TXCC - Cybersecurity Analyst III-IV (CTIC Analyst)

Capps
San Antonio, TX
Job Description
The Cyber Threat Intelligence Analyst performs advanced (senior-level) cybersecurity and information security analysis work, producing intelligence that informs Texas leadership, supports defenders across Texas Cyber Command, and enables collaboration with external partners. This role translates data, reporting, and technical findings into actionable intelligence that guides decision-making and strengthens cyber defense efforts.

Requirements

  • Five (5) years of experience in cyber threat intelligence, all-source intelligence analysis, or a closely related analytic discipline
  • Demonstrated experience producing written intelligence products for varied audiences, from executive leadership to technical defenders
  • Working knowledge of adversary tradecraft, intrusion lifecycle concepts, and common analytic frameworks (e.g., MITRE ATT&CK, Diamond Model, kill chain)
  • Familiarity with indicator types, detection logic, and the lifecycle of technical indicators from discovery to dissemination
  • Ability to read and interpret technical artifacts (e.g., logs, network data, malware reports, vulnerability disclosures) to develop analytic judgments
  • Experience using AI-assisted tools in an analytic workflow
  • Experience producing intelligence for state, local, federal, or military consumers, or for critical infrastructure operators
  • Regional or actor-specific expertise in one or more of: China, Russia, Iran, or DPRK cyber programs
  • Sector-specific familiarity with energy, water, elections, public safety, healthcare, or financial services threat landscapes
  • Experience working alongside SOC, incident response, or threat hunting teams, including during active incidents
  • Familiarity with CTI platforms, indicator standards (e.g., STIX/TAXII), and detection languages (e.g., YARA, Sigma) sufficient to author or review content
  • Experience briefing senior executives or elected officials
  • Experience designing, integrating, or evaluating LLM-based analytic workflows, including prompt development and handling of sensitive data
  • Certification in GIAC Certified Cyber Threat Intelligence (GCTI), Certified Information Systems Security Professional (CISSP), Certified Information Security Manager (CISM), and/or CompTIA Security+ or CySA+

Benefits

  • Paid Time Off
  • Health Insurance
  • Life Insurance
  • Retirement Plan
  • Holidays
  • Paid Holidays
  • Time Off
]]>