Source description
About the role
This role conducts ongoing cyber insider threat monitoring to identify threats associated with authorized users conducting unauthorized activities such as data exfiltration, unauthorized access, and/or other negligent or malicious behaviors. One must be a SME in User Activity Monitoring (UAM) and/or User Behavior Analytics (UBA).
Engages advanced operations, legal, HR, or law enforcement teams to coordinate and report on investigations.
Engages with cyber program elements including Cyber Threat Intelligence, Cyber Hunt Forensics, Malware Reverse Engineering, Threat Emulation, and Security Operations to coordinate and consult on insider threat investigations.
Create incident reports detailing cyber methods of identification, analysis, and conclusion.
More at Agile Defense
Related open roles
Insider Threat Analyst
Washington DC · Onsite
Battle Officer I - GCC
United States · Onsite
Cybersecurity Systems Analyst
United States · Onsite
Senior Penetration Tester
Remote · United States
Senior Security Architect
Remote · United States
Cyber Threat Intelligence Analyst
United States · Hybrid
