About this Cyber Threat Intelligence Analyst - Mid-Level & Senior [U.S. Citizenship, Top Secret Clearance w/SCI Eligibility Required] role at Via Logic LLC
Start Your Adventure at Via Logic
Location: Primarily onsite at a government site in Ashburn, VA. Specific worksite expectations will be confirmed for the assignment.
Type: Full-time, W-2
Compensation: $110,000–$152,000 annually, depending on experience, qualifications, and assignment.
Experience: Mid-Level: 3+ years; Senior: 5+ years of relevant experience
Anticipated annual salary ranges by level are:
- Mid-Level: $110,000–$139,000
- Senior: $118,000–$152,000
Join Via Logic supporting U.S. Customs and Border Protection cybersecurity operations. As a Cyber Threat Intelligence Analyst, you'll collect, analyze, and disseminate threat information that helps security teams understand emerging threats and protect critical systems and networks.
You'll monitor threat intelligence sources, analyze threat data and adversary activity, and produce intelligence reports and products for technical and leadership audiences. Depending on your experience level, you'll also contribute to cyber investigations, threat intelligence sharing, and collaboration with other security teams to turn intelligence into actionable monitoring, detection, and defensive measures.
This posting covers both Mid-Level and Senior Cyber Threat Intelligence Analyst openings. We'll consider your experience against the requirements for the available level.
Eligibility & Clearance Requirements
Due to CBP requirements, applicants must:
- Be a U.S. citizen.
- Hold a Top Secret security clearance with SCI eligibility at the time of assignment.
- Meet and maintain CBP suitability requirements for access to government facilities and systems.
- Be available to work primarily onsite at a government site in Ashburn, VA. Specific worksite expectations will be confirmed for the assignment.
SCI eligibility means you are eligible to be considered for access to certain compartmented intelligence information. Access for a specific assignment requires separate government authorization and a need to know. Please include your current clearance status and SCI eligibility when applying.
Your Mission
- Collect, analyze, and disseminate cyber threat intelligence supporting security operations and the protection of CBP systems and networks.
- Monitor classified and unclassified threat intelligence sources to identify emerging threats, adversary activity, indicators of compromise (IOCs), and relevant tactics, techniques, and procedures (TTPs).
- Analyze threat data and conduct research supporting cyber investigations, including analysis of IOCs, threat actor activity, personas, and Advanced Persistent Threat activity.
- Produce cyber threat intelligence reports, assessments, briefings, and other products for technical teams, leadership, and other stakeholders.
- Identify trends in cyber threats, attacks, targeting, and suspicious or malicious activity and communicate relevant findings.
- Support the Security Operations Center in validating IOCs and identifying appropriate monitoring, alerting, blocking, detection, or other defensive measures.
- Contribute threat intelligence to incident response, threat hunting, detection, vulnerability assessment, penetration testing, and Purple Team activities as needed.
- Share actionable cyber threat intelligence with internal stakeholders and authorized federal partners.
- Research threats associated with third-party partners, vendors, and products that may affect CBP information systems or networks.
What You Bring to the Expedition
- Relevant professional experience in cyber threat intelligence, incident detection and response, or related cybersecurity operations.
- Experience collecting, analyzing, researching, or reporting on cyber threat information.
- Ability to analyze indicators of compromise, adversary activity, and threat data to identify relevant trends and potential risks.
- Experience developing clear threat intelligence reports, assessments, briefings, or other analytical products.
- Understanding of how cyber threat intelligence supports security operations, investigations, monitoring, and detection.
- Ability to communicate technical findings clearly and collaborate with security analysts, government partners, and other technical teams.
We are considering candidates at two levels:
- Mid-Level - 3+ years: At least three years of professional experience in incident detection and response and/or cyber threat intelligence analysis, along with a bachelor's degree in Computer Science, Engineering, Information Technology, Cybersecurity, or a related field.
- Senior - 5+ years: At least five years of professional experience collecting, synthesizing, fusing, or authoring classified and unclassified cyber threat intelligence products.
Preferred qualifications:
- Experience working in a Security Operations Center or similar cyber defense environment.
- Experience working with both classified and unclassified cyber threat intelligence.
- Experience collaborating directly with cyber threat hunting, incident response, or Purple Team functions.
- Experience translating threat intelligence into detection, monitoring, or other defensive security improvements.
Your Route Into Via Logic
One posting, two experience levels. Tell us about the threat intelligence work you've performed, the environments you've supported, and the reports, assessments, or other intelligence products you've developed.
Include your current clearance status and SCI eligibility so we can assess your fit for the available openings.
Why Explorers Stay
- Healthcare coverage and paid time off that give you room to take care of life outside work.
- Teammates who share knowledge, pitch in, and help each other grow.
- Opportunities to deepen your specialty and explore adjacent areas of cybersecurity as new assignments open up.
- Meaningful work protecting systems that support a federal mission.
How We Work
- These positions work primarily onsite at a government site in Ashburn, VA. Specific worksite expectations will be confirmed for the assignment.
- You'll collaborate with Via Logic teammates, government partners, and other technical teams using tools approved for your work environment.
- Core task coverage is generally weekdays, 8:30 a.m.–5:00 p.m. Eastern Time, with on-call support requirements based on assignment needs. We'll discuss specific scheduling expectations before moving forward.
- When virtual meetings are part of the work, we expect active participation and use video when appropriate and permitted by the client environment.