Cyber Fusion Analyst

Leidos

Confirmed live yesterday High trust
Hybrid

Quick summary

Work type
Hybrid
Location
Washington, DC
Salary
$107,900–$195,050 / yr
Posted
59 days ago
Freshness
Confirmed live yesterday

Market check

Salary context

Competitive pay

How this pay compares to similar roles

Similar $150k
This role $151k
$97k most similar roles pay here $206k

This role pays more than 58% of similar roles. Most pay $123,250–$176,850 — the shaded band above. At the midpoint, this role pays about $151k versus about $150k for comparable roles.

Based on 239 similar postings.

Employer

About Leidos

Leidos is an industry and technology leader serving government and commercial customers with smarter, more efficient digital and mission innovations.

Leidos currently has 264 open roles on FindRole.

Listed pay typically runs $92,300–$166,850 across 245 roles with salary data.

Most-posted roles

View all roles at Leidos

At a glance

TL;DR · Cyber Fusion Analyst

The Cyber Fusion Analyst joins the Digital Modernization team to support a Defensive Cyber Operations unit. This role focuses on protecting federal networked systems by integrating disparate intelligence, hunting telemetry, and vulnerability data into a single operational view to bridge the gap between identifying threats and executing defensive actions. Key responsibilities include synthesizing external threat intelligence with internal hunt telemetry, authoring high-impact fusion reports for leadership, and mapping discoveries to the MITRE ATT&CK framework. The candidate will utilize SIEM tools, Threat Intelligence Platforms, and platforms like Recorded Future or VirusTotal. Technical skills required include proficiency in SPL, KQL, and Python for automation, along with experience in AWS, Azure, or O365 environments. Core competencies include expert knowledge of the Cyber Kill Chain and Diamond Model to identify systemic gaps and provide data-backed recommendations for firewall rules and EDR policies.

What you'll do

  • Synthesize external threat intelligence and internal hunt telemetry to understand adversary impact on the enterprise.
  • Author fusion reports that blend technical forensics with strategic intelligence for senior leadership briefings.
  • Use SIEM and Threat Intelligence Platforms to correlate global actor activity against internal sensor logs.
  • Map internal discoveries to the MITRE ATT&CK framework to identify and address systemic defensive gaps.
  • Analyze vulnerability data alongside active threat reporting to prioritize patching efforts based on real-world trends.
  • Provide data-backed recommendations to engineering teams to adjust firewall rules, EDR policies, and SIEM logic.
  • Develop custom analytics to provide early warnings of adversary reconnaissance or pre-exploitation activity.
  • Maintain a synchronized "Single Source of Truth" for threat data across hunt, intelligence, and engineering teams.

What we're looking for

  • Must have a Bachelor's degree with 8+ years of experience or a Master's degree with 6+ years of relevant experience.
  • Must hold a DoD 8570 IAT Level II/III certification such as CompTIA Security+, CASP+ CE, or CISSP.
  • Must hold a CSSP Analyst certification (e.g., CEH, CySA+) or obtain one within 180 days.
  • Must possess a current DoD TS/SCI security clearance and pass additional customer suitability screenings.
  • Must demonstrate the ability to synthesize complex technical data into concise, non-technical executive briefings.
  • Must have an expert understanding of the Cyber Kill Chain, Diamond Model, and MITRE ATT&CK framework.
  • Preferred experience working in a government or large-scale commercial Cyber Fusion Center (CFC) or Joint Operations Center (JOC).
  • Preferred proficiency in SPL (Splunk), KQL (Kusto), Python, and utilizing OSINT tools like Recorded Future or VirusTotal.

More like this

Similar roles

Cyber Intelligence Fusion Analyst

Leidos

Alexandria, VA 8 days ago $107,900$195,050
SIEM EDR MITRE ATT&CK Cyber Kill Chain Splunk Microsoft Sentinel Microsoft Defender for Endpoint Wireshark Python PowerShell SQL KQL SPL Lucene Linux Unix PCAP NetFlow OSINT Cyber Threat Intelligence Incident Response Threat Hunting
8+ yrs exp

Cyber Threat Intelligence Analyst

Leidos

Washington, DC 59 days ago $107,900$195,050
Cyber Threat Intelligence MITRE ATT&CK Threat Intelligence Platforms (TIP Python PowerShell SIEM SOAR Firewalls IDS/IPS AWS Azure O365 KQL Elastic DSL SPL Cyber Kill Chain Diamond Model Data Correlation
8+ yrs exp Hybrid

Senior Cyber Security Fusion Analyst

Leidos

Fort George G. Meade, MD 45 days ago $131,300$237,350
SIEM Splunk Arcsight Wireshark TCP/IP Netflow PCAP OSINT Cyber Kill Chain Malware Analysis Virus Total Recorded Future Passive DNS Security+ IAM IAT Cyber Fusion Network Analysis
10+ yrs exp

Cyber Security Analyst

Leidos

Adelphi, MD 17 days ago $87,100$157,450
SIEM IDS Incident Response NetFlow Packet Capture AWS Microsoft Azure Google Cloud Platform Oracle Cloud TCP/IP Unix Cyber Kill Chain SaaS Vulnerability Management Network Security Security+ CE CSSP-Infrastructure Support
4+ yrs exp Hybrid

Cyber Security Analyst

Leidos

Adelphi, MD 17 days ago $87,100$157,450
SIEM IDS AWS Microsoft Azure Google Cloud Platform Oracle Cloud NetFlow Packet Capture TCP/IP Unix Incident Response Cyber Kill Chain SaaS Security+ CE CSSP-Infrastructure Support Vulnerability Management Network Security
4+ yrs exp Hybrid

Cyber Security Analyst

Leidos

Adelphi, MD 17 days ago $87,100$157,450
SIEM IDS Incident Response NetFlow Packet Capture AWS Microsoft Azure Google Cloud Platform Oracle Cloud TCP/IP Unix Cyber Kill Chain SaaS Vulnerability Management Network Security Security+ CE CSSP-Infrastructure Support
4+ yrs exp Hybrid