Loading career profile…
Gathering salary data, outlook, and education paths
Home Career Explorer Loading...

Starting Salary
Median Salary
Top Earners
Job Growth
Professionals in USA

Career Overview

Threat Intelligence Analysts research and monitor cyber adversaries, malware campaigns, and emerging attack techniques to help organizations anticipate and defend against attacks before they happen. They collect data from open-source intelligence, dark web forums, malware samples, and threat feeds, then analyze patterns to produce actionable reports for security teams, executives, and incident responders. Their work bridges technical analysis with strategic communication, translating raw indicators of compromise into risk assessments that shape security investments and defensive priorities.

Salary Range (US, estimates)

Entry level$68,000
Median$105,000
Senior$140,000
Top 10%$175,000

Key Statistics

Job growth+32%
Professionals in the USA0.15 million
Typical hours/week42 hrs
Remote work share55%
Annual job openings17,000/yr
DemandVery High

Education Paths

  • Required minimum: Bachelor's Degree in Cybersecurity, IT, or related field — Most employers require a bachelor's degree along with foundational knowledge of networking, operating systems, and security concepts.
  • Most common: Bachelor's Degree plus SOC/Security Analyst Experience — Most analysts transition from roles like SOC analyst, incident responder, or network security to threat intelligence after gaining hands-on experience.
  • Accelerator: GCTI, CTIA, or CISSP Certification — Certifications like GIAC Cyber Threat Intelligence (GCTI) or Certified Threat Intelligence Analyst demonstrate specialized expertise and speed up career advancement.

Core Skills

  • Threat intelligence lifecycle management
  • Malware analysis and reverse engineering basics
  • SIEM/SOAR platform proficiency
  • OSINT and dark web research
  • Data analysis and pattern recognition
  • Report writing and executive communication

Pros

  • High demand and strong job security in cybersecurity
  • Intellectually engaging work solving complex puzzles
  • Opportunities to specialize in niche areas like nation-state threats or ransomware
  • Often remote-friendly with competitive salaries

Cons

  • High-stress environment due to constantly evolving threats
  • Can require irregular hours during active incidents
  • Information overload from massive volumes of threat data
  • Continuous learning required to keep pace with attacker TTPs

AI Impact on This Career

AI and machine learning tools are increasingly used to automate data collection, correlation, and initial triage of threat indicators, speeding up analysis. However, interpreting attacker intent, contextualizing geopolitical or sector-specific risks, and making strategic recommendations still require human judgment. Analysts who leverage AI tools for enrichment and automation will remain valuable, while those who only perform manual data gathering are most at risk.

Automation exposure: Automated collection and aggregation of IOCs, malware signature matching, log correlation, phishing detection, and basic report generation can increasingly be handled by AI-driven SOAR/SIEM platforms and threat intel platforms.

The human edge: Humans excel at contextual reasoning about adversary motivation, geopolitical nuance, creative hypothesis-driven hunting, communicating risk to executives, and making judgment calls under uncertainty—areas where AI still falls short.

Figures are estimates for exploration — verify current data with BLS.gov.