Insider Threat Analyst
DEFTEC Corporation
Job Description
Job Description
Insider Threat Analyst
Redstone Arsenal
DEFTEC delivers mission-critical solutions through skillfully delivered services and innovative products. We are inspired by our clients' critical missions and driven to provide the most effective solutions to execute their missions, operational challenges, and requirements. Our dedicated, experienced, and talented employees work closely with our clients to ensure the delivery of exceptional services and products.
POSITION OVERVIEW
The Federal Bureau of Investigation (FBI) is charged with protecting and defending the United States against terrorist and foreign intelligence threats, enforcing the criminal laws of the United States, and providing leadership and criminal justice services to federal, state, municipal, and international partners. In 2011, Executive Order 13587 directed all agencies operating or accessing classified computer networks to safeguard classified information and establish insider threat detection programs. The FBI's Insider Threat Office (InTO) serves as the central coordinating component for all insider threat issues, with a mission to detect, deter, and mitigate risks originating from within the organization. This position provides critical analytical support to InTO by conducting research, analysis, and reporting that directly contribute to safeguarding FBI personnel, systems, and information from insider risks.
JOB RESPONSIBILITIES:
- Research, fuse, and analyze large, disparate datasets to identify insider-threat trends/indicators and assess COAs, using SQL/Python for large-set manipulation and automation, and producing decision-quality visuals in Power BI/Tableau and Excel (macros/VBA).
- Conduct insider-threat monitoring across UAM/DLP/UBA/SIEM; triage alerts and perform log analysis in Splunk and Microsoft Sentinel; develop repeatable detections leveraging KQL/SPL and automation in Python/Excel VBA.
- Build and tune data pipelines, queries, and automations aligned to InTO SOPs with minimal re-work (SQL/Python, Splunk saved searches/alerts, Sentinel analytics rules, Power BI dataflows).
- Utilize Microsoft Purview, Defender, and Sentinel; Azure services; and tools such as a Commercial UAM software to detect, investigate, and respond to data-loss and misuse events.
- Access classified and open-source systems; collect, organize, and format data per InTO SOPs; manage secure processing/transmittal/storage while applying configuration and privilege management best practices.
- Compare and fuse multi-source reporting (FBI HQ, field offices, partner agencies) to find correlations, discrepancies, and gaps; generate and triage leads/alerts using Splunk dashboards, Sentinel workbooks, and Power BI.
- Develop and prototype analytics (queries, programs, algorithms) for large-scale analysis using SQL/Python and Azure; perform statistical analysis/data exploration and optimize datasets for strategic program support.
- Produce clear, concise analytic products, reports, briefs, charts, tables, and graphs, in Power BI/Tableau/Excel; present findings and recommendations to stakeholders.
- Perform DLP functions and insider-risk investigations using Purview/Defender, Digital Guardian, and Splunk/Sentinel; identify inappropriate/unauthorized activity, associations, or communications.
- Provide technical/operational support for data and case requests; create Splunk searches, Sentinel queries, and Excel/Power BI views to accelerate discovery and response.
- Execute QC of analytic processes/products (query validation, dashboard accuracy, SOP compliance) across Splunk/Sentinel/Power BI; prioritize multiple projects effectively.
- (ITMU role) Mentor/QA less-senior analysts; set detection standards; lead prototype analytics; and mature enterprise use of the Microsoft security stack (Purview/Defender/Sentinel/Azure), Splunk, Power BI, and automation with SQL/Python/Excel VBA.
Required Qualifications
- Active TS/SCI clearance.
- Education/Experience: Bachelor's degree; or an additional 4 years of directly related experience (totaling 8+ years) in lieu of a degree.
- Experience: Minimum 4 years performing administrative, analytical, and research functions in national-security or operational-security environments.
- Productivity & Tools: Proficiency with Microsoft Office (Outlook, Word, PowerPoint, Excel) and Google Chrome; ability to navigate multiple browser windows/tabs, and copy/paste across applications.
- Communication: Excellent interpersonal skills; proven ability to brief and collaborate with diverse stakeholders.
- Analytic Communication: Demonstrated skill in oral presentations and in writing reports that explain methods and results of mathematical/quantitative analysis to non-technical audiences.
Preferred Qualifications
- Data & Scripting: Strong SQL and Python for large-dataset manipulation, automation, and ETL; working knowledge of KQL (Microsoft Sentinel/Log Analytics) and SPL (Splunk).
- SIEM & Logging: Splunk hands-on (data onboarding/normalization, dashboards, alerts; ES/CIM mappings).
- Microsoft Security Stack: Microsoft Sentinel (analytic rules, workbooks, UEBA, automation/Logic Apps), Microsoft Defender (Endpoint/Identity/Email), and Microsoft Purview (DLP policies, sensitivity labels, insider-risk controls).
- Cloud & Telemetry: Azure familiarity (Log Analytics/Kusto, Azure Monitor, Data Explorer; basic Data Factory/orchestration) supporting pipelines and playbooks.
- DLP/Insider Risk: Experience with Digital Guardian or a Commercial UAM software (policy creation/tuning, incident triage).
- Visualization: Power BI (DAX, Power Query) and/or Tableau (calculated fields, LOD) to deliver decision-quality visuals.
- Advanced Excel: Power Query/Pivot and VBA/macros for repeatable analysis and workflow automation.
- Engineering for InTO SOPs: History of building/tuning pipelines, queries, and dashboards aligned to government/InTO formats with minimal re-work and strong QC.
- Domain Depth: Familiarity with UAM, DLP, UBA, SIEM, and Windows/M365/network logs; ability to craft repeatable detection methods.
DEFTEC offers a comprehensive whole-life benefits package that includes medical, dental, vision, holiday, paid time off, 401K with a match, life insurance, short/long-term disability, and educational reimbursement. The DEFTEC team comprises professionals who make a difference daily in crucial national security missions. Our leadership knows that this happens by employing a diverse team that is well cared for. Our top priority is our employees, making DEFTEC an ideal workplace.
Reasonable accommodations may be made to enable individuals with disabilities to perform essential functions. Please get in touch with View email address on ziprecruiter.com if you require reasonable accommodations.
DEFTEC is a Drug-Free Workplace where post-offer applicants and employees are subject to testing for marijuana, cocaine, opioids, amphetamines, PCP, and alcohol when criteria are met as outlined in our policies.
AAP/EEO Statement
DEFTEC Corp is an Equal Opportunity and Affirmative Action Employer and prohibits discrimination and harassment of any type based on actual or perceived race, color, national origin, ancestry, sex (including pregnancy, childbirth, breastfeeding and medical conditions related to pregnancy, childbirth or breastfeeding), gender, gender identity, and gender expression, religious creed, disability (mental and physical) including HIV and AIDS, medical condition (cancer and genetic characteristics ), genetic information, age, marital status, civil union status, sexual orientation, military and veteran status, denial of family and medical care leave, arrest record and/or any other characteristic(s) protected by federal, state or local law.
This policy applies to all terms of employment, including recruiting, hiring, placement, promotion, termination, layoff, recall, transfer, leaves of absence, training, compensation, benefits, employee activities, and general treatment during employment.
Other Duties
Please note that this job description is not designed to cover or contain a comprehensive listing of the activities, duties, or responsibilities that are required of the employee for this job. Duties, responsibilities, and activities may change at any time, with or without notice.
Job Posted by ApplicantPro- Insider Threat Analyst Redstone Arsenal DEFTEC delivers mission-critical solutions through skillfully delivered services and innovative products. We are inspired by our clients' critical missions and driven to provide the most effective solutions to execute their missions...SuggestedTemporary workWork at officeLocal area
- BlueHalo, an AV company, is looking for a highly talented Counter-Countermeasure and Threat Discrimination Analyst to join our team! In this role you will get to provide engineering and technical analysis expertise to support the development of new missile defense capabilities...SuggestedFull time
- ...Job Description Job Description Senior ELINT/OPELINT Threat Analyst Location: Huntsville, AL | Onsite Clearance Required: Minimum TS Clearence Employment Type: Full-Time Join a Growing Team at Weeghman & Briggs Weeghman & Briggs is seeking a motivated...SuggestedFull timeContract workLocal area
- ...Job Description Job Description Senior ELINT/OPELINT Threat AnalystLocation: Huntsville, AL | Onsite Clearance Required: Minimum... ...seeking a motivated and mission-driven Senior ELINT/OPELINT Threat Analyst to support critical government initiatives in Huntsville, AL....SuggestedFull timeContract workLocal area
- ...with lethality assessments for direct hit and blast/fragmentation warhead kinetic energy weapons, engaging air and missile defense threats. Familiarity with BRLCAD is a plus.Highly Desirable Skills:Skilled in MS Office products. Skilled in computer programming, PYTHON,...Suggested
- Job TitleSenior All Source Analyst - CI/ HUMINTLocationHuntsville, AL 35649 US (Primary)CategoryIntelligenceJob TypeFull-TimeCareer LevelStaffEducationMaster... ...on U.S. persons, activities, and interests, including threats posed by emerging technologies to U.S. operations and interests...Contract work
- Job TitleMid All Source Analyst - CyberLocationHuntsville, AL 35649 US (Primary)CategoryIntelligenceJob TypeFull-TimeCareer LevelStaffEducationBachelor... ...all foreign space andcounterspace systems.Identifies emerging threats and provide opportunities to counter adversaries within...Contract work
- ...Overview APEX TK is looking for an amazingly talented Senior Payloads Analyst to join our team! In this role you will get to support the... ...and material property measurements. Knowledge of ADP threat systems and how those impact target designs. Have an understanding...For contractorsWork at office
- ...BecTech is looking for a highly-talented mid-level analyst with experience in Counter-Countermeasure and Threat Discrimination to join our MDA team! In this role you will get to provide systems analysis expertise to develop new Missile Defense System capabilities to identify...
- ...technology and take your career to the next level!The Cyber Data Analyst provides quantitative analysis, statistical evaluation, and... ...datasets—including vulnerability trends, authorization metrics, threat indicators, and control effectiveness—to deliver actionable risk...Night shiftWeekend work
- BecTech is looking for an amazingly talented Counter-Countermeasure and Threat Discrimination Analyst to join our team! In this role you will get to provide MDA systems engineering and analysis expertise to develop new Missile Defense System capabilities to identify lethal...
- ...powerful solutions to help our clients navigate the ever-changing threat landscape. Through powerful solutions and managed services that... ...manage to secure success. Work You’ll Do Deloitte seeks a SOC Analyst to support the client monitoring program by conducting security...Full timeLocal area
- ...an amazingly skilled and talented Senior Systems (Integration) Analyst to join our team! In this role, you will provide engineering... ...states and effects Experience with missile defense system and/or threat system simulation and model testing processes Experience in...Full timeFor contractorsWork experience placementWork at office
- ...We are seeking a highly motivated Modeling & Simulation (M&S) Analyst to support the Missile Defense Agency (MDA) in assessing the capabilities... ...), delivering analytical support to MDA's distributed software threat simulation Responsibilities: Provide M&S framework...For contractors
- ...Job Description Job Description Modeling and Simulation Analyst, Senior Overview SimTech, Inc., recognized as one of the... ...), delivering analytical support to MDA's distributed software threat simulation Responsibilities Provide M&S framework analysis...For contractorsWork at officeLocal areaImmediate startRemote workShift work
$119k - $139k
...retain. 4M Research is seeking a mid-level Missile Defense Analyst for our team in Huntsville, AL. Responsibilities/ Requirements... ...Learn to use CA Architecture M&S (i.e., Benchmark), as well as threat modeling M&S (e.g., TGx) Support key MDA meetings to ensure...- ...Title: Radar Analyst/Team Manager Program Summary KBR's Missile, Aviation, and Ground Systems (MAGS) division delivers mission... ...and ground systems, integrated air and missile defense, and threat and target systems. As a trusted partner of the U.S. Department...Full timeFor contractorsWork at officeLocal areaWorldwide
$82.6k - $162.8k
...opportunities businesses face in cybersecurity. Join our team to deliver powerful solutions to help our clients navigate the ever-changing threat landscape. Through powerful solutions and managed services that simplify complexity, we enable our clients to operate with...Local areaVisa sponsorship- ...Space Force, MDA, NASA, DIA, and FBI. Ignite exists to outpace the threat and deliver results that matter in the moments that count.... ...currently seeking a driven, detail-oriented Operations Research Analyst - Subject Matter Expert (SME) to join our team supporting Aviation...
- ...motivated aerospace radar engineer, physicist, or or computer scientist to serve as a Missile Radar System Modeling and Simulation Analyst for foreign air and missile defense weapon systems. The candidate will work with system engineers and other modelers to review, update...Full timeFor contractors
- Position: Senior Analyst (Job ID:4397) Location: Huntsville, ALJob Id: 4397 # of Openings: 2 Senior AnalystContingent upon Customer Approval and FundingPurpose:Valkyrie Enterprises has an immediate opening...Contract workImmediate start
$91.1k - $179.5k
...you an experienced, passionate pioneer in technology who wants to work in a collaborative environment? As an experienced Epic ASAP Analyst, you will have the ability to share new ideas and collaborate on projects as a consultant without the extensive demands of travel....Local areaImmediate startNight shift- Job TitleMid Space Counterspace Analyst - Operational IntelligenceLocationHuntsville, AL 35649 US (Primary)CategoryIntelligenceJob TypeFull-TimeCareer LevelStaffEducationBachelor's DegreeTravelNoneSecurity Clearance RequiredTS/SCI with CI PolygraphJob DescriptionPrescient...Contract work
- Job Family:Capital Projects & Infrastructure ConsultingTravel Required:NoneClearance Required:Active SecretWhat You Will Do:Support governance strategy initiatives by helping develop, refine, and maintain policies, procedures, standards, and related documentation.Research...Full timeWork at officeFlexible hours
- ...LevelStaffEducationBachelor's DegreeTravelNoneSecurity Clearance RequiredTS/SCI with CI PolygraphJob DescriptionPrescient Edge is seeking a Mid Targeting Analyst to support a federal government client. Please note that the availability of this position is contingent upon contract award....Contract work
- MTSI is seeking a skilled Program Analyst to organize, synthesize, and align cost, schedule, contract, test, and technical data to support program execution.Key Responsibilities:Apply knowledge of DoD acquisition processes and analytical methods or techniques to gather,...Contract workWork at officeShift work
$50 per hour
Requisition ID: 3065ERP Eligible?: YesERP amount: $50 LMRecognitionRelocation: PossibleType: ExemptShift: 1Clearance Prior to Start: Top SecretFinal Clearance: Top SecretPay Transparency: $95,900.00 - $178,100.00Experience Level: Experienced ProfessionalFT/PT/Casual: FullTimeDepartment...Full timeTemporary workWork experience placementCasual workWork at officeFlexible hours- ...analytical skills with the ability to translate complex business needs into structured requirements.Experience working as a business analyst, systems analyst, requirements analyst, or similar role.Proficiency in documenting business processes, workflows, and functional...Full timeFlexible hours
- Prepares and analyzes cost forecasts/budgets for company Program Managers; Provides financial reporting to customers, sets up, administers, and closes out charge numbers and work force in Unanet financial system; assists in revenue review and recognition and billing systems...Full timeContract workWork at office
- OverviewAnalyst IILOCATION: Huntsville, ALJOB STATUS: Full-timeCLEARANCE: SecretTRAVEL: As NeededAstrion has an exciting opportunity for an Analyst II located at the Redstone Arsenal in Huntsville, AL. Astrion has worked extensively with the U.S. Redstone Test Center where it...Contract workWork at office
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Insider Threat Analyst. Be the first to apply!
- recruiting analyst Huntsville, AL
- power bi analyst Huntsville, AL
- facility analyst Huntsville, AL
- strategic sourcing analyst Huntsville, AL
- integration analyst Huntsville, AL
- database analyst Huntsville, AL
- call center workforce analyst Huntsville, AL
- ecommerce analyst Huntsville, AL
- health program analyst Huntsville, AL
- data loss prevention analyst Huntsville, AL




