Cyber security analysts are inundated with heterogeneous threat feeds created by different cyber security monitoring tools. Streamlining threat analysis can help operators focus on early identification and comprehension of security threats. However, this information must be extracted from several types of unstructured and seemingly unrelated threat feeds. Tools to amalgamate threat elements and identify critical cyber security threats that span multiple types of threat feeds, and to aggregate disparate multi-structured threat feeds in a meaningful way are important. To address this critical need, IAI will create an integrated tool for heterogeneous and multi-structured Threat feed Aggregation, Analysis, and Visualization (TAAV) for security analysts. TAAV is a web-based tool for automatic threat feed aggregation, categorization, and intuitive visualization of imminent cyber threats. The proposed framework will execute automated expert and data driven multi-dimensional and time correlated threat feed analysis that will categorize threat feeds into “threat baskets.” The identified relevant threat baskets will be prioritized according to their perceived scale of vulnerability by performing latent threat association detection and alert correlation over ongoing as well as historical attack information. The result of the automated analysis will be presented in an easily understandable display with accompanying maps and charts. An empirical study will be performed on the developed prototype using a scalable test bed. TAAV will be developed end-to-end in Java using open source tools, and leveraging the unique expertise of the IAI team in the fields of network analysis, cyber situational awareness, visualization, data mining, and web technologies and standards.