Cyber Intelligence and Counterintelligence Analyst, Subject Matter Expert

MANTECHCalifornia, United StatesOn-siteFull-timeSenior, 5–8 yearsListed 1 hour ago

Apply now

About this role

Shape the future of defense with MANTECH! Join a team dedicated to safeguarding our nation through advanced tech and innovative solutions. Since 1968, we’ve been a trusted partner to the Department of Defense, delivering cutting-edge projects that make a real impact. Dive into exciting opportunities in Cybersecurity, IT, Data Analytics and more. Propel your career forward and be part of something extraordinary. Your journey starts now—protect and innovate with MANTECH!

***This is for a future opportunity***

MANTECH seeks a mission-focused Cyber Intelligence and Counterintelligence Analyst, (SME) located at Vandenberg Space Force Base, CA.

This position supports the 630th Cyberspace Squadron (630 CYS) in defending Western Launch and Test Range Systems (W-LTRS). You will provide advanced cyber threat intelligence, threat hunting, and mission assurance across range safety networks, telemetry, tracking infrastructure, electrical distribution, and Industrial Control System (ICS) environments.

As a Cybersecurity Intel/CI Analyst SME, you will evaluate adversary activity, analyze TTPs, and produce actionable intelligence products supporting defensive cyberspace operations and launch assurance. This role focuses on authorized cyber defense and intel coordination and does not carry independent CI investigative or law enforcement authority.

Responsibilities include but are not limited to:

• Conduct advanced cyber threat intelligence analysis, adversary profiling, pattern-of-life analysis, and proactive threat-hunting activities across designated mission systems, infrastructure, and operational technology environments.

• Monitor and assess real-time cyber threat activity to identify, analyze, and report malicious logic, indicators of compromise, anomalous behaviors, potential foreign cyber threat indicators, active campaigns, and evolving adversary TTPs.

• Develop and disseminate timely intelligence products, including indications-and-warning reports, technical threat reports, intelligence estimates, executive summaries, operational updates, and weekly leadership briefings, to inform defensive cyberspace operations and launch-mission assurance.

• Collaborate with mission-planning cells, range operators, cybersecurity personnel, and authorized intelligence organizations to identify, scope, track, and close critical cyber threat-information gaps and support intelligence-sharing requirements.

• Develop, track, and submit intelligence collection and production requirements using established tasking systems, cyber threat intelligence platforms, structured databases, and multi-source research workflows; research and respond to time-sensitive Requests for Information (RFIs) within required timelines.

• Support quarterly Mission Area Intelligence Preparation of the Battlefield (IPB) reassessments, periodic reviews of intelligence products and databases, and related activities aligned with the Joint Planning Process and operational mission requirements.

• Apply technical knowledge of Supervisory Control and Data Acquisition (SCADA), industrial control systems, operational technology, cyber operations, and mission-support infrastructure to assess threats, vulnerabilities, mission risks, and potential impacts to W-LTRS.

• Support cyber threat-emulation activities, representative security exercises, and post-action validation efforts; document intelligence findings, defensive gaps, lessons learned and recommended cyber-hardening actions.

Minimum Qualifications:

• Bachelor’s degree in a Cyber, Intelligence, IT, or National Security discipline or related field of study; an additional 4 years of relevant experience might be substituted for a degree.

• 7+ years of relevant experience in threat intelligence, intelligence analysis, cybersecurity operations, defensive cyber operations, threat hunting, incident analysis, or a related technical field.

• Experience producing and communicating technical intelligence products, including indications-and-warning reports, threat assessments, intelligence briefings, and responses to time-sensitive RFIs for operational, technical, and senior-leadership audiences.

• Working knowledge of intelligence-driven defensive cyber operations, threat hunting, risk analysis, and threat intelligence workflows in OT, SCADA, ICS, or critical infrastructure environments.

• Ability to meet applicable Department of War 8140.3 Cybersecurity Workforce Qualification Requirements, Intermediate Level, for the assigned labor category and work role.

Preferred Qualifications:

• Experience supporting United States Space Force, Department of War, intelligence community, space-launch, range-operations, or critical-infrastructure missions.

• Experience supporting cyber counterintelligence, foreign cyber-threat analysis, insider-threat analysis, or authorized counterintelligence coordination activities.

• Experience supporting Mission Area IPB, intelligence requirements management, collection planning, or Joint Planning Process activities.

• Familiarity with Defensive Cyber Operations–Space (DCO-S) tools Manticore and Kraken, as well as intelligence and counterintelligence collection tools and resources.

• Experience supporting launch, telemetry, tracking, range safety, command-and-control, or other mission-critical environments, including cyber threat hunting, adversary emulation, threat modeling, cyber exercise support, or post-action validation activities.

Clearance Requirements:

• Current Top Secret/Sensitive Compartmented Information (TS/SCI) clearance is required.

Physical Requirements:

• Willingness to travel within the organizational area of responsibility, including air and ground transportation, as required.

• Must be able to remain in a stationary position approximately 50 percent of the time using standard or adjustable desks and chairs in secure work environments.

• Occasionally required to move about office and technical work areas to access files, systems, equipment, and other mission-support resources.

• May be required to support cyber exercises, operational briefings, incident-driven activities, and other mission requirements outside normal business hours.

The projected compensation range for this position is $141,500.00-$236,000.00. There are differentiating factors that can impact a final salary/hourly rate, including, but not limited to, Contract Wage Determination, relevant work experience, skills and competencies that align to the specified role, geographic location (For Remote Opportunities), education and certifications as well as Federal Government Contract Labor categories. In addition, MANTECH invests in its employees beyond just compensation. MANTECH’s benefits offerings include, dependent upon position, Health Insurance, Life Insurance, Paid Time Off, Holiday Pay, short-term and long-term Disability, Retirement and Savings, Learning and Development opportunities, wellness programs as well as other optional benefit elections.

MANTECH considers all qualified applicants for employment without regard to disability or veteran status or any other status protected under any federal, state, or local law or regulation.

If you need a reasonable accommodation to apply for a position with MANTECH, please email us at [email protected] (mailto:[email protected]) and provide your name and contact information.