This list contains only the countries for which job offers have been published in the selected language (e.g., in the French version, only job offers written in French are displayed, and in the English version, only those in English).
Software Resources has an immediate, direct hire job opportunity for an Insider Risk Engineer – Cyber with a major corporation in Phoenix, AZ. 4 days per week on-site, Friday Remote. Our Insider Risk Program is a strategic initiative within the Security Risk & Compliance function, supporting the bank’s growth into a Large Financial Institution. It focuses on identifying, preventing, and mitigating risks to the bank and its customers that may arise from inadvertent or intentional actions by employees, contractors, or third parties.
Job Responsibility:
Manage and provide ownership of innovative threat detection, security audit, and logging solutions
Communicate, collaborate and justify cyber recommendations to a broad base of stakeholders
Be a key member of a multidisciplinary team that partners closely with Data Security, the Security Monitoring Center, Privacy, Legal, and HR
Manage the full stack (front end and back end) of applications utilized to help prevent, detect and respond to insider risk events of interest
Own the review and development of new processes and technologies to enhance the program’s ongoing maturity
Lead the continuous review and improvement of the defense, auditing, access standards, tactics, and techniques to meet regulatory guidelines
Own the resiliency of insider risk applications and platforms via routine disaster recovery exercises
Partner with vendors routinely to optimize insider risk products, as well as ensure costs/licenses do not exceed expectations, while maintaining capacity planning
Proactively identify and fix issues to improve backend service scalability, resiliency, and fault tolerance
Respond to insider risk events of interest in a timely manner alongside team members and key stakeholders
Respond to audit inquiries and ensure processes and procedures are within regulatory guidelines
Foster the highest level of engineering practices and follow relevant company procedures
Be held accountable for relevant documentation
Design and implement advanced detection logic to surface subtle behavioral anomalies indicative of insider risk across diverse data sources
Continuously refine and tune Insider Risk policies to reduce false positives and improve signal-to-noise ratio in alerting workflows
Engineer scalable data pipelines to ingest, normalize, and correlate identity, access, and activity data for risk modeling
Collaborate with security monitoring, threat intelligence and modeling teams to incorporate contextual enrichment and behavioral baselines into Insider Risk analytics
Prototype and evaluate emerging technologies (e.g., ML models, graph analytics) to enhance Insider Risk detection capabilities
Revisit Insider Risk tooling architecture design routinely with vendor and peers to either or all: minimize cost, optimize performance, scale, and meet new requirements
Requirements:
Insider risk experience
User Entity Behavior Analytics (UEBA)
Must be able to integrate API with the tool and build the API
Cyber Security experience and development expertise
C# .net, Python, API Development
CISSP CISM Desired but not required
No front End
More API Backend candidate
6+ years of related experience in IT–Security, IT–App Support, IT–Development or similar field
Bachelor’s degree in related field required
Previous leadership experience preferred
Advanced knowledge of general Financial Services or Banking is preferred
Advanced to expert experience with and knowledge of Linux, Python, PowerShell, SIEM and Bash
Solid understanding of authentication protocols SAML, SSO, and LDAP
Solid understanding of concepts regarding SIEM, SOAR, Firewall, Proxies, SSL/TLS, Secure Mail Gateways, Application Firewalls, NAC, Vulnerability Scanners, and EDR
Advanced experience with logging infrastructure concepts: syslog
log parsing
log de-duping
methods for log pulling
RFC 5424
CEF Format
JSON
key value pair format
log enrichment
log maintenance
log troubleshooting
Solid understanding of load balancers, DNS, SMTP, etc. for troubleshooting application functionality
Advanced experience of NIST, MITRE and Administration of either or all of an IT Automation platform, SOAR, Firewall, IAM platform, SIEM, cloud cyber defense platform etc
Hands-on experience deploying and operating a User & Entity Behavioral Analytics (UEBA) platform in a mid-large sized corporation, preferably in Financial Services
Expertise building Application Program Interfaces (APIs) from source systems of record to bring technical and non-technical indicators into the UEBA
Intermediate – Advanced ability to query and extract data from security monitoring systems (e.g., SIEM, EDR, NDR, etc.) for performing Insider Risk analysis
Experience correlating UEBA signals with identity, access, and data movement logs to detect anomalous behavior
Familiarity with government and industry best practice frameworks for managing Insider Risk (e.g., Carnegie Mellon, SIFMA, MITRE, NIST, etc.)
Ability to translate behavioral indicators into risk scoring models and escalation thresholds
Experience working cross-functionally with Legal, HR, and Compliance teams to investigate and respond to Insider Risk cases
Advanced speaking and writing communication skills
Nice to have:
CISSP CISM Desired but not required
Previous leadership experience preferred
Advanced knowledge of general Financial Services or Banking is preferred
Hands-on experience deploying and operating a User & Entity Behavioral Analytics (UEBA) platform in a mid-large sized corporation, preferably in Financial Services
Welcome to CrawlJobs.com – Your Global Job Discovery Platform
At CrawlJobs.com, we simplify finding your next career opportunity by bringing job listings directly to you from all corners of the web. Using cutting-edge AI and web-crawling technologies, we gather and curate job offers from various sources across the globe, ensuring you have access to the most up-to-date job listings in one place.
We use cookies to enhance your experience, analyze traffic, and serve personalized content. By clicking “Accept”, you agree to the use of cookies.