Tyto Athene is searching for a Cyber Threat Intelligence Analyst to support multiple cybersecurity workstreams within the Department of Health and Human Services (HHS). The individual will contribute to research, analysis, and operational support activities as part of HHS’s Cybersecurity Operations (CSO) division. The role is instrumental in assisting with the development, review, and management of cybersecurity initiatives and projects, specifically those aimed at protecting HHS and its partners in the Healthcare and Public Health (HPH) sector. This position requires a foundation in cybersecurity concepts, proficiency in research methodologies, and familiarity with both open and closed intelligence sources. The analyst will work closely with senior cybersecurity professionals to enhance HHS’s capabilities in identifying and mitigating threats, as well as in maintaining strong relationships with key stakeholders and partners
Responsibilities:
Threat Intelligence Collection and Analysis: Conduct exhaustive reviews of open-source cybersecurity reporting, including industry blogs, security forums, and public vulnerability databases. Access and analyze closed-source reporting from trusted partners and paid threat intelligence services, including tools like Intel 471 and Mandiant. Implement automated tools for continuous monitoring of threat landscapes, including the dark web, hacking forums, and other relevant sources. Prioritize intelligence gathering on threats specifically targeting HHS systems.
Threat Actor Profiling: Assist in the development and maintenance of comprehensive threat actor profiles, detailing their motivations, capabilities, historical activities, and preferred tactics. This includes conducting link analysis to identify connections between different threat actors and campaigns.
Product Development: Develop cybersecurity products such as white papers, analyst notes, and legislative analysis reports to support internal decision-making and inform the broader HPH sector. Support the creation of tailored threat briefings for various audiences, including technical teams and executive leadership, ensuring that stakeholders understand key threats and their impact.
Classified and Specialized Research: Maintain proficiency in specialized Intelligence Community (IC) tools such as Intelink, Lucky, OSE, Pulse, TAC, and Wire. Assist in the integration of classified information with unclassified data to enhance threat intelligence analysis. Conduct classified research and prepare intelligence reports for audiences with varying levels of security clearance (up to TS/SCI).
Information Sharing and Relationship Building: Develop relationships with classified information custodians across HHS to facilitate necessary information sharing. Engage with external cybersecurity organizations to facilitate the exchange of information. Participate in classified briefings and contribute to information sharing initiatives aimed at enhancing collective cybersecurity defenses.
Support Threat Briefings: Develop and deliver threat briefings that cater to both technical and non-technical audiences. This includes assisting in the development of detailed threat landscape reports and intelligence summaries for leadership, using qualitative and quantitative analysis, and integrating findings from tools such as Intel 471 and Mandiant.
Collaboration and Stakeholder Engagement: Assist in building relationships with both internal and external cybersecurity stakeholders, including industry partners. Support efforts to enhance the sharing of threat intelligence and ensure that the HHS Cybersecurity Operations team remains informed on emerging threats and vulnerabilities.
Required:
Desired:
Location:
Clearance: TS/SCI Eligible
Compensation:
Benefits:
Tyto Athene is a trusted leader in IT services and solutions, delivering mission-focused digital transformation that drives measurable success. Our expertise spans four core technology domains—Network Modernization, Hybrid Cloud, Cybersecurity, and Enterprise IT—empowering our clients with cutting-edge solutions tailored to their evolving needs. With over 50 years of experience, Tyto Athene proudly support Defense, Intelligence, Space, National Security, Civilian, Health, and Public Safety clients across the United States and worldwide. At Tyto Athene, we believe that success starts with our people. We foster a collaborative, innovative, and mission-driven environment where every team member plays a critical role in shaping the future of technology. Are you ready to join #TeamTyto? Tyto Athene, LLC is an Equal Opportunity Employer; all qualified applicants will receive consideration for employment without regard to race, color, religion, sex, [sexual orientation, gender identity,] national origin, disability, status as a protected veteran, or any characteristic protected by applicable law.
If an employer mentions a salary or salary range on their job, we display it as an "Employer Estimate". If a job has no salary data, Rise displays an estimate if available.
Experienced Enterprise Engineer/Architect needed to design scalable, secure enterprise solutions and lead cloud migrations while providing technical leadership across teams.
TIAA invites motivated STEM students to a 10-week Technology internship to gain practical experience across cloud, data, cybersecurity and engineering while participating in training, mentorship and executive speaker programming.
Remote Help Desk Technician needed to deliver first-line Windows, application, and Active Directory support for distributed users while maintaining excellent customer service and documentation.
Lead Oracle integration, reporting, and M&A onboarding to enable Ripple’s finance transformation and reliable financial operations across cloud ERP and peripheral systems.
Experienced VDI Systems Administrator needed to manage and secure virtual infrastructure and desktop delivery for a TS/SCI-cleared mission in Savannah, GA.
Point72 is hiring a seasoned Chief Information Security Officer to lead and grow a modern security program across cloud, infrastructure, and software domains for a global investment firm.
Kimley-Horn is hiring an on-site Information Technology Analyst in San Antonio to deliver helpdesk support, manage Windows/Office 365 environments, and support regional office IT needs.
WOONGJIN is hiring an experienced IT Infrastructure Manager (bilingual English/Korean preferred) to lead data center, network and security operations in Garden City, GA.
Experienced systems analyst needed to lead requirements gathering, system design, testing, and implementation while ensuring alignment with enterprise architecture and security requirements.
Experienced systems engineer needed to lead and automate Blackhawk Network’s enterprise Atlassian platform and identity integrations while supporting compliance, consolidation, and cross-team initiatives.
Dynamic Energy is hiring a Service Desk Analyst to deliver desktop, application, and unified communications support via ServiceNow for its hybrid renewable-energy operations.
Provide hands-on infrastructure and endpoint support for Kuiper’s production, lab, launch, and warehousing operations, ensuring reliable systems and operational excellence.
Lead the design, deployment, and operation of critical server, storage, and virtualization infrastructure supporting AFRL research programs as a Senior Systems Administrator.