FreshRemote.Work

Insider Threat Analyst (Remote)

UTDC1: UT-DC-Remote UT Remote DC , Washington, DC, 20024 USA, United States

Date Posted:

2025-02-25

Country:

United States of America

Location:

UTDC1: UT-DC-Remote UT Remote DC , Washington, DC, 20024 USA

Position Role Type:

Remote

RTX Corporation is an Aerospace and Defense company that provides advanced systems and services for commercial, military and government customers worldwide. It comprises three industry-leading businesses – Collins Aerospace Systems, Pratt & Whitney, and Raytheon. Its 185,000 employees enable the company to operate at the edge of known science as they imagine and deliver solutions that push the boundaries in quantum physics, electric propulsion, directed energy, hypersonics, avionics and cybersecurity. The company, formed in 2020 through the combination of Raytheon Company and the United Technologies Corporation aerospace businesses, is headquartered in Arlington, VA.   

The following position is to join our RTX Enterprise Services team:

Role Overview: 

Enterprise Services (ES) Cybersecurity has an immediate opening for a qualified insider threat analyst to join RTX Cyber Defense reporting to the Associate Director of Cyber Insider Threat Operations. As an insider threat analyst, you will be responsible for supporting the analysis, monitoring and triage of alerts stemming from potential insider threats.

What You Will Do:

The ideal candidate shall perform specific activities that include, but are not limited to the following: 

  • Perform log analysis to detect anomalies, leveraging expertise in security operations tools to monitor and safeguard sensitive data. Utilize behavioral analytics and endpoint security solutions to identify and investigate unusual patterns.
  • Monitor potential data exfiltration points using data loss prevention tools and other security solutions to detect and prevent unauthorized transfers.
  • Apply Open-Source Intelligence (OSINT) techniques to gather and analyze publicly available information related to insider threats.
  • Identify insider threat trends and patterns to assist content teams in the development of new detection rules and models.
  • Articulate the implications of the risks relative to insider threats and educate team members, peers and stakeholders on the potential impacts.
  • Review data, alerts and behaviors to identify potential concerns from multiple angles, gather information and understand and articulate information gaps needed to inform decisions.
  • Work independently and with teams to define and complete analysis activities.
  • Document findings in a manner that technical and non-technical stakeholders understand and can articulate findings to leadership and peers.
  • Perform initial analysis on data from systems to identify unexpected or malicious activity across channels while understanding how activity fits into the threat landscape.
  • Assist in building processes, procedures and training for the insider threat team.
  • Collaborate with …
This job isn't fresh anymore!
Search Fresh Jobs

Job Profile

Regions

North America

Countries

United States

Restrictions

U.S. citizenship U.S. Citizenship is required UT

Benefits/Perks

Achievement awards Backup care Career development Child/adult backup care Dental Disability Educational Assistance Employee Assistance Program Flexible Spending Flexible Spending Accounts Flexible work schedules Healthcare Life Insurance Medical Paid Time Off Parental leave Recognition programs Retirement Scholar program Total Rewards package Vision Wellness Work/life benefits

Tasks
  • Analysis
  • Analyze
  • Analyze logs
  • Build processes
  • Collaborate with stakeholders
  • Cybersecurity
  • Development
  • Document findings
  • Educate stakeholders
  • Incident response
  • Reporting
Skills

Access Aerospace Analysis Analytics Avionics Behavioral analytics Best Practices Business Career Development Cloud Compliance Critical thinking Cybersecurity Data Data analysis Data Loss Prevention Defense Digital Digital technology Directed energy Electric propulsion Endpoint Security Government HR Hypersonics Incident Response Industry Best Practices Information security IT Leadership Legal Log Analysis Management Monitoring Open-Source Intelligence Operations Physics Problem-solving Process Improvement Quantum physics Reporting Security Security Clearance Security Operations SIEM Teams Technical Training

Experience

5 years

Education

Advanced degree Analytics AS Business Cybersecurity Degree Education Equivalent experience Information Security IT Legal Operations Physics Science Technology University Degree

Certifications

CISM CISSP U.S. Government Issued Security Clearance

Timezones

America/Anchorage America/Chicago America/Denver America/Los_Angeles America/New_York Pacific/Honolulu UTC-10 UTC-5 UTC-6 UTC-7 UTC-8 UTC-9