> Markdown version of [/jobs/ext/2548656-cyber-insider-threat-analyst-3](https://www.wearedevelopers.com/jobs/ext/2548656-cyber-insider-threat-analyst-3). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Cyber Insider Threat Analyst 3 - **Company:** Los Alamos National Laboratory - **Location:** Los Alamos, NM, United States - **Salary:** $117,200.0 - $195,400.0 - **Contract:** Temporary contract - **Skills:** Data Analysis, Systems Engineering, Cyber Security, Computer Networks, Linux, Digital Forensics, Distributed Systems, Network Architecture, Packet Analyzer, Network Protocols, Server Administration, Systems Architecture, Unstructured Data, Web Applications, Computer Network Technologies, Cyber Threat Analysis, Information Technology, Cybercrime, Oracle Cloud Infrastructure - **Published:** August 10, 2026 - **Apply:** https://www.indeed.com/viewjob?jk=09b27c15c5e019b4 ## About the Role Cyber CI or Cyber Insider Threat Experience The successful candidate will possess extensive cyber insider threat experience and familiarity with relevant insider threat community policy (e.g., EO 13587, DOE O 470.5A) and an understanding of cyber insider threat indicators, organizations, and roles. Advanced Persistent Threat Advanced technical knowledge of classic and contemporary cyber threats and vulnerabilities with demonstrated ability to apply that knowledge to system engineering, analytics, or operations. Forensics Demonstrated experience with network system forensics, packet capture analysis and enterprise level incident response and host forensics. Information Technology For this role you will need to have advanced knowledge of Windows and Linux workstation/server management. Advanced knowledge of and demonstrated experience with all aspects of current network technology including network protocols, network infrastructure elements, and network applications, services and related protocols. Demonstrated advanced knowledge of distributed systems, including system architectures, computer networks, and software. Briefings/Presentations A competitive candidate will possess demonstrated experience presenting intelligence/insider threat briefings to decision makers at all levels. Interpersonal Skills One must be able to foster teamwork and interact professionally across LANL, with DOE IN and other DOE Counterintelligence and Insider Threat Field Offices, and with liaison partners. One must also be able and willing to represent OCI on various working groups and have strong literary skills and clarity of speech. Education/Experience: Position typically requires a bachelor's degree and a minimum of eight years of related experience, or an equivalent combination of education and experience. At this level, postgraduate course work may be desirable. Desired Qualifications: DOE Insider Threat Familiarity with the DOE Insider Threat Program and possession of insider threat professional certifications are a plus. Upon joining OCI, a successful candidate not already certified as an insider threat professional must acquire certification as soon as feasible. DOE Counterintelligence Familiarity with the DOE Counterintelligence/Counterterrorism Program and knowledge of foreign intelligence service methods and of non-traditional foreign intelligence collection are also preferred. US Intelligence Community Experience Extensive US intelligence community experience and familiarity with seminal intelligence community policy (e.g., EO 12333, PDD 61) and an understanding of US intelligence and counterintelligence organizations and roles is also preferred. Classification Derivative classifier certification is a bonus. Upon joining OCI, a candidate not previously certified as a derivative classifier must acquire certification as soon as feasible. Language Proficiency in a critical foreign language is advantageous. Clearance Possession of an active Q clearance and SCI accesses and/or the ability to obtain those clearances expeditiously upon hire are preferred. Work Location: The work location for this position is onsite and located in Los Alamos, NM. All work locations are at the discretion of management., * Eligibility requirements: To obtain a clearance, an individual must be at least 18 years of age; U.S. citizenship is required except in very limited circumstances. See DOE Order 472.2 for additional information. ## Description Are you an insider threat professional? Are you interested in joining a dedicated team of counterintelligence and insider threat professionals helping to safeguard Los Alamos National Laboratory (LANL)? If you answered "Yes" to these questions, we invite you to learn more about our opening for a Cyber Insider Threat Analyst 3. The seasoned Cyber Insider Threat (CIT) Analyst assists in conducting counterintelligence and CIT analysis to assess threats to LANL and national security posed by covert or overt activities of LANL personnel or foreign entities, domestic violent extremists, and international terrorists. The CIT Analyst also provides a range of analytical products and support, including contributing unique insight to multiple members of the US Intelligence Community (USIC) and other government agencies. Local analytical efforts support national counterintelligence and insider threat goals and objectives as directed by the LANL Foreign Immigration, Visits and Analysis (FVA) Group Leader and Office of Counterintelligence (OCI) Director. In this position, the incumbent will evaluate technical cyber intelligence and complex structured and unstructured data to identify foreign and domestic cyber threats targeting DOE personnel, technologies, and networks; provide cyber expertise on CI and CIT investigations and operations with a particular emphasis on digital forensics; and draft/finalize reports of findings of CIT concern. The individual will review classified and unclassified reporting, correlate with local and Cyber Intelligence/Insider Threat Center data and identify indicators of foreign or domestic targeting or activity. They will also support the development and application of cyber tools and best practices to strengthen the counterintelligence and insider threat mission. Analyze classified and unclassified information technology systems to identify vulnerabilities and intrusion indicators of CI and IT concern; Collaborate and share information with Los Alamos National Laboratory cyber security teams, inter-agency partners, OCI components, the LANL Field Intelligence Element (FIE), and with other LANL personnel as appropriate will be expected in this role; Collect, triage, and conduct forensic examinations of digital media in accordance with forensic best practices. ## Related Videos - [Cyber Sleuth: Finding Hidden Connections in Cyber Data](https://www.wearedevelopers.com/videos/893-cyber-sleuth-finding-hidden-connections-in-cyber-data) - [Fighting the Next Wave of Cybercrime](https://www.wearedevelopers.com/videos/100331-fighting-the-next-wave-of-cybercrime) - [Data Science in Retail](https://www.wearedevelopers.com/videos/586-data-science-in-retail) - [Docker network without Docker](https://www.wearedevelopers.com/videos/1418-docker-network-without-docker) - [Forecasting Cyber Attacks with Glassdoor Reviews - Lianne Potter](https://www.wearedevelopers.com/videos/2143-forecasting-cyber-attacks-with-glassdoor-reviews-lianne-potter) - [Data Science on Software Data](https://www.wearedevelopers.com/videos/162-data-science-on-software-data) ## Related Articles - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [How We Built a Worry-Free System That Runs for 10+ Years – And What We’d Do Again](https://www.wearedevelopers.com/magazine/751-how-we-built-a-worry-free-system-that-runs-for-10-years-and-what-we-d-do-again) - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Dev Digest 166: Sycophancy, Zip bombs and AI Native Development](https://www.wearedevelopers.com/magazine/585-dev-digest-166-sycophancy-zip-bombs-and-ai-native-development) - [Top 6 Hackathons for Developers in 2023](https://www.wearedevelopers.com/magazine/263-top-6-hackathons-for-developers-in-2023) - [Best Paying Jobs in Technology](https://www.wearedevelopers.com/magazine/256-best-paying-jobs-in-technology)