> Markdown version of [/jobs/ext/2016941-insider-threat-technical-lead](https://www.wearedevelopers.com/jobs/ext/2016941-insider-threat-technical-lead). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Insider Threat Technical Lead - **Company:** The Uspto - **Location:** Decatur, IL, United States (Remote available) - **Experience:** Expert - **Contract:** Permanent contract - **Skills:** Cyber Security, Network Security, Microsoft Security Essentials, SC Clearance, Information Technology, Microsoft Sentinel - **Published:** August 10, 2026 - **Apply:** https://careersingovernment.com/job/2427967/insider-threat-technical-lead-38/ ## About the Role Detection Analyst or GIAC Certified Intrusion AnalystActive SECRET clearance, or the ability to obtain one Serving as the technical lead for an established Insider Risk program, the full-time Insider Threat Technical Lead will guide insider-risk analysts, advise stakeholders, and build and tune Microsoft security tooling while working remotely.Key responsibilitiesAct as the insider-risk technical lead and trusted advisor to USPTO stakeholders, delivering status reports and addressing emerging requirementsOwn the technical direction of the insider-risk toolset in Microsoft Purview, including policy management and alert analysisDesign and maintain custom dashboards in Microsoft Sentinel and investigate insider-risk alerts alongside analystsRequired qualificationsBachelor's degree in Information Technology, Computer Science, Cybersecurity, or a related fieldSeven years of specialized experience in areas such as Cybersecurity, Network Security, or Insider Threat DetectionPrimary certification such as CISSP or GIAC Security Expert (GSE)Secondary certification in one or more areas like GIAC Certified Detection Analyst or GIAC Certified Intrusion AnalystActive SECRET clearance or the ability to obtain one ## Description Serving as the technical lead for an established Insider Risk program, the full-time Insider Threat Technical Lead will guide insider-risk analysts, advise stakeholders, and build and tune Microsoft security tooling while working remotely.Key responsibilitiesAct as the insider-risk technical lead and trusted advisor to USPTO stakeholders, delivering status reports and addressing emerging requirementsOwn the technical direction of the insider-risk toolset in Microsoft Purview, including policy management and alert analysisDesign and maintain custom dashboards in Microsoft Sentinel and investigate insider-risk alerts alongside, analystsRequired qualificationsBachelor's degree in Information Technology, Computer Science, Cybersecurity, or a related fieldSeven years of specialized experience in areas such as Cybersecurity, Network Security, or Insider Threat DetectionPrimary certification such as CISSP or GIAC Security Expert (GSE)Secondary certification in one or more areas like GIAC Certified ## Related Videos - [Checkmate: 5 Real Incidents That Can End a Software Company](https://www.wearedevelopers.com/videos/100126-checkmate-5-real-incidents-that-can-end-a-software-company) - [Thinking Differently - How to Make Money from Cyber Attacks & Cheats](https://www.wearedevelopers.com/videos/745-thinking-differently-how-to-make-money-from-cyber-attacks-cheats) - [Small, Secure, Interconnected: The next Internet Protocol](https://www.wearedevelopers.com/videos/100062-small-secure-interconnected-the-next-internet-protocol) - [Cyber Sleuth: Finding Hidden Connections in Cyber Data](https://www.wearedevelopers.com/videos/893-cyber-sleuth-finding-hidden-connections-in-cyber-data) - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [Cyber Security: Small, and Large!](https://www.wearedevelopers.com/videos/259-cyber-security-small-and-large) ## Related Articles - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [Dev Digest 191: Malware interviews, EU ❤️ Open Source and Skilled Agents](https://www.wearedevelopers.com/magazine/645-dev-digest-191-malware-interviews-eu-open-source-and-skilled-agents) - [Dev Digest 182: GPT5 Prompts, MCP Vulnerabilities, Code Traps](https://www.wearedevelopers.com/magazine/622-dev-digest-182-gpt5-prompts-mcp-vulnerabilities-code-traps) - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Dev Digest 176: Expensive Agents, Taking Over VSCode and Safer Vibe Coding](https://www.wearedevelopers.com/magazine/603-dev-digest-176-expensive-agents-taking-over-vscode-and-safer-vibe-coding) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed)