Everforth ECS is seeking a Senior Cyber Threat Intelligence (CTI) Analyst to join our team in Arlington, VA (Hybrid). This position is contingent upon award.
We are seeking an experienced Senior Cyber Threat Intelligence (CTI) Subject Matter Expert (SME) to lead threat intelligence initiatives that enhance the organization's cyber defense capabilities. This role is responsible for collecting, analyzing, and disseminating actionable intelligence on cyber threats, threat actors, vulnerabilities, emerging attack trends, and infrastructure tracking / obfuscation-network discovery, fingerprinting, and clustering.
The ideal candidate will leverage multiple intelligence sources, conduct advanced threat analysis, and collaborate closely with Security Operations Center (SOC), Incident Response, Vulnerability Management, and Executive Leadership teams to proactively identify and mitigate cyber risks.
Key Responsibilities
Threat Intelligence Operations
- Collect, analyze, and disseminate strategic, operational, and tactical cyber threat intelligence.
- Monitor the evolving threat landscape, including nation-state actors, cybercriminal organizations, hacktivists, and insider threats.
- Develop intelligence products, reports, briefings, and alerts tailored to technical and executive audiences.
- Identify emerging threats, attack campaigns, indicators of compromise (IOCs), and adversary tactics, techniques, and procedures (TTPs).
Cyber Threat Analysis
- Conduct in-depth analysis of threat actor groups, motivations, capabilities, and targeting patterns.
- Utilize frameworks such as MITRE ATT&CK, Cyber Kill Chain, Diamond Model, and Intelligence Lifecycle methodologies.
- Correlate threat intelligence with internal telemetry, security incidents, and vulnerability data.
- Perform attribution analysis and assess potential business impact from identified threats.
- Perform infrastructure tracking in order to effectively conduct obfuscation-network discovery, fingerprinting, and clustering.
Security Operations Support
- Provide actionable intelligence to SOC and Incident Response teams to improve detection and response capabilities.
- Collaborate with security engineers to develop threat detection use cases and intelligence-driven monitoring strategies.
- Support proactive threat hunting activities by identifying emerging indicators and adversary behaviors.
- Assist during cyber incidents by delivering real-time intelligence and threat context.
Strategic Advisory
- Serve as a trusted advisor to cybersecurity leadership and business stakeholders.
- Deliver executive-level briefings on cyber threats, risk exposure, and industry-specific threat trends.
- Assess geopolitical, regulatory, and technology developments that may impact organizational security.
- Recommend mitigation strategies and security investments based on intelligence findings.
Intelligence Program Development
- Enhance and mature cyber threat intelligence capabilities, processes, and tools.
- Establish intelligence requirements aligned with organizational priorities and risk management objectives.
- Develop intelligence-sharing relationships with government agencies, industry groups, ISACs, and external partners.
- Create and maintain threat intelligence playbooks, procedures, and reporting frameworks.
Research & Innovation
- Conduct original research on emerging cyber threats, malware families, vulnerabilities, and attack techniques.
- Evaluate commercial and open-source threat intelligence platforms and services.
- Stay current on cybersecurity trends, technologies, and intelligence methodologies.
- Contribute to organizational thought leadership through white papers, presentations, and internal training.
Salary Range: $160,000 - $180,000
General Description of Benefits
Preferred Qualifications
- Top Secret Clearance
- Bachelor's degree in Cybersecurity, Computer Science, Information Technology, Intelligence Studies, or a related field, or equivalent experience.
- 8+ years of cybersecurity experience with at least 5 years focused on Cyber Threat Intelligence.
- Deep understanding of cyber threat actor ecosystems and attack methodologies.
- Experience analyzing malware, ransomware, phishing campaigns, and advanced persistent threats (APTs).
- Strong knowledge of threat intelligence frameworks, intelligence lifecycle processes, and threat modeling techniques.
- Experience supporting Security Operations Centers (SOC), Incident Response, and Threat Hunting functions.
- Strong analytical, investigative, and critical-thinking skills.
- Excellent written and verbal communication skills with the ability to present findings to both technical and executive audiences.
Skills Required
- Top Secret clearance
- Bachelor's degree in Cybersecurity, Computer Science, Information Technology, Intelligence Studies, or a related field, or equivalent experience
- 8+ years of cybersecurity experience, including at least 5 years focused on Cyber Threat Intelligence
- Deep understanding of cyber threat actor ecosystems and attack methodologies
- Experience analyzing malware, ransomware, phishing campaigns, and advanced persistent threats
- Strong knowledge of threat intelligence frameworks, intelligence lifecycle processes, and threat modeling techniques
- Experience supporting Security Operations Centers, Incident Response, and Threat Hunting functions
- Strong analytical, investigative, and critical-thinking skills
- Excellent written and verbal communication skills, including presenting findings to technical and executive audiences
ECS Compensation & Benefits Highlights
The following summarizes recurring compensation and benefits themes identified from responses generated by popular LLMs to common candidate questions about ECS and has not been reviewed or approved by ECS.
-
Healthcare Strength — ECS advertises multiple national-network medical plan options with HSA eligibility alongside dental and vision coverage. Coverage generally begins quickly and is paired with company-paid short- and long-term disability, adding stability to the health package.
-
Retirement Support — A 401(k) with Safe Harbor and immediate vesting on employer contributions is emphasized, with an employer match available. Access to an employee stock purchase plan via the parent company provides an additional savings avenue.
-
Parental & Family Support — Paid parental leave up to 30 days, adoption assistance, and other family-oriented leaves are highlighted. Feedback suggests these offerings add meaningful value beyond base pay for many roles.
ECS Insights
What We Do
ECS, a segment of ASGN (NYSE: ASGN), delivers advanced solutions and services in cloud, cybersecurity, artificial intelligence (AI), machine learning (ML), application and IT modernization, and science and engineering. The company solves critical, complex challenges for customers across the U.S. public sector, defense, intelligence and commercial industries. ECS maintains partnerships with leading cloud, cybersecurity, and AI/ML providers and holds specialized certifications in their technologies. Headquartered in Fairfax, Virginia, ECS has more than 3,400 employees throughout the U.S. and has been recognized as a Top Workplace by The Washington Post for the last five years.








