5+ years of experience in cybersecurity or the US Intelligence Community, preferably in Foreign Intelligence Operations, Human Intelligence (HUMINT), Cyber Espionage, and Counter-intelligence operations
Initiate and carry insider threat investigations end-to-end
Strong understanding of Nation-state Insider threat activities, their TTP’s, plans, intentions, and motivations
Understanding of Nation-State Offensive Cyber Operations
Understanding of Supply-Chain risks, particularly vendors and technology attributed to nation-state intelligence activities
Ability to drive new and complex insider intelligence projects to completion
Communicates and presents findings to various stakeholders and consumers, to include Senior executives
Preferred
Completed and certified in an US Military or US government Source Operations Course
Experience as a Counter-Intelligence Agent or Counter-Intelligence Referent
Completed certifications from the Joint Counter-Intelligence Training Academy (JCITA)
Understanding of HUMINT Technical Operations (HUMINT Tech Ops)
Responsibilities
Identify Priority Intelligence Requirements (PIR’s) for state-sponsored espionage and insider threat activities
Collects, analyzes, and processes intelligence reporting on state-sponsored intelligence operations targeting the US and Global Financial Sector
Lead development of the Insider Monitoring program
Collaborate across organizations, to include with Insider Hunting, Cyber Threat Hunting, and Insider Risk teams
Engage with government partners and intelligence-sharing organizations
Support Insider Hunt and Threat hunt operations to identify potential Insider Threat techniques, tactics, and procedures (TTP’s)
Support Purple Team operations to emulate nation-state insider threat TTP’s
Support Detection Engineering to tune security controls and detections for Insider Threat activity
Supporting technical investigations and collaborates with the Insider Hunt team to identify malicious/risky behaviors to be escalated