Staff Insider Threat Engineer

Early Warning®Scottsdale, AZ
1d$132,000 - $165,000Hybrid

About The Position

At Early Warning, we’ve powered and protected the U.S. financial system for over thirty years with cutting-edge solutions like Zelle®, Paze℠, and so much more. As a trusted name in payments, we partner with thousands of institutions to increase access to financial services and protect transactions for hundreds of millions of consumers and small businesses. Positions located in Scottsdale, San Francisco, Chicago, or New York follow a hybrid work model to allow for a more collaborative working environment. Candidates responding to this posting must independently possess the eligibility to work in the United States, for any employer, at the date of hire. This position is ineligible for employment Visa sponsorship. Overall Purpose The Staff Insider Threat Engineer is part of a high-performance team, responsible for detecting, identifying, mitigating, and responding to critical or urgent insider threat situations. The individual will work closely with CSIRT, HR, Legal, Privacy, and other teams to identify, triage, and respond to insider threats.

Requirements

  • Education and/or experience typically obtained through completion of a Bachelor’s degree or 2 year degree in Computer Science, Engineering, Math or Physical Science or equivalent experience.
  • Minimum 10 years of progressive information security technology experience
  • Proven advanced analytical skills across various technologies
  • Advanced understanding of Networking and security concepts
  • Advanced understanding of Insider Threat Techniques and detection
  • Ability to generate incident and event writeups for a non-technical audience
  • Experience in identifying, triaging, and escalating tickets based on severity and malicious activity.
  • Experience in responding to malicious threats coming from various sources
  • Experience with the incident response process
  • Ability to work within a team environment as well as independently
  • Effective communication skills to speak and write for all technology experience levels.
  • Effective interpersonal skills, able to comfortably present to peers, coworkers, and customers
  • A propensity for continued development of skills though research and training
  • Background and drug screen.

Nice To Haves

  • Additional related education, certifications and/or experience is beneficial
  • Subject matter expert within Insider threat domains, threat actors, and data engineering.
  • Subject matter expert in one or more security tools such as EDR platforms, SIEMs or UBA tools
  • Working experience in cloud technology
  • Experience utilizing Data Loss Prevention Tools

Responsibilities

  • Lead the deployment, configuration, and tuning of insider threat detection tools to ensure optimal performance and integration with existing security systems.
  • Mature and improve the comprehensive insider threat program aligned with organizational goals and regulatory standards.
  • Monitor user and entity behavior analytics to identify suspicious activities and policy violations.
  • Performs detection and investigative analysis activities for a variety of digital devices, computers, storage media, servers, networks, and cloud-based services
  • Performs advanced host and network forensics and malware analysis; Investigates and responds to incidents; provides recommendations to improve company’s security posture.
  • Escalates complex issues as needed.
  • Performs the tracking of investigations and incidents through resolution
  • Helps analyze vulnerabilities from insider threat perspectives and escalate & remediate as needed
  • Uses data collected from a variety of cyber defense tools (e.g., DLP, IDS alerts, firewalls, network traffic logs) to analyze events that occur within their environments for the purposes of mitigating insider threats.
  • Maintains awareness of trends in security, regulatory, technology, and operational requirements, including Maintains awareness of current threat landscape, including adversary tactics, techniques, and procedures.
  • Creates intellectual property such as procedural documentation and tools for automated analysis and correlation activities
  • Represents the Insider threat team at internal and external threat intelligence and cybersecurity forums
  • Performs on-call activities when required
  • Ensures the company's commitment to protect the integrity and confidentiality of systems and data.

Benefits

  • Healthcare Coverage – Competitive medical (PPO/HDHP), dental, and vision plans as well as company contributions to your Health Savings Account (HSA) or pre-tax savings through flexible spending accounts (FSA) for commuting, health & dependent care expenses.
  • 401(k) Retirement Plan – Featuring a 100% Company Safe Harbor Match on your first 6% deferral immediately upon eligibility.
  • Paid Time Off – Flexible Time Off for Exempt (salaried) employees, as well as generous PTO for Non-Exempt (hourly) employees, plus 11 paid company holidays and a paid volunteer day.
  • 12 weeks of Paid Parental Leave
  • Maven Family Planning – provides support through your Parenting journey including egg freezing, fertility, adoption, surrogacy, pregnancy, postpartum, early pediatrics, and returning to work.
© 2024 Teal Labs, Inc
Privacy PolicyTerms of Service