Cybersecurity Operations Analyst & Cyber Threat Intelligence Lead

The Aerospace CorporationColorado Springs, CO
Onsite

About The Position

The Aerospace Corporation is seeking an experienced cybersecurity professional to serve as a Tier 2/3 Cyber Operations Analyst and Lead their Cyber Threat Intelligence (CTI) program. This role involves handling escalated security events, conducting advanced threat analysis, leading complex investigations, and managing all aspects of threat intelligence collection, analysis, production, and dissemination. As a SOC subject matter expert, the individual will utilize cutting-edge security tools and deep technical expertise to identify, analyze, and mitigate advanced cyber threats while mentoring junior analysts. The selected candidate will be required to work full-time, on-site at their facility in Colorado Springs, CO.

Requirements

  • Bachelor's degree in Cybersecurity, Computer Science, Information Systems, Intelligence Studies, or equivalent experience
  • 3-5 years in security operations, threat analysis, incident response, or SOC environments
  • 3+ years in cyber threat intelligence analysis, production, and program management
  • Proven experience building or managing a CTI program
  • Strong background in intelligence analysis methodologies, intelligence cycle (collection, processing, analysis, dissemination) & structured analytic techniques
  • Experience as Tier 2/3 SOC analyst handling complex security incidents
  • Experience producing intelligence products for various audiences (technical, operational, executive) and briefing stakeholders
  • Ability to analyze threat actors, track campaigns, and assess adversary capabilities
  • Advanced proficiency with SIEM platforms (Google SecOps, QRadar, LogRhythm, ArcSight, or similar) including custom query development
  • Hands-on experience with threat intelligence platforms (TIP) and OSINT tools
  • Deep understanding of network protocols, traffic analysis, and advanced attack techniques
  • Extensive log analysis and event correlation experience
  • Strong knowledge of Windows/Linux systems, forensic artifacts, and attacker techniques
  • Expertise with EDR platforms and advanced endpoint analysis
  • Expert-level understanding of MITRE ATT&CK framework
  • Experience with threat intelligence frameworks (Diamond Model, Cyber Kill Chain)
  • Advanced network packet analysis skills (Wireshark, tcpdump)
  • Ability to analyze malicious scripts, PowerShell commands, and malware behavior
  • Ability to work under pressure and manage multiple complex investigations
  • Ability to obtain and maintain US Secret clearance (US citizenship required)

Nice To Haves

  • GCTI, CTIA, GCIA, GCIH, GCFA, GNFA, GMON, CySA+, CISSP, etc. certifications
  • Prior experience as CTI Lead, Manager, or Program Owner
  • Government, military, or defense intelligence background with formal training
  • Experience developing intelligence requirements and collection strategies
  • Advanced proficiency with ThreatConnect, Anomali, MISP, Recorded Future
  • OSINT research, dark web monitoring, and underground forum analysis experience
  • Malware analysis and reverse engineering skills
  • Published threat intelligence research or conference presentations
  • Scripting proficiency (Python, PowerShell, Bash) for automation and analysis
  • Experience with SOAR platforms
  • Cloud security operations experience (AWS, Azure, GCP)
  • Experience in classified or high-security environments
  • Network security monitoring tools experience (Zeek, Suricata, Snort)
  • Red team/purple team exercise participation
  • Analyst mentoring and training experience
  • Knowledge of compliance frameworks (NIST 800-53, 800-171, CMMC)
  • Familiarity with IC standards (ICD 203, ICD 206)

Responsibilities

  • Lead Aerospace's CTI program, establishing strategy, processes, and capabilities
  • Develop CTI roadmap, define intelligence requirements (PIRs/IRs), and align with organizational risk priorities
  • Manage relationships with external threat intelligence partners, ISACs/ISAOs, and government agencies
  • Produce strategic, operational, and tactical intelligence products including threat assessments, adversary profiles, and campaign analysis
  • Conduct all-source intelligence analysis on threat actors and emerging threats targeting aerospace/defense
  • Manage threat intelligence platforms (TIP) and establish intelligence workflows
  • Track and profile APT groups and adversaries relevant to Aerospace's threat landscape
  • Brief leadership on threat trends, emerging risks, and intelligence-driven recommendations
  • Establish metrics demonstrating CTI program value and effectiveness
  • Serve as Tier 2/3 escalation point for complex security alerts and incidents
  • Conduct deep-dive investigations into sophisticated threats and APTs
  • Perform advanced threat hunting leveraging intelligence to guide hypotheses
  • Analyze security alerts from SIEM, IDS, EDR, and other security technologies
  • Correlate data from multiple sources to reconstruct attack timelines and identify compromise scope
  • Lead incident response for escalated events, coordinating containment and remediation
  • Integrate threat intelligence into detection workflows and develop advanced detection rules
  • Analyze malware, scripts, and attacker tools to understand adversary TTPs
  • Mentor Tier 1 analysts and develop their analytical skills
  • Create advanced playbooks, investigation workflows, and technical documentation
  • Generate detailed technical reports and executive summaries on complex threats
  • Provide after-hours escalation support for critical incidents as needed

Benefits

  • Comprehensive health care and wellness plans
  • Paid holidays, sick time, and vacation
  • Standard and alternate work schedules, including telework options
  • 401(k) Plan — Employees receive a total company-paid benefit of 8%, 10%, or 12% of eligible compensation based on years of service and matching contributions; employees are immediately eligible and vested in the plan upon hire
  • Flexible spending accounts
  • Variable pay program for exceptional contributions
  • Relocation assistance
  • Professional growth and development programs to help advance your career
  • Education assistance programs
  • An inclusive work environment built on teamwork, flexibility, and respect
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service