
Staff Insider Risk Engineer
Posted Aug 21

Posted Aug 21
This is a fully remote position, open to applicants in Malaysia, +4 more countries.
• Develop, implement, and execute standards, procedures, and processes to manage, mitigate, and minimize cyberattack risks for RGA.
• Facilitate Global Security Operations through operational, developmental, and engineering efforts.
• Act as the technical lead for Insider Risk Management, enhancing and maturing RGA's Insider Risk capabilities.
• Engage in a 24/7 on-call rotation, including alert triage and incident investigations as needed.
• Lead Security Operations functions such as incident response, threat detection, offensive security, and insider risk management.
• Design, construct, and improve insider risk monitoring, detection, and investigative capabilities.
• Create and maintain detection use cases, workflows, and content across SIEM, UEBA, and Insider Risk platforms.
• Direct intricate investigations related to insider threats, compromised accounts, and suspicious user activities across various environments including endpoint, identity, email, cloud, and network.
• Evaluate and mitigate risks concerning data exfiltration, misuse of privileged access, fraud, policy breaches, exposure of sensitive data, and third-party access.
• Develop automation and orchestration solutions utilizing scripting, APIs, and SOAR technologies.
• Conduct advanced security analyses, threat emulation, detection validation, and telemetry assessments.
• Propel initiatives related to security audits, compliance, risk reduction, logging, and security tooling.
• Provide projects, dashboards, metrics, and reports to enhance security operations and lower cyber risk.
• Collaborate with Legal, Human Resources, Privacy, Compliance, Internal Audit, and Technology teams.
• Offer technical leadership, mentorship, and guidance to junior team members.
• Bachelor’s Degree in Arts/Sciences (BA/BS) or equivalent professional experience.
• Over 6 years of experience in cybersecurity, security engineering, security operations, incident response, threat detection, threat hunting, offensive security, or insider threat/risk management.
• More than 3 years of experience in developing automation, orchestration, and workflows to enhance security operations.
• Proven experience leading complex investigations, incident response activities, forensic analysis, and threat detection initiatives.
• Experience in developing security monitoring capabilities, behavioral analytics, metrics, reporting, and addressing telemetry gaps.
• Familiarity with SIEM, EDR, UEBA, and threat intelligence platforms such as Splunk, Microsoft Sentinel, CrowdStrike, Microsoft Defender, Exabeam, or similar technologies.
• Practical knowledge of Windows, Mac, Linux, networking, cloud platforms (AWS, Azure, GCP), identity technologies (Active Directory, Okta, SAML, OAuth, OpenID Connect), email security, and DNS security.
• Proficient in PowerShell, Python, or similar scripting languages, including API integrations and security automation.
• Strong analytical, investigative, problem-solving, and communication skills, with the capability to work independently in a globally distributed setting.
• Preferred experience in leading purple team exercises, threat emulation, or detection validation activities.
• Preferred familiarity with Microsoft 365 security technologies, including Defender, Entra ID, Purview Insider Risk Management, and Data Loss Prevention (DLP).
• Understanding of legal, privacy, compliance, and regulatory considerations related to insider risk investigations is preferred.
• Professional cybersecurity certifications and contributions to the industry through conferences, publications, or technical communities are preferred.
• Acquire valuable knowledge from and work alongside diverse, caring colleagues globally.
• Enjoy a respectful and welcoming environment that promotes individuality and encourages innovative thinking.
• Experience vast and limitless career opportunities.
• Benefit from AI-assisted preliminary screening with tailored job recommendations, automated interview scheduling, experience-based candidate evaluations, and chatbot responses.
• Receive personal support from an RGA recruiter throughout the hiring process.
Aya Healthcare
XBOX
Monarch Money
XBOX
Get handpicked remote jobs straight to your inbox weekly.