Threat Analysis, Senior Advisor

Peraton

• $135K — $216K *
Technical Services
11 - 15 years of experience
Job Overview by Ladders

Qualifications

  • Active TS/SCI clearance with ability to obtain Q//SCI
  • 12+ years of experience with a BS/BA, 10+ years with an MS/MA, 7+ years with a PhD, or 16+ years with a HS diploma
  • Experience in cyber threat hunting, cyber intelligence, digital forensics, or OT/ICS security operations
  • Extensive experience in OT/ICS environments within critical infrastructure sectors
  • Proficiency with SIEM and forensic platforms like Elastic, Splunk, and Wireshark
  • Strong background in host/network log analysis and adversary technique identification
  • Practical cloud experience with AWS and Microsoft Azure

Responsibilities

  • Lead threat hunt operations in OT environments, including substations and control centers
  • Perform in-depth host and network log analysis using various analytical platforms
  • Evaluate and apply multi-source threat intelligence to identify adversary techniques
  • Develop threat hunt packages and methodologies for systematic hunt activities
  • Engineer and deploy sensor architectures in OT/ICS environments without disrupting operations
  • Conduct adversary behavior research using frameworks like MITRE ATT&CK
  • Produce comprehensive threat assessments and executive-level briefings
  • Collaborate with intelligence partners to enhance detection and response capabilities
  • Mentor junior analysts on OT architectures and threat hunting techniques
  • Support research using Mandarin for specialized intelligence operations

Benefits

  • Collaborative work environment with cybersecurity and intelligence teams
  • Opportunities for professional development and mentorship
  • Engagement in critical infrastructure security operations
  • Access to advanced analytical tools and platforms
  • Involvement in high-stakes intelligence operations
Full Job Description
Responsibilities
Position Summary

The OT Threat Hunt Analyst supports critical infrastructure security operations by conducting intelligence-driven threat hunts, advanced host/network analysis, and detection development across both OT and enterprise environments. This role applies multi-source cyber threat intelligence, adversary behavior analysis, and cloud-based analytical platforms to identify, characterize, and mitigate threats impacting transmission, generation, and control center systems. The analyst collaborates closely with stakeholders across cybersecurity, intelligence, and operations teams to deliver actionable insights and strengthen defensive postures.

Key Responsibilities
  • Lead and support threat hunt operations within OT environments, including substations, control centers, and enterprise networks.
  • Perform in-depth host and network log analysis using platforms such as Elastic, Splunk, Malcolm, Wireshark, and forensic toolkits.
  • Evaluate, translate, and apply multi-source threat intelligence to identify adversary techniques, impacted systems, and detection opportunities.
  • Develop threat hunt packages, methodologies, and documentation to support systematic, intelligence-driven hunt activities.
  • Engineer, test, and deploy sensor architectures in OT/ICS environments without disrupting critical operations.
  • Conduct adversary behavior research using frameworks such as MITRE ATT&CK, Diamond Model, and ICS Cyber Kill Chain.
  • Produce comprehensive threat assessments, analytic reports, and executive-level briefings summarizing findings, risks, and recommendations.
  • Collaborate with intelligence community partners and enterprise cyber defenders to enhance detection, response, and situational awareness.
  • Mentor junior analysts on OT architectures, data collection techniques, and threat hunting tradecraft.
  • Support research using Mandarin language capabilities for specialized intelligence operations.
Qualifications
  • Active TS/SCI with the ability to obtain a Q//SCI.
  • Min 12 years with BS/BA, Min 10 years with MS/MA, Min 7 years with PhD, 16 years with a HS diploma
  • Experience in cyber threat hunting, cyber intelligence, digital forensics, or OT/ICS security operations.
  • Extensive experience with OT/ICS environments within critical infrastructure sectors.
  • Proficiency with SIEM, detection, and forensic platforms: Elastic, Splunk, FTK, Wireshark, IBM Analyst’s Notebook.
  • Strong background in host/network log analysis and adversary technique identification.
  • Practical cloud experience using AWS and Microsoft Azure.
  • Working knowledge of MITRE ATT&CK, ICS Cyber Kill Chain, and modern detection engineering practices.
  • Ability to produce detailed analytic reports and executive briefings.
  • US Citizenship.
Preferred Qualifications
  • Bachelors or Masters in Cybersecurity Technology or related degree field.
  • GIAC certifications such as GCFA, GCIH, or GCDA.
  • Experience with detection engineering, incident response, continuous monitoring, and SIEM analytics.
  • Experience supporting Intelligence Community and DoD cyber missions.
  • Mandarin language proficiency is a significant plus.
  • Experience documenting standardized analytic procedures and knowledge management practices.
Target Salary Range$135,000 - $216,000. This represents the typical salary range for this position. Salary is determined by various factors, including but not limited to, the scope and responsibilities of the position, the individual’s experience, education, knowledge, skills, and competencies, as well as geographic location and business and contract considerations. Depending on the position, employees may be eligible for overtime, shift differential, and a discretionary bonus in addition to base pay.

Similar Jobs

More Jobs at Peraton

More Technical Services Jobs

Find similar Threat Analysis, Senior Advisor jobs: