Insider Threat Cyber Analyst (Mid/Senior)

DECK PRISM LLC
Chantilly, VA, United States
6 days ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Experienced
Experience required
10 years minimum
Working hours
Regular working hours

Tech stack

Cyber Security Information Systems Computer Forensics Intelligence Analysis Log Analysis Information Technology Cybercrime Splunk

Job description

Duties: Serve as a Senior Cyber Technical Analyst; specific duties and functions include, but are not limited to, the following:

Possess the ability to leverage technical knowledge and methods to identify and monitor cyber activities to respond to urgent CI mission requirements.

Provide integrated cyber-technical analytic expertise in support of Counterintelligence missions.

Support CI programs in development of policies and procedures, as well as program development and oversight, related to the CI-cyber mission

Conduct complex cyber analytical activities, evaluation of information/technical/physical security systems and practices, CI-cyber investigations, and related duties.

Identify, investigate and analyze complex events of cyber significance.

Assist in the development and application of advanced tools for applying cyber security and analysis practices to the CI-cyber mission. Perform all-source intelligence analysis to determine and report on characteristics of various systems/issues and other project/program objectives.

Collect data, analyze results, and prepare reports relating to project/program objectives.

Establish liaison contacts with program offices and USIC and law enforcement agencies to ensure effective and efficient collaboration of complex cyber-related CI issues.

Provide time-sensitive mission support to identify, understand, pursue and mitigate advanced persistent cyber threats and anomalous cyber behaviors on stakeholder networks.

Maintain competencies on technology, tools, and cyber technical tradecraft to achieve CI-cyber mission objectives.

Requirements

Primary focus of this role is log analysis and identification of anomalous activity. Does not entail direct monitoring and interpretation of user behavior. Experience with SPLUNK is highly relevant. All source analysis, writing comprehensive reports, and delivering briefings is required.

Individual must have a minimum ten (10) years’ experience in technical cyber analysis. Advanced experience in understanding and detection of foreign intelligence activity or malicious insider activity in the cyber domain and demonstrated ability to correlate CNO tactics, techniques, and procedures to known or suspected cyber threat actors. Experience in complex cyber investigations and use of the latest and most advanced cyber forensics-analysis tools, multi-source intelligence analysis, knowledgeable of USIC activities is required. Must be capable of conducting independent research, as well as work with team members and partner agencies. Must have experience dealing with complex cyber-based investigations and national security matters. Must possess excellent verbal and written communications skills and have experience in conducting cyber interviews and defensive briefings and debriefings.

(U) Education: A Bachelor’s degree from an accredited college or university is required, preferably in Computer Science, Information Systems, or a related field. An advanced degree is preferred. This requirement may be waived if the individual has demonstrated experience in the information technology and/or cyber security fields.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.clearancejobs.com

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

1:45 min

Transitioning from software development to security roles

Stefania Chaplin Ā· WWC 2022

4:34 min

Motivational categories behind modern cybercriminal activities

Mauro Verderosa Ā· LIVE

2:38 min

Establishing comprehensive monitoring and log management

Michael Eder +1 Ā· LIVE

11:18 min

Addressing audience questions on security and microservice architectures

Reinhard Kugler Ā· LIVE

14:14 min

Addressing audience inquiries on analytical implementation and career growth

Julian Joseph Ā· LIVE

2:11 min

Securing heterogeneous legacy payment infrastructure against AI

Michele Zuccala Michele Zuccala +4 Ā· WWC Europe 2026

Videos

See all

Related articles

See all