Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

Insider Threat Analyst

MartinFed

Job Description

Job Description

COMPANY OVERVIEW

Founded in 2007 in Huntsville, AL, MartinFed provides the U.S. government with customer-focused, performance-based solutions using technology and an empowered workforce as an engine to drive its customers' missions. Our goal is to attract the best and brightest within their field.

We invest in our people because they are our greatest asset. They cultivate our purpose, embody and reflect our core values, and define our culture. MartinFed's core values that set us apart are the following:

  • Be Driven - We are fueled by the hunger to learn more and do more.
  • Be Curious - We engage in continuous improvement - never accepting the status quo.
  • Be Humble - We seek honest feedback to strengthen our relationships.
  • Pursue Excellence - We strive to achieve extraordinary results and do not settle for mediocrity.

Strive for excellence and consider joining our growing team today!

JOB OVERVIEW

The Insider Threat Analyst supports the Insider Threat Program Detection and Prevention (ITPDP) by performing day-to-day monitoring, detection, analysis, and triage of potential insider threat activity across enterprise environments. This role analyzes alerts and user activity from multiple security platforms to distinguish legitimate insider threat incidents from false positives, documents findings, and escalates cases as appropriate. Working under the direction of the Senior Insider Threat Analyst, the analyst supports the operation and continuous improvement of the insider threat program while ensuring all activities comply with federal insider threat policies, employee privacy protections, and civil liberties requirements.

Essential Functions:Insider Threat Monitoring and Detection
  • Monitor logs, dashboards, and alerts across multiple enterprise security applications to identify potential insider threat activity.
  • Analyze user activity and system events to distinguish legitimate insider threat incidents from false positives.
  • Continuously monitor enterprise environments for indicators of malicious, negligent, or compromised insider behavior.
Incident Triage and Investigation
  • Perform initial triage and investigation of potential insider threat alerts.
  • Correlate information from multiple data sources to develop a complete understanding of potential insider threat activity.
  • Escalate confirmed or ambiguous incidents to the Senior Insider Threat Analyst in accordance with established procedures.
  • Maintain complete case documentation throughout the investigative lifecycle.
Detection Engineering Support
  • Assist with configuring, tuning, and troubleshooting detection rules, triggers, and analytics used by insider threat platforms.
  • Support the deployment, maintenance, and day-to-day operation of enterprise insider threat detection technologies.
  • Help improve detection fidelity by reducing false positives and refining alert logic.
Analysis and Reporting
  • Document investigative findings through clear analytical reports and case summaries.
  • Maintain accurate records in accordance with program reporting requirements.
  • Assist in developing workflows, playbooks, standard operating procedures, and other program documentation.
Collaboration and Program Support
  • Coordinate with Security Operations Center (SOC), investigative teams, Human Resources, Legal, and other stakeholders as directed.
  • Support continuous improvement initiatives for the Insider Threat Program.
  • Conduct all investigative activities in accordance with federal insider threat guidance while protecting employee privacy and civil liberties.
Qualifications:
  • U.S. Citizen with the ability to obtain and maintain a Tier 5 security clearance or higher.
  • Bachelor's degree in Cybersecurity, Information Technology, Criminal Justice, Intelligence Studies, or a related field (additional relevant experience may be substituted for education).
  • Approximately 6 years of combined experience in cybersecurity, security operations, investigations, digital forensics, insider threat, or related disciplines.
  • Hands-on experience with one or more enterprise Insider Threat, DLP, SIEM, UEBA, or User Activity Monitoring (UAM) platforms such as Splunk, DTEX, Microsoft Purview, Proofpoint/ObserveIT, Exabeam, or similar technologies.
  • Experience analyzing logs, alerts, dashboards, and user activity to differentiate true security incidents from false positives.
  • Working knowledge of Windows, Linux, and Unix operating systems.
  • Understanding of insider threat methodologies, user behavior analytics, event correlation, and investigative techniques.
  • Familiarity with digital forensics concepts, log analysis, and security investigations.
  • Knowledge of privacy, legal, and civil liberties considerations associated with federal Insider Threat Programs.
  • Excellent analytical, documentation, and written communication skills.
  • Ability to work effectively within an established insider threat program under the guidance of senior analysts.
  • Ability to obtain the Counter-Insider Threat Fundamentals Certification, if required.
Desired:
  • Experience supporting formal Federal Insider Threat Programs.
  • Experience with SIEM, UEBA, UAM, DLP, and behavioral analytics platforms.
  • Familiarity with Splunk Enterprise Security, Microsoft Purview, DTEX, Exabeam, Proofpoint/ObserveIT, or similar solutions.
  • Experience correlating events across multiple enterprise security tools.
  • Knowledge of security operations center (SOC) workflows and incident response processes.
  • Understanding of insider threat indicators, behavioral analytics, and risk scoring methodologies.
  • Experience developing or improving detection rules, workflows, and investigative playbooks.
  • Basic scripting experience (PowerShell, Python, or Bash) for automation or analysis.
  • Familiarity with NIST, CNSSD, or other federal insider threat guidance and best practices.
  • Strong collaboration skills when working with cybersecurity, investigative, legal, and human resources stakeholders.

PHYSICAL REQUIREMENTS & ENVIRONMENTAL CONDITIONS

  • Inside office environment.
  • Working on a computer for long periods of time.
  • May involve long period of sitting at a desk.
  • The work environment is fast-paced and sometimes involves extreme deadline pressures.

OTHER DUTIES

This job description is not designed to cover or contain a comprehensive listing of activities, duties or responsibilities that are required of the employee for this job. Duties, responsibilities, and activities may change at any time with or without notice.

MartinFed is an Equal Opportunity/Affirmative Action Employer. All qualified applicants will receive consideration for employment without regards to race, color, religion, religious creed, gender, sexual orientation, gender identity, gender expression, transgender, pregnancy, marital status, national origin, ancestry, citizenship status, age, disability, protected Veteran Status, genetics or any other characteristics protected by applicable federal, state or local law. We also consider qualified applicants regardless of criminal histories, consistent with legal requirements. In addition to federal law requirements, MartinFed complies with all applicable state and local laws governing nondiscrimination in all locations.

If you are a qualified individual with a disability or disabled veteran, you have the right to request a reasonable accommodation if you are unable or limited in your ability to use or access MartinFed's current openings as a result of your disability. You can request reasonable accommodations by calling View phone number on ziprecruiter.com. Thank you for your interest in MartinFed.

Please Note: All positions at MartinFed are contingent upon passing a background check prior to a start date and are subject to random drug screenings during the employment period. In addition, MartinFed is an E-Verify employer.

Job Posted by ApplicantPro
Vacancy posted 1 day ago
Similar jobs that could be interesting for youBased on the Insider Threat Analyst in Washington DC vacancy
  •  ...Location: Washington DC (Hybrid: 3 days onsite, 2 days remote) Job Summary Insider Threat Analyst Responsibilities Develop, implement, and manage insider threat programs (policies, procedures, tools) Monitor security alerts, triage security events, and analyze potential... 
    Suggested
    Remote work

    Largeton Group

    Washington DC
    2 days ago
  •  ...Core4ce Insider Threat Analyst 1273-383 Core4ce is seeking a talented Insider Threat Analyst to join our team in Alexandria, VA. The ideal candidate will support the government customer in identifying and addressing insider threats throughout PFPA and WHS. Responsibilities... 
    Suggested
    Full time
    Work at office
    Immediate start
    Flexible hours

    Core4ce

    Alexandria, VA
    1 day ago
  •  ...About the Role: We are seeking a highly skilled Insider Threat Analyst to support our security operations by identifying, analyzing, and mitigating risks from potential insider threats. The ideal candidate will have a strong background in security, intelligence, or investigations... 
    Suggested
    3 days per week

    NR Labs LLC

    Washington DC
    5 days ago
  •  ...Location: Washington, DC (Hybrid 3 Days Onsite / 2 Days Remote) Job Summary STAFFXPERT LLC is seeking an Insider Threat Analyst on behalf of our client in Washington, DC. This hybrid opportunity is ideal for a cybersecurity professional with experience in insider threat... 
    Suggested
    Remote work

    STAFFXPERT LLC

    Washington DC
    4 days ago
  •  ...a foundation of speed, flexibility, and ingenuity to strengthen and protect our nation’s vital interests. DESCRIPTION The Insider Threat Analyst supports the Insider Threat Program Detection and Prevention (ITPDP) effort, performing day‑to‑day detection, analysis, and... 
    Suggested

    Agile Defense

    Washington DC
    1 day ago
  • $5,200 per month

     ...Overview The Critical Threats Project (CTP) at the American Enterprise Institute (AEI) produces detailed, objective analysis and forecasts...  ...trains the next generation of policymakers and intelligence analysts. Its granular, open‑source publications assist government... 
    Full time
    Work experience placement
    Internship
    Immediate start
    Weekend work
    Afternoon shift
    1 day per week

    American Enterprise Institute

    Washington DC
    4 days ago
  • $53k - $60k

     ...A prominent research organization in Washington, D.C. is seeking a full-time analyst for their Critical Threats Project. This role involves conducting independent research on Iran’s security and foreign policy, mentoring interns, and contributing to policy scholarship... 
    Full time

    American Enterprise Institute

    Washington DC
    4 days ago
  •  ...application due to a disability, contact this employer to ask for an accommodation or an alternative application process. Mobile Threat & Forensics Analyst FullTime Cybersecurity Serv Washington, DC, US Location: Arlington, VA (Hybrid: Onsite & Remote) Clearance Required:... 
    Full time
    Remote work
    Monday to Friday

    Special-Aerospace-Security-Services-Inc

    Washington DC
    3 days ago
  • $53k - $60k

    American Enterprise Institute is seeking a full-time analyst for the Critical Threats Project (CTP) in Washington, D.C. The ideal candidate will conduct research and analysis focused on Iran's security and foreign policy, mentor interns, and work collaboratively within... 
    Full time

    American Enterprise Institute

    Washington DC
    3 days ago
  •  ...Job Description Job Description *There are multiple opportunities, contingent upon award* Insider Threat Analyst PKH Enterprises is seeking qualified individuals to support both government and private-sector clients in the development and implementation of insider... 

    PKH Enterprises

    Washington DC
    19 days ago
  •  ...Job Description Job Description cFocus Software seeks a Insider Threat Analyst to join our program supporting the Administrative Office of the United States Courts (AOUSC). This position is Hybrid with the onsite location being in Washington, DC. This position requires... 
    Work at office

    cFocus Software Incorporated

    Washington DC
    12 days ago
  •  ...Risk Management Program (IRMP) by designing, implementing, and maintaining comprehensive insider threat detection and mitigation capabilities. The Insider Threat Program Analyst will develop and operationalize policies, systems, and practices to detect, deter, and respond... 
    Contract work
    For contractors

    Arlo Solutions LLC

    Silver Spring, MD
    more than 2 months ago
  • $83.85k - $107.95k

    Dentons US LLP is currently recruiting for a Threat Analyst. The Information Security Threat Analyst is responsible for proactively hunting for threats within client environments, developing and tuning SIEM use cases, and conducting in-depth investigations of security... 
    Full time
    Temporary work
    Local area

    Dentons

    Washington DC
    4 days ago
  • $40 per hour

    A cybersecurity technology firm is seeking experienced cybersecurity professionals to join their remote team. In this role, you will evaluate AI-generated security content and solve technical problems to improve AI systems. Candidates should have 2+ years of hands-on experience...
    Hourly pay
    Remote work

    DataAnnotation

    Washington DC
    4 days ago
  •  ...Job Description Job Description cFocus Software seeks a Threat Hunt Analyst to join our program supporting the Administrative Office of the United States Courts (AOUSC). This position is Hybrid with the onsite location being in Washington, DC. This position requires... 
    Work at office

    cFocus Software Incorporated

    Washington DC
    12 days ago
  • $100k - $120k

     ...meaningful results. This is a contingent position based upon customer approval. SkyePoint Decisions is seeking a Mobile Threat Analyst to support the Diplomatic Security Cyber Mission (DSCM) program providing leading cyber and technology security experience to enable... 
    Contract work
    Remote work
    Worldwide
    Overseas

    SkyePoint Decisions

    Arlington, VA
    27 days ago
  •  ...Job Description Job Description Insider Threat Program Hunt Team Analyst (w/ active TS/SCI) Location: Springfield, VA Clearance: Top-Secret/SCI Type: Full-time, Onsite JOB DESCRIPTION Critical Solutions is seeking an Insider Threat Program Hunt Team... 
    Full time
    Flexible hours

    Critical Solutions

    Springfield, VA
    18 days ago
  •  ...Job Description Job Description SIEM / Threat Monitoring Analyst ~3+ years SIEM administration and threat monitoring experience (Splunk preferred) ~ Experience with OSINT monitoring, digital forensics, and incident correlation ~ Familiarity with incident response... 
    Contract work

    Blue Rose Consulting Group, Inc.

    Washington DC
    9 days ago
  • $125k - $150k

     ...and delivered by operating with a product mindset, prioritizing speed, ownership, and execution over bureaucracy. Senior Threat Hunter Analyst Location: Washington, DC, Ft. Collins, CO, or Kansas City, MO (remote optional, local preferred) Terms: Full-time Salary... 
    Full time
    Work experience placement
    Local area
    Remote work
    Flexible hours
    Shift work

    Revolutional, LLC

    Washington DC
    14 days ago
  • $60k - $150k

     ...and strategic recommendations empower organizations to mitigate threats, safeguard brand integrity, and strengthen public trust. Using...  ...that align with client needs. Role Overview We are seeking an Analyst to advance our analytic capabilities and thought leadership in... 
    Work at office
    Flexible hours
    3 days per week

    Alethea LLC

    Washington DC
    5 days ago
  •  ...Staff and interagency stakeholders to support executive agency management and ensure defense systems remain effective against evolving threats. Responsibilities Serve as a Synchronization Officer (SSO) within the Chemical and Biological Defense Program (CBDP) Branch,... 
    Work at office
    Remote work
    Flexible hours

    Battelle Uk Limited

    Washington DC
    1 day ago
  • $62k - $141k

     ...Job Number: R0240752 CBRN Analyst The Opportunity: As someone with strong analytical skills, you ask questions others don't. You're eager...  ...safer. Your expertise will help identify and address potential threats, analyze readiness gaps, and deliver actionable insights to... 
    Local area

    Phase2 Technology

    Arlington, VA
    3 days ago
  • *This is a contingent opportunity K2 Group is seeking a CBRN Analyst to provide support to the Headquarters Air Force. This role providesspecializedtechnical...  ...within complex CBRN environments to anticipate adversarial threats. Translate raw CBRN threat data and complex modeling outputs... 
    Temporary work
    Local area

    K2 Group

    Arlington, VA
    2 days ago
  • $34 per hour

     ...Global Security Operations Center (GSOC) Analyst, assigned to one of Pinkerton’s clients,...  ...perform essential security monitoring and threat mitigation functions for the client, which...  ...Support other client programs including insider threat, business continuity, health and safety... 
    Temporary work
    Work at office
    Local area
    Worldwide
    Flexible hours

    PINKERTON | Comprehensive Risk Management

    Washington DC
    1 day ago
  • $86k - $101k

     ...Jr. Electromagnetic Fields Analyst Location: Bethesda, MD Full Time Min. Experience: Entry Level Salary Range: $86,000-$101,000 USD per...  ...laboratory and field sites. Documents results and determines threat assessments. The applicant will participate and contribute to the... 
    Permanent employment
    Full time
    Temporary work
    Work at office

    Advanced Technology & Research

    Bethesda, MD
    3 days ago
  • $98k - $163k

     ...Do : Guidehouse is seeking an Open-Source Intelligence (OSINT) analyst to support a complex project providing technical and advisory services...  ...deliverables, often concerning various National Security threat actors, to include internal and client deliverables and... 
    Temporary work
    Flexible hours

    Guidehouse

    Washington DC
    1 day ago
  • $93.66k - $106.26k

     ...Counterintelligence (CI) Analyst This position provides day‑to‑day multi-discipline analysis covering collateral, SCI, and SAP activities...  ...and instructions to ensure compliance; prepare future threat analysis assessments. Provide prompt and responsive customer support... 
    Contract work
    Work experience placement
    Local area

    Watermark Risk Management International, LLC

    Washington DC
    5 days ago
  • $60k - $130k

     ...our people come first! Antiterrorism/Force Protection (AT/FP) Analyst In this role you will be a part of the U.S. Coast Guard...  ...the primary subject matter expert for AT/FP program development, threat integration, vulnerability assessment, exercise planning and execution... 
    Hourly pay
    Contract work
    Work experience placement
    Local area
    Worldwide

    Watermark Risk Management International, LLC

    Washington DC
    4 days ago
  • $84k

     ...Executive Summary HRUCKUS seeks a Counterintelligence (CI) Analyst for a role supporting the Department of the Air Force at Joint Base...  ...regulations and instructions to ensure compliance; prepare future threat analysis assessments. Provide prompt and responsive customer... 
    Full time

    HRUCKUS LLC

    Washington DC
    2 days ago
  • $110k - $125k

     ...Amentum is seeking a Counterintelligence (CI) Analyst to support the DIA Office of Counterintelligence in Washington, D.C. to conduct...  ...(including the U.S.). Researches, authors, and coordinates threat assessments to support the Commander and other senior leadership... 
    Hourly pay
    Contract work
    Work at office
    Local area

    Amentum

    Washington DC
    1 day ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to Insider Threat Analyst. Be the first to apply!