×
Register Here to Apply for Jobs or Post Jobs. X

Cyber Investigations Analyst - OTA​/Active Secret

Job in Virginia, St. Louis County, Minnesota, 55792, USA
Listing for: Peraton
Full Time position
Listed on 2026-07-19
Job specializations:
  • IT/Tech
    Cybersecurity, Information Security & Data Protection
Salary/Wage Range or Industry Benchmark: 90000 - 130000 USD Yearly USD 90000.00 130000.00 YEAR
Job Description & How to Apply Below
Position: Cyber Investigations Analyst - OTA / Active Secret

Minimum Requirements

  • A Bachelor’s degree and 5 years of experience. An additional 4 years of experience may be substituted in lieu of the bachelor's degree requirement.
  • Minimum of 2 years of experience in cybersecurity, digital forensics, or cyber investigations.
  • Must either possess and maintain, or obtain prior to start date, one of the following professional certifications: CISSP-ISSAP, CISSP-ISSEP, CISSP, Security+ CE, CySA+, PPDA, Agile IC, SNOW App Dev.
  • Experience conducting insider threat or cyber misconduct investigations in an enterprise environment.
  • Experience analyzing large datasets of user activity, log data, and endpoint telemetry.
  • Strong analytical, problem-solving, and decision-making skills to support complex, sensitive investigations.
  • Excellent written and verbal communication skills, including experience producing formal investigative reports.
  • Must possess strong time management skills and the ability to complete assigned tasks with minimal supervision.
  • U.S. citizenship required.
  • Active Secret security clearance.
  • Ability to obtain a final Top Secret/SCI security clearance.
Desired
  • Experience with insider threat programs and familiarity with the National Insider Threat Policy.
  • Familiarity with SIEM platforms (e.g., Splunk, Microsoft Sentinel) for correlating UAM data with broader security telemetry.
  • Experience with digital forensics tools (e.g., EnCase, FTK, Magnet AXIOM).
  • Knowledge of Active Directory and Azure AD for user account analysis.
  • Experience working in a government or federal law enforcement investigative environment.
  • Technical writing skills and experience producing materials for senior leadership audiences.
  • Familiarity with chain of custody procedures, and eDiscovery processes.
  • Experience with behavioral analytics platforms or UEBA (User and Entity Behavior Analytics) tools.

Peraton is looking for a Cyber Investigations Analyst to become part of our Federal Strategic Cyber Group.

Location:

Rosslyn, VA; full-time, on-site role.

In this role, you will:

  • Support the Cyber Threat Investigations & Analysis Division (CTAD) in conducting end-to-end insider threat and cyber investigations leveraging User Activity Monitoring (UAM) tools and data.
  • Collect, analyze, and interpret log data to detect anomalous user behavior, policy violations, and potential insider threats across enterprise systems.
  • Develop and refine detection rules, alerts, and behavioral baselines to improve threat detection capabilities.
  • Conduct forensic analysis of user activity logs, endpoint telemetry, and network data to support investigations and produce actionable intelligence.
  • Communicate complex investigative findings to both technical and non-technical stakeholders, including senior management.
  • Collaborate with legal, HR, and security teams to ensure investigations are conducted in accordance with applicable laws, policies, and Department guidelines.
  • Author detailed investigation reports, bulletins, and advisories documenting findings.
  • Promote awareness of insider threat indicators and UAM best practices among customer stakeholders, coworkers, and Department users.
  • Respond to escalated security incidents and provide expert guidance on user activity-related threat vectors.
  • Conduct all aspects of case management for active inquiries to include case documentation, investigative records, digital artifacts, SharePoint repositories, and data storage management.
  • Provide guidance and mentorship to junior team members on investigative techniques and tool usage.
  • Stay current on emerging insider threat tactics, techniques, and procedures (TTPs) and incorporate findings into detection strategies.
#J-18808-Ljbffr
To View & Apply for jobs on this site that accept applications from your location or country, tap the button below to make a Search.
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).
 
 
 
Search for further Jobs Here:
(Try combinations for better Results! Or enter less keywords for broader Results)
Location
Increase/decrease your Search Radius (miles)
0
200
Filters
Education Level
Experience Level (years)
Posted in last:
Salary