
Manager, Insider Trust
Posted 5 days ago

Posted 5 days ago
This is a fully remote position, open to applicants in Arizona, +3 more states.
• Lead, develop, and mentor the Insider Trust team.
• Direct and conduct investigations related to sensitive data, systems, and workforce activities.
• Enhance and refine detection, monitoring, and escalation workflows for insider risk management.
• Ensure that investigations are conducted in a timely, proportionate manner, thoroughly documented, and supported by defendable evidence.
• Collaborate with Legal, People, IT, and Security throughout the investigation and response processes.
• Identify control deficiencies and convert investigative insights into sustainable technical and procedural enhancements.
• Establish metrics that reflect the effectiveness of the program, the quality of investigations, and the breadth of detection capabilities.
• Clearly communicate sensitive findings to both executive and operational stakeholders.
• Safeguard sensitive data and enhance the organization’s capacity to detect and respond to concerning activities.
• Over 7 years of experience in insider risk, detection engineering, security operations, incident response, digital forensics, data protection, threat hunting, or a related security discipline.
• More than 2 years of experience leading an insider risk, investigations, or a closely related security team.
• Capability to lead a team while maintaining a hands-on role in technical investigations and detection development.
• Experience managing the complete investigation lifecycle, including scoping, evidence collection, timeline development, analysis, documentation, escalation, and lessons learned.
• Strong understanding of digital forensics, evidence preservation, chain of custody, incident response coordination, and case management.
• Experience collaborating with Legal and People teams on sensitive workforce investigations.
• Awareness of legal, privacy, confidentiality, and employee-relations issues associated with workforce investigations.
• Background in software, financial services, or other sectors that handle highly sensitive data.
• Excellent written and verbal communication skills, sound judgment, and the ability to operate discreetly in high-trust environments.
• Preferred: experience in a remote-first and globally distributed organization.
• Preferred: experience in investigating data movement across email, cloud storage, collaboration platforms, source code repositories, build systems, artifact stores, browsers, AI tools, removable media, and unmanaged or partially managed devices.
• Preferred: practical experience with SIEM, DLP, or endpoint telemetry.
• Preferred: experience in developing queries, analytics, or automation for identifying and investigating suspicious behavior.
• Preferred: experience creating investigation playbooks, escalation criteria, program metrics, and detection coverage.
• Preferred: experience leading projects, reviewing technical designs, and mentoring engineers or investigators.
• Preferred: working knowledge of blockchain technology, including hardware wallets and signing operations.
• Long-term incentives.
• Comprehensive benefits package.
• Global and remote work opportunities.
• Chance to align working hours with Eastern Standard Time (EST).
Mercor
ICF
ICF
The Cigna Group
Get handpicked remote jobs straight to your inbox weekly.