Demo

AOUSC - Insider Threat Analyst Lead

cFocus Software Incorporated
Washington, DC Full Time
POSTED ON 5/24/2026
AVAILABLE BEFORE 8/21/2026
cFocus Software seeks a Insider Threat Analyst Lead to join our program supporting the Administrative Office of the United States Courts (AOUSC). This position is Hybrid with the onsite location being in Washington, DC. This position requires a Public Trust clearance.
Qualifications:
  • Active Public Trust clearance
  • B.S. Computer Science, Information Technology, or a related field
  • 5 years’ experience in conducting in-depth technical analysis of insider threat
  • 3 years’ experience in conducting behavioral analytics
  • 2 years of experience using Splunk SIEM to correlate cybersecurity alerts. 
  • 2 years of experience managing overall case management for cybersecurity investigations.
  • Active CCITP Program certification

Duties:
  • Lead and support the operationalization of the AOUSC Insider Threat Program (InTP) in accordance with NITTF Minimum Standards and Judiciary cybersecurity directives.
  • Develop and maintain Insider Threat governance frameworks including authorities, escalation paths, communication cadence, workflows, and operational procedures.
  • Collaborate with AO Human Resources (HR), Office of General Counsel (OGC), Insider Threat Branch (ITB), Cybersecurity Triage, Incident Response, Threat Hunting, and Cyber Threat Intelligence teams to support enterprise-wide insider risk management efforts.
  • Develop, coordinate, and maintain a comprehensive suite of Standard Operating Procedures (SOPs) supporting Insider Threat operations and investigative processes.
  • Design, document, and operationalize insider threat use cases, indicators, triggers, tuning methodologies, and feedback loops for integration into the existing SIEM and detection engineering framework.
  • Support the identification, analysis, and mitigation of insider threat risks including malicious insiders, negligent users, privileged misuse, policy violations, data exfiltration, and anomalous user behaviors.
  • Analyze telemetry, user activity, endpoint logs, audit records, and security events to identify potential insider threat activity and emerging organizational risks.
  • Coordinate with Detection Engineering teams to refine insider threat alerting logic, improve visibility, and reduce false positives within existing alerting frameworks.
  • Develop insider threat awareness materials, workforce training, executive briefings, and organizational awareness campaigns.
  • Provide executive-level and technical reporting on insider threat trends, program status, organizational risks, and operational impacts.
  • Conduct periodic assessments and audits to evaluate program effectiveness, identify process gaps, and recommend governance, tooling, policy, and procedural improvements.
  • Develop and maintain insider threat metrics, KPIs, and operational reporting dashboards.
  • Participate in weekly technical meetings and monthly program management reviews with AO stakeholders and leadership.
  • Prepare written reports, meeting minutes, executive summaries, operational updates, and briefing materials supporting government oversight and decision making.
  • Coordinate insider threat investigations with cybersecurity operations teams while ensuring compliance with legal, HR, privacy, and Judiciary policy requirements.
  • Support transition-in, transition-out, operational readiness, and knowledge transfer activities in accordance with AOUSC SOD requirements.
  • Maintain awareness of emerging insider threat trends, adversary methodologies, behavioral analytics techniques, and federal insider threat program best practices.
  • Provide recommendations for improving insider threat governance, training, data sources, telemetry visibility, and operational response capabilities.
  • Assist in the development of insider threat communication strategies, escalation procedures, and incident coordination processes.
  • Support Agile workflows and track operational tasks, action items, and improvements through Jira and ServiceNow platforms.

Salary.com Estimation for AOUSC - Insider Threat Analyst Lead in Washington, DC
$125,202 to $163,032
If your compensation planning software is too rigid to deploy winning incentive strategies, it’s time to find an adaptable solution. Compensation Planning
Enhance your organization's compensation strategy with salary data sets that HR and team managers can use to pay your staff right. Surveys & Data Sets

What is the career path for a AOUSC - Insider Threat Analyst Lead?

Sign up to receive alerts about other jobs on the AOUSC - Insider Threat Analyst Lead career path by checking the boxes next to the positions that interest you.
Income Estimation: 
$100,705 - $130,618
Income Estimation: 
$142,354 - $206,705
Employees: Get a Salary Increase
View Core, Job Family, and Industry Job Skills and Competency Data for more than 15,000 Job Titles Skills Library

Job openings at cFocus Software Incorporated

  • cFocus Software Incorporated Tyson's Corner, VA
  • The Human Resources Benefits & Compliance Analyst position plays a critical role in ensuring the organization's adherence to employment laws, regulations, ... more
  • 16 Days Ago

  • cFocus Software Incorporated Washington, DC
  • cFocus Software seeks a Cyber Exercises Support Lead to join our program supporting the Administrative Office of the United States Courts (AOUSC). This pos... more
  • 1 Day Ago

  • cFocus Software Incorporated Washington, DC
  • cFocus Software seeks a Threat Hunt Lead to join our program supporting the Administrative Office of the United States Courts (AOUSC). This position is Hyb... more
  • 1 Day Ago

  • cFocus Software Incorporated Washington, DC
  • cFocus Software seeks a Blue Team Lead to join our program supporting the Administrative Office of the United States Courts (AOUSC). This position is Hybri... more
  • 1 Day Ago


Not the job you're looking for? Here are some other AOUSC - Insider Threat Analyst Lead jobs in the Washington, DC area that may be a better fit.

  • cFocus Software Incorporated Washington, DC
  • cFocus Software seeks a Threat Hunt Lead to join our program supporting the Administrative Office of the United States Courts (AOUSC). This position is Hyb... more
  • 1 Day Ago

  • salesforce.com, inc. Mc Lean, VA
  • To get the best candidate experience, please consider applying for a maximum of 3 roles within 12 months to ensure you are not duplicating efforts. Job Cat... more
  • 18 Days Ago

AI Assistant is available now!

Feel free to start your new journey!