Support the Cyber Threat Investigations & Analysis Division (CTAD) in conducting end-to-end insider threat and cyber investigations leveraging User Activity Monitoring (UAM) tools and data. * Collect ...
Support the Cyber Threat Investigations & Analysis Division (CTAD) in conducting end-to-end insider threat and cyber investigations leveraging User Activity Monitoring (UAM) tools and data. * Collect ...
The ideal candidate will possess strong analytical skills, deep knowledge of cyber investigative methodologies, and the ability to develop actionable intelligence products and brief senior leaders.
The ideal candidate will possess strong analytical skills, deep knowledge of cyber investigative methodologies, and the ability to develop actionable intelligence products and brief senior leaders.
Cyber Threat Hunter
$130K - $140K/yr
Cyber Threat Hunter - SME Location: Sterling, VA and Beltsville, MD Terms: Full-time Requirements ... Conducts data analysis in support of directed assessments, anomaly investigations, long term ...
Quick apply
Cyber Threat Hunter
$130K - $140K/yr
Cyber Threat Hunter - SME Location: Sterling, VA and Beltsville, MD Terms: Full-time Requirements ... Conducts data analysis in support of directed assessments, anomaly investigations, long term ...
Cyber Investigations Analyst - OTA / Active Top Secret with Security Clearance
Arlington, VA · On-site
$80K - $128K/yr
Cyber Monitoring and Operations, Cyber Threat and Investigations, and Technology Innovation and Engineering State. About The Role Peraton is looking for a Cyber Investigations Analystto become part ...
Cyber Investigations Analyst - OTA / Active Top Secret with Security Clearance
Arlington, VA · On-site
$80K - $128K/yr
Cyber Monitoring and Operations, Cyber Threat and Investigations, and Technology Innovation and Engineering State. About The Role Peraton is looking for a Cyber Investigations Analystto become part ...
Cyber Threat Hunter
$130K - $140K/yr
Cyber Threat Hunter - SME Location: Sterling, VA and Beltsville, MD Terms: Full-time Requirements ... Conducts data analysis in support of directed assessments, anomaly investigations, long term ...
Quick apply
Cyber Threat Hunter
$130K - $140K/yr
Cyber Threat Hunter - SME Location: Sterling, VA and Beltsville, MD Terms: Full-time Requirements ... Conducts data analysis in support of directed assessments, anomaly investigations, long term ...
Conduct cyber threat analysis and intrusion investigations to identify malicious activity, threat actors, and indicators of compromise. * Perform research, binary analysis, and reverse engineering of ...
Conduct cyber threat analysis and intrusion investigations to identify malicious activity, threat actors, and indicators of compromise. * Perform research, binary analysis, and reverse engineering of ...
Cyber Investigations Analyst - OTA / Active Top Secret with Security Clearance
Arlington, VA · On-site
$80K - $128K/yr
Cyber Monitoring and Operations, Cyber Threat and Investigations, and Technology Innovation and Engineering State. About The Role Peraton is looking for a Cyber Investigations Analystto become part ...
Cyber Investigations Analyst - OTA / Active Top Secret with Security Clearance
Arlington, VA · On-site
$80K - $128K/yr
Cyber Monitoring and Operations, Cyber Threat and Investigations, and Technology Innovation and Engineering State. About The Role Peraton is looking for a Cyber Investigations Analystto become part ...
Cyber Threat Analyst (SME) , Advisor
Chantilly, VA · On-site
$176K - $282K/yr
Reverse engineer malicious implants, malware, and adversary toolsets to support cyber investigations. * Evaluate technical indicators and cyber intrusion data to produce actionable intelligence for ...
Cyber Threat Analyst (SME) , Advisor
Chantilly, VA · On-site
$176K - $282K/yr
Reverse engineer malicious implants, malware, and adversary toolsets to support cyber investigations. * Evaluate technical indicators and cyber intrusion data to produce actionable intelligence for ...
Reverse engineer malicious implants, malware, and adversary toolsets to support cyber investigations. * Evaluate technical indicators and cyber intrusion data to produce actionable intelligence for ...
Reverse engineer malicious implants, malware, and adversary toolsets to support cyber investigations. * Evaluate technical indicators and cyber intrusion data to produce actionable intelligence for ...
Reverse engineer malicious implants, malware, and adversary toolsets to support cyber investigations. * Evaluate technical indicators and cyber intrusion data to produce actionable intelligence for ...
Reverse engineer malicious implants, malware, and adversary toolsets to support cyber investigations. * Evaluate technical indicators and cyber intrusion data to produce actionable intelligence for ...
Support cyber forensic investigations through evidence coordination, compromised media intake, and collaboration with forensic laboratories. * Develop technical intelligence reports, threat ...
Support cyber forensic investigations through evidence coordination, compromised media intake, and collaboration with forensic laboratories. * Develop technical intelligence reports, threat ...
Reverse engineer malicious implants, malware, and adversary toolsets to support cyber investigations. * Evaluate technical indicators and cyber intrusion data to produce actionable intelligence for ...
Reverse engineer malicious implants, malware, and adversary toolsets to support cyber investigations. * Evaluate technical indicators and cyber intrusion data to produce actionable intelligence for ...
Cyber FinCrime Analyst
Washington, DC · On-site
$85K - $141K/yr
Support investigations by mapping flow of funds, identifying typologies of cyber-enabled financial crimes (e.g., ransomware payments, fraud schemes, money laundering), and linking transactions to ...
Cyber FinCrime Analyst
Washington, DC · On-site
$85K - $141K/yr
Support investigations by mapping flow of funds, identifying typologies of cyber-enabled financial crimes (e.g., ransomware payments, fraud schemes, money laundering), and linking transactions to ...
Cyber FinCrime Analyst
Washington, DC · On-site
$85K - $141K/yr
Support investigations by mapping flow of funds, identifying typologies of cyber-enabled financial crimes (e.g., ransomware payments, fraud schemes, money laundering), and linking transactions to ...
Cyber FinCrime Analyst
Washington, DC · On-site
$85K - $141K/yr
Support investigations by mapping flow of funds, identifying typologies of cyber-enabled financial crimes (e.g., ransomware payments, fraud schemes, money laundering), and linking transactions to ...
Cyber Threat Analyst
Linthicum, MD · On-site
Support cyber forensic investigations through evidence coordination, compromised media intake, and collaboration with forensic laboratories. * Develop technical intelligence reports, threat ...
Cyber Threat Analyst
Linthicum, MD · On-site
Support cyber forensic investigations through evidence coordination, compromised media intake, and collaboration with forensic laboratories. * Develop technical intelligence reports, threat ...
Job Title Senior-Level CI Specialist (Cyber Crime Investigator - TAB/CVE) Location Washington, DC 20032 US (Primary) Category Intelligence Job Type Full-Time Career Level Staff Education Master ...
Job Title Senior-Level CI Specialist (Cyber Crime Investigator - TAB/CVE) Location Washington, DC 20032 US (Primary) Category Intelligence Job Type Full-Time Career Level Staff Education Master ...
Identify, investigate and analyze cyber events of CI significance. * Adapt and develop tools for applying standard cyber security and analysis practices to the CI mission. * Perform all source ...
Identify, investigate and analyze cyber events of CI significance. * Adapt and develop tools for applying standard cyber security and analysis practices to the CI mission. * Perform all source ...
Prescient Edge is seeking a Mid CI Specialist (Cyber Crime Investigator) to support a federal government client. Benefits: At Prescient Edge, we believe that acting with integrity and serving our ...
Prescient Edge is seeking a Mid CI Specialist (Cyber Crime Investigator) to support a federal government client. Benefits: At Prescient Edge, we believe that acting with integrity and serving our ...
Cyber Forensics Analyst
Portland, OR · On-site
The Forensics Analyst Mid performs hands-on forensic analysis and malware investigation activities ... cyber incidents. * Analyze Windows Registry, Windows System Calls, Linux artifacts, file system ...
Cyber Forensics Analyst
Portland, OR · On-site
The Forensics Analyst Mid performs hands-on forensic analysis and malware investigation activities ... cyber incidents. * Analyze Windows Registry, Windows System Calls, Linux artifacts, file system ...
Cyber Forensic Analyst II
Vienna, VA · On-site
Conduct financial cyber investigations of complex financial and business records which shall include advanced analytical, technical, and operational support. * Conduct complete and accurate research ...
Cyber Forensic Analyst II
Vienna, VA · On-site
Conduct financial cyber investigations of complex financial and business records which shall include advanced analytical, technical, and operational support. * Conduct complete and accurate research ...
Cyber Investigator Job information
See salary details
$30.5K - $38.1K
4% of jobs
$38.1K - $45.7K
12% of jobs
$49.8K is the 25th percentile. Wages below this are outliers.
$45.7K - $53.3K
17% of jobs
$53.3K - $60.9K
12% of jobs
The median wage is $64.7K / yr.
$60.9K - $68.5K
12% of jobs
$68.5K - $76K
11% of jobs
$81.7K is the 75th percentile. Wages above this are outliers.
$76K - $83.6K
12% of jobs
$83.6K - $91.2K
7% of jobs
$91.2K - $98.8K
8% of jobs
$98.8K - $106.4K
5% of jobs
$106.4K - $114K
1% of jobs
$30.5K
$70.1K
$114K
How much do cyber investigator job jobs pay per year?

$80K - $128K/yr
Full-time
Re-posted 21 days ago
Peraton rating
8.3
Based on 56 frontline employees who took The Breakroom Quiz
50th of 223 rated it services
Job description
Peraton is looking for a Cyber Investigations Analyst to become part of our Federal Strategic Cyber Group.
Location: Rosslyn, VA; full-time, on-site role.
In this role, you will:
- Support the Cyber Threat Investigations & Analysis Division (CTAD) in conducting end-to-end insider threat and cyber investigations leveraging User Activity Monitoring (UAM) tools and data.
- Collect, analyze, and interpret log data to detect anomalous user behavior, policy violations, and potential insider threats across enterprise systems.
- Develop and refine detection rules, alerts, and behavioral baselines to improve threat detection capabilities.
- Conduct forensic analysis of user activity logs, endpoint telemetry, and network data to support investigations and produce actionable intelligence.
- Communicate complex investigative findings to both technical and non-technical stakeholders, including senior management.
- Collaborate with legal, HR, and security teams to ensure investigations are conducted in accordance with applicable laws, policies, and Department guidelines.
- Author detailed investigation reports, bulletins, and advisories documenting findings.
- Promote awareness of insider threat indicators and UAM best practices among customer stakeholders, coworkers, and Department users.
- Respond to escalated security incidents and provide expert guidance on user activity-related threat vectors.
- Manage case documentation and investigative records in SharePoint repositories.
- Provide guidance and mentorship to junior team members on investigative techniques and tool usage.
- Stay current on emerging insider threat tactics, techniques, and procedures (TTPs) and incorporate findings into detection strategies.
#DSCM
QualificationsMinimum requirements:
- A Bachelor's degree and 5 years of experience. An additional 4 years of experience may be substituted in lieu of the bachelors degree requirement.
- Minimum of 2 years experience in cybersecurity, digital forensics, or cyber investigations.
- Must either possess and maintain, or obtain prior to start date, one of the following professional certifications:
- CISSP-ISSAP; CISSP-ISSEP; CISSP; Security+ CE; CySA+; PPDA; Agile IC; SNOW App Dev
- Experience conducting insider threat or cyber misconduct investigations in an enterprise environment.
- Experience analyzing large datasets of user activity, log data, and endpoint telemetry.
- Strong analytical, problem-solving, and decision-making skills to support complex, sensitive investigations.
- Excellent written and verbal communication skills, including experience producing formal investigative reports.
- Must possess strong time management skills and the ability to complete assigned tasks with minimal supervision.
- U.S. citizenship required.
- Active Top Secret security clearance.
- Ability to obtain a final Top Secret/SCI security clearance.
Desired:
- Experience with insider threat programs and familiarity with the National Insider Threat Policy.
- Familiarity with SIEM platforms (e.g., Splunk, Microsoft Sentinel) for correlating UAM data with broader security telemetry.
- Experience with digital forensics tools (e.g., EnCase, FTK, Magnet AXIOM).
- Knowledge of Active Directory and Azure AD for user account analysis.
- Experience working in a government or federal law enforcement investigative environment.
- Technical writing skills and experience producing materials for senior leadership audiences.
- Familiarity with chain of custody procedures, and eDiscovery processes.
- Experience with behavioral analytics platforms or UEBA (User and Entity Behavior Analytics) tools.
#DSCM
Peraton OverviewPeraton is a next-generation national security company that drives missions of consequence spanning the globe and extending to the farthest reaches of the galaxy. As the world's leading mission capability integrator and transformative enterprise IT provider, we deliver trusted, highly differentiated solutions and technologies to protect our nation and allies. Peraton operates at the critical nexus between traditional and nontraditional threats across all domains: land, sea, space, air, and cyberspace. The company serves as a valued partner to essential government agencies and supports every branch of the U.S. armed forces. Each day, our employees do the can't be done by solving the most daunting challenges facing our customers. Visit peraton.com to learn how we're keeping people around the world safe and secure.
Target Salary Range$80,000 - $128,000. This represents the typical salary range for this position. Salary is determined by various factors, including but not limited to, the scope and responsibilities of the position, the individual's experience, education, knowledge, skills, and competencies, as well as geographic location and business and contract considerations. Depending on the position, employees may be eligible for overtime, shift differential, and a discretionary bonus in addition to base pay.EEOEEO: Equal opportunity employer, including disability and protected veterans, or other characteristics protected by law.Employment Type: FULL_TIMEAbout Peraton
Sourced by ZipRecruiter
At Peraton, we re at the forefront of delivering the next big thing every day. We re the partner of choice to help solve some of the world s most daunting challenges, delivering bold, new solutions to keep people around the world safer and more secure.
Industry
It services
Company size
10,000+ Employees
Headquarters location
Herndon, VA, US
Year founded
2017