Information Technology Security, SME
Denver, CO - USA
Job Summary
The OT Threat Hunt Analyst supports critical infrastructure security operations by conducting intelligence-driven threat hunts advanced host/network analysis and detection development across both OT and enterprise environments. This role applies multi-source cyber threat intelligence adversary behavior analysis and cloud-based analytical platforms to identify characterize and mitigate threats impacting transmission generation and control center systems. The analyst collaborates closely with stakeholders across cybersecurity intelligence and operations teams to deliver actionable insights and strengthen defensive postures.
- Lead and support threat hunt operations within OT environments including substations control centers and enterprise networks.
- Perform in-depth host and network log analysis using platforms such as Elastic Splunk Malcolm Wireshark and forensic toolkits.
- Evaluate translate and apply multi-source threat intelligence to identify adversary techniques impacted systems and detection opportunities.
- Develop threat hunt packages methodologies and documentation to support systematic intelligence-driven hunt activities.
- Engineer test and deploy sensor architectures in OT/ICS environments without disrupting critical operations.
- Conduct adversary behavior research using frameworks such as MITRE ATT&CK Diamond Model and ICS Cyber Kill Chain.
- Produce comprehensive threat assessments analytic reports and executive-level briefings summarizing findings risks and recommendations.
- Collaborate with intelligence community partners and enterprise cyber defenders to enhance detection response and situational awareness.
- Mentor junior analysts on OT architectures data collection techniques and threat hunting tradecraft.
- Support research using Mandarin language capabilities for specialized intelligence operations.
Minimum of 16 years with BS/BA; Minimum of 14 years with MS/MA; Minimum of 10 years with Ph.D.
- Active TS/SCI with the ability to obtain a Q//SCI.
- Experience in cyber threat hunting cyber intelligence digital forensics or OT/ICS security operations.
- Extensive experience with OT/ICS environments within critical infrastructure sectors.
- Proficiency with SIEM detection and forensic platforms: Elastic Splunk FTK Wireshark IBM Analysts Notebook.
- Strong background in host/network log analysis and adversary technique identification.
- Practical cloud experience using AWS and Microsoft Azure.
- Working knowledge of MITRE ATT&CK ICS Cyber Kill Chain and modern detection engineering practices.
- Ability to produce detailed analytic reports and executive briefings.
- US Citizenship.
- Bachelors or Masters in Cybersecurity Technology or related degree field.
- GIAC certifications such as GCFA GCIH or GCDA.
- Experience with detection engineering incident response continuous monitoring and SIEM analytics.
- Experience supporting Intelligence Community and DoD cyber missions.
- Mandarin language proficiency is a significant plus.
- Experience documenting standardized analytic procedures and knowledge management practices.
Peraton is a next-generation national security company that drives missions of consequence spanning the globe and extending to the farthest reaches of the galaxy. As the worlds leading mission capability integrator and transformative enterprise IT provider we deliver trusted highly differentiated solutions and technologies to protect our nation and allies. Peraton operates at the critical nexus between traditional and nontraditional threats across all domains: land sea space air and cyberspace. The company serves as a valued partner to essential government agencies and supports every branch of the U.S. armed forces. Each day our employees do the cant be done by solving the most daunting challenges facing our customers. Visit to learn how were keeping people around the world safe and secure.
About Company
Peraton provides innovative solutions for the most sensitive and critical programs in government today, developed and executed by scientists, engineers, and other experts.