> Markdown version of [/jobs/ext/2010884-insider-threat-technical-lead](https://www.wearedevelopers.com/jobs/ext/2010884-insider-threat-technical-lead). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Insider Threat Technical Lead - **Company:** The Uspto - **Location:** Virginia Beach, VA, United States (Remote available) - **Experience:** Expert - **Contract:** Permanent contract - **Skills:** Cyber Security, Network Security, Microsoft Security Essentials, SC Clearance, Information Technology, Microsoft Sentinel - **Published:** August 10, 2026 - **Apply:** https://careersingovernment.com/job/2430080/insider-threat-technical-lead-34/ ## About the Role Detection Analyst or GIAC Certified Intrusion AnalystActive SECRET clearance, or the ability to obtain one Serving as the technical lead for an established Insider Risk program, the full-time Insider Threat Technical Lead will guide insider-risk analysts, advise stakeholders, and build and tune Microsoft security tooling while working remotely.Key responsibilitiesAct as the insider-risk technical lead and trusted advisor to USPTO stakeholders, delivering status reports and addressing emerging requirementsOwn the technical direction of the insider-risk toolset in Microsoft Purview, including policy management and alert analysisDesign and maintain custom dashboards in Microsoft Sentinel and investigate insider-risk alerts alongside analystsRequired qualificationsBachelor's degree in Information Technology, Computer Science, Cybersecurity, or a related fieldSeven years of specialized experience in areas such as Cybersecurity, Network Security, or Insider Threat DetectionPrimary certification such as CISSP or GIAC Security Expert (GSE)Secondary certification in one or more areas like GIAC Certified Detection Analyst or GIAC Certified Intrusion AnalystActive SECRET clearance or the ability to obtain one ## Description Serving as the technical lead for an established Insider Risk program, the full-time Insider Threat Technical Lead will guide insider-risk analysts, advise stakeholders, and build and tune Microsoft security tooling while working remotely.Key responsibilitiesAct as the insider-risk technical lead and trusted advisor to USPTO stakeholders, delivering status reports and addressing emerging requirementsOwn the technical direction of the insider-risk toolset in Microsoft Purview, including policy management and alert analysisDesign and maintain custom dashboards in Microsoft Sentinel and investigate insider-risk alerts alongside, analystsRequired qualificationsBachelor's degree in Information Technology, Computer Science, Cybersecurity, or a related fieldSeven years of specialized experience in areas such as Cybersecurity, Network Security, or Insider Threat DetectionPrimary certification such as CISSP or GIAC Security Expert (GSE)Secondary certification in one or more areas like GIAC Certified ## Related Videos - [Checkmate: 5 Real Incidents That Can End a Software Company](https://www.wearedevelopers.com/videos/100126-checkmate-5-real-incidents-that-can-end-a-software-company) - [Small, Secure, Interconnected: The next Internet Protocol](https://www.wearedevelopers.com/videos/100062-small-secure-interconnected-the-next-internet-protocol) - [Thinking Differently - How to Make Money from Cyber Attacks & Cheats](https://www.wearedevelopers.com/videos/745-thinking-differently-how-to-make-money-from-cyber-attacks-cheats) - [Cyber Sleuth: Finding Hidden Connections in Cyber Data](https://www.wearedevelopers.com/videos/893-cyber-sleuth-finding-hidden-connections-in-cyber-data) - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [Blockchains: One Size doesn't Fit All](https://www.wearedevelopers.com/videos/409-blockchains-one-size-doesn-t-fit-all) ## Related Articles - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [Dev Digest 191: Malware interviews, EU ❤️ Open Source and Skilled Agents](https://www.wearedevelopers.com/magazine/645-dev-digest-191-malware-interviews-eu-open-source-and-skilled-agents) - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Dev Digest 176: Expensive Agents, Taking Over VSCode and Safer Vibe Coding](https://www.wearedevelopers.com/magazine/603-dev-digest-176-expensive-agents-taking-over-vscode-and-safer-vibe-coding) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [Dev Digest 182: GPT5 Prompts, MCP Vulnerabilities, Code Traps](https://www.wearedevelopers.com/magazine/622-dev-digest-182-gpt5-prompts-mcp-vulnerabilities-code-traps)