9th Way Insignia Logo

9th Way Insignia

Insider Threat Technical Lead

Posted Yesterday
Be an Early Applicant
Remote
Hiring Remotely in United States
155K-185K Annually
Senior level
Remote
Hiring Remotely in United States
155K-185K Annually
Senior level
Serve as the technical lead for USPTO's Insider Risk program: design and tune Microsoft Purview policies, build Sentinel dashboards and playbooks, operate across SIEMs (QRadar, Splunk), develop Power Automate flows, mentor analysts, brief leadership on KPIs, and advise on Microsoft 365 Copilot security and NIST guidance.
The summary above was generated by AI

9th Way Insignia is a service-disabled, veteran-owned small business bringing transformative technology to our government customers so they can achieve their missions.  Our specialties include cybersecurity, cloud modernization, software development, data analytics, enterprise architecture, enterprise IT, analytics, process automation, and artificial intelligence.  Learn more about 9th Way Insignia at https://9thwayinsignia.com/.

Application password: Niner

Position Overview

9th Way Insignia is seeking a hands-on Insider Threat Technical Lead to serve as the technical lead for an established Insider Risk program supporting the United States Patent and Trademark Office (USPTO). This is an individual-contributor technical leadership role — not a management position. You will be the senior technical voice on a small delivery team, guiding insider-risk analysts, advising government data owners and program leadership, and personally building and tuning the Microsoft security tooling the program runs on.

What You Will Do
  • Serve as the insider-risk technical lead and trusted advisor to USPTO stakeholders: run regular customer syncs, deliver polished status reporting, and proactively bring emerging requirements (CISA directives, NIST guidance, AI policy) to the customer with an implementation path.
  • Own the technical direction of the insider-risk toolset in Microsoft Purview: Insider Risk Management policies, indicators, trigger events, sequence detection, privacy/anonymization settings, role groups and permissions, DLP, sensitivity labels and auto-labeling, eDiscovery/legal holds, and unified audit log analysis.
  • Design and maintain custom dashboards, workbooks, and playbooks in Microsoft Sentinel; work across the program’s additional SIEMs (QRadar, Splunk) and custom Microsoft UBA rule engines; investigate and triage insider-risk alerts alongside the analysts and guide them on findings.
  • Build, edit, and troubleshoot Power Automate flows that drive program automation (the program currently operates 50+ production flows), using KQL, JSON, and YAML.
  • Advise the customer on securing Microsoft 365 Copilot adoption: Purview Data Security Posture Management, permission and sharing remediation, restricted content discovery, acceptable-use and DLP policy alignment, and NIST AI RMF alignment.
  • Define, track, and brief insider-risk program KPIs to leadership (alert volume and fidelity, true/false positive rates, MTTD/MTTR, repeat offenders, exfiltration channels, departmental trends) and recommend program improvements.
  • Mentor and technically guide the program’s insider-risk analysts; answer their questions on data findings and investigation paths.
  • Operate effectively in an environment where backend administration is held by government teams: the program performs front-end policy configuration and monitoring, and works through USPTO administrators for backend changes. Patience and influence without direct admin access are essential.
Required Qualifications 
  • Bachelor's degree from an accredited institution in Information Technology, Computer Science, Information Systems Management, Cybersecurity, or a related field. 
  • Seven (7) years of specialized experience in one or more of the following: Cyberspace Operations, Network Security, Computer Forensics, Network Forensics, Computer Network Defense (CND), Attack Sensing & Warning (AS&W), Intelligence Analysis, Cyber Threat Hunting, Penetration Testing, Insider Threat Detection/Mitigation, or Incident Detection & Response. Candidates holding a Master's degree from an accredited institution in information technology, information assurance, information systems management, cybersecurity, or a related field may substitute that degree for two (2) years of experience, reducing the requirement to five (5) years of specialized experience.
  • Primary certification — must currently hold one (1) of: CISSP or GIAC Security Expert (GSE).
  • Secondary certification — in addition to the primary certification above, must currently hold one (1) or more of: GIAC Certified Detection Analyst (GCDA); GIAC Certified Intrusion Analyst (GCIA); GIAC Certified Forensic Analyst (GCFA); GIAC Cyber Threat Intelligence (GCTI); GIAC Network Forensic Analyst (GNFA); GIAC Penetration Tester (GPEN); GIAC Reverse Engineering Malware (GREM).
  • Active SECRET clearance, or the ability to obtain and maintain one. 
Location

Remote

Salary Range
$155,000$185,000 USD

9th Way Insignia’s range for this job level is a general guideline only and not a guarantee of compensation or salary. Additional factors considered in extending an offer include (but are not limited to) responsibilities of the job, education, experience, knowledge, skills, and abilities, as well as internal equity, alignment with market data, applicable bargaining agreement (if any), or other law.

Clearance/Background Investigation
Applicants selected will be subject to a security investigation and may need to meet eligibility requirements for access to classified information.

Benefits
Eligible employees will have access to our comprehensive benefits package which includes Medical, Dental, Vision, Voluntary Life Insurance, 401(k), Basic Life A&D, STD, LTD, PTO, Telehealth, paid holidays, FSA, HSA. Additional resources include our Employee Assistance Program (EAP) and Traveling Assistance.

Legal
We’re an equal employment opportunity employer that empowers our people to fearlessly drive change – no matter their race, color, religion, sex (including pregnancy, childbirth, lactation, or related medical conditions), national origin, age, marital status, sexual orientation, gender identity, disability, veteran status, military or uniformed service member status, genetic information, or any other status protected by applicable federal, state, or local law.

Similar Jobs

5 Minutes Ago
Remote or Hybrid
154K-204K Annually
Senior level
154K-204K Annually
Senior level
Automotive • Big Data • Information Technology • Robotics • Software • Transportation • Manufacturing
Lead a team to design, build, and roll out integrated Total Rewards solutions. Define strategy and roadmaps, partner with TR, IT, and stakeholders, manage sourcing and vendors, ensure delivery governance, drive adoption and metrics, and enable scalable, data-driven HR solutions.
21 Minutes Ago
Remote or Hybrid
90K-110K Annually
Mid level
90K-110K Annually
Mid level
AdTech • Cloud • Digital Media • Information Technology • News + Entertainment • App development
Hands-on communications role on the Cyber Security team to plan and execute integrated campaigns, run HubSpot marketing automation, create multi-format content, drive awareness and adoption of cyber tools, manage intranet/training content, coordinate vendors/events, and translate technical topics for business audiences.
Top Skills: Ai-Enabled ToolsCamtasiaEmail MarketingHubspotPowerappsPower BIPowerPointSharepointVyond
21 Minutes Ago
Remote
USA
180K-240K Annually
Senior level
180K-240K Annually
Senior level
Artificial Intelligence • Machine Learning • Natural Language Processing • Software • Conversational AI
Design and build scalable, automated evaluation pipelines and infrastructure to validate speech, audio, and multimodal models. Translate research benchmarks into enforceable pass/fail gates, run batch and streaming tests, operate canaries and continuous monitoring, integrate quality gates into CI/CD, and partner with research, training, inference, and infra teams to prevent regressions and ensure production model quality.
Top Skills: Agent FrameworksAnomaly DetectionCi/CdContainersDockerGoGpu ClustersGrafanaKubernetesLlmsMultimodal ModelsPythonRagReact NativeRust

What you need to know about the Los Angeles Tech Scene

Los Angeles is a global leader in entertainment, so it’s no surprise that many of the biggest players in streaming, digital media and game development call the city home. But the city boasts plenty of non-entertainment innovation as well, with tech companies spanning verticals like AI, fintech, e-commerce and biotech. With major universities like Caltech, UCLA, USC and the nearby UC Irvine, the city has a steady supply of top-flight tech and engineering talent — not counting the graduates flocking to Los Angeles from across the world to enjoy its beaches, culture and year-round temperate climate.

Key Facts About Los Angeles Tech

  • Number of Tech Workers: 375,800; 5.5% of overall workforce (2024 CompTIA survey)
  • Major Tech Employers: Snap, Netflix, SpaceX, Disney, Google
  • Key Industries: Artificial intelligence, adtech, media, software, game development
  • Funding Landscape: $11.6 billion in venture capital funding in 2024 (Pitchbook)
  • Notable Investors: Strong Ventures, Fifth Wall, Upfront Ventures, Mucker Capital, Kittyhawk Ventures
  • Research Centers and Universities: California Institute of Technology, UCLA, University of Southern California, UC Irvine, Pepperdine, California Institute for Immunology and Immunotherapy, Center for Quantum Science and Engineering

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account