Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

Insider Threat Analyst

MartinFed

Company Overview Founded in 2007 in Huntsville, AL, MartinFed provides the U.S. government with customer-focused, performance-based solutions using technology and an empowered workforce as an engine to drive its customers' missions. Our goal is to attract the best and brightest within their field. We Invest In Our People Because They Are Our Greatest Asset. They Cultivate Our Purpose, Embody And Reflect Our Core Values, And Define Our Culture. MartinFed's Core Values That Set Us Apart Are The Following Be Driven - We are fueled by the hunger to learn more and do more. Be Curious - We engage in continuous improvement - never accepting the status quo. Be Humble - We seek honest feedback to strengthen our relationships. Pursue Excellence - We strive to achieve extraordinary results and do not settle for mediocrity. Job Overview The Insider Threat Analyst supports the Insider Threat Program Detection and Prevention (ITPDP) by performing day-to-day monitoring, detection, analysis, and triage of potential insider threat activity across enterprise environments. This role analyzes alerts and user activity from multiple security platforms to distinguish legitimate insider threat incidents from false positives, documents findings, and escalates cases as appropriate. Working under the direction of the Senior Insider Threat Analyst, the analyst supports the operation and continuous improvement of the insider threat program while ensuring all activities comply with federal insider threat policies, employee privacy protections, and civil liberties requirements. Essential Functions Insider Threat Monitoring and Detection Monitor logs, dashboards, and alerts across multiple enterprise security applications to identify potential insider threat activity. Analyze user activity and system events to distinguish legitimate insider threat incidents from false positives. Continuously monitor enterprise environments for indicators of malicious, negligent, or compromised insider behavior. Incident Triage and Investigation Perform initial triage and investigation of potential insider threat alerts. Correlate information from multiple data sources to develop a complete understanding of potential insider threat activity. Escalate confirmed or ambiguous incidents to the Senior Insider Threat Analyst in accordance with established procedures. Maintain complete case documentation throughout the investigative lifecycle. Detection Engineering Support Assist with configuring, tuning, and troubleshooting detection rules, triggers, and analytics used by insider threat platforms. Support the deployment, maintenance, and day-to-day operation of enterprise insider threat detection technologies. Help improve detection fidelity by reducing false positives and refining alert logic. Analysis and Reporting Document investigative findings through clear analytical reports and case summaries. Maintain accurate records in accordance with program reporting requirements. Assist in developing workflows, playbooks, standard operating procedures, and other program documentation. Collaboration and Program Support Coordinate with Security Operations Center (SOC), investigative teams, Human Resources, Legal, and other stakeholders as directed. Support continuous improvement initiatives for the Insider Threat Program. Conduct all investigative activities in accordance with federal insider threat guidance while protecting employee privacy and civil liberties. Qualifications U.S. Citizen with the ability to obtain and maintain a Tier 5 security clearance or higher. Bachelor's degree in Cybersecurity, Information Technology, Criminal Justice, Intelligence Studies, or a related field (additional relevant experience may be substituted for education). Approximately 6 years of combined experience in cybersecurity, security operations, investigations, digital forensics, insider threat, or related disciplines. Hands-on experience with one or more enterprise Insider Threat, DLP, SIEM, UEBA, or User Activity Monitoring (UAM) platforms such as Splunk, DTEX, Microsoft Purview, Proofpoint/ObserveIT, Exabeam, or similar technologies. Experience analyzing logs, alerts, dashboards, and user activity to differentiate true security incidents from false positives. Working knowledge of Windows, Linux, and Unix operating systems. Understanding of insider threat methodologies, user behavior analytics, event correlation, and investigative techniques. Familiarity with digital forensics concepts, log analysis, and security investigations. Knowledge of privacy, legal, and civil liberties considerations associated with federal Insider Threat Programs. Excellent analytical, documentation, and written communication skills. Ability to work effectively within an established insider threat program under the guidance of senior analysts. Ability to obtain the Counter-Insider Threat Fundamentals Certification, if required. Desired Experience supporting formal Federal Insider Threat Programs. Experience with SIEM, UEBA, UAM, DLP, and behavioral analytics platforms. Familiarity with Splunk Enterprise Security, Microsoft Purview, DTEX, Exabeam, Proofpoint/ObserveIT, or similar solutions. Experience correlating events across multiple enterprise security tools. Knowledge of security operations center (SOC) workflows and incident response processes. Understanding of insider threat indicators, behavioral analytics, and risk scoring methodologies. Experience developing or improving detection rules, workflows, and investigative playbooks. Basic scripting experience (PowerShell, Python, or Bash) for automation or analysis. Familiarity with NIST, CNSSD, or other federal insider threat guidance and best practices. Strong collaboration skills when working with cybersecurity, investigative, legal, and human resources stakeholders. Physical Requirements & Environmental Conditions Inside office environment. Working on a computer for long periods of time. May involve long period of sitting at a desk. The work environment is fast-paced and sometimes involves extreme deadline pressures. Other Duties This job description is not designed to cover or contain a comprehensive listing of activities, duties or responsibilities that are required of the employee for this job. Duties, responsibilities, and activities may change at any time with or without notice. MartinFed is an Equal Opportunity/Affirmative Action Employer. All qualified applicants will receive consideration for employment without regards to race, color, religion, religious creed, gender, sexual orientation, gender identity, gender expression, transgender, pregnancy, marital status, national origin, ancestry, citizenship status, age, disability, protected Veteran Status, genetics or any other characteristics protected by applicable federal, state or local law. We also consider qualified applicants regardless of criminal histories, consistent with legal requirements. In addition to federal law requirements, MartinFed complies with all applicable state and local laws governing nondiscrimination in all locations. If you are a qualified individual with a disability or disabled veteran, you have the right to request a reasonable accommodation if you are unable or limited in your ability to use or access MartinFed's current openings as a result of your disability. You can request reasonable accommodations by calling View phone number on click.appcast.io. Thank you for your interest in MartinFed. Please Note: All positions at MartinFed are contingent upon passing a background check prior to a start date and are subject to random drug screenings during the employment period. In addition, MartinFed is an E-Verify employer. #J-18808-Ljbffr

Vacancy posted 3 days ago
Similar jobs that could be interesting for youBased on the Insider Threat Analyst in Washington DC vacancy
  •  ...cFocus Software seeks an Insider Threat Analyst to join our program supporting the Administrative Office of the United States Courts (AOUSC). This position is Hybrid with the onsite location being in Washington, DC. This position requires a Public Trust clearance. Qualifications... 
    Suggested
    Work at office

    cFocus Software Incorporated

    Washington DC
    1 day ago
  • $86k - $138k

    ResponsibilitiesPeraton is currently hiring Industrial Control System Cyber Threat Intelligence Analyst for its Federal Strategic Cyber programs.Location: On-site role in Arlington, VA.In this role, you will:Conduct proactive threat hunting across operational technology... 
    Suggested
    Contract work
    Currently hiring
    Shift work

    Peraton Corporation

    Arlington, VA
    9 hours ago
  • $104k - $166k

    Responsibilities Peraton is currently seeking a Mobile Threat Analyst for its' Federal Strategic Cyber programs. Location: Full-time, on-site, Arlington, VA. In this role, you will: Conduct forensic examinations of mobile devices (e.g., Android and iOS phones), including... 
    Suggested
    Full time
    Contract work
    Worldwide
    Overseas
    Shift work

    Peraton Corporation

    Arlington, VA
    4 days ago
  • $5,200 per month

     ...The Critical Threats Project (CTP) at the American Enterprise Institute (AEI) produces detailed, objective analysis and forecasts of...  ...also trains the next generation of policymakers and intelligence analysts. Its granular, open-source publications assist government officials... 
    Suggested
    Full time
    Work experience placement
    Internship
    Immediate start
    Weekend work
    Afternoon shift
    1 day per week

    On Think Tanks - Independent Research, Ideas and Advice

    Washington DC
    1 day ago
  •  ...cFocus Software seeks a Threat Hunt Analyst to join our program supporting the Administrative Office of the United States Courts (AOUSC). This position is Hybrid with the onsite location being in Washington, DC. This position requires a Public Trust clearance. Qualifications... 
    Suggested
    Work at office

    cFocus Software Incorporated

    Washington DC
    1 day ago
  •  ...Analytics, Modeling and Simulation, and Future Force Assessments.SPA has a need for a Research Analyst to conduct research and analysis on emerging deterrence challenges and strategic threat trends. This role supports AF/A10’s work on new technologies, adversary behaviors, and... 
    Flexible hours

    Systems Planning and Analysis

    Arlington, VA
    4 days ago
  •  ...speed, flexibility, and ingenuity to strengthen and protect our nation’s vital interests. Requisition #:  Job Title: Insider Threat Analyst Location: Onsite, Washington, DC Clearance : Top Secret DESCRIPTIONThe Insider Threat Analyst supports the Insider... 

    Agile Defense

    Washington DC
    2 days ago
  •  ...Job Description Job Description Threat & Risk Assessment Specialist Location: Quito, Ecuador (with in-country travel) Clearance...  ...the centralized risk-information system. • Train counterpart analysts to apply the methodology. Required Qualifications and... 
    Contract work
    Temporary work
    Local area

    RMGS Inc

    Washington DC
    20 days ago
  • $175k - $210k

     ...Title: Senior OPSEC Threat & Risk Assessment Specialist / Deputy OPSEC Lead Belong. Connect. Grow. with KBR! KBR’s National Security Solutions team provides high-end engineering and advanced technology solutions to our customers in the intelligence and national security... 
    Full time
    Temporary work
    For contractors
    Local area
    Immediate start
    Relocation package
    Flexible hours

    KBR, Inc.

    Alexandria, VA
    2 days ago
  • $100k - $120k

     ...meaningful results. This is a contingent position based upon customer approval. SkyePoint Decisions is seeking a Mobile Threat Analyst to support the Diplomatic Security Cyber Mission (DSCM) program providing leading cyber and technology security experience to enable... 
    Contract work
    Remote work
    Worldwide
    Overseas

    SkyePoint Decisions

    Arlington, VA
    25 days ago
  •  ...Job Description Job Description SIEM / Threat Monitoring Analysts About Blue Rose Consulting Group Blue Rose Consulting Group, Inc. (Blue Rose) is a certified HUBZone and Service-Disabled Veteran-Owned Small Business supporting Federal customers with mission-focused... 
    Full time
    Contract work
    Work at office
    Overseas
    Shift work

    Blue Rose Consulting Group, Inc.

    Washington DC
    7 days ago
  • $125k - $150k

     ...and delivered by operating with a product mindset, prioritizing speed, ownership, and execution over bureaucracy. Senior Threat Hunter Analyst Location: Washington, DC, Ft. Collins, CO, or Kansas City, MO (remote optional, local preferred) Terms: Full-time Salary... 
    Full time
    Work experience placement
    Local area
    Remote work
    Flexible hours
    Shift work

    Revolutional, LLC

    Washington DC
    12 days ago
  • $100k - $110k

     ...country (including the U.S.).Research, authors, and coordinates threat assessments to support the Commander and other senior...  ...trends in reporting and a range of analytic perspectives from other analysts, organization, and intelligence disciplines.Demonstrates ability... 

    Prescient Edge

    Washington DC
    9 hours ago
  •  ...Performance Review Institute (PRI).About this position: Senior Program Analyst Location - Washington, DC The Essential Duties and...  ...counterterrorism.Analyze policy, capabilities and technical requirements for threat-based research and development and science and technology to... 
    Full time
    Contract work
    For contractors
    Work at office
    Overseas

    Bering Straits Native Corporation

    Washington DC
    2 days ago
  • $104.9k - $174.7k

     ...support complex operational requirements.About the RoleAs a Pattern Analyst in LNSSI, you will serve as a trusted analytical partner to...  ...activity across counterterrorism, trafficking interdiction, threat mitigation, and national security missions.The role requires initiative... 
    Full time
    Contract work
    For contractors
    Local area
    Remote work
    Shift work

    RELX Group

    Washington DC
    1 day ago
  • $86.8k - $198k

    Incident Response Analyst, SeniorThe Opportunity: You will serve as a key member of a 24x7x365 Security Operations Center and Incident...  ...monitoring, detection, investigation, and response to cybersecurity threats across enterprise networks, endpoints, applications, and... 
    Full time
    Contract work
    Part time
    Work at office
    Local area
    Remote work

    Booz Allen Hamilton

    Bethesda, MD
    9 hours ago
  • $80k - $128k

    ResponsibilitiesPeraton is seeking an experienced CIRT Tier 1 Analyst to join Peratons' Federal Strategic Cyber Mission program.Location...  ...Demonstrated knowledge of cybersecurity principles, practices, threats, and vulnerabilities.Demonstrated knowledge of incident... 
    Contract work
    Local area
    Shift work

    Peraton Corporation

    Beltsville, MD
    4 days ago
  • $105k - $110k

     ...a Qinetiq US company, is seeking an All-Source Intelligence Analyst in Washington, D.C who is able to perform analysis of specialized...  ...in ICD 203 Display a clear understanding of identifying Insider Threat indicators and adversary tactics, techniques and proceduresAbility... 
    Work experience placement
    Work at office
    Worldwide

    QinetiQ

    Washington DC
    9 hours ago
  •  ...team of experienced military, technical, and operations research analysts is skilled in evaluating military problems, identifying the...  ...capabilities are structured to include both traditional and emerging threats; assist in monitoring all DoD Nuclear Threat Monitoring... 
    Work at office
    Flexible hours

    MCR

    Arlington, VA
    9 hours ago
  • $62k - $141k

     ...improve national security?Never has the role of an all-source analyst been so meaningful. More connected devices, larger storage capacity...  ...working with transnational organized crime, threat finance, or counter drug effortsExperience with data analytics... 
    Full time
    Contract work
    Part time
    Work at office
    Local area
    Remote work

    Booz Allen Hamilton

    Washington DC
    3 days ago
  •  ...important services, such as data analytics and visualization, threat analysis, risk management, modeling and simulation, cost estimating...  ...Financial Analysis support. SDG is hiring now for a Schedule Analyst at the Washington Navy Yard.ResponsibilitiesThe Schedule... 
    Contract work
    Flexible hours

    MCR

    Washington DC
    3 days ago
  • Purpose and Impact: Amentum is seeking SOC / Incident Response Analyst to support our U.S. Department of Energy contract. Positions will...  ...(CI) services to deliver timely, actionable, and relevant threat intelligence on hostile nation-states, cyber adversaries, and criminals... 
    Contract work
    For contractors

    Amentum Services

    Washington DC
    3 days ago
  •  ...SPA has a need for a CWMD Training and Development Integration Analyst to design and integrate CWMD and biodefense education and training...  ..., modules, and course content that reflect current guidance, threats, and best practices. They coordinate with MAJCOMs, schools, and... 
    Flexible hours

    MCR

    Arlington, VA
    9 hours ago
  •  ...deliver, and sustain new technologiesAnalysis of vulnerabilities and threats to undersea platforms and systemsQuantitative analysis and...  ...and their missionsSPA has an immediate need for for a Program Analyst for upcoming support to the Program Executive Office (PEO) for... 
    Full time
    Contract work
    For contractors
    Casual work
    Work at office
    Immediate start
    Remote work
    Flexible hours

    Systems Planning and Analysis

    Alexandria, VA
    2 days ago
  •  ..., and make a difference. We’re currently seeking a skilled SOC Analyst with an active Secret or Top Secret clearance to support our on...  ...CO. What you'll do Monitors and analyzes for potential threat activity.Provides real-time alerting and monitoring by capturing... 
    Full time
    Local area
    Flexible hours

    Coalfire

    Arlington, VA
    1 day ago
  •  ...ProSidian Consulting at DescriptionProSidian Seeks a Enforcement Analyst (SCA Code: -) in CONUS - Mid Atlantic Washington Metropolitan...  ...safe, secure and effective nuclear deterrent and reducing the threat of nuclear proliferation, overseeing the US’ energy supply, carrying... 
    Full time
    Temporary work
    For contractors
    Work at office
    Flexible hours

    Prosidian Consultng

    Washington DC
    9 hours ago
  • $103.8k - $218.1k

     ...Continental US* * *The Opportunity:CACI is seeking a Spectrum Analyst to support Joint Interagency Task Force 401 (JIATF 401). The Spectrum...  ...to identify, characterize, and assess electromagnetic threats, optimize spectrum utilization, and provide decision support for... 
    Contract work
    Work experience placement
    Work at office
    Flexible hours

    CACI International

    Alexandria, VA
    1 day ago
  •  ...Future Force Assessments.SPA has a need for a CWMD Requirements Analyst to define, analyze, and articulate CWMD and CBRN survivability...  ...analyses comparing current and programmed capabilities against threats, mission needs, and survivability standards. They prepare analytic... 
    Flexible hours

    Systems Planning and Analysis

    Arlington, VA
    9 hours ago
  • $94.4k - $198.2k

     ...Type of Travel: Local* * *The Opportunity:As a CACI SOF Targeting Analyst you will provide deployed, embedded and reach back support...  ...developing processes that enhance SOF situational understanding of threat networks and enabling DoD, IA and IC efforts focused on... 
    Contract work
    Work experience placement
    Local area
    Flexible hours
    Night shift
    Rotating shift

    CACI International

    Arlington, VA
    2 days ago
  • $80k - $128k

    ResponsibilitiesPeraton is currently seeking to hire a Watch Analyst for its' Federal Strategic Cyber group.Location: Washington, DC (...  ...SCIF/Operations Center, which is the hub for staying on top of threats and emerging risks to our nation’s critical infrastructure. Through... 
    Contract work
    Currently hiring
    Work at office
    Local area
    Flexible hours
    Shift work

    Peraton Corporation

    Washington DC
    4 days ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to Insider Threat Analyst. Be the first to apply!