Назад
Company hidden
22 дня назад

Staff Insider Threat Analyst (Cybersecurity)

Π€ΠΎΡ€ΠΌΠ°Ρ‚ Ρ€Π°Π±ΠΎΡ‚Ρ‹
onsite
Π’ΠΈΠΏ Ρ€Π°Π±ΠΎΡ‚Ρ‹
fulltime
Π“Ρ€Π΅ΠΉΠ΄
senior
Английский
b2
Π‘Ρ‚Ρ€Π°Π½Π°
Taiwan
Вакансия ΠΈΠ· списка Hirify.GlobalВакансия ΠΈΠ· Hirify Global, списка ΠΌΠ΅ΠΆΠ΄ΡƒΠ½Π°Ρ€ΠΎΠ΄Π½Ρ‹Ρ… tech-ΠΊΠΎΠΌΠΏΠ°Π½ΠΈΠΉ
Для мэтча ΠΈ ΠΎΡ‚ΠΊΠ»ΠΈΠΊΠ° Π½ΡƒΠΆΠ΅Π½ Plus

ΠœΡΡ‚Ρ‡ & Π‘ΠΎΠΏΡ€ΠΎΠ²ΠΎΠ΄

Для мэтча с этой вакансиСй Π½ΡƒΠΆΠ΅Π½ Plus

ОписаниС вакансии

ВСкст:
/
TL;DR
Staff Insider Threat Analyst (Cybersecurity): Conducting full-lifecycle technical analysis of insider threat cases in Taipei, correlating DLP, EDR, SIEM, and other data sources with an accent on behavioral analysis, host-based investigation, and detection engineering. Focus on managing sensitive investigations, building comprehensive event timelines, automating analysis with Python, PowerShell, and Bash, and translating technical findings into actionable security recommendations.

Location: Taipei, Taiwan

Company

hirify.global operates an e-commerce business in Taiwan, including Rocket Delivery and Rocket Oversea services.

What you will do

  • Perform the full lifecycle of technical analysis for insider threat cases, from alert triage through complex data-driven reviews.
  • Hunt for anomalous user behavior by correlating DLP, EDR, SIEM/SOR, and other data sources.
  • Review user activity, system artifacts, endpoint data, application logs, and network evidence to build event timelines.
  • Support Investigations, Legal, and HR teams with clear, objective technical findings and reports.
  • Act as a technical subject matter expert and guide other analysts on insider threat data sources.
  • Develop and refine detection logic, playbooks, alert criteria, and strategic security recommendations.

Requirements

  • 6+ years of information security experience, including at least 3+ years of hands-on insider threat analysis.
  • Expertise with UBA or insider threat platforms, EDR solutions, SIEM, data lakes, and host-based analysis.
  • Experience reviewing endpoint, application, and network log artifacts and managing complex, sensitive cases autonomously.
  • Strong investigative mindset with analytical, detail-oriented, skeptical, objective, and root-cause-focused approach.
  • Scripting skills in Python, PowerShell, and Bash for automation and data analysis.
  • Bachelor’s degree in Computer Science, Information Security, or equivalent practical experience.

Nice to have

  • Experience building or significantly maturing an insider threat program.
  • Relevant certifications such as GCIH or CISSP.
  • Native Mandarin and proficient business English.
  • Familiarity with digital forensic toolsets and forensic principles.

Culture & Benefits

  • High-autonomy role serving as the team’s primary technical expert.
  • Collaboration with Investigations, Legal, HR, and technical and non-technical partners.
  • Opportunity to improve insider threat detection maturity and security controls.

Hiring process

  • Application review.
  • Phone interview.
  • Onsite or virtual onsite interview, followed by an offer.

Π‘ΡƒΠ΄ΡŒΡ‚Π΅ остороТны: Ссли Ρ€Π°Π±ΠΎΡ‚ΠΎΠ΄Π°Ρ‚Π΅Π»ΡŒ просит Π²ΠΎΠΉΡ‚ΠΈ Π² ΠΈΡ… систСму, ΠΈΡΠΏΠΎΠ»ΡŒΠ·ΡƒΡ iCloud/Google, ΠΏΡ€ΠΈΡΠ»Π°Ρ‚ΡŒ ΠΊΠΎΠ΄/ΠΏΠ°Ρ€ΠΎΠ»ΡŒ, Π·Π°ΠΏΡƒΡΡ‚ΠΈΡ‚ΡŒ ΠΊΠΎΠ΄/ПО, Π½Π΅ Π΄Π΅Π»Π°ΠΉΡ‚Π΅ этого - это мошСнники. ΠžΠ±ΡΠ·Π°Ρ‚Π΅Π»ΡŒΠ½ΠΎ ΠΆΠΌΠΈΡ‚Π΅ "ΠŸΠΎΠΆΠ°Π»ΠΎΠ²Π°Ρ‚ΡŒΡΡ" ΠΈΠ»ΠΈ ΠΏΠΈΡˆΠΈΡ‚Π΅ Π² ΠΏΠΎΠ΄Π΄Π΅Ρ€ΠΆΠΊΡƒ. ΠŸΠΎΠ΄Ρ€ΠΎΠ±Π½Π΅Π΅ Π² Π³Π°ΠΉΠ΄Π΅ β†’