Demo

Cyber Threat Analyst

The Amatriot Group
Chantilly, VA Full Time
POSTED ON 5/12/2026
AVAILABLE BEFORE 6/6/2026
5 Year DoJ Contract | Chantilly, VA

Amatriot is seeking a Cyber Threat Analyst to support a Cyber Technical Analysis Unit in

analyzing cyber intrusion activity, digital communications, and host/network forensic artifacts in

support of DoJ mission operations. This role is focused on cyber threat analysis, intrusion

investigation, host-based forensic analysis, network traffic analysis, and attribution support

within a highly sensitive operational environment. The ideal candidate will possess experience

analyzing Splunk data, conducting host and network forensic analysis, and utilizing industrystandard

forensic and cyber analysis tools to identify malicious activity, recover artifacts, and

support investigative operations.

Responsibilities

  • Process, evaluate, and analyze digital network communications and cyber threat data to

identify malicious activity and support investigative operations.

  • Conduct cyber intrusion investigations and end-to-end kill chain analysis across host and

network environments.

  • Perform host-based forensic analysis leveraging Splunk and standard forensic toolsets

to identify indicators of compromise, attacker activity, persistence mechanisms, and

unauthorized access.

  • Analyze packet capture (PCAP) and NetFlow data to identify malicious communications,

software usage, command execution, credential activity, and network-based indicators of

compromise.

  • Correlate digital artifacts including IP addresses, URLs, malware indicators, system logs,

and user activity across multiple data sources to support attribution and investigative

lead generation.

  • Analyze encrypted and plaintext credentials, registry artifacts, rootkit activity, commandline

execution, and other system-level forensic evidence.

  • Draft detailed technical reports and analytical findings based on cyber investigations

while participating in internal review and quality assurance processes.

  • Support development and refinement of cyber analysis processes, CONOPS, SOPs,

and investigative methodologies.

  • Conduct open-source and intelligence community research to maintain awareness of

emerging cyber threats, malware trends, and adversary tactics, techniques, and

procedures (TTPs).

  • Collaborate with internal teams and mission partners across the intelligence community

to support tactical and strategic cyber operations.

  • Provide operational updates and analytical findings to leadership and investigative

stakeholders.

Required Skills & Experience

  • Active Top Secret Clearance required, with willingness and ability to obtain a Counter

Intelligence (CI) Polygraph.

  • BS/BA degree with 5 years of relevant experience or 9 years with no degree. Advanced

certifications, specialized training, or equivalent hands-on experience may be considered

in lieu of years of experience

  • Experience performing host-based forensic analysis utilizing Splunk.
  • Experience analyzing network traffic, packet capture (PCAP), and NetFlow data.
  • Hands-on experience with industry-standard forensic tools such as:
  • Splunk
  • EnCase
  • Magnet AXIOM
  • X-Ways Forensics
  • Understanding of cyber intrusion methodologies, attacker kill chains, malware behavior,

and forensic artifact analysis.

  • Experience correlating threat indicators and investigative data to support attribution and

operational analysis.

Salary.com Estimation for Cyber Threat Analyst in Chantilly, VA
$102,088 to $125,807
If your compensation planning software is too rigid to deploy winning incentive strategies, it’s time to find an adaptable solution. Compensation Planning
Enhance your organization's compensation strategy with salary data sets that HR and team managers can use to pay your staff right. Surveys & Data Sets

What is the career path for a Cyber Threat Analyst?

Sign up to receive alerts about other jobs on the Cyber Threat Analyst career path by checking the boxes next to the positions that interest you.
Income Estimation: 
$89,620 - $112,948
Income Estimation: 
$115,817 - $144,586
Income Estimation: 
$115,817 - $144,586
Income Estimation: 
$145,016 - $183,995
Employees: Get a Salary Increase
View Core, Job Family, and Industry Job Skills and Competency Data for more than 15,000 Job Titles Skills Library

Job openings at The Amatriot Group

  • The Amatriot Group Bethesda, MD
  • Security Clearance: Secret Location: West Bethesda, MD Job Type: Full-Time Target Salary Range*: $75,000-105,000 This represents the potential salary range... more
  • 6 Days Ago

  • The Amatriot Group Chantilly, VA
  • Capabilities Developer Chantilly, VA | Top Secret Cleared | New 5 Year DoJ Contract Amatriot is looking for a Capabilities Developer to support Rapid Appli... more
  • 6 Days Ago

  • The Amatriot Group Bethesda, MD
  • Security Clearance: Secret Location: Memphis, TN or Bethesda, MD Job Type: Full-Time Target Salary Range*: $90,000 - $110,000. This represents the potentia... more
  • 7 Days Ago

  • The Amatriot Group Linthicum Heights, MD
  • Security Clearance: Active Top Secret clearance with SCI eligibility Location: Linthicum Heights, MD Job Type: Full-Time Target Salary Range*: $134,000 - $... more
  • 7 Days Ago


Not the job you're looking for? Here are some other Cyber Threat Analyst jobs in the Chantilly, VA area that may be a better fit.

  • PUNCH Cyber Analytics Group Reston, VA
  • About PUNCH: We’re problem solvers first & foremost . PUNCH’s origin story involves frustration with available INFOSEC tools and techniques—we came up thru... more
  • 1 Month Ago

  • Central Intelligence Agency Washington, DC
  • Summary Cyber Threat Analysts assess foreign cyber intentions and capabilities to support U.S. national security interests. Summary Cyber Threat Analysts a... more
  • 5 Days Ago

AI Assistant is available now!

Feel free to start your new journey!