Insider Threat Program Analyst
Listed on 2026-01-12
-
IT/Tech
Cybersecurity, Data Security
Overview
Arlo Solutions (Arlo) is an information technology consulting services company that specializes in delivering technology solutions. Our reputation reflects the high quality of the talented Arlo Solutions team and the consultants working in partnership with our customers. Our mission is to understand and meet the needs of both our customers and consultants by delivering quality, value-added solutions. Our solutions are designed and managed to not only reduce costs, but to improve business processes, accelerate response time, improve services to end-users, and give our customers a competitive edge, now and into the future.
Position
Description:
This position is responsible for supporting National Oceanic and Atmospheric Administration’s (NOAA's) Internal Risk Management Program (IRMP) by designing, implementing, and maintaining comprehensive insider threat detection and mitigation capabilities. The Insider Threat Program Analyst will develop and operationalize policies, systems, and practices to detect, deter, and respond to potential insider threats within NOAA's workforce, including government employees, contractors, and uniformed services.
The ideal candidate will have expertise in security data analysis, risk assessment, and collaboration with internal and external stakeholders to ensure the protection of sensitive information, systems, and assets. This role requires strong analytical skills and the ability to identify behavioral indicators of insider threats while maintaining compliance with privacy regulations and ethical standards.
Location: Hybrid (Silver Spring, MD)
Clearance: Active TS/SCI
Responsibilities- Program Support and Internal Risk Operations:
Support development and implementation of a comprehensive Internal Risk Management Program (IRMP) that detects, deters, and responds to insider threats across NOAA’s workforce, including employees, contractors, and uniformed personnel. - Policies and Governance:
Assist with crafting and maintaining internal risk/insider threat policies, procedures, and governance artifacts; ensure alignment with federal directives and NOAA policy. Data Integration and Analytics - Data Integration and Analytics:
Consolidate and analyze security data from multiple sources (e.g., cybersecurity telemetry/SIEM, User Access Management (UAM), Human Resources (HR), physical access, case management, and lawful external data) into a cohesive risk picture that provides actionable insights to leadership. - Analytics Development:
Develop analytic methods and behavioral indicators; produce dashboards and routine analytical products to inform risk prioritization and mitigation activities. - System and Data Quality:
Monitor system integration performance and data quality; recommend improvements to achieve target integration milestones and performance metrics. - Case Management and Incident Response:
Execute insider threat reporting and response procedures; triage, document, and track matters in the IRMP HUB case management tools; coordinate formal referrals and follow-up actions. - Investigation Support:
Support insider threat incident investigations, response, and mitigation; document timelines, actions, lessons learned, and protocol adjustments. - Documentation Timeliness:
Meet timeliness standards for incident documentation and reporting (e.g., initial reporting within three business days) and ensure evidence handling aligns with applicable policy. - Training and Awareness:
Develop and deliver insider threat and internal risk training and awareness content; assess training effectiveness via post-training surveys and performance metrics. - Culture and Adoption:
Drive adoption of best practices to embed a proactive, ethical, and privacy-aware internal risk culture across NOAA; tailor content to roles and mission contexts. - Training Management:
Maintain training artifacts and schedules; recommend continuous improvement actions based on feedback and outcomes. - Research Security and Compliance (NSPM-33):
Support development and implementation of research security protocols and compliance measures to protect sensitive research and deter foreign interference. - Compliance
Activities:
Assist with…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).