> Markdown version of [/jobs/ext/132472-navy-insider-threat-hub-analyst](https://www.wearedevelopers.com/jobs/ext/132472-navy-insider-threat-hub-analyst). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Navy Insider Threat Hub Analyst - **Company:** Mobius LLC - **Location:** Arlington, VA, United States - **Contract:** Permanent contract - **Skills:** Information Systems, Information Systems Security Architecture Professional, Network Monitoring, Cyber Threat Analysis, Information Technology - **Published:** May 19, 2026 - **Apply:** https://www.indeed.com/viewjob?jk=369f2e6924069934 ## About the Role Do you have experience in Threat intelligence?, * Must have a minimum of 1-years' experience working in/with a Counter-Insider Threat Program. * Possess a Certified Certificate Insider Threat Professional - Fundamentals/Analyst (CCITP-F/A) certification (Must be obtained within the first 6 months after start.) Security + certification. Education * Certified Information Systems Security Professional (CISSP) certification. Clearance * Active Top Secret/SCI ## Description Come join our team! Mobius is seeking an Insider Threat HUB Analyst. In this role you will study, analyze, advise, research and develop deliverables to advance the detection, deterrence and mitigation of insider threat activity in the Department of the Navy (DoN), while safeguarding National Security, service information and data on both Navy and civilian contractor's information systems through the application of knowledge and resources in achieving the Navy's mission requirements defined herein. The OPNAV Insider Threat Hub possesses an integrated capability to monitor, audit, fuse, and analyze incoming information for insider threat detection and mitigation. Hub personnel analyze information and activity indicative of an insider risk and refer that data to the appropriate officials for investigation and/or resolution. Duties of an Insider Threat HUB Analyst may include: * Insider Threat HUB Analyst * Assist in the development, implementation, and management of Insider Threat/cybersecurity collection, detection, deterrence, analysis, and mitigation. * Conduct information technology audits, incident responses, and/or network monitoring at the Enterprise level, to include the use of security tools to conduct such work. * Assist in generating analysis reports and briefing other team members and/or senior management on analytical findings as well as support the development of Tactics, Techniques, and Procedures (TTPs) * Receive automated user activity monitoring/audit data and alerts from sensors deployed on Navy's classified and unclassified SCI networks from the UAM Team and include those findings "if any" in their analytical report and/or Insider Threat Risk Assessment (ITRA). * Provide the Government, tracking metrics captured on a daily, weekly, and monthly basis: Cases worked, closed, and current open cases that should reflect the analyst duties and workload. Metrics also include Insider Threat Risk Assessments written, submissions into the Navy's case management system, and the DoD Insider Threat Management Analysis Center System of Systems (DITMAC DSOS). * Perform analysis and provide assessments to the Government and assist the Government in resolving identified discrepancies in an attempt to detect, deter, and mitigate a potential Insider Threats. * Assist with the facilitation of testing new/existing software for the purpose of case management, data set review, and/or the development of Hub related policies. * Evaluate existing Hub related policies, modify policies where needed to achieve program objectives, and/or develop new policies as necessary. ## Related Videos - [Cyber Sleuth: Finding Hidden Connections in Cyber Data](https://www.wearedevelopers.com/videos/893-cyber-sleuth-finding-hidden-connections-in-cyber-data) - [YOLO Developer Workflows with a Coding Agent in a Box](https://www.wearedevelopers.com/videos/100350-yolo-developer-workflows-with-a-coding-agent-in-a-box) - [Microservices? Monoliths? An Annoying Discussion!](https://www.wearedevelopers.com/videos/970-microservices-monoliths-an-annoying-discussion) - [Forecasting Cyber Attacks with Glassdoor Reviews - Lianne Potter](https://www.wearedevelopers.com/videos/2143-forecasting-cyber-attacks-with-glassdoor-reviews-lianne-potter) - [Giving AI eyes: How to build a dashboard you can't see](https://www.wearedevelopers.com/videos/100193-giving-ai-eyes-how-to-build-a-dashboard-you-can-t-see) - [Physical AI for the Next Wave of Industrial Digitalisation](https://www.wearedevelopers.com/videos/100039-physical-ai-for-the-next-wave-of-industrial-digitalisation) ## Related Articles - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [Dev Digest 210: AI Agents Are Go! Is MCP Dead? LLMs Crack Anonymity](https://www.wearedevelopers.com/magazine/709-dev-digest-210-ai-agents-are-go-is-mcp-dead-llms-crack-anonymity) - [Dev Digest 164: AI Agents, AI Blindspots and MCP security problems](https://www.wearedevelopers.com/magazine/578-dev-digest-164-ai-agents-ai-blindspots-and-mcp-security-problems) - [Dev Digest 191: Malware interviews, EU ❤️ Open Source and Skilled Agents](https://www.wearedevelopers.com/magazine/645-dev-digest-191-malware-interviews-eu-open-source-and-skilled-agents) - [The Overflow: Security and Privacy](https://www.wearedevelopers.com/magazine/715-the-overflow-security-and-privacy)