As a Insider Risk Engineer - Cyber you'll work both independently and as part of a cohesive team to manage and provide ownership of innovative threat detection, security audit, and logging solutions. You'll take the lead to communicate, collaborate and justify cyber recommendations to a broad base of stakeholders throughout the IT, Cyber and Audit department. Western Alliance Bank’s Insider Risk Program is a strategic initiative within the Security Risk & Compliance function, supporting the bank’s growth into a Large Financial Institution. It focuses on identifying, preventing, and mitigating risks to the bank and its customers that may arise from inadvertent or intentional actions by employees, contractors, or third parties. As the Insider Risk Engineer, you’ll be a key member of a multidisciplinary team that partners closely with Data Security, the Security Monitoring Center, Privacy, Legal, and HR, among others. You'll manage the full stack (front end and back end) of applications utilized to help Western Alliance Bank prevent, detect and respond to insider risk events of interest. You'll own the review and development of new processes and technologies to enhance the program’s ongoing maturity. Additionally, you'll lead the continuous review and improvement of the defense, auditing, access standards, tactics, and techniques to meet regulatory guidelines as well as owning the resiliency of insider risk applications and platforms via routine disaster recovery exercises. You'll partner with vendors routinely to optimize insider risk products, as well as ensure costs/licenses do not exceed expectations, while maintaining capacity planning to ensure quality and value delivery of insider risk program objectives. Proactively identify and fix issues to improve backend service scalability, resiliency, and fault tolerance. Respond to insider risk events of interest in a timely manner alongside team members and key stakeholders. Respond to audit inquiries and ensure processes and procedures are within regulatory guidelines. Foster the highest level of engineering practices and follow relevant company procedures, in addition to being held accountable for relevant documentation. Design and implement advanced detection logic to surface subtle behavioral anomalies indicative of insider risk across diverse data sources. Continuously refine and tune Insider Risk policies to reduce false positives and improve signal-to-noise ratio in alerting workflows. Engineer scalable data pipelines to ingest, normalize, and correlate identity, access, and activity data for risk modeling. Collaborate with security monitoring, threat intelligence and modeling teams to incorporate contextual enrichment and behavioral baselines into Insider Risk analytics. Prototype and evaluate emerging technologies (e.g., ML models, graph analytics) to enhance Insider Risk detection capabilities. Revisit Insider Risk tooling architecture design routinely with vendor and peers to either or all: minimize cost, optimize performance, scale, and meet new requirements.
Stand Out From the Crowd
Upload your resume and get instant feedback on how well it matches this job.
Job Type
Full-time
Career Level
Mid Level