Hiring.Camp

Cyber Threat Analyst II (Remote From Anywhere In CO)

State of Colorado

·

Yesterday

Salary
$105k – $115k/yr
Location
Statewide, CO, CO, US
Department
Human Resources
Visa
Not sponsored
Source
GovernmentJobs

Description



Together, we innovate for a stronger Colorado

The work of employees at the Governor's Office of Information Technology (OIT) is challenging and diverse because the needs of agencies, customers and Coloradans constantly evolve. But our focus never changes: improve the lives of all Coloradans through innovation and collaboration. We're building one of the nation's leading government IT organizations by reimagining how we support agencies, building first-of-their-kind applications, and creating an inclusive, collaborative culture, together. Join us in the important work of providing equitable access to services.


Watch this video to learn more about how we're Serving People. Serving Colorado.
IMPORTANT NOTE: Please review your application to ensure completion. For the most equitable applicant experience, OIT’s hiring team considers only the contents of your application to review your qualifications. Please do not include any attachments (such as resume or cover letter) with your application as these items are not used by OIT’s hiring team. 

Are you passionate about cybersecurity and defending vital assets? OIT is seeking a dedicated Cyber Threat Analyst II to join our enterprise cybersecurity program and serve as a subject matter expert in the fight against emerging threats. In this role, you will research and monitor the threat landscape (dark web, SIEM, industry feeds) to track malicious infrastructure and emerging risks; actively hunt for system exposures, disrupt active threats, and implement deception techniques. You will be a strategic advisor and translate complex threat intelligence into actionable reports for management and technical teams.



Essential Duties:


  • Threat Intelligence & Monitoring: Actively monitor network, host, and application threats, including tracking external actors and rogue insiders.

  • In-Depth Research: Conduct comprehensive research to uncover patterns and trends. Maintain a forward-thinking approach to anticipate evolving risks.

  • Strategic Collaboration: Work closely with internal technical teams, business units, and external partners—including government agencies, law enforcement, and private intelligence-sharing groups.

  • Actionable Reporting: Author clear, insightful reports for Senior Leadership and stakeholders to ensure situational awareness and support informed decision-making.

  • Proactive Defense: Participate in simulation exercises to identify vulnerabilities. Help implement defensive solutions to disrupt threats before they impact the organization.

  • Communication: Distill complex threat intelligence into clear, actionable information for both technical and non-technical audiences.


Going beyond standard monitoring, this role centers on proactively engaging threats and continuously assessing our security posture. Your efforts will directly fortify our networks, applications, and critical data, playing a pivotal role in the resilience of our public service infrastructure. 


Why Join Us:

Join a supportive, growth-oriented team committed to diversity, equity, and inclusion. Help us protect our infrastructure, safeguard our reputation, and shape the future of our organization. 



A wide salary range is posted for this position and any job offer is based upon a salary analysis to comply with the Colorado Equal Pay for Equal Work Act. The salary analysis considers relevant experience, education, certifications, and state seniority as compared to others doing substantially similar work. While most salary offers are made within the posted range, occasionally an offer is made below or above the posted range based upon this salary analysis.

This is a skills-based job announcement. The required minimum qualifications and/or education (if substituting for the proven experience, knowledge, and skills), are as follows:

To better understand your qualifications and increase your opportunity to move forward in the selection process, please indicate in your work history for each job the outcomes you have achieved that you believe are most relevant to this job.



Minimum Qualifications:


Minimum of three (3) years of cybersecurity experience (or information technology coupled with cybersecurity), with at least two (2) years in an intelligence or incident response security practitioner role. 


Substitutions:

  • Additional appropriate education will substitute for the required experience on a year-for-year basis, but cannot completely substitute for these qualifications. 

  • Training or Certification related to the work assigned to the position will be assigned credit towards substitution for experience and/or education, but cannot completely substitute for these qualifications. 

  • If the minimum qualifications include a degree requirement, additional appropriate paid or unpaid experience will substitute for the required education on a year-for-year basis.


Preferred Qualifications:

  • Expertise in the CTI lifecycle, adversary TTPs (MITRE ATT&CK framework), threat hunting, and incident response/tracking.

  • Proficiency with SIEM, SOAR, IDS/IPS, and threat intelligence platforms; skilled in log analysis, malware assessment, and vulnerability management.

  • Strong knowledge of OS security, cloud security (AWS, GCP, or Azure), and scripting languages (Python, PowerShell, Bash).

  • Demonstrated experience conducting tabletop exercises and adversary emulation to strengthen organizational security posture.

  • Ability to distill complex threat data for diverse audiences, maintain professional credibility, and foster an enterprise-wide security culture.



Conditions of Employment:

OIT employees must comply with any screening procedures in place at state agency locations where they might perform work. 

A pre-employment background check will be conducted as part of the selection process. Post-employment background checks will be required for specific agencies as business needs dictate, which may include a polygraph exam, fingerprint-based criminal history search, reference checks, and a drug test.

This position may require travel within the specified geographic area, and to locations across the state as needed. 

This position may require on-call duties as needed by the position. 




If this posting indicates “remote from anywhere in CO” in the title, periodic reporting to the primary state work location designated for the position is required. All remote work must be performed in Colorado. 


While candidates from out of state will be considered for this role, the candidate selected for the position must relocate and reside in Colorado on the first day of their new position.  A reasonable timeframe for relocation will be established on an individual basis, while considering business needs, and determining a start date.

We know it's important to support each other, and that means having a healthy balance of work and personal time. Visit our benefits to learn more about some of our great offerings that allow us all to have fulfilling lives. 


Visit our How to Apply webpage to learn more about our application process and what to expect after you apply.

The State of Colorado strives to create a Colorado for All by building and maintaining workplaces that value and respect all Coloradans through a commitment to equal opportunity and hiring based on merit and fitness.  The State is resolute in non-discriminatory practices in everything we do, including hiring, employment, and advancement opportunities.


The Governor's Office of Information Technology is committed to the full inclusion of all qualified individuals. As part of this commitment, our agency will assist individuals who have a disability with any reasonable accommodation requests related to employment, including completing the application process, interviewing, completing any pre-employment testing, participating in the employee selection process, and/or to perform essential job functions where the requested accommodation does not impose an undue hardship. If you have a disability and require reasonable accommodation to ensure you have a positive experience applying or interviewing for this position, please direct your inquiries to our ADA Coordinator at [email protected] or call (303) 764-7900.


This posting may be used to fill multiple vacancies based upon business need. 

The Governor's Office of Information Technology does NOT offer sponsored Visas for employment purposes.

Skills

PythonAWSAzureGCPCybersecuritySIEM

Similar Jobs

30

Cyber Threat Analyst

Parsons Corporation · USA MD Annapolis Junction (133 National Business Parkway), United States of America · Onsite

Yesterday

Cyber Threat Analyst

Parsons Corporation · USA MD Annapolis Junction (133 National Business Parkway), United States of America · Onsite

4 days ago

Cyber Threat Analyst

Alliant Credit Union · Chicago, IL

2 weeks ago

Cyber Threat Analyst

Anavationllc · Reston, VA · Onsite

3 weeks ago

Cyber Threat Analyst

Ocbc · SGP-TC 2, Singapore · Onsite

3 months ago

Cyber Threat Analyst

Booz Allen Hamilton · USA, VA, Charlottesville (2055 Boulders Rd), United States of America

3 months ago

Cyber Threat Analyst

Caci · BYS CHANTILLY VA, United States of America · Onsite

6 months ago

Senior Cyber Threat Intelligence Analyst

Job Listings · Bangalore, India

Today

Cyber Threat Management Analyst, Specialist

Vanguard · London, GBR, United Kingdom +1 · Hybrid

Yesterday

Cyber Threat Management Analyst, Specialist

Vanguard · London, GBR, United Kingdom +1 · Hybrid

Yesterday

Vice President, Cyber Threat Intelligence Analyst, Global Information Security, Sydney, Australia

Ghr · Sydney, Australia · Onsite

Yesterday

Cyber Threat Intelligence Analyst

Deloitte Netherlands · Amsterdam, NH, Netherlands · Hybrid

2 days ago

Cyber Threat Intelligence Analyst

Booz Allen Hamilton · USA, MD, Fort Meade (6910 Cooper Ave), United States of America +1

2 days ago

Cyber Threat Intelligence Analyst

Booz Allen Hamilton · USA, VA, Arlington (1110 N Glebe Rd), United States of America

2 days ago

Cyber Threat Intelligence Analyst

Deloitte Netherlands · Amsterdam, NH, Netherlands · Hybrid

3 days ago

Cyber Threat and Vulnerability Senior Analyst

Mars · GUA-Mars Brasil, Brazil · Hybrid

4 days ago

Cyber Threat Intelligence Analyst, Mid

Booz Allen Hamilton · USA, MD, Bethesda (6555 Rock Spring Dr), United States of America

4 days ago

Senior Cyber Threat Analyst

Raymond James · FL - Saint Petersburg - 800 Carillon Pkwy, United States of America

1 week ago

Junior Cyber Threat Analyst

Raymond James · FL - Saint Petersburg - 880 Carillon Pkwy Tower 2, United States of America

1 week ago

Associate Principal Cyber Threat Intelligence Analyst

Dragos · Norfolk, VA · Remote, Onsite

1 week ago

Senior Cyber Threat Intelligence (CTI) Analyst

Livenation · Remote - United Kingdom +1 · Remote

1 week ago

Jr Industrial Control System Cyber Threat Intelligence Analyst / Active Top Secret, SCI eligibility

Peraton · Arlington, VA, US · Onsite

1 week ago

Cyber Threat Analyst - GTA

Peraton · Arlington, VA, US · Onsite

1 week ago

Open‑Source Cyber Threat Intelligence Analyst

Peraton · Arlington, VA, US · Onsite

1 week ago

Senior Cyber Threat Operations Analyst

Lbg · Hyderabad Knowledge Park Tower 2, India · Hybrid

1 week ago

Cyber Threat Intelligence Analyst, Associate

Ms · IOI Central Boulevard Towers, Singapore

2 weeks ago

Associate Principal Cyber Threat Intelligence Analyst

Dragos · Singapore

2 weeks ago

Cyber Threat Operations Analyst - Associate

Db · Jacksonville, 5201 Gate Parkway, United States of America · Remote, Hybrid, Onsite

2 weeks ago

Cybersecurity Operations Analyst & Cyber Threat Intelligence Lead

Aero · Colorado Springs, United States of America · Onsite

2 weeks ago

Cyber Threat Intelligence (Fusion) Analyst - TS/SCI with Polygraph

GDIT · USA VA Reston - 12310 Sunrise Valley Dr (VAC074), United States of America +1

2 weeks ago