Insider Threat Program UAM Hunt Team Analyst

Leidos
Any Location, VA
Category Engineering
Job Description
The Digital Modernization Sector at Leidos has an opening for a Hunt Analyst supporting the HEITS Contract as part of the Department of Homeland Security (DHS) Insider Threat Program (ITP). The selected candidate will be responsible for examining, analyzing, and searching insider threat data to identify trends, patterns, and insights of potential insider threat indicators.

Requirements

  • Examine, analyze, and search insider threat data to identify trends, patterns, and insights of potential insider threat indicators.
  • Provide analytical, program support services related to the operation of UAM/ UEBA tool.
  • Monitor UAM platform to identify emerging requirements related to insider threat events and coordinate across the enterprise to ensure timely response.
  • Conduct further research on the UAM platform to identify patterns of concerning behavior related to a potential insider threat risk to the DHS enterprise.
  • Provide proactive insider threat-based hunting across the DHS enterprise network, leveraging methodologies and behavioral analytics to detect, investigate, and mitigate anomalous activity and policy violations indicative of malicious insider behavior.
  • Conduct continuous hunt operations across data and log sources, DHS platforms, EDR tools, and network traffic to identify patterns of insider threat behavior.
  • Identify mitigation strategies to assist the investigative team in effectively reducing insider threat risk.
  • Utilize UEBA (User and Entity Behavior Analytics) platforms and techniques to baseline user activity and detect deviations.
  • Provide timely response to critical/high UAM alerts (within 4 hours during normal business hours).

Benefits

  • Paid Time Off
  • 401k Matching
  • Retirement Plan
]]>