
Real job — pulled straight from Agile Defense’s careers page · Verified August 30, 2026 · No reposts.
Job description
Agile Defense is hiring a Insider Threat Monitoring Lead — a full-time, based in Reston, VA role ($160k–$185k). Apply directly on Agile Defense's careers page below.
Insider Threat Monitoring Lead (CBP)
Team: Cyber Defense
Location: Reston, VA
Commitment: Regular
Workplace Type: hybrid
The Role
What Success Looks Like
- Cases that escalate to investigation are the ones that warrant it, not everything that triggered an alert.
- Patterns that matter, unusual access, data movement, or behavior change, get identified before they become an incident rather than after.
- Analysts working under you can explain why a case escalated in terms someone outside the program would find reasonable.
- Monitoring stays proportional to actual risk indicators rather than expanding because it is easy to collect more data.
- Cases get handled consistently regardless of who the subject is.
- When a case does not substantiate, it closes cleanly rather than leaving a lingering question mark on someone's record.
- Cases that move to investigation or incident response arrive with a record that the next team can act on immediately, not one they have to reconstruct.
- You know where insider threat monitoring's job ends and where forensics or HR involvement begins, and you do not sit on a case past that line.
- Findings that reveal a systemic gap, not just an individual case, reach the people who can fix the gap.
- Detection logic gets tuned based on what real cases actually looked like, not left static after initial setup.
- Near misses and lessons learned change what the program monitors going forward.
- You can explain the program's current blind spots honestly, rather than presenting coverage as complete.
What You Bring
- Minimum of five (5) years of professional experience leading the cyber component of an insider threat program
- An in-depth understanding of the principles, methodologies, and best practices for establishing, operating, and maturing an insider threat program.
- Active Certified Information Systems Security Professional (CISSP)
- Bachelor’s degree in computer science, Engineering, STEM, Information Technology, or Cybersecurity
- You have run or been a senior analyst in an insider threat program, ideally in a federal or cleared environment where NITTF-aligned or equivalent standards applied.
- You have handled a case that involved coordination with HR, legal, or security partners, and can describe how you kept it proportional.
- You have tuned detection logic based on real case outcomes rather than left it as originally configured.
- You can explain a sensitive finding to people outside the program in terms they can act on without oversharing what they should not see.
- You hold an active CBP BI, a fitness determination at another DHS component, or an active DoD clearance. Any of these shortens your start date.
- You are comfortable working closely with human behavior data and understand the privacy and legal boundaries around it, not only the technical monitoring tools.
- Counter-intelligence experience
- Digital Forensics and related certifications
- User Activity Monitoring (UAM)
- User Behavior Analytics (UBA)
A note on timing
Employee Benefits
- Happy - Be Infectious. Happiness multiplies and creates a positive and connected environment where motivation and satisfaction have an outsized effect on everything we do.
- Helpful - Be Supportive. Being helpful is the foundation of teamwork, resulting in a supportive atmosphere where collaboration flourishes, and collective success is celebrated.
- Honest - Be Trustworthy. Honesty serves as our compass, ensuring transparent communication and ethical conduct, essential to who we are and the complex domains we support.
- Humble - Be Grounded. Success is not achieved alone, humility ensures a culture of mutual respect, encouraging open communication, and a willingness to learn from one another and take on any task.
- Hungry - Be Eager. Our hunger for excellence drives an insatiable appetite for innovation and continuous improvement, propelling us forward in the face of new and unprecedented challenges.
- Hustle - Be Driven. Hustle is reflected in our relentless work ethic, where we are each committed to going above and beyond to advance the mission and achieve success.
Get Insider Threat Monitoring Lead jobs like this→
New roles from thousands of companies land hourly, straight from their careers pages. Get the freshest matches by email so you never miss one.
Email me new jobsSimilar jobs



Information System Security Officer, Senior Security Engineer, or Security Engineering Lead

Frequently asked questions
What is the salary for Insider Threat Monitoring Lead at Agile Defense?
The estimated salary range for Insider Threat Monitoring Lead at Agile Defense is $160,000 - $185,000 USD per year.
What skills are required for Insider Threat Monitoring Lead at Agile Defense?
The required skills for Insider Threat Monitoring Lead at Agile Defense include: CISSP.
What is the seniority level for Insider Threat Monitoring Lead at Agile Defense?
Insider Threat Monitoring Lead at Agile Defense is a Senior / Manager level position.
How do I apply for Insider Threat Monitoring Lead at Agile Defense?
You can view the full description and apply for Insider Threat Monitoring Lead at Agile Defense on EchoJobs: https://echojobs.io/job/agile-defense-insider-threat-monitoring-lead-cbp-1d2sc.