Sr Industrial Control System Cyber Threat Intelligence Analyst with OT/CTI/Threat Hunt experience
Peraton is currently hiring Sr Industrial Control System Cyber Threat Intelligence Analyst for its Federal Strategic Cyber programs.
Location: On-site role in Arlington, VA.
In this role, you will:
- Fuse multiple intelligence sources to develop products, recommendations, and inform priorities for the organization.
- Perform research and investigate current threats in operational technology, specific critical infrastructure sectors, and mission areas to inform senior leaders and drive priorities for operational teams, including the forward deployed incident response and threat hunting functions.
- Analyze collected data to derive facts and projections concerning capabilities, intentions, attack approaches—research resource allocations, motivations, tendencies, personalities.
- Contribute to profiling adversarial behavior with respect to identified system attacks in the context of the critical infrastructure mission.
- Research and review cyber warfare tactics, techniques, and procedures focused on the threat to information networks.
- Prepare assessments and cyber threat profiles of current and planned products based on recent and current trends within ICS/SCADA.
- Escalate new or high threats to the Cyber Physical Forensics Section as required.
- Research OT defensive tactics, techniques, and procedures (TTPs) for detecting and responding to cyber threats.
- Map ICS activity and threats using MITRE ATT&CK Framework .
- Seamlessly work alongside a team of host, network, and cloud forensic analysts to meet the mission requirements for both incident response and threat hunting engagements.
- Serve as subject matter expert (SME) for ICS Security activities.
- Identify potential open-source vulnerabilities existing within ICS/SCADA.
- Identify and assess current and emerging threats and vulnerabilities as they relate to homeland security.
- Identify classified threat intelligence reporting related to ICS/SCADA and analyze for adversary intent and capability.
- Develop and maintain analytical procedures to meet changing requirements.
- Produces high-quality papers, presentations, recommendations, and findings for senior US government intelligence and operations officials.
- Serve as a customer facing SME supporting them achieve success with the technology for their overall ICS security efforts.
Qualifications
Minimum Qualifications:
- Bachelor’s degree and 8 years of experience, or an Associate’s degree and 10 years, or HS and 12+ years of experience in lieu of a degree.
- Experience performing processing, triage, threat analysis, and response to cyber incident reports.
- Experience with industrial Control Systems (ICS), Operational technology (OT), Supervisory Control and Data Acquisition (SCADA) systems, and the underlying principles necessary to ensure security and safe function of ICS systems.
- Experience connecting open-source information with network and/or host-based anomalies (e.g., identifying cyber threat intelligence about suspicious processes, finding new insights through tools such as VirusTotal, understanding of how to find threat intelligence about malformed HTTP traffic, etc.).
- Hands-on experience with open-source cyber threat/related tools (e.g., VirusTotal, Maltego, Shodan, exploit-db, etc.).
- Experience researching and analyzing cyber threats across either a) multiple industries or b) multiple timeframes. Including but not limited to the critical infrastructure sectors.
- Practical experience using common threat intelligence analysis models such as MITRE ATT&CK, the Diamond Model, and the Cyber Kill Chain to incorporate into client reports.
- Experience producing and completing all-source (unclassified and classified) finished intelligence assessments that adhere to the ICD203 analytic tradecraft standards.
- Proven ability to collaborate and establish key threat intelligence partnerships to bolster information sharing and defenses.
- U.S. citizenship required.
- An Active Top Secret Security Clearance with SCI eligibility.
- Additionally, have the ability to obtain/maintain DHS EOD agency clearance prior to starting.
Preferred Qualifications:
- SANS Global Industrial Cyber Security Professional (GICSP).
- SANS GIAC Response and Industrial Defense (GRID).
- SANS GIAC Cyber Threat Intelligence (GCTI).
Peraton is a next-generation national security company that drives missions of consequence spanning the globe and extending to the farthest reaches of the galaxy. As the world’s leading mission capability integrator and transformative enterprise IT provider, we deliver trusted, highly differentiated solutions and technologies to protect our nation and allies. Peraton operates at the critical nexus between traditional and nontraditional threats across all domains: land, sea, space, air, and cyberspace. The company serves as a valued partner to essential government agencies and supports every branch of the U.S. armed forces. Each day, our employees do the can’t be done by solving the most daunting challenges facing our customers. Visit peraton.com to learn how we’re keeping people around the world safe and secure.
Target Salary Range$112,000 - $179,000. This represents the typical salary range for this position. Salary is determined by various factors, including but not limited to, the scope and responsibilities of the position, the individual’s experience, education, knowledge, skills, and competencies, as well as geographic location and business and contract considerations. Depending on the position, employees may be eligible for overtime, shift differential, and a discretionary bonus in addition to base pay. EEOEEO: Equal opportunity employer, including disability and protected veterans, or other characteristics protected by law.Skills Required
- Bachelor's degree and 8 years of experience, or Associate's degree and 10 years of experience, or high school diploma and 12+ years of experience in lieu of a degree
- Experience processing, triaging, analyzing, and responding to cyber incident reports
- Experience with Industrial Control Systems, Operational Technology, and SCADA systems
- Experience connecting open-source information with network- or host-based anomalies
- Hands-on experience with open-source cyber threat intelligence tools such as VirusTotal, Maltego, Shodan, and Exploit-DB
- Experience researching and analyzing cyber threats across multiple industries or timeframes, including critical infrastructure sectors
- Experience using MITRE ATT&CK, the Diamond Model, and the Cyber Kill Chain
- Experience producing all-source classified and unclassified intelligence assessments adhering to ICD 203 standards
- Ability to collaborate and establish threat intelligence partnerships
- U.S. citizenship
- Active Top Secret security clearance with SCI eligibility
- Ability to obtain and maintain DHS EOD agency clearance before starting
- SANS Global Industrial Cyber Security Professional certification
- SANS GIAC Response and Industrial Defense certification
- SANS GIAC Cyber Threat Intelligence certification
Peraton Compensation & Benefits Highlights
The following summarizes recurring compensation and benefits themes identified from responses generated by popular LLMs to common candidate questions about Peraton and has not been reviewed or approved by Peraton.
-
Healthcare Strength — Healthcare offerings are described as broad, including medical, dental, vision, mental health support, and specialty programs like virtual physical therapy and surgical/cancer care navigation. Medical coverage is also characterized as a standout part of the overall package in terms of perceived quality.
-
Retirement Support — Retirement support includes a 401(k) with employer matching and is repeatedly positioned as a strong component of total rewards. The 401(k) benefit is frequently singled out as one of the most valued parts of the package.
-
Leave & Time Off Breadth — Time-off benefits are positioned as robust, including PTO, holidays, paid sick days, and floating holidays, with some roles offering notably generous accrual. Leave breadth is reinforced by related programs such as short/long-term disability and bereavement leave.
Peraton Insights
What We Do
Peraton is a next-generation national security company that drives missions of consequence spanning the globe and extending to the farthest reaches of the galaxy. As the world’s leading mission capability integrator and transformative enterprise IT provider, we deliver trusted, highly differentiated solutions and technologies to protect our nation and allies. Peraton operates at the critical nexus between traditional and nontraditional threats across all domains: land, sea, space, air, and cyberspace. The company serves as a valued partner to essential government agencies and supports every branch of the U.S. armed forces. Each day, our employees do the can’t be done by solving the most daunting challenges facing our customers. Visit peraton.com to learn how we’re keeping people around the world safe and secure.
Why Work With Us
We are fearlessly solving the world’s most complex challenges to keep people safe and secure. You can be a part of protecting and promoting that freedom around the world.








