Are you ready to defend national critical infrastructure from evolving non-kinetic cyber threats?
The Critical Infrastructure Protection Department (L561), sitting within MITRE's Cyber-Physical Systems Division, delivers innovative solutions to sponsor challenges critical to national security and public sector missions. Our multidisciplinary team researches, develops, and applies advanced technologies to ensure the operational resilience of vital national assets.
Our core focus areas include:
- Infrastructure Susceptibility Analysis
- Safety Engineering
- Threat-Informed Recommendations
- Critical Infrastructure (CI) Threat Detection, Analytics, & Adversary Emulation
- Operational Technology (OT) Device Security & Space System OT
- Cross-Sector Interdependency Analysis
- Defense Critical Infrastructure Expertise
- Civilian Critical Infrastructure Sector-Specific Expertise
Roles & Responsibilities- Apply Intelligence Expertise: Apply intelligence expertise to help our sponsors solve their hardest problems, ranging from supporting cyber acquisition decisions, assessing threats to weapons systems and critical infrastructure, and analyzing intelligence reporting to enable cyber effects. Guide sponsors in building and advancing cyber intelligence capabilities and programs.
- Threat Analysis: Track and analyze adversary tactics, techniques, and procedures (TTPs) relevant to industrial control systems (ICS), Operational Technology (OT), space system OT, and cyber-physical technologies.
- All-Source Research: Lead technical research using open-source, classified, and all-source information to advance the state of the art in cyber intelligence.
- Apply Adversary Thinking: Assess how threat actors could target critical infrastructure systems, exploit technologies, and cause operational impacts; identify intelligence gaps; prioritize analyses, COAs, and mitigations.
- Risk & Resilience Assessments: Lead and perform cyber threat modeling, mission impact analyses, and supply chain risk analyses for critical infrastructure and space systems.
- Intelligence and Data Fusion: Fuse intelligence, technical, and operational data into products that support mission assurance or risk-informed decision-making.
- Actionable Insights: Work closely with IT and OT engineers, infrastructure SMEs, and Mission SMEs to synthesize and translate complex all-source information into clear, decision-focused insights and recommendations (reports, white papers, strategic briefings, graphics) for senior leaders.
Basic Qualifications- Typically requires a minimum of 8 years of related experience in cyber or signals intelligence, cybersecurity, and related fields with a Bachelor's degree; or 6 years and a Master's degree; or PhD with 3 years' experience; or the equivalent combination of related education and work experience
- Experience with USCYBERCOM, subordinate JFHQ-Cs, intelligence agencies, authorities, and relationships.
- Strong leadership and communication skills to effectively mentor teams and collaborate with diverse groups of internal and external stakeholders.
- Familiarity with SIGINT and all-source intelligence databases and analytic tools.
- Experience with capability development guidance, acceptance, and integration
- Must be eligible to obtain and maintain a Top Secret/SCI U.S Government issued Security Clearance. Per the U.S. Government's eligibility requirements, you must be a U.S Citizen to be considered for a security clearance.
- This position requires a minimum of 5 days a week on-site.
Preferred Qualifications- Experience with intelligence gain loss and equity analysis
- Hands on technical expertise in any of the following additional areas: cyber or intelligence operations, cyber effects and reverse engineering, and associated staffing and budgeting processes.
- Familiarity with the intent, capability and operations of top tier nation-station adversary threat groups targeting western technology in critical infrastructure, space, or weapon systems.
- Familiarity with supporting basic, intermediate, and advanced target development.
- Familiarity with vulnerability identification
- Familiarity with network architecture analysis
- Active Secret, Top Secret, or SCI clearance with Polygraph.
This requisition requires the candidate to have a minimum of the following clearance(s):None
This requisition requires the hired candidate to have or obtain, within one year from the date of hire, the following clearance(s):Top Secret/SCI
Salary compensation range and midpoint:$158,800 - $198,500 - $238,200 Annual
Work Location Type:Onsite