Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

Forensic Insider Threat Analyst

$100k

The Johns Hopkins University Applied Physics Laboratory

Description

Are you interested in helping protect critical research, national security initiatives, and cutting-edge innovation from insider threats?

If so, join us at APL!

We are seeking a Forensic Insider Threat Analyst to help identify, investigate, and mitigate insider risk in a complex and highly collaborative research environment. In this role, you'll leverage user activity monitoring, endpoint and identity telemetry, and forensic analysis to detect suspicious behavior and support sensitive investigations.

You'll work across a large set of stakeholders-including IT, Information Security, Research Administration, Legal, HR, and leadership-to address potential risks with discretion and precision. Our team is focused on balancing strong security practices with privacy, mission needs, and the unique demands of sponsored research. If you're curious, analytical, and motivated to solve complex security challenges, you'll fit right in.

As a Forensic Insider Threat Analyst, you will...

  • Monitor user activity and security telemetry to identify anomalous or high-risk behavior.
  • Detect and investigate insider threat incidents, including data exfiltration, unauthorized access, credential misuse, intellectual property theft, and policy violations.
  • Correlate data across sources such as SIEM, EDR, DLP, IAM, email, and endpoint logs to build comprehensive investigative timelines.
  • Conduct digital forensic analysis while preserving evidence integrity and maintaining proper chain of custody.
  • Document findings in clear, defensible reports to support investigations and decision-making.
  • Leverage behavioral indicators and detection logic to enhance early identification of insider threats.
  • Support containment and remediation efforts in coordination with IT security and incident response teams.
  • Analyze access patterns involving sensitive research data, proprietary information, and regulated datasets.
  • Provide case support for matters involving export-controlled research, sponsored programs, and sensitive personnel concerns.
  • Recommend improvements to security controls, policies, and awareness efforts to reduce insider risk.
  • Contribute to the growth and maturity of the Insider Threat Program, including workflows, case management, and metrics.

Qualifications

Minimum Qualifications

  • Bachelor's degree in cybersecurity, digital forensics, computer science, information systems, criminal justice, or a related field, or equivalent experience.
  • 2 or more years of experience in cybersecurity, digital forensics, insider threat analysis, or security investigations.
  • Hands-on experience with user activity monitoring platforms and security analytics tools.
  • Experience analyzing logs and data from SIEM, EDR, DLP, IAM, and endpoint systems.
  • Strong understanding of forensic methods, evidence handling, and investigative documentation.
  • Ability to analyze complex datasets, identify patterns, and communicate findings clearly.
  • Experience working with confidential information and maintaining discretion.
  • This position may require occasional after-hours support for active incidents or urgent investigations.
  • Strong written and verbal communication skills.
  • Are able to obtain Secret level security clearance. If selected, you will be subject to a government security clearance investigation and must meet the requirements for access to classified information. Eligibility requirements include U.S. citizenship.


Desired Qualifications

  • Experience in higher education, research institutions, healthcare, life sciences, engineering, or similarly complex environments.
  • Familiarity with protecting classified information, intellectual property, research data, and controlled or sensitive information.
  • Knowledge of privacy, employment, monitoring, and data governance requirements in a private-sector academic environment.
  • Certifications such as GCITP, GCFA, GCFE, CHFI, CISSP, CISM, or related credentials.
  • Experience supporting investigations involving email abuse, cloud platforms, and collaboration tools.
  • The research center seeks a detail-oriented security professional who can protect critical research assets while supporting a collaborative and national security mission-driven environment.

About Us

Why Work at APL?

The Johns Hopkins University Applied Physics Laboratory (APL) brings world-class expertise to our nation's most critical defense, security, space and science challenges. While we are dedicated to solving complex challenges and pioneering new technologies, what makes us truly outstanding is our culture. We offer a vibrant, welcoming atmosphere where you can bring your authentic self to work, continue to grow, and build strong connections with inspiring teammates.

At APL, we celebrate our differences of perspectives and encourage creativity and bold, new ideas. Our employees enjoy generous benefits, including a robust education assistance program, unparalleled retirement contributions, and a healthy work/life balance. APL's campus is located in the Baltimore-Washington metro area. Learn more about our career opportunities at

All qualified applicants will receive consideration for employment without regard to race, creed, color, religion, sex, gender identity or expression, sexual orientation, national origin, age, physical or mental disability, genetic information, veteran status, occupation, marital or familial status, political opinion, personal appearance, or any other characteristic protected by applicable law.APL is committed to providing reasonable accommodation to individuals of all abilities, including those with disabilities. If you require a reasonable accommodation to participate in any part of the hiring process, please View email address on click.appcast.io.

The referenced pay range is based on JHU APL's good faith belief at the time of posting. Actual compensation may vary based on factors such as geographic location, work experience, market conditions, education/training and skill level with consideration for internal parity. For salaried employees scheduled to work less than 40 hours per week, annual salary will be prorated based on the number of hours worked. APL may offer bonuses or other forms of compensation per internal policy and/or contractual designation. Additional compensation may be provided in the form of a sign-on bonus, relocation benefits, locality allowance or discretionary payments for exceptional performance. APL provides eligible staff with a comprehensive benefits package including retirement plans, paid time off, medical, dental, vision, life insurance, short-term disability, long-term disability, flexible spending accounts, education assistance, and training and development. Applications are accepted on a rolling basis.

Minimum Rate

$100,000 Annually


Maximum Rate

$245,000 Annually
Vacancy posted 13 hours ago
Similar jobs that could be interesting for youBased on the Forensic Insider Threat Analyst in Laurel, MD vacancy
  • $100k

     ...protect critical research, national security initiatives, and cutting-edge innovation from insider threats? If so, join us at APL! We are seeking a Forensic Insider Threat Analyst to help identify, investigate, and mitigate insider risk in a complex and highly... 
    Suggested
    Temporary work
    Work experience placement
    Relocation package
    Flexible hours

    Johns Hopkins Applied Physics Laboratory

    Laurel, MD
    2 days ago
  • $100k - $245k

    Johns Hopkins Applied Physics Laboratory in Laurel, Maryland, seeks a Forensic Insider Threat Analyst to identify and mitigate insider risks. This position leverages user activity monitoring and forensic analysis across collaborative environments. Key qualifications include... 
    Suggested

    Johns Hopkins Applied Physics Laboratory

    Laurel, MD
    1 day ago
  • $100k - $110k

     ...Insider Threat UAM Analyst Suiteland, MD Mobius is an award winning, Small Business Administration (SBA) certified Historically Underutilized Business Zone (HUBZone) company and certified Woman-Owned Small Business (WOSB) providing engineering, analytical, and programmatic... 
    Suggested
    For contractors
    Flexible hours

    MOBIUS

    Annapolis Junction, MD
    2 days ago
  • $150k - $225k

     ...Emerging Threats Cyber Analyst We are seeking an Emerging Threats Cyber Analyst to support cybersecurity...  ...Science, Information Systems, Network Forensics, or a related field; equivalent...  ...security, network forensics, insider threat, or security operations. ~ Knowledge... 
    Suggested
    Summer holiday
    Immediate start

    Red Alpha

    Columbia, MD
    2 days ago
  •  ...Risk Management Program (IRMP) by designing, implementing, and maintaining comprehensive insider threat detection and mitigation capabilities. The Insider Threat Program Analyst will develop and operationalize policies, systems, and practices to detect, deter, and respond... 
    Suggested
    Contract work
    For contractors

    Arlo Solutions LLC

    Silver Spring, MD
    more than 2 months ago
  • $100k

     ...like you to join our team at APL.   We are seeking a missile effectiveness analyst to characterize and evaluate tactical missile system performance against complex and emergent threats. We are a hardworking team of analysts who support a wide range of government sponsors... 
    Temporary work
    Work experience placement
    Interim role
    Relocation package
    Flexible hours

    Johns Hopkins Applied Physics Laboratory (APL)

    Laurel, MD
    12 hours ago
  • $171k - $190k

     ...Job Description Job Description Intrusion Analyst 3 Location: Annapolis Junction, MD | Onsite Clearance Required: TS/SCI with...  ...Background in cyber operations, intrusion analysis, or advanced threat detection Familiarity with Agile, cloud, or modernization... 
    Full time
    Contract work

    Weeghman & Briggs LLC

    Annapolis Junction, MD
    10 days ago
  •  ...____ Set of X is seeking Exploitation Analysts (EAs) of all skill levels to support critical...  ...Continuously adapt to evolving cyber threats and operational needs Required Skills...  ...with penetration testing, computer forensics, or systems engineering Familiarity with... 
    For contractors
    Work at office
    Flexible hours

    Set of X

    Annapolis Junction, MD
    10 days ago
  •  ...EOD Analyst Parra Consulting Group is seeking for an EOD Analyst who will perform Technical analysis and assist in the collection,...  ...improvised weapons systems and incidents to identify emerging threats and commercial based technologies (CBT) to determine technical... 
    Remote work

    Parra Consulting Group, Inc.

    Annapolis Junction, MD
    4 days ago
  •  ...Exploitation Analyst-Mid Annapolis Junction, Maryland, United States NetSage's mission...  ...vulnerabilities, intrusions, and threats in computer network systems. The ideal candidate...  ...Engineering, Computer Science, Computer Forensics, Cyber Security, Software Engineering,... 
    Contract work

    NetSage Corporation

    Annapolis Junction, MD
    4 days ago
  • $98k - $240k

     ...is seeking highly skilled and motivated analysts to support mission-critical Intelligence...  ...analysis. Penetration testing. Computer forensics. Information assurance. Systems...  ..., analyze, and respond to cybersecurity threats and incidents. Conduct incident... 
    Contract work
    For contractors
    Work experience placement
    Currently hiring
    Flexible hours

    Belay Technologies

    Annapolis Junction, MD
    5 days ago
  •  ...integrating IOCs and Advanced Persistent Threat actors. Ability to analyze cyber threat...  .... Experience in using digital forensics collection and analysis tools (e.g. Autopsy...  ...Peraton is seeking an experienced CIRT Tier 2 Analyst to join Peratons' Federal Strategic... 
    Local area
    Shift work

    Peraton

    Beltsville, MD
    2 days ago
  • $115.44k - $186.16k

     ...related to US Financial Crimes Prevention and Operations, focused on U.S. KYC operations, but may also include US Fraud Management, Insider Threat Management and Investigations, and Physical Security. Depth & Scope: Recognized as top level expert within the company... 
    Local area
    Work from home
    Flexible hours

    TD Bank

    Laurel, MD
    5 days ago
  • $100k

     ...someone like you to join our team at APL. We are seeking a missile effectiveness analyst to characterize and evaluate tactical missile system performance against complex and emergent threats. We are a hardworking team of analysts who support a wide range of government... 
    Interim role

    Johns Hopkins Applied Physics Lab

    Laurel, MD
    2 days ago
  • A technology and cybersecurity company in Columbia, MD is seeking an experienced Exploitation Analyst to join their mission-critical contract. This role involves developing cyber exploitation plans and requires strong experience in systems design, network defenses, and... 
    Contract work

    RealmOne

    Columbia, MD
    2 days ago
  • $31.44 - $43.26 per hour

     ...collaboration tools. Over 80 of the Fortune 100, 10,000 large enterprises, and millions of smaller organizations trust Proofpoint to stop threats, prevent data loss, and build resilience across their people and AI workflows. Our mission is simple: safeguard the digital world... 
    Flexible hours

    Proofpoint

    Laurel, MD
    2 days ago
  • $25 per hour

     ...and/or promotions. Qualifications Bachelor's degree and/or equivalent experience. Must understand the current security threats model and demonstrate a strong willingness to stay at the forefront of security developments. Knowledge of risk assessment... 
    Local area

    Pala Group

    Laurel, MD
    2 days ago
  • $105k

     ...so, we're looking for someone like you to join the Air Combat and Strike Mission Analysis Group!   We are seeking a Senior AFSIM Analyst to help us evaluate and define solutions to enable the U.S. military to conduct strike warfare and air combat operations in complex... 
    Temporary work
    For contractors
    Work experience placement
    Interim role
    Relocation package
    Flexible hours

    Johns Hopkins Applied Physics Laboratory (APL)

    Laurel, MD
    12 hours ago
  •  ...federal agencies. Applicants must possess investigative experience, physical fitness, and the capability to manage complex cases and forensic analysis. This position offers comprehensive federal benefits and the opportunity to work within a vital office dedicated to legal... 
    Work at office

    U.S. National Archives and Records Administration

    College Park, MD
    3 days ago
  •  ...Seeking a motivated, career and customer-oriented Radio Frequency Analyst to join our team in Annapolis Junction, MD. This is a full time...  ...a stationary position 50% of the time. Occasionally move about inside the office to access file cabinets, office machinery, or to... 
    Full time
    Work at office

    Allen Integrated Solutions

    Annapolis Junction, MD
    24 days ago
  • $3,500 per month

     ...client you work with. ARSIEM is looking for an AIGG Management Analyst . This position will support one of our Government clients in...  ...and critical thinking – analyzing information and assessing threats, understanding complex problems and developing effective solutions... 
    Contract work

    ARSIEM

    Columbia, MD
    12 hours ago
  •  ...the research of all-source data and assists other intelligence analysts in the operation and use of intelligence tools. •Work as a member...  .... •Have experience and training in one or more areas of; threat analysis, foreign intelligence, counterintelligence, risk and... 
    For contractors

    Bow Wave LLC

    Columbia, MD
    19 days ago
  • $10k

     ...Technology, or related field (e.g., General Engineering, Computer Engineering, Electrical Engineering, Computer Science, Computer Forensic, Cyber Security, Software Engineering, Information Assurance, or Computer Security). OR ~ Five (5) years of experience and an... 
    Hourly pay
    Full time
    Contract work
    Temporary work
    Work experience placement
    Summer work
    Immediate start

    Wyetech

    Annapolis Junction, MD
    16 days ago
  • $104k - $144k

    Job Description Job Description Languages we are hiring for: ~ Spanish Job Duties: Perform tasks required to process voice and/or graphic language materials in support of SIGINT operations Recover essential elements of information Render translations...
    Full time
    Contract work
    Work experience placement
    Local area

    IntelliGenesis

    Annapolis Junction, MD
    3 days ago
  • $80k - $110k

    Job Description Job Description Languages: ~ Chinese Job Duties: Perform tasks required to process voice and/or graphic language materials in support of SIGINT operations Recover essential elements of information Render translations and/or transcripts...
    Full time
    Contract work
    Work experience placement
    Local area

    IntelliGenesis

    Annapolis Junction, MD
    21 days ago
  • $115k - $240k

     ...in 2021! Belay Technologies is seeking multiple Exploitation Analysts (EAs)  to support a critical mission within the Intelligence...  ...security, vulnerability analysis, penetration testing, computer forensics, information assurance, and/or systems engineering.... 
    Contract work
    For contractors
    Work experience placement
    Flexible hours

    Belay Technologies

    Annapolis Junction, MD
    29 days ago
  • $100k - $135k

     ...of a small company with the impact of a big mission.. Riverstone is seeking a motivated, career, and customer-oriented Tech SIGINT Analyst Level 1 to join our team in Annapolis Junction, Maryland.This is Hybrid position. Primary Responsibilities: • Conduct comprehensive... 
    Hourly pay
    Contract work
    Work experience placement

    Envision Innovative Solutions

    Annapolis Junction, MD
    5 days ago
  • $125k - $172k

     ...Job Description Job Description Position Summary: The Kenjya-Trusant Group, LLC (KTG) is seeking a Senior Program Analyst (Knowledge Manager) to provide USCYBERCOM with SETA support to include the application of cyber acquisition and program management expertise resulting... 
    Full time
    Contract work
    Work experience placement
    Work at office
    Local area
    Flexible hours

    The Kenjya-Trusant Group , LLC

    Annapolis Junction, MD
    5 days ago
  • $140k - $160k

     ...consistently ranked as a top workplace among DC area firms and continues to grow. We are actively hiring an Operational Language Analyst - Chinese, level 2to join our Defense and Homeland Security Division working at Annapolis Junction, MD. In this role, the... 
    Full time
    Contract work
    Work experience placement

    Acclaim Technical Services

    Annapolis Junction, MD
    1 day ago
  •  ...consistently ranked as a top workplace among DC area firms and continues to grow. We are actively hiring an Operational Language Analyst - Spanish, Level 2 to join our Defense and Homeland Security Division working in Annapolis Junction, MD. In this role, the... 
    Full time
    Contract work
    Work experience placement

    Acclaim Technical Services

    Annapolis Junction, MD
    4 days ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to Forensic Insider Threat Analyst. Be the first to apply!