Insider Threat Analyst (TS)
Agile Defense
Job Description
Job Description
About Agile Defense
At Agile Defense we know that action defines the outcome and new challenges require new solutions. That’s why we always look to the future and embrace change with an unmovable spirit and the courage to build for what comes next.
Our vision is to bring adaptive innovation to support our nation's most important missions through the seamless integration of advanced technologies, elite minds, and unparalleled agility—leveraging a foundation of speed, flexibility, and ingenuity to strengthen and protect our nation’s vital interests.
Requisition #:
Job Title: Insider Threat Analyst
Location: Onsite, Washington, DC
Clearance : Top Secret
DESCRIPTION
The Insider Threat Analyst supports the Insider Threat Program Detection and Prevention (ITPDP) effort, performing day-to-day detection, analysis, and triage of potential insider threat activity under the direction of the Senior Insider Threat Analyst. The analyst monitors and investigates alerts across multiple enterprise applications, distinguishing genuine insider threat incidents from false positives, and documents findings in accordance with established procedures. Working within an established program, the analyst applies both the technical and human dimensions of insider threat analysis while ensuring activities are conducted in accordance with applicable federal insider threat guidelines and with careful attention to employee privacy and civil liberties.
ESSENTIAL FUNCTIONS- Monitor and analyze logs and alerts from multiple applications via dashboards and other means to determine whether activity represents an actual insider threat incident or a false positive.
- Triage and investigate potential insider threat indicators, escalating confirmed or ambiguous incidents to the Senior Insider Threat Analyst as appropriate.
- Support the configuration, tuning, and troubleshooting of application triggers used for insider threat detection in an enterprise environment.
- Assist with the deployment, operation, and maintenance of enterprise tools supporting insider threat detection.
- Document findings, produce clear analytical write-ups, and maintain case records in accordance with established reporting procedures.
- Correlate data across multiple sources to build a complete picture of potential insider threat activity.
- Support the development and refinement of workflows, playbooks, and program documentation.
- Conduct all activities in a manner that protects employee privacy and civil liberties and meets the legal requirements of an insider threat program.
- Coordinate with SOC, investigative, and other stakeholders as directed to support program objectives.
QUALIFICATIONS
- U.S. citizenship and ability to receive and maintain a security clearance at the Tier 5 level or higher.
- BS or BA degree, or additional related experience in lieu of a degree.
- Approximately 6 years of combined experience across cybersecurity, security operations, investigations, or insider threat analysis.
- Hands-on experience with one or more enterprise insider threat, DLP, SIEM, or UEBA/UAM tools (e.g., Splunk, DTEX, Proofpoint/ObserveIT, Microsoft Purview, Exabeam, or similar).
- Demonstrated ability to analyze logs and dashboards to differentiate real incidents from false positives. Working knowledge of Windows, Unix, and Linux environments and common insider threat indicators and behaviors.
- Familiarity with log analysis, event correlation, and basic investigative techniques, including awareness of digital forensics concepts.
- Understanding of the legal and ethical requirements of an insider threat program as they relate to privacy and civil liberties.
- Strong written communication for documenting findings, and the ability to work under the direction of senior analysts within an established program.
- Understanding of vulnerability scanning tools and reports.
- Ability to work with Information System Security and Engineering staff to support Authority to Operate (ATO), compliance, patching, and functional testing efforts for stakeholder systems and/or applications.
- Troubleshooting skills to systematically identify, diagnose, and resolve issues to ensure consistent and reliable operation.
- Documentation skills to create and maintain accurate records of customer environments and configurations.
- Ability to obtain the Counter-Insider Threat Fundamentals Certification if required.
Additional desirable qualifications:
- Experience working within Investigative, Law Enforcement, Insider Threat, Incident Response, or Digital Forensics environments.
- Experience supporting enterprise forensics, case management, and/or UAM applications/systems.
- Knowledge and familiarity of security practices, investigative or law enforcement processes, chain of custody considerations, and evidence preservation principles.
- Experience working with JSON for application support.
- Scripting experience in Microsoft SQL, PowerShell, Ruby, Python, C# or other common languages.
Our Core Values
Employees of Agile Defense are our number one priority, and the importance we place on our culture here is fundamental. Our culture is alive and evolving, but it always stays true to its roots. Here, you are valued as a family member, and we believe that we can accomplish great things together. Agile Defense has been highly successful in the past few years due to our employees and the culture we create together.
What makes us Agile? We call it the 6Hs, the values that define our culture and guide everything we do. Together, these values infuse vibrancy, integrity, and a tireless work ethic into advancing the most important national security and critical civilian missions. It's how we show up every day. It's who we are.
- Happy - Be Infectious. Happiness multiplies and creates a positive and connected environment where motivation and satisfaction have an outsized effect on everything we do.
- Helpful - Be Supportive. Being helpful is the foundation of teamwork, resulting in a supportive atmosphere where collaboration flourishes, and collective success is celebrated.
- Honest - Be Trustworthy. Honesty serves as our compass, ensuring transparent communication and ethical conduct, essential to who we are and the complex domains we support.
- Humble - Be Grounded. Success is not achieved alone, humility ensures a culture of mutual respect, encouraging open communication, and a willingness to learn from one another and take on any task.
- Hungry - Be Eager. Our hunger for excellence drives an insatiable appetite for innovation and continuous improvement, propelling us forward in the face of new and unprecedented challenges.
- Hustle - Be Driven. Hustle is reflected in our relentless work ethic, where we are each committed to going above and beyond to advance the mission and achieve success.
Equal Opportunity Employer/Protected Veterans/Individuals with Disabilities
We may use artificial intelligence (AI) tools to support parts of the hiring process, such as reviewing applications, analyzing resumes, or assessing responses and identifying potential inconsistencies or verification signals in application materials based on available information. These tools assist our recruitment team but do not replace human judgment. Final hiring decisions are ultimately made by humans. If you would like more information about how your data is processed, please contact us.
$145k - $170k
...defense and national intelligence architectures, you will analyze threats, mitigate insider risks, and help protect personnel, networks, and advanced... ...Security Clearance This position requires an active TS/SCI clearance. Applicants must meet the eligibility requirements...SuggestedContract workWork experience placementWork at officeLocal area$104k - $166k
ResponsibilitiesThe Cyber Threat Analysis Division (DS/CTI/CTAD) conducts advanced digital... ...software.Collaborate with other forensic analysts, law enforcement officers, and legal... ...clearance to start. Ability to obtain final TS/SCI.Desired:Sec+ certification Peraton OverviewPeraton...SuggestedContract workWorldwideOverseasShift work- ...Senior Legislative and Strategy Analyst Advanced Decision Vectors, LLC (ADV), established... ...Defense for Counternarcotics and Global Threats (ODASD (CN&SP)) develops and oversees DoD... ...Friday. Required Clearance: Active TS/SCI This role provides expert legislative...SuggestedTemporary workFor contractorsWork at officeRemote workMonday to FridayFlexible hours
$115k - $140k
...Description This Key Personnel Program Analyst role supports U.S. national security objectives... ..., assess, and respond to emerging threats. You will work alongside a small, fast-moving... ...This position requires an active TS/SCI clearance. Applicants must meet the eligibility...SuggestedContract workFor contractorsWork at officeLocal area- ...Job Description Job Description H4 Enterprises is currently seeking the following: TITLE Insider Threat Program - Management Analyst 2 LEVEL Mid RELATIONSHIPS Assigned Team Leader EDUCATION Bachelor's degree, associate degree and 4 years of experience...SuggestedInterim roleWork at office
- ...Secretary of Defense for Counternarcotics and Global Threats (ODASD (CN&SP)) develops and oversees DoD policy, strategy... ...are Monday through Friday.Required Clearance: Active TS/SCI Senior Performance and Metrics Analyst The Performance Metrics Analyst is responsible for...Temporary workFor contractorsWork at officeRemote workMonday to FridayFlexible hours
$5,200 per month
...Critical Threats Project Analyst The Critical Threats Project (CTP) at the American Enterprise Institute (AEI) produces detailed, objective analysis and forecasts of America's core national security challenges and concrete recommendations to address them. CTP also trains...Full timeWork experience placementInternshipImmediate startWeekend workAfternoon shift1 day per week- ...leading cybersecurity firm in Washington, D.C. is seeking a Security Operations Center (SOC) Analyst. In this role, you will monitor and analyze security incidents, responding to threats and securing sensitive data. You will perform vulnerability assessments, collaborate...
$110k - $190k
OverviewLMI is seeking a Data Analyst responsible for quality delivery of reporting and analysis as part of a Strategic Workforce Analytics... ...Base Anacostia-Bolling (JBAB).This position requires an active TS/SCI clearance with Polygraph required.LMI is a new breed of...Contract work- ...Threat Hunt Analyst cFocus Software seeks a Threat Hunt Analyst to join our program supporting the Administrative Office of the United States Courts (AOUSC). This position is Hybrid with the onsite location being in Washington, DC. This position requires a Public Trust...Work at office
$164.38k - $189.75k
...facilitate the Chairman's risk assessment process and audit support requirements. WHAT YOU’LL NEED TO SUCCEED Security Clearance: Active TS/SCI w/ polygraph On Customer Site Desired Education and Experience Master's degree with 12 years related experience or Bachelor's...Temporary workImmediate startWorldwideFlexible hours- ...Description Job Description H4 Enterprises are currently seeking the following: POSITION SUMMARY Insider Threat Information Systems Security - Senior Data Analyst will be responsible for analyzing, detecting, and mitigating potential insider threats within an...For contractorsWork at office
- ...Fluence Energy, LLC seeks a Senior Cybersecurity Analyst to join the Global Cybersecurity team in Arlington, VA. This hands-on role leads threat detection, investigation, and response across corporate, cloud, and product environments, using Microsoft Sentinel and Defender...
- ...Hire – Full-Time – Hybrid Clearance: US Citizens with Active TS/SCI Security Clearance (Required) MUST HAVE: Demonstrated... ...business intelligence tools. Position Summary The AI Data Analyst provides entry-level analytical and technical support to Headquarters...Full timeRemote work
- .... Position Overview Defense Industry Analyst The Defense Industry Analyst conducts... ...DCIP) and DoD Warning Program by assessing threats across cyber, strategic weapon systems,... ...8 years’ experience. Clearance : TS/SCI with active poly GDIT IS YOUR PLACE...
- cFocus Software seeks a Insider Threat Analyst to join our program supporting the Administrative Office of the United States Courts (AOUSC). This position is Hybrid with the onsite location being in Washington, DC. This position requires a Public Trust clearance. Qualifications...Full timeWork at office
$89.6k - $204k
Business Systems Analyst (Entry Level to SME) TS/SCI with Poly REQUIRED Position Description CGI Federal has an exciting opportunity for Business Systems Analysts within our Intel sector advancing the national security mission through cutting edge technology. You...Work at officeLocal area$100k - $120k
...meaningful results. This is a contingent position based upon customer approval. SkyePoint Decisions is seeking a Mobile Threat Analyst to support the Diplomatic Security Cyber Mission (DSCM) program providing leading cyber and technology security experience to enable...Contract workRemote workWorldwideOverseas$125k
...Description Join Bow Wave LLC as a Full-Time Program/Business Analyst in Washington, DC, and be a part of a dynamic team dedicated to... ...security. Requirements for this Program / Business Analyst - TS CI Poly required to apply job To thrive as a Full-Time Program/...Full time- ...Job Description Job Description PMO Analyst ???? Bethesda, MD | McLean, VA | Chantilly, VA ???? Full-Time | On-site | Position... ...Enterprise SDLC reviews including change management. REQUIREMENTS: TS/SCI clearance with polygraph required , including additional...Full timeWork at office
- ...Job Description Job Description Threat & Risk Assessment Specialist Location: Quito, Ecuador (with in-country travel) Clearance... ...the centralized risk-information system. • Train counterpart analysts to apply the methodology. Required Qualifications and...Contract workTemporary workLocal area
- ...Job Description Job Description Business Process Analyst – Mission Operations Support ???? Bethesda, MD ???? Full Time | On... ...RACI matrices, and leadership-ready documentation. Clearance: TS/SCI with Polygraph Responsibilities Document and maintain...Full timeWork at office
$125k - $150k
...and delivered by operating with a product mindset, prioritizing speed, ownership, and execution over bureaucracy. Senior Threat Hunter Analyst Location: Washington, DC, Ft. Collins, CO, or Kansas City, MO (remote optional, local preferred) Terms: Full-time Salary...Full timeWork experience placementLocal areaRemote workFlexible hoursShift work- ...Job Description Job Description Program Management Office Analyst ???? Bethesda, MD ???? Full Time | On Site Join Synertex LLC... ...resources for the program deliverables. REQUIREMENTS: ~ Active TS/SCI with poly is required. ~ Minimum Education: B.S. or...Full timeContract workWork at office
$150k - $163k
...Senior Military Analyst Location: US-VA-Arlington ID: 2026-4902 Category: Security / Intel / Threat Analysis Position Type: Full-Time Remote: No Clearance Required: Top Secret... ...and foreign materiel exploitation. TS/SCI Clearance U.S. Citizenship Required for the...Full timeFor contractorsRemote work- ...Amentum is seeking SOC / Incident Response Analyst to support our U.S. Department of Energy... ...deliver timely, actionable, and relevant threat intelligence on hostile nation-states, cyber... ...preferred.Security Clearance Required: Active TS/SCI or DOE Q#javelinThis position is not...Contract workFor contractors
$114k - $171k
...an immediate opening for an All Source Analyst for a Department of Defense (DoD) network... ...tactics, capabilities, networks, and emerging threats. This position supports operational... ...~ Must be a US Citizen ~ Active DoD TS/SCI clearance ~ Must have a Bachelor'...For contractorsWork at officeImmediate startWorldwideShift work$110k - $120k
...Amentum is seeking a Counterintelligence (CI) Analyst to support the DIA Office of... .... Researches, authors, and coordinates threat assessments to support the Commander and other... ...citizen. Must possess an active Top Secret (TS) SCI clearance and be able to obtain a polygraph...Hourly payContract workWork at officeLocal area$100k - $160k
...Intelligence Analysts Specializing in GEOINT, IMINT, and/or OSINT Mission One is seeking... ...geospatial assessments, pattern-of-life analysis, threat assessments, and executive briefings.... ...Qualifications: ~ Active Secret / TS / TS-SCI clearance. ~ Bachelor's degree...Flexible hours$112k - $179k
...FOIA Analyst Job Locations US-MD-Bethesda Position Category: Audit Clearance: Top Secret/... ...Qualifications Required Qualifications Requires a TS/SCI with Polygraph level clearance.... ...between traditional and nontraditional threats across all domains: land, sea, space, air...Contract workShift work
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Insider Threat Analyst (TS). Be the first to apply!
- nonprofit analyst Washington DC
- law enforcement response team analyst Washington DC
- chart analyst Washington DC
- analyst sales operations Washington DC
- entry level program analyst Washington DC
- incident response analyst Washington DC
- development analyst Washington DC
- fleet analyst Washington DC
- entry level consulting analyst Washington DC
- military analyst Washington DC




