> Markdown version of [/jobs/ext/3029894-insider-threat-support-analyst](https://www.wearedevelopers.com/jobs/ext/3029894-insider-threat-support-analyst). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Insider Threat Support Analyst - **Company:** Zachary Piper - **Location:** Camp Springs, MD, United States - **Experience:** Experienced - **Salary:** $130,000.0 - **Contract:** Permanent contract - **Skills:** Active Directory, CompTIA Security+, Cyber Security, Information Leak Prevention, Digital Forensics, Monitoring of Systems, Identity and Access Management, Intrusion Detection and Prevention, Python (Programming Language), Log Analysis, Azure Active Directory, Security Information and Event Management, Mitre Att&ck, Cyber Threat Analysis, Cybercrime, Cyber Warfare, Splunk, Security Orchestration, Automation & Response - **Published:** September 22, 2026 - **Apply:** https://www.clearancejobs.com/jobs/9182447/insider-threat-support-analyst ## About the Role * Active Top Secret Clearance with SCI eligibility. * Active Security+, CISSP, or equivalent cybersecurity certification. * Bachelor's degree in a related field or 2+ years of insider threat or user activity monitoring experience. * 2+ years of hands-on Splunk experience, including dashboards and search development. * Experience with DLP, EDR/NDR, IAM, and user activity monitoring tools such as Teramind. * Strong analytical, investigative, documentation, and communication skills., Security, Privileged Access Management, PAM, Teramind, Employee Monitoring, Behavioral Monitoring, Security Telemetry, Threat Intelligence, Cyber Threat Intelligence, Digital Forensics, Case Management, MITRE ATT&CK, Python, Security Automation, SOAR, Active Directory, Microsoft Entra ID, Security+, CISSP, Top Secret Clearance, TS Clearance, TS/SCI, SCI Eligible, Cleared Cybersecurity Professional, Federal Cybersecurity, DHS, USCIS, Homeland Security, Washington DC, Fort Meade MD ## Description Zachary Piper Solutions is seeking an Insider Threat Support Analyst to support a federal agency supporting immigration and homeland security operations. This position is onsite in Camp Springs, MD (Washington, DC metro area) supporting a cybersecurity program focused on insider threat detection and risk mitigation. The Insider Threat Support Analyst will support a small insider risk team responsible for identifying suspicious user activity, investigating potential insider threats, and protecting sensitive systems and data. Responsibilities for the Insider Threat Support Analyst include: * Monitor and triage insider threat alerts across Splunk, DLP, EDR, IAM, and user activity monitoring tools. * Investigate suspicious user behavior, potential data exfiltration, and policy violations. * Apply risk-scoring methodologies to assess and prioritize insider threat events. * Document investigative findings, evidence, and recommended actions. * Develop and maintain Splunk dashboards, searches, and reporting capabilities. * Collaborate with cybersecurity, incident response, and intelligence teams on investigations. * Support insider threat trend analysis, reporting, and monitoring improvements., Insider Threat Analyst, Insider Risk Analyst, Insider Threat Investigator, Insider Threat Specialist, Cybersecurity Analyst, Cyber Threat Intelligence Analyst, Threat Intelligence Analyst, Cyber Intelligence Analyst, SOC Analyst, Security Operations Analyst, Threat Hunter, Threat Hunting Analyst, Security Analyst, Information Security Analyst, Cyber Defense Analyst, Behavioral Analytics Analyst, User Activity Monitoring Analyst, UAM Analyst, User Behavior Analytics, UEBA, Insider Threat Program, Insider Risk Management, Security Monitoring, Threat Detection, Threat Investigation, Risk Assessment, Risk Scoring, Security Investigations, Data Exfiltration, Data Loss Prevention, DLP, Splunk, Splunk Enterprise Security, Splunk ES, SIEM, Search Processing Language, SPL, Log Analysis, Security Analytics, Security Event Monitoring, Detection Engineering, Incident Response, EDR, Endpoint Detection and Response, NDR, Network Detection and Response, Identity and Access Management, IAM, Identity