Talent.com
Insider Threat Engineer
Insider Threat EngineerLeidos • Baltimore, MD, United States
serp_jobs.error_messages.no_longer_accepting
Insider Threat Engineer

Insider Threat Engineer

Leidos • Baltimore, MD, United States
job_description.job_card.variable_days_ago
serp_jobs.job_preview.job_type
  • serp_jobs.job_card.full_time
job_description.job_card.job_description

Description

Leidos is seeking a highly skilled and experienced Insider Threat Engineer to support and maintain an enterprise-wide insider threat detection and response program at the Social Security Administration (SSA) . This position focuses on advancing the agency's capabilities in user activity monitoring (UAM), automation, data loss prevention (DLP-Trellix), automation, and technical threat detection to prevent unauthorized disclosures, fraud, and abuse.. The candidate will be instrumental in delivering analytical and engineering support to the Insider Threat Program Management Office (PMO) and may be required to deliver and receive sensitive briefings within SSA secured spaces such as the SCIF or approved alternate secure locations.

Join a high-performing cybersecurity team responsible for safeguarding the agency's data and supporting the SSA's mission to serve over 65 million Americans monthly.

If this sounds like a mission you want to be a part of, keep reading!

TEAM CULTURE

Your passion and values might be a good fit for our teams if you answer "yes" to the following questions :

Are you looking for a company that puts employees first, with a focus on career, flexibility, and well-being?

Do you enjoy collaborating with colleagues and teammates and believe that the best ideas are fostered in an inclusive environment?

Are you searching for a team with a strong sense of ownership, urgency, and drive for daily mission success?

Are you comfortable with proactive outward communication and technical leadership?

Do you enjoy being a catalyst, solving complex problems, and providing innovative solutions?

Do you have the flexibility, creativity, and resilience to pivot the mission for success?

Do you have the courage to make tough ethical decisions with pride, transparency, and respect?

MENTORSHIP & CAREER GROWTH

Our teams are dedicated to supporting new team members in an environment that celebrates knowledge sharing and mentorship. Experienced team members will be assigned to new hires for one-on-one mentoring, collaborative reviews, and coaching on customer engagement to help each new hire successfully onboard and demonstrate their skills. Projects and tasks are assigned in a way that leverages your strengths and will help you further develop your skillset.

KEY RESPONSIBILITIES

Every position we take is more rewarding when you know the why behind it.Know your work makes a difference to support those who need it most. If your passion is enabling life changing service to those around, you this is the place for you. Find you passion in a team environment where all members are valued regardless of contractor or employee status. Find your "Why" with us and take your place in our Leidos Family!!

Technical Engineering and Automation

Engineer, implement, and maintain User Activity Monitoring (UAM) and Data Loss Prevention (DLP) solutions, ensuring continuous visibility into user behavior and sensitive data usage.

Configure, maintain, and optimize Trellix endpoint security and DLP capabilities for insider threat use cases.

Experience leveraging Trellix DLP to detect and investigate insider threat behaviors, including sensitive data exfiltration, unauthorized file transfers, and anomalous user activity.

Automate detection, alerting, and reporting processes using Python, Ansible, or JSON to increase efficiency and accuracy.

Integrate UAM and DLP solutions with other enterprise cybersecurity tools (e.g., SIEM, SOAR, EDR, Trellix platform).

Develop dashboards and reports that highlight key insider threat indicators, anomalous activity, and program performance metrics.

Perform SOC related activities including monitoring, triaging, and investigating insider threat and DLP alerts to support timely detection and response.

Basic understanding in networking, cybersecurity principles, and experience with common security tools (e.g., firewalls, SIEM, DLP, endpoint security, vulnerability scanners).

Experience with Splunk for log analysis and developing use cases to support insider threat detection and reporting.

Demonstrated adaptability with an open mind toward learning new technologies and taking on challenging responsibilities in a dynamic environment.

Cyber Threat Detection & Analysis

Develop and refine methods to extract, analyze, and correlate data from SSA IT systems to proactively detect potential insider threats.

Monitor and analyze trends in cyber activity and anomalous behavior to assess risks to SSA's confidentiality, availability, and integrity.

Leverage feeds, incident reports, and threat briefs to assess relevance to SSA's environment and enhance the program's threat modeling capability.

Policy, SOP Development & Reporting

Prepare and present insider threat briefings to program leadership and executives, following agency writing and presentation standards.

Contribute to Insider Threat Work Status Reports with detailed analytics, visuals (charts / dashboards), and recommendations.

FOUNDATION FOR SUCCESS ( Basic Qualifications )

Bachelor's degree in Cybersecurity, Information Technology, Computer Science, or a related field.

Proven experience in cybersecurity, DLP - Trellix or Palo altos, or a related area.

Hands-on experience with Trellix Data Loss Prevention (DLP) for monitoring, detecting, and controlling sensitive data movement across endpoints, email, and network channels.

Good understanding of networking and firewall fundamentals , including how monitoring tools interact across segmented architectures.

Familiarity with Palo Alto Networks firewalls and their logging capabilities (useful for correlating user activity across layers).

Strong analytical and problem-solving skills; ability to make data-driven recommendations.

Excellent written and verbal communication skills, particularly in conveying technical insights to leadership.

Must be able to obtain and maintain a Public Trust. Contract requirement.

  • Selected candidate must be willing to work on-site in Woodlawn, MD 5 days a week.

FACTORS TO HELP YOU SHINE ( Required Skills )

Experience in using Splunk ES or enterprise Splunk is a plus.

Ability to make decisions based upon analysis of documentation.

Experience with endpoint monitoring tools , SIEM / SOAR integrations , and identity-based risk scoring .

Working knowledge of DLP , EDR , or behavioral analytics platforms in support of insider threat detection.

Experience working in a classified environment and delivering briefings in SCIF settings.

Understanding of NIST 800-53 and related to Insider Threat Programs.

HOW TO STAND OUT FROM THE CROWD (Desired Skills)

Showcase your knowledge of modern development through the following experience or skills :

Experience with federal regulatory requirements and compliance standards related to cybersecurity.

Knowledge of programing, Splunk automation, network and firewall operations.

Familiarity with security tools and technologies used for threat detection and analysis.

Security certifications (e.g., CISSP, CISM, CEH, CompTIA Security+) are a plus.

At Leidos, we deliver innovative solutions through the efforts of our diverse and talented people who are dedicated to our customers' success. We empower our teams and contribute to our communities. Everything we do is built on a commitment to do the right thing for our customers, our people, and our community. Our Mission, Vision, and Values guide the way we do business. Every position we take is more rewarding when you know the why behind it.Know your work makes a difference to support those who need it most. If your passion is enabling life changing service to those around, you this is the place for you. Find your passion in a team environment where all members are valued regardless of contractor or employee status. We are excited for you to take your place in our Leidos Family.

Are you an US citizen, US resident, or Visa candidate and think you might fit? We recommend you apply and start the conversation today! Join us in supporting our SSA contracts in Woodlawn, Maryland.

If you're looking for comfort, keep scrolling. At Leidos, we outthink, outbuild, and outpace the status quo - because the mission demands it. We're not hiring followers. We're recruiting the ones who disrupt, provoke, and refuse to fail. Step 10 is ancient history. We're already at step 30 - and moving faster than anyone else dares.

Original Posting : November 25, 2025

For U.S. Positions : While subject to change based on business needs, Leidos reasonably anticipates that this job requisition will remain open for at least 3 days with an anticipated close date of no earlier than 3 days after the original posting date as listed above.

Pay Range : Pay Range $85,150.00 - $153,925.00

The Leidos pay range for this job level is a general guideline onlyand not a guarantee of compensation or salary. Additional factors considered in extending an offer include (but are not limited to) responsibilities of the job, education, experience, knowledge, skills, and abilities, as well as internal equity, alignment with market data, applicable bargaining agreement (if any), or other law.

About Leidos

Leidos is an industry and technology leader serving government and commercial customers with smarter, more efficient digital and mission innovations. Headquartered in Reston, Virginia, with 47,000 global employees, Leidos reported annual revenues of approximately $16.7 billion for the fiscal year ended January 3, 2025. For more information, visit www.Leidos.com.

Pay and Benefits

Pay and benefits are fundamental to any career decision. That's why we craft compensation packages that reflect the importance of the work we do for our customers. Employment benefits include competitive compensation, Health and Wellness programs, Income Protection, Paid Leave and Retirement. More details are available at www.leidos.com / careers / pay-benefits.

Securing Your Data

Beware of fake employment opportunities using Leidos' name. Leidos will never ask you to provide payment-related information during any part of the employment application process (i.e., ask you for money), nor will Leidos ever advance money as part of the hiring process (i.e., send you a check or money order before doing any work). Further, Leidos will only communicate with you through emails that are generated by the Leidos.com automated system - never from free commercial services (e.g., Gmail, Yahoo, Hotmail) or via WhatsApp, Telegram, etc. If you received an email purporting to be from Leidos that asks for payment-related information or any other personal information (e.g., about you or your previous employer), and you are concerned about its legitimacy, please make us aware immediately by emailing us at LeidosCareersFraud@leidos.com.

If you believe you are the victim of a scam, contact your local law enforcement and report the incident to the U.S. Federal Trade Commission.

Commitment to Non-Discrimination

All qualified applicants will receive consideration for employment without regard to sex, race, ethnicity, age, national origin, citizenship, religion, physical or mental disability, medical condition, genetic information, pregnancy, family structure, marital status, ancestry, domestic partner status, sexual orientation, gender identity or expression, veteran or military status, or any other basis prohibited by law. Leidos will also consider for employment qualified applicants with criminal histories consistent with relevant laws.

serp_jobs.job_alerts.create_a_job

Insider Threat Engineer • Baltimore, MD, United States

Job_description.internal_linking.related_jobs
Information Systems Security Engineer, Level 3 (2025-0060)

Information Systems Security Engineer, Level 3 (2025-0060)

Acclaim Technical Services • Annapolis Junction, MD, US
serp_jobs.job_card.full_time
serp_jobs.filters_job_card.quick_apply
Acclaim Technical Services, founded in 2000, is a leading language, operations, and technology services company supporting a wide range of U. We are an Employee Stock Ownership Plan (ESOP) comp...serp_jobs.internal_linking.show_more
serp_jobs.last_updated.last_updated_30
Cloud Security Engineer

Cloud Security Engineer

J Lee Engineering • Baltimore, Maryland, United States
serp_jobs.filters.remote
serp_jobs.job_card.full_time
serp_jobs.filters_job_card.quick_apply
Are you an enthusiastic security professional with an aptitude for the cloud? We're looking for a bright and aggressive Cloud Security Engineer to join our growing team. In this critical role, you'l...serp_jobs.internal_linking.show_more
serp_jobs.last_updated.last_updated_variable_hours • serp_jobs.job_card.new
Senior Property Risk Engineer

Senior Property Risk Engineer

Travelers • Baltimore, MD, United States
serp_jobs.job_card.full_time
Property Specialist, Travelers.Taking care of our customers, our communities and each other.By honoring this commitment, we have maintained our reputation as one of the best property casualty insur...serp_jobs.internal_linking.show_more
serp_jobs.last_updated.last_updated_variable_days • serp_jobs.job_card.promoted
Cybersecurity Engineer (Identity)

Cybersecurity Engineer (Identity)

Barrow Wise Consulting • MD, USA
serp_jobs.job_card.full_time
serp_jobs.filters_job_card.quick_apply
Enjoy problem-solving, need a venue to display your creativity, and emerging technologies pique your interest; if so, Barrow Wise Consulting, LLC is for you. As a multi-disciplined leader, you under...serp_jobs.internal_linking.show_more
serp_jobs.last_updated.last_updated_30
Principal Consultant, Digital Forensic and Incident Response (DFIR) (Remote)

Principal Consultant, Digital Forensic and Incident Response (DFIR) (Remote)

Surefire Cyber Inc. • Elkridge, MD, United States
serp_jobs.filters.remote
serp_jobs.job_card.full_time
Principal Consultant, Digital Forensic and Incident Response (DFIR) (Remote).Principal Consultant, Digital Forensic and Incident Response (DFIR) (Remote). Principal Consultant, Digital Forensic and ...serp_jobs.internal_linking.show_more
serp_jobs.last_updated.last_updated_30 • serp_jobs.job_card.promoted
Data Protection Engineer [JOB ID 20251117]

Data Protection Engineer [JOB ID 20251117]

Phoenix Cyber • Baltimore, MD, US
serp_jobs.job_card.full_time
serp_jobs.filters_job_card.quick_apply
Phoenix Cyber is looking for a Data Protection Engineer to join our client delivery team.This position is onsite at the client location. Endpoint data protection program (such as ...serp_jobs.internal_linking.show_more
serp_jobs.last_updated.last_updated_variable_days
Lead Security Engineer - Cyber Security

Lead Security Engineer - Cyber Security

Relativity • Baltimore, MD, United States
serp_jobs.job_card.full_time
As a Lead Cyber Security Engineer, you will ensure the security of Relativity's network and infrastructure.In this role, the main responsibilities will be to investigate and analyze emerging threat...serp_jobs.internal_linking.show_more
serp_jobs.last_updated.last_updated_30 • serp_jobs.job_card.promoted
Threat Analyst

Threat Analyst

Independent Software • Fort Meade, MD, US
serp_jobs.job_card.full_time
serp_jobs.filters_job_card.quick_apply
As a Threat Analyst at Independent Software, you will analyze and assess potential risks to missions, personnel, and facilities by leveraging data from multiple systems and information sources.You ...serp_jobs.internal_linking.show_more
serp_jobs.last_updated.last_updated_30
Home Inspector

Home Inspector

House Buyers of America • Baltimore, MD, US
serp_jobs.job_card.full_time
The Home Inspector is responsible for performing due diligence inspections on any properties acquired by House Buyers of America. Inspectors will also assist with construction and settlement tasks t...serp_jobs.internal_linking.show_more
serp_jobs.last_updated.last_updated_30 • serp_jobs.job_card.promoted
AWS Security Engineer

AWS Security Engineer

Noblesoft Technologies • Baltimore, MD, United States
serp_jobs.job_card.full_time
serp_jobs.filters_job_card.quick_apply
Role : AWS Security Engineer Location : Baltimore, Maryland Responsibilities <...serp_jobs.internal_linking.show_more
serp_jobs.last_updated.last_updated_variable_days
AWS Security Engineer

AWS Security Engineer

Dhaka Technologies Limited Company • Maryland, MD, us
serp_jobs.job_card.full_time
serp_jobs.filters_job_card.quick_apply
The AWS Security Engineer will support UMGC by ensuring the security of its AWS cloud infrastructure and applications.The resource will design, implement, and maintain security controls, conduct as...serp_jobs.internal_linking.show_more
serp_jobs.last_updated.last_updated_variable_days
Network Security Engineer

Network Security Engineer

Office of The Chief Financial Officer • Maryland, MD, United States
serp_jobs.job_card.full_time
Government of the District of Columbia.Office of the Chief Financial Officer (OCFO).Network Security Engineer (INFOSEC).This position is located in the Office of the Chief Financial Officer (OCFO),...serp_jobs.internal_linking.show_more
serp_jobs.last_updated.last_updated_30 • serp_jobs.job_card.promoted
Security Engineer

Security Engineer

HireCapital • Baltimore, MD, United States
serp_jobs.job_card.full_time +1
Direct message the job poster from HireCapital.Technical Recruiter placing talent at innovative and mission-driven organizations. Our client is a rapidly growing technology firm operating at the int...serp_jobs.internal_linking.show_more
serp_jobs.last_updated.last_updated_30 • serp_jobs.job_card.promoted
Malware Analyst III (MA3)

Malware Analyst III (MA3)

Beyond SOF • Linthicum, MD, United States
serp_jobs.job_card.full_time
Salary : Up to $217,500, depending on education and experience.Security Requirements : TS / SCI with CI Poly (both active). Education : Minimum of bachelor’s degree from an accredited college or universi...serp_jobs.internal_linking.show_more
serp_jobs.last_updated.last_updated_variable_days • serp_jobs.job_card.promoted
Senior Threat Detection Engineer

Senior Threat Detection Engineer

Capital One • Arnold, MD, US
serp_jobs.job_card.full_time +1
Senior Threat Detection Engineer The Threat Detection & Analytics team is seeking qualified professionals to join our ranks. This highly specialized team of skilled engineers serves as experts in cr...serp_jobs.internal_linking.show_more
serp_jobs.last_updated.last_updated_variable_hours • serp_jobs.job_card.promoted • serp_jobs.job_card.new
Cybersecurity Engineer (Johns Hopkins Public Safety)

Cybersecurity Engineer (Johns Hopkins Public Safety)

Johns Hopkins University • Baltimore, MD, United States
serp_jobs.job_card.full_time
Security Incident and Event Management (SIEM), Security Orchestration and Automated Response (SOAR), Network Access Control, and network security. Candidates must have a good understanding of firewa...serp_jobs.internal_linking.show_more
serp_jobs.last_updated.last_updated_30 • serp_jobs.job_card.promoted
Asset Protection Specialist

Asset Protection Specialist

Home Depot (Retail) • Parkville, MD, US
serp_jobs.job_card.full_time
The Asset Protection Specialist is primarily responsible for preventing financial loss caused by theft and fraud and supporting safety and environmental program compliance in their assigned store / m...serp_jobs.internal_linking.show_more
serp_jobs.last_updated.last_updated_30 • serp_jobs.job_card.promoted
Sr. Fire Protection Engineer

Sr. Fire Protection Engineer

Butler Recruitment Group LLC • Baltimore, Maryland, United States
serp_jobs.job_card.full_time
serp_jobs.filters_job_card.quick_apply
You'll play a vital role in shaping safer, smarter buildings that protect lives and property.In this hands-on engineering position, you'll design, consult, and lead projects that ens...serp_jobs.internal_linking.show_more
serp_jobs.last_updated.last_updated_variable_days