Enter a job title or keyword

ICS Threat Hunt Analyst Active Top Secret

Peraton


Job Location:

Arlington, TX - USA

Yearly Salary: USD 86000 - 138000
Posted: 29 September 2026 (2 days ago)
Application Deadline: 27 December 2026
Vacancies: 1 Vacancy

Job Summary

Responsibilities

Peraton is currently hiringIndustrial Control System Cyber Threat Intelligence Analystfor its Federal Strategic Cyber programs.

Location: On-site role in Arlington VA.

In this role you will:

  • Conduct proactive threat hunting across operational technology (OT) and industrial control system (ICS) environments to identify adversary presence misconfigurations and indicators of compromise.
  • Leverage internet-facing asset discovery and reconnaissance platforms (e.g. Shodan Censys) to identify exposed ICS/SCADA assets assess attack surface and inform threat assessments.
  • Perform open-source intelligence (OSINT) research and analysis to identify current and emerging threats targeting critical infrastructure sectors.
  • Analyze network traffic patterns ICS communication protocols (e.g. Modbus DNP3 BACnet OPC UA Ethernet/IP S7comm) and system architectures to identify anomalous or malicious activity.
  • Fuse multiple intelligence sources to develop products recommendations and inform priorities for the organization.
  • Research and investigate current threats in operational technology specific critical infrastructure sectors and mission areas to inform senior leaders and drive priorities for operational teams including forward-deployed incident response and threat hunting functions.
  • Prepare assessments and cyber threat profiles of current events and trends within ICS/SCADA environments.
  • Escalate new or high-priority threats to the Cyber Physical Forensics Section as required.
  • Map ICS threat activity using the MITRE ATT&CK for ICS Framework.
  • Seamlessly work alongside a team of host network and cloud forensic analysts to meet mission requirements for both incident response and threat hunting engagements.
  • Identify potential open-source vulnerabilities existing within ICS/SCADA systems and assess exploitability in the context of real-world threat actor capabilities.
  • Identify classified threat intelligence reporting related to ICS/SCADA and analyze for adversary intent and capability.
  • Contribute to Pre-Deployment Readiness Packages and campaign tracking.
  • Produce high-quality papers presentations recommendations and findings for senior U.S. government intelligence and operations officials.
Qualifications
Basic Qualifications:
  • Bachelors degree and 2 years of experience or an Associates degree and 4 years of relevant experience; or HS and 6 years in lieu of a bachelors degree.
  • Demonstrated experience conducting threat hunting network reconnaissance or vulnerability assessment in IT or OT environments.
  • Familiarity with ICS/SCADA systems protocols (e.g. Modbus DNP3 BACnet OPC UA Ethernet/IP) and their associated security risks.
  • Hands-on experience with internet-facing asset discovery tools such as Shodan Censys or similar platforms for identifying exposed infrastructure.
  • Experience performing open-source intelligence (OSINT) collection and analysis to support cyber threat assessments.
  • Understanding of networking fundamentals (TCP/IP routing switching firewalls VPNs) and how they apply to IT/OT convergence environments.
  • Experience researching and analyzing cyber threats across either a) multiple industries or b) multiple timeframes including but not limited to critical infrastructure sectors.
  • Familiarity with common cyber threat intelligence tools such as DomainTools VirusTotal Maltego exploit-db etc..
  • Experience producing and completing all-source (unclassified and classified) finished intelligence assessments that adhere to ICD203 analytic tradecraft standards.
  • Proven ability to collaborate and establish key threat intelligence partnerships to bolster information sharing and defenses.
  • U.S. citizenship required.
  • An Active Top Secret Security Clearance with SCI eligibility.
    • Additionally have the ability to obtain/maintain DHS EOD agency clearance prior to starting
Preferred Qualifications:

Certifications (any of the following):

  • SANS GIAC Global Industrial Cyber Security Professional (GICSP)
  • SANS GIAC Response and Industrial Defense (GRID)
  • SANS GIAC Cyber Threat Intelligence (GCTI)
  • SANS GIAC Certified Enterprise Defender (GCED)
  • SANS GIAC Network Forensic Analyst (GNFA)
  • SANS GIAC Certified Incident Handler (GCIH)
  • CompTIA CySA
  • CompTIA Network
  • CompTIA Security
  • Certified Ethical Hacker (CEH)
  • ISA/IEC 62443 Cybersecurity Certificate Program (ICSCP)
  • Dragos Platform Certified Analyst
  • Offensive Security Certified Professional (OSCP)

Preferred/Nice-to-Have Skills (not required):

  • Experience with network traffic analysis tools (e.g. Wireshark Zeek NetworkMiner)
  • Experience with network scanning and enumeration tools (e.g. Nmap Masscan)
  • Familiarity with ICS-specific threat intelligence platforms (e.g. Dragos WorldView Claroty Nozomi Networks)
  • Knowledge of NIST SP 800-82 (Guide to ICS Security) and IEC 62443 standards
  • Experience with SIEM platforms and log analysis in OT environments
  • Sector-specific experience in Energy Water/Wastewater Transportation or Manufacturing
  • Understanding of PLC HMI RTU and DCS architectures

Peraton Overview

Peraton is a next-generation national security company that drives missions of consequence spanning the globe and extending to the farthest reaches of the galaxy. As the worlds leading mission capability integrator and transformative enterprise IT provider we deliver trusted highly differentiated solutions and technologies to protect our nation and allies. Peraton operates at the critical nexus between traditional and nontraditional threats across all domains: land sea space air and cyberspace. The company serves as a valued partner to essential government agencies and supports every branch of the U.S. armed forces. Each day our employees do the cant be done by solving the most daunting challenges facing our customers. Visit to learn how were keeping people around the world safe and secure.

Target Salary Range
$86000 - $138000. This represents the typical salary range for this position. Salary is determined by various factors including but not limited to the scope and responsibilities of the position the individuals experience education knowledge skills and competencies as well as geographic location and business and contract considerations. Depending on the position employees may be eligible for overtime shift differential and a discretionary bonus in addition to base pay.
EEO
EEO: Equal opportunity employer including disability and protected veterans or other characteristics protected by law.

Required Experience:

IC


About Company

Company Logo

Peraton provides innovative solutions for the most sensitive and critical programs in government today, developed and executed by scientists, engineers, and other experts.

View Profile View Profile