seamlessly work alongside a team of host, network, and cloud forensic analysts to meet the mission requirements for both incident response and threat hunting engagements.
  • Serve as subject matter expert (SME) for ICS Security activities.
  • Identify potential open-source vulnerabilities existing within ICS/SCADA.
  • Identify and assess current and emerging threats and vulnerabilities as they relate to homeland security.
  • Identify classified threat intelligence reporting related to ICS/SCADA and analyze for adversary intent and capability.
  • Develop and maintain analytical procedures to meet changing requirements.
  • Produces high-quality papers, presentations, recommendations, and findings for senior US government intelligence and operations officials.
  • Serve as a customer facing SME supporting them achieve success with the technology for their overall ICS security efforts.

#CISA

Qualifications

Minimum Qualifications:

  • Bachelor’s degree and 8 years of experience, or an Associate’s degree and 10 years, or HS and 12+ years of experience in lieu of a degree.
  • Experience performing processing, triage, threat analysis, and response to cyber incident reports.
  • Experience with industrial Control Systems (ICS), Operational technology (OT), Supervisory Control and Data Acquisition (SCADA) systems, and the underlying principles necessary to ensure security and safe function of ICS systems.
  • Experience connecting open-source information with network and/or host-based anomalies (e.g., identifying cyber threat intelligence about suspicious processes, finding new insights through tools such as VirusTotal, understanding of how to find threat intelligence about malformed traffic, etc.).
  • Hands-on experience with open-source cyber threat/related tools (e.g., VirusTotal, Maltego, Shodan, exploit-db, etc.).
  • Experience researching and analyzing cyber threats across either a) multiple industries or b) multiple timeframes. Including but not limited to the critical infrastructure sectors.
  • Practical experience using common threat intelligence analysis models such as MITRE ATT&CK, the Diamond Model, and the Cyber Kill Chain to incorporate into client reports.
  • Experience producing and completing all-source (unclassified and classified) finished intelligence assessments that adhere to the ICD203 analytic tradecraft standards.
  • Proven ability to collaborate and establish key threat intelligence partnerships to bolster information sharing and defenses.
  • U.S. citizenship required.
  • An Active Top Secret Security Clearance with SCI eligibility.
    • Additionally, have the ability to obtain/maintain DHS EOD agency clearance prior to starting.

Preferred Qualifications:

  • SANS Global Industrial Cyber Security Professional (GICSP).
  • SANS GIAC Response and Industrial Defense (GRID).
  • SANS GIAC Cyber Threat Intelligence (GCTI).

SCA / Union / Intern Rate or Range

Details

Target Salary Range: $112,000 - $179,000. This represents the typical salary range for this position. Salary is determined by various factors, including but not limited to, the scope and responsibilities of the position, the individual’s experience, education, knowledge, skills, and competencies, as well as geographic location and business and contract considerations. Depending on the position, employees may be eligible for overtime, shift differential, and a discretionary bonus in addition to base pay.

Benefits Statement: Peraton offers eligible employees a variety of benefits including medical, dental, vision, life, health savings account, short/long term disability, EAP, parental leave, 401(k), paid time off (PTO) for vacation, and company paid holidays. A full listing of available benefits can be viewed at

Application Duration Statement: The application period for the job is estimated to be 30 days from the job posting date. However, this timeline may be shortened or extended depending on business needs and the availability of qualified candidates.

EEO: Equal opportunity employer, including disability and protected veterans, or other characteristics protected by law.

Posted 2026-01-13

Recommended Jobs

Au Pair

GreatAuPair LLC
Nokesville, VA

Get hired for Jason's aupair Job in Nokesville, VA. Au Pair Needed in Virginia USA. Find aupair care work in Nokesville.

View Details
Posted 2025-11-09

Outside Sales Representative

Southern Electric
Leesburg, VA

Are you a confident deal-closer with a deep understanding of electrical systems and a passion for building strong, long-term client relationships? At Southern Electrical, we're looking for driven p…

View Details
Posted 2025-08-30

Engineer - Backend

Nationwide IT Services
Alexandria, VA

Backend Engineer Hybrid schedule: Alexandria, VA Active Secret Clearance  Nationwide IT Services, NIS, is seeking an Engineer-Backend for a potential opportunity.  In this position, the Backe…

View Details
Posted 2026-01-15

Lead Business Analyst

Cyber Resource
Richmond, VA

Experienced Lead Business Analyst The Lead Business Analyst is a strategic, people‑focused role responsible for improving the quality, consistency, and impact of Business Analysis across the org…

View Details
Posted 2026-02-18

Construction Lead

Habitat for Humanity
Virginia

The Construction Lead is a highly skilled, hands-on construction professional responsible for completing the full scope of residential construction work on Habitat for Humanity homes and repair proj…

View Details
Posted 2026-02-10

Assistant Director of Operations

Hyatt
Arlington, VA

Summary The Assistant Director of Operations is responsible for the smooth functioning of the hotel’s Rooms and F&B divisions (Operations). This position will incorporate a significant amount of F…

View Details
Posted 2026-02-09

Painter - Shipboard

General Dynamics Information Technology
Norfolk, VA

Public Trust: None Requisition Type: Pipeline Your Impact Own your opportunity to support our nation's defense. Make an impact by connecting and securing critical operations across the glo…

View Details
Posted 2026-02-18

Fire Sprinkler Technician

The Tustin Group
Manassas, VA

At  The Tustin Group , we foster relationships by keeping people informed—because transparency builds teamwork, and teamwork builds trust. And  trust  is one of our core values. We're currently l…

View Details
Posted 2026-02-01

CDL A Local Driver Grocery Account

Salt City Trucking
Roanoke, VA

Local Kroger position. 3 months exp REQUIRED! Home daily! Nights and will work weekends! SIGN ON BONUS! Pay: $1450 to 1550 per week! Qualifications: Clean driving record DOT Medical card…

View Details
Posted 2026-02-01

Incident Responder - SOC Analysts

Triumph Services
Richmond, VA

  Incident Responder / SOC Analyst Richmond, VA (ONSITE 3-4 days / week) ONGOING, Long Term Contract (Auto renew every 6 months) An organization is seeking a skilled Incident Responder / SOC…

View Details
Posted 2026-02-12