Peraton is looking for a Cyber Investigations Analyst to become part of our Federal Strategic Cyber Group. This is a full-time, on-site role where you will support the Cyber Threat Investigations & Analysis Division (CTAD) in conducting end-to-end insider threat and cyber investigations leveraging User Activity Monitoring (UAM) tools and data. You will collect, analyze, and interpret log data to detect anomalous user behavior, policy violations, and potential insider threats across enterprise systems. Additionally, you will develop and refine detection rules, alerts, and behavioral baselines to improve threat detection capabilities. You will conduct forensic analysis of user activity logs, endpoint telemetry, and network data to support investigations and produce actionable intelligence. Communicating complex investigative findings to both technical and non-technical stakeholders, including senior management, is a key part of this role. You will collaborate with legal, HR, and security teams to ensure investigations are conducted in accordance with applicable laws, policies, and Department guidelines. You will also author detailed investigation reports, bulletins, and advisories documenting findings. Promoting awareness of insider threat indicators and UAM best practices among customer stakeholders, coworkers, and Department users is expected. You will respond to escalated security incidents and provide expert guidance on user activity-related threat vectors. Conducting all aspects of case management for active inquiries to include case documentation, investigative records, digital artifacts, SharePoint repositories, and data storage management is required. You will also provide guidance and mentorship to junior team members on investigative techniques and tool usage. Staying current on emerging insider threat tactics, techniques, and procedures (TTPs) and incorporating findings into detection strategies is crucial.
Stand Out From the Crowd
Upload your resume and get instant feedback on how well it matches this job.
Job Type
Full-time
Career Level
Mid Level