Current Statistics
1,581,556 Total Jobs 240,909 Jobs Today 17,821 Cities 222,734 Job Seekers 146,855 Resumes |
|
|
|
|
|
|
Insider Threat Engineer - Phoenix Arizona
Company: Disability Solutions Location: Phoenix, Arizona
Posted On: 01/29/2025
Job Title:Insider Threat EngineerLocation:CityScapeWhat you'll do:Western Alliance Bank's (WAB) Business Information Security Office is responsible for analyzing and conducting assessments of insider related threats and vulnerabilities identified by the WAB Insider Risk Program, including policy violations, system alerts, and other reported threats to the confidentiality, integrity, and availability of information assets. The role will coordinate investigations involving a variety of highly technical and/or business functional stakeholders across the WAB enterprise. This is key to ensuring the proactive management of insider-related risk services in compliance with Western Alliance Bank policies, standards, and frameworks.This individual will work as part of a matrixed team of cybersecurity professionals in a structure designed to help them succeed in delivering best-in-class security to this stakeholder group. - Facilitate/conduct investigations by analyzing and verifying information through various investigative techniques, internal resources, forensics, and Insider threat tools such as Data Loss Prevention, Endpoint Detection and Response, Network Traffic Analysis & Deceptive Technology to detect malicious lateral movement & privilege escalation in On-prem and Cloud environment.
- Provide actionable Insider threat analysis for remediation on all escalations.
- Triage Insider Threat alerts within SLA guidelines.
- Collaborate with internal teams to drive insider threat program continuous improvement.
- Assess and make recommendations for improvement and refinement of use cases, software tools, and other risk reduction methods used to improve the insider threat program.
- Proven experience using analytical and data visualization tools to automate the analysis and provide insights of large dataset and correlate with Elastic SIEM and other sources of information and conduct investigative works into anomalies against established baselines to identify the root cause of an incident or suspicious event.
- Stay current with the latest cyber threats, attacks, and vulnerabilities, and updated with evolving and emerging attack techniques and methods.
- Maintain and update related insider threat documentations such as IT Standards and Standard Operation Procedures and carry out activities specified in these artifacts.
- Participate in various cybersecurity exercises such as cyber tabletop and BCP.What you'll need:
- Bachelor's degree from a four-year college or university and eight (8) or more years of related experience and/or training; or a combination of experience and education:
|
|
|
|
|
|
|