Cyber Threat Intelligence Lead
Listed on 2026-03-01
-
IT/Tech
Cybersecurity
Company Description
Founded in 1989, SOSi is among the largest private, founder-owned technology and services integrators in the defense and government services industry. We deliver tailored solutions, tested leadership, and trusted results to enable national security missions worldwide.
Job DescriptionThis position is contingent upon contract award
SOSi is seeking highly qualified senior professionals to support a DHS enterprise cybersecurity program providing 24/7 Security Operations Center (SOC) services. These roles deliver leadership, operational oversight, and technical expertise across cyber defense, incident response, intelligence, engineering, and modernization activities.
Directs cyber threat intelligence collection, analysis, production, and integration into SOC workflows; maintains situational awareness of threat actors, TTPs, and campaigns to inform detection content, hunt priorities, and leadership decisions.
Responsibilities- Develop actionable intelligence products, IOCs, and early-warning assessments supporting operations.
- Integrate CTI with detection engineering and hunt teams; drive signature/rule/content development.
- Maintain threat actor tracking, trends/metrics, and leadership reporting.
- Experience
: 7+ years as a Tier III cyber analyst and 5+ years hands‑on, including the last 2 years performing host‑ and network‑based monitoring. - Technical Skills
:
Forensics, intrusion detection, incident response, malware analysis, and security content development (signatures/rules). - Scripting
:
Ability to develop/interpret scripts in VB, Python, C++, and HTML/XML. - Certifications
: CISSP or CTI-related certifications preferred. - Clearance
: TS, SCI‑eligible.
- Normal office conditions with potential to perform duties in various CONUS locations.
- Core hours of operation are Monday through Friday, 0600 – 1700.
- May be requested to work evenings and weekends to meet program and contract needs.
All interested individuals will receive consideration and will not be discriminated against for any reason.
#J-18808-Ljbffr(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).