Cyber Threat Intelligence Lead
Don't apply into the void.
Most applications for this agile-defense role vanish into an ATS. With jobfinder-ai, your agent finds the actual hiring manager or founder behind this opening and sends a tailored email from your own inbox — so a real person reads your pitch and replies. We then follow up until you land on the calendar.
Reach the decision-maker — $5About the role
About Agile Defense At Agile Defense we know that action defines the outcome and new challenges require new solutions. That’s why we always look to the future and embrace change with an unmovable spirit and the courage to build for what comes next. Our vision is to bring adaptive innovation to support our nation's most important missions through the seamless integration of advanced technologies, elite minds, and unparalleled agility—leveraging a foundation of speed, flexibility, and ingenuity to strengthen and protect our nation’s vital interests. Requisition #: 1437 Job Title: Cyber Threat Intelligence Lead Location: Reston, VA Clearance Level: TS (SCI Eligible) SUMMARY Agile Defense is currently seeking a highly technical, hands-on Cyber Intelligence Lead with advanced tradecraft and skillsets in cyber threat analysis to develop and operate cyber security capabilities for a Cybersecurity Operation Center (CSOC) for a variety of federal customers. To ensure the integrity, security, and resiliency of critical operations, we are seeking candidates with diverse backgrounds in cyber security systems operations, cyber intelligence analysis and digital forensic. Strong written and verbal communications skills are a must. The ideal candidate will have a solid understanding of cyber threats and information security in the domains of TTP’s, Threat Actors, Campaigns, and Observables. Additionally, the ideal candidate would have professional experience with cyber intelligence analysis both at unclassified and classified levels, intrusion set/nation state attribution, intrusion detection systems, intrusion analysis, security information event management platforms, endpoint threat detection tools, big data analytics, and cyber ticketing management. JOB DUTIES AND RESPONSIBILITIES Directs the collection, analysis, production, and integration of cyber threat intelligence into CSOC detection and response workflows. Maintains continual situational awareness and applicable context of threat actors, tactics, techniques, and procedures (TTPs), and active campaigns to inform the creation of detection content, cyber hunting priorities, and strategic leadership decisions. Produce actionable intelligence reports, indicators of compromise (IOCs), and early-warning assessments to support CSOC operations. Integrates with the detection engineering and threat hunting teams, drive development of signatures, rules, queries and detection content. The candidate will maintain comprehensive tracking of threat actors, trends, and metrics; deliver timely customized strategic, tactical or metrics based reports to customers. QUALIFICATIONS Education, Background, and Years of Experience Bachelor’s degree in computer science, engineering, cybersecurity or STEM Seven (7) years of experience as a Tier III senior cyber security analyst performing intelligence analysis, collection management, and technical analysis. Five (5) years of hands-on experience with experience in the last two (2) years that includes host-based and network-based security monitoring using cybersecurity capabilities. ADDITIONAL SKILLS & QUALIFICATIONS Required Skills Possess a strong cyber security background with experience in the identification of advanced cyber threat activities, intrusion detection, incident response, malware analysis, and security content development (e.g., signatures, rules, etc.); and cyber threat intelligence. Ability to read and write scripts at an intermediate level to support cyber threat detection such as VB scripts, Python, Powershell and HTML, XML. Cyber threat analysis with ability to identify, mitigate or remediation courses of action; developing actionable intelligence used to protect organizational IT assets. Preferred Skills GCTI, GFCA WORKING CONDITIONS Environmental Conditions Hybrid in Reston, VA Strength Demands Physical Requirements
Ready to reach the decision-maker?
Set this role as a target and your agent does the sourcing, finds the verified email, writes the pitch, and follows up — on autopilot.
Start your hunt