Staff Insider Risk Engineer

Posted Aug 21

This is a fully remote position, open to applicants in Malaysia, +4 more countries.

📋 Description

• Develop, implement, and execute standards, procedures, and processes to manage, mitigate, and minimize cyberattack risks for RGA.

• Facilitate Global Security Operations through operational, developmental, and engineering efforts.

• Act as the technical lead for Insider Risk Management, enhancing and maturing RGA's Insider Risk capabilities.

• Engage in a 24/7 on-call rotation, including alert triage and incident investigations as needed.

• Lead Security Operations functions such as incident response, threat detection, offensive security, and insider risk management.

• Design, construct, and improve insider risk monitoring, detection, and investigative capabilities.

• Create and maintain detection use cases, workflows, and content across SIEM, UEBA, and Insider Risk platforms.

• Direct intricate investigations related to insider threats, compromised accounts, and suspicious user activities across various environments including endpoint, identity, email, cloud, and network.

• Evaluate and mitigate risks concerning data exfiltration, misuse of privileged access, fraud, policy breaches, exposure of sensitive data, and third-party access.

• Develop automation and orchestration solutions utilizing scripting, APIs, and SOAR technologies.

• Conduct advanced security analyses, threat emulation, detection validation, and telemetry assessments.

• Propel initiatives related to security audits, compliance, risk reduction, logging, and security tooling.

• Provide projects, dashboards, metrics, and reports to enhance security operations and lower cyber risk.

• Collaborate with Legal, Human Resources, Privacy, Compliance, Internal Audit, and Technology teams.

• Offer technical leadership, mentorship, and guidance to junior team members.


⛳️ Requirements

• Bachelor’s Degree in Arts/Sciences (BA/BS) or equivalent professional experience.

• Over 6 years of experience in cybersecurity, security engineering, security operations, incident response, threat detection, threat hunting, offensive security, or insider threat/risk management.

• More than 3 years of experience in developing automation, orchestration, and workflows to enhance security operations.

• Proven experience leading complex investigations, incident response activities, forensic analysis, and threat detection initiatives.

• Experience in developing security monitoring capabilities, behavioral analytics, metrics, reporting, and addressing telemetry gaps.

• Familiarity with SIEM, EDR, UEBA, and threat intelligence platforms such as Splunk, Microsoft Sentinel, CrowdStrike, Microsoft Defender, Exabeam, or similar technologies.

• Practical knowledge of Windows, Mac, Linux, networking, cloud platforms (AWS, Azure, GCP), identity technologies (Active Directory, Okta, SAML, OAuth, OpenID Connect), email security, and DNS security.

• Proficient in PowerShell, Python, or similar scripting languages, including API integrations and security automation.

• Strong analytical, investigative, problem-solving, and communication skills, with the capability to work independently in a globally distributed setting.

• Preferred experience in leading purple team exercises, threat emulation, or detection validation activities.

• Preferred familiarity with Microsoft 365 security technologies, including Defender, Entra ID, Purview Insider Risk Management, and Data Loss Prevention (DLP).

• Understanding of legal, privacy, compliance, and regulatory considerations related to insider risk investigations is preferred.

• Professional cybersecurity certifications and contributions to the industry through conferences, publications, or technical communities are preferred.


🏝️ Benefits

• Acquire valuable knowledge from and work alongside diverse, caring colleagues globally.

• Enjoy a respectful and welcoming environment that promotes individuality and encourages innovative thinking.

• Experience vast and limitless career opportunities.

• Benefit from AI-assisted preliminary screening with tailored job recommendations, automated interview scheduling, experience-based candidate evaluations, and chatbot responses.

• Receive personal support from an RGA recruiter throughout the hiring process.

People also viewed

Aya Healthcare15 hours ago

Senior GRC Analyst

US flagUnited States OnlyFull-timeRisk$105k – $135k/year
ApplyView job
XBOX15 hours ago

Senior Purchase to Pay (P2P) Engagement & Governance Specialist

US flagCalifornia OnlyFull-timeRisk$65.8k – $121.7k/year
ApplyView job
Monarch Money17 hours ago

Senior Security GRC Analyst

US flagUnited States OnlyFull-timeRisk$180k – $215k/year
ApplyView job
XBOX19 hours ago

Senior Purchase to Pay (P2P) Engagement – Governance Specialist

US flagCalifornia OnlyFull-timeRisk$79.4k – $146.8k/year
ApplyView job
Ramboll21 hours ago

Consultant, Climate Risk

US flagVirginia OnlyFull-timeRisk$69.2k – $100.2k/year
ApplyView job
SGS21 hours ago

Fire Risk Assessor

PL flagPoland OnlyFull-timeRisk£42k/year
ApplyView job

Never miss a great job!

Get handpicked remote jobs straight to your inbox weekly.

Trusted by 7,400+ designers