About the Role
The Staff Insider Threat Engineer is responsible for detecting, identifying, mitigating, and responding to critical or urgent insider threat situations, working closely with CSIRT, HR, Legal, Privacy, and other teams.
Responsibilities
- Lead the deployment, configuration, and tuning of insider threat detection tools.
- Mature and improve the comprehensive insider threat program.
- Monitor user and entity behavior analytics to identify suspicious activities and policy violations.
- Perform detection and investigative analysis for various digital devices, servers, networks, and cloud services.
- Perform advanced host and network forensics and malware analysis.
- Investigate and respond to incidents, providing recommendations to improve security posture.
- Track investigations and incidents through resolution.
- Analyze vulnerabilities from an insider threat perspective and escalate/remediate as needed.
- Use data from cyber defense tools to analyze events and mitigate insider threats.
- Maintain awareness of trends in security, regulatory, technology, and operational requirements.
- Maintain awareness of current threat landscape, including adversary tactics, techniques, and procedures.
- Create intellectual property such as procedural documentation and tools for automated analysis.
- Represent the Insider Threat team at internal and external forums.
- Perform on-call activities when required.
- Ensure the company's commitment to protect the integrity and confidentiality of systems and data.
Requirements
- Must independently possess the eligibility to work in the United States for any employer at the date of hire.
- Position is ineligible for employment Visa sponsorship.
- Minimum 10 years of progressive information security technology experience.
- Proven advanced analytical skills across various technologies.
- Advanced understanding of Networking and security concepts.
- Advanced understanding of Insider Threat Techniques and detection.
- Ability to generate incident and event writeups for a non-technical audience.
- Experience in identifying, triaging, and escalating tickets based on severity and malicious activity.
- Experience in responding to malicious threats coming from various sources.
- Experience with the incident response process.
- Ability to work within a team environment as well as independently.
- Effective communication skills to speak and write for all technology experience levels.
- Effective interpersonal skills, able to comfortably present to peers, coworkers, and customers.
- A propensity for continued development of skills though research and training.
- Background and drug screen.
Skills
- Insider Threat Techniques and detection
- Networking and security concepts
- Data Loss Prevention Tools
- EDR platforms
- SIEMs
- UBA tools
Location
- Scottsdale
- San Francisco
- Chicago
- New York
- Phoenix, AZ
- Chicago, IL
- San Francisco, CA
Work Type
- Hybrid
Experience Level
- Minimum 10 years of progressive information security technology experience
Education Level
- Bachelor’s degree or 2 year degree in Computer Science, Engineering, Math or Physical Science or equivalent experience.
Salary/Compensations
- $132,000 - $165,000 (Phoenix, AZ/ Chicago, IL)
- $158,000 - $198,000 (San Francisco, CA)
Benefits
- Discretionary incentive plan
- Competitive medical (PPO/HDHP), dental, and vision plans
- Company contributions to your Health Savings Account (HSA) or pre-tax savings through flexible spending accounts (FSA)
- 401(k) Retirement Plan with 100% Company Safe Harbor Match on first 6%
- Flexible Time Off for Exempt employees
- Generous PTO for Non-Exempt employees
- 11 paid company holidays
- Paid volunteer day
- 12 weeks of Paid Parental Leave
- Maven Family Planning support
About the Company
- Early Warning has powered and protected the U.S. financial system for over thirty years with cutting-edge solutions like Zelle®, Paze℠, and more.
- As a trusted name in payments, we partner with thousands of institutions to increase access to financial services and protect transactions for hundreds of millions of consumers and small businesses.
Equal Opportunity
- Pursuant to the San Francisco Fair Chance Ordinance, we will consider for employment qualified applicants with arrest and conviction records.
- Considers for employment, hires, retains and promotes qualified candidates on the basis of ability, potential, and valid qualifications without regard to race, religious creed, religion, color, sex, sexual orientation, genetic information, gender, gender identity, gender expression, age, national origin, ancestry, citizenship, protected veteran or disability status or any factor prohibited by law.
- Affirms in policy and practice to support and promote equal employment opportunity and affirmative action, in accordance with all applicable federal, state, and municipal laws.
- Prohibits discrimination on other bases such as medical condition, marital status or any other factor that is irrelevant to the performance of our employees.
