Today
Top Secret/SCI
Senior Level Career (10+ yrs experience)
$130,000 - $170,000
IT - Security
Springfield, VA (On-Site/Office)•Lorton, VA (On-Site/Office)
We’re looking for a Team Analyst to join our customer's Insider Threat team. In this role, you will proactively hunt for insider threats within the DHS enterprise network. You’ll analyze user behavior, detect unusual activity, and help prevent security incidents.
Key Responsibilities:
Threat Hunting & Analysis
• Actively search for insider threat activity across logs, network traffic, EDR tools, and DHS platforms.
• Use behavioral analysis and anomaly detection to identify suspicious patterns.
• Work with User and Entity Behavior Analytics (UEBA) tools to detect unusual user activity.
• Combine data from multiple sources (e.g., endpoint,
• identity, cloud activity) to produce threat insights.
• Experience with machine learning and AI-based analysis is a plus.
Detection Engineering
• Create and refine insider threat detection rules based on DHS risk and user behavior.
• Build custom detection alerts and rules using DHS tools.
• Adjust alerts to reduce false positives while keeping strong threat coverage.
Incident Response Support
• Work closely with forensic analysts, HR, and legal teams during insider threat investigations.
• Assist with triage and response efforts while ensuring evidence is handled properly and privacy is respected.
• Document your findings in reports and brief stakeholders on the risk and response.
Key Responsibilities:
Threat Hunting & Analysis
• Actively search for insider threat activity across logs, network traffic, EDR tools, and DHS platforms.
• Use behavioral analysis and anomaly detection to identify suspicious patterns.
• Work with User and Entity Behavior Analytics (UEBA) tools to detect unusual user activity.
• Combine data from multiple sources (e.g., endpoint,
• identity, cloud activity) to produce threat insights.
• Experience with machine learning and AI-based analysis is a plus.
Detection Engineering
• Create and refine insider threat detection rules based on DHS risk and user behavior.
• Build custom detection alerts and rules using DHS tools.
• Adjust alerts to reduce false positives while keeping strong threat coverage.
Incident Response Support
• Work closely with forensic analysts, HR, and legal teams during insider threat investigations.
• Assist with triage and response efforts while ensuring evidence is handled properly and privacy is respected.
• Document your findings in reports and brief stakeholders on the risk and response.
group id: 91093935