Operational Technology Threat Intelligence Analyst
Quick Summary
Collect, review, and identify cybersecurity threat intelligence from open-source and government intelligence reporting.
Experience: Six (6) years of relevant IT experience. Two (2) years of experience working with Operational Technology (OT) or related technologies.
AGE Solutions is seeking an experienced Operational Technology Threat Intelligence Analyst to support the identification, analysis, and reporting of cybersecurity threats affecting Operational Technology (OT) environments. This position collects and analyzes open-source and government threat intelligence, reviews OT log and network activity for indications of attacks and Advanced Persistent Threats (APTs) and provides actionable threat reporting and briefings to OT cybersecurity analysts. The role works closely with Cyber Intelligence, Incident Response, content development, and cybersecurity engineering personnel to identify protection and detection gaps, perform root cause analysis, support remediation efforts, and serve as a Subject Matter Expert on OT cybersecurity threats and incidents.
Responsibilities
~2 min read- →Collect, review, and identify cybersecurity threat intelligence from open-source and government intelligence reporting.
- →Analyze threat intelligence and provide actionable threat reporting and briefings to Operational Technology (OT) cybersecurity analysts.
- →Support content developers and cybersecurity engineers in identifying gaps in the protection and detection of OT systems.
- →Review OT system logs, network events, and security alerts for indications of cyberattacks or Advanced Persistent Threat (APT) activity.
- →Analyze cybersecurity threats, attacks, and vulnerabilities affecting Operational Technology environments.
- →Work closely with Cyber Intelligence analysts and Incident Response analysts to provide expert analysis and reporting of OT cybersecurity threats and attacks.
- →Perform root cause analysis for cybersecurity incidents involving Operational Technology systems.
- →Support remediation efforts associated with OT cybersecurity incidents.
- →Collect and interpret qualitative and quantitative data from multiple sources to support cybersecurity threat analysis.
- →Utilize cyber threat intelligence to identify and analyze potential threats affecting OT environments.
- →Apply knowledge of the NIST Incident Response Framework when supporting cybersecurity incident analysis and response activities.
- →Apply the MITRE ATT&CK framework when analyzing cybersecurity threats and attacker activity.
- →Analyze threats involving Operational Technology, including Programmable Logic Controllers (PLCs) and Supervisory Control and Data Acquisition (SCADA) software.
- →Serve as the Subject Matter Expert (SME) for Operational Technology cybersecurity-related issues.
Requirements
~1 min read- Experience:
- Six (6) years of relevant IT experience.
- Two (2) years of experience working with Operational Technology (OT) or related technologies.
- Two (2) years of experience utilizing cyber threat intelligence.
- Two (2) years of experience working with a Security Information and Event Management (SIEM) system in an engineering or incident response role.
- Clearance:
- Must possess a current DoD Top Secret Clearance with IT-I, T5 investigation.
- Certifications:
- Must have at least ONE IAT-II Certification from one of the following:
- Cisco Certified Network Associate Security (CCNA Security)
- CompTIA Cybersecurity Analyst (CySA+)
- Global Industrial Cyber Security Professional (GICSP)
- GIAC Security Essentials (GSEC)
- CompTIA Security+ Continuing Education (Security+ CE)
- Systems Security Certified Practitioner (SSCP)
- Must have at least ONE IAT-II Certification from one of the following:
- Skills and Qualifications:
- Experience collecting and interpreting qualitative and quantitative data from multiple sources.
- Understanding of the NIST Incident Response Framework.
- Understanding of the MITRE ATT&CK framework.
- Experience with Operational Technology, including Programmable Logic Controllers (PLCs) and Supervisory Control and Data Acquisition (SCADA) software.
- Understanding of threats and vulnerabilities within Operational Technology environments.
- Location:
- This role is full-time onsite at our customer’s location in Columbus, OH.
- Work is primarily performed in a professional office or technical environment.
- Requires prolonged periods of sitting and working at a computer workstation.
- Requires frequent use of computers, keyboards, monitors, and standard office equipment.
- Requires the ability to communicate effectively with team members and stakeholders in person, by telephone, and through virtual collaboration tools.
- May require occasional standing, walking, bending, and reaching during the normal course of work.
- Requires the ability to maintain concentration and attention to detail while reviewing and analyzing cybersecurity threat intelligence, logs, network events, and alerts.
- Must be able to work effectively in a collaborative environment with Cyber Intelligence, Incident Response, cybersecurity engineering, and OT cybersecurity personnel.
The projected salary range for this position is $115,000+ annually. Final compensation will be determined based on factors including years of relevant experience, active security clearance level, certifications, technical skillset, contract requirements, and overall qualifications.
What We Offer
~1 min readLocation & Eligibility
Listing Details
- Posted
- September 29, 2026
- First seen
- September 29, 2026
- Last seen
- September 29, 2026
Posting Health
- Days active
- 0
- Repost count
- 0
- Trust Level
- 60%
- Scored at
- September 29, 2026
Signal breakdown
Similar Threat Intelligence Analyst jobs
View all →Browse Similar Jobs
Stay ahead of the market
Get the latest job openings, salary trends, and hiring insights delivered to your inbox every week.
No spam. Unsubscribe at any time.