Job Description
An Insight Global Client is seeking an Insider Threat Engineer to join their team.
• Assuring implementation of technical solutions supportive of institution information and Cybersecurity systems while identifying potential threatening behaviors through analysis of user compliance.
• Supporting information security operations, Cyber risk & intelligence, data loss and fraud protection, regulatory compliance, policy management and audits and assessment.
• Perform root cause analysis to identify and incorporate opportunities for continuous process improvement and future risk mitigation efforts, will be able to comprehend functionality of multiple technical tools and develop understanding of collection techniques and methodologies, recommend and develop requirements, specifications, design and procedures to satisfy security policy and planning and understand and author analytical reports identifying technical and behavioral analysis identified through independent reviews using multiple technology solutions.
• Ensures Cybersecurity needs are established and maintained for operations, security requirements, security risk assessment, information systems analysis, information systems design, information systems hardening, configuration and maintenance of other security boundary devices and vulnerability scanning, incident response, disaster recover, and operations continuity planning.
• Provide analytical support for security policy development and analysis identifying countermeasures associated with responsibilities.
• Engineer, implement, and maintain information technology solutions and associated Cybersecurity controls directly supporting the Insider Threat Program.
• Directly support the Insider Threat Program and focus on operational collection methods while performing studies through analysis and provide decision support for potential program enhancements in direct support of guidance derived from contractual requirements outlined in 32 CFR Part 117, National Industrial Security Program Operating Manual (NISPOM), Executive Order (E.O.) 13587, and the National Insider Threat Task Force (NITTF) Maturity Guidelines.
• Through the analytical and behavioral analysis collected through technological solutions, initiate response actions supporting daily operations and compliance to Internal Information Systems and Cybersecurity policies.
• Provides technical assistance to include the support of unclassified networks and additional duties as required.
We are a company committed to creating diverse and inclusive environments where people can bring their full, authentic selves to work every day. We are an equal opportunity/affirmative action employer that believes everyone matters. Qualified candidates will receive consideration for employment regardless of their race, color, ethnicity, religion, sex (including pregnancy), sexual orientation, gender identity and expression, marital status, national origin, ancestry, genetic factors, age, disability, protected veteran status, military or uniformed service member status, or any other status or characteristic protected by applicable laws, regulations, and ordinances. If you need assistance and/or a reasonable accommodation due to a disability during the application or recruiting process, please send a request to HR@insightglobal.com.To learn more about how we collect, keep, and process your private information, please review Insight Global's Workforce Privacy Policy: https://insightglobal.com/workforce-privacy-policy/.
Required Skills & Experience
- Completed Bachelors degree and 5 years of experience OR Completed Masters degree and 3 years of experience minimum
• Practical knowledge of security applications and technologies, as well as operating system platforms including Windows, Mac, Linux, and Networking technologies.
• Previous experience with insider threat, reporting, processes and tools.
• Hands on knowledge of insider threat tools (e.g., DTEX, Incydr, Gurucul, etc.) in complex or large organizations.
• Technical background to understand the insider risk characteristics and exploitation vectors for insider risk.
• Strong knowledge of data analytics. Experience with advanced Excel data manipulation and analysis including pivot tables, light macros, intermediate formulas.
• Previous experience in analyzing data to present relevant metrics to remediation stakeholders and leadership.
• Deep understanding of cybersecurity best practices and frameworks such as NIST 800-53/171, CMMC, RMF, MITRE, ATT&CK Framework, and OWASP top 10.
• Insider Risk management expertise with ability to translate technical risks for business leaders.
• Experience judging the priority of an insider threat based on risk and impact.
• Excellent written and verbal communication skills.
• One or more basic cybersecurity certifications such as: Security+, CEH, CND, CySA+, CCNA-Security or equivalent.
Nice to Have Skills & Experience
• Active Secret clearance.
• Master’s degree.
• 9 years of inside threat experience.
• Experience leading or managing an Insider Threat program.
• One or more advanced cybersecurity certifications such as: CISSP, CISM, CISA, CASP, GEVA, CCNP-Security or equivalent.
Benefit packages for this role will start on the 31st day of employment and include medical, dental, and vision insurance, as well as HSA, FSA, and DCFSA account options, and 401k retirement account access with employer matching. Employees in this role are also entitled to paid sick leave and/or other paid time off as provided by applicable law.