Назад
Company hidden
7 дней назад

Senior Insider Threat Engineer (Cybersecurity)

97 900 - 133 500$
Формат работы
hybrid
Тип работы
fulltime
Грейд
senior
Английский
b2
Страна
US
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/
TL;DR
Senior Insider Threat Engineer (Cybersecurity): Configure, optimize, and integrate enterprise insider threat platforms to detect, investigate, and mitigate negligent and malicious insider activity with an accent on Microsoft Purview, Proofpoint ITM, eDiscovery, and cross-platform security telemetry. Focus on tuning detection policies, correlating SIEM/UEBA/EDR signals, automating operational workflows with KQL and PowerShell, and supporting regulated investigations.

Location: Remote within approximately 60 minutes of Louisville, DC Metro, Dallas Metro, Fort Lauderdale/Tampa, NYC, Chicago, Boston, Charlotte, Atlanta, or Nashville. Occasional travel to hirify.global offices for training or meetings may be required.

Salary: $97,900–$133,500 per year, plus eligibility for a bonus incentive plan.

Company

hirify.global is a U.S. healthcare and insurance company providing services through hirify.global insurance and CenterWell healthcare operations.

What you will do

  • Configure, tune, and maintain Microsoft Purview Insider Risk Management, Communication Compliance, DLP, and eDiscovery capabilities.
  • Develop policies, sensitive information types, trainable classifiers, adaptive scopes, and insider threat use cases.
  • Investigate alerts, analyze false positives, improve signal quality, and reduce analyst fatigue.
  • Operate Proofpoint Insider Threat Management and correlate its telemetry with Splunk, Defender XDR, UEBA, and EDR data.
  • Develop KQL, PowerShell, and Graph API automation for policy deployment, reporting, and platform health checks.
  • Track detection and platform KPIs/KRIs while supporting governance and regulatory requirements.

Requirements

  • 5+ years of cybersecurity experience focused on insider threat, DLP, information protection, or compliance technologies.
  • Hands-on experience with Microsoft Purview Insider Risk Management, Communication Compliance, and DLP policy design, scoping, and alert triage.
  • Experience supporting Microsoft Purview eDiscovery or a comparable platform for investigations and legal holds.
  • Working knowledge of endpoint insider threat monitoring platforms such as Proofpoint ITM, DTEX, or Teramind.
  • Proficiency with KQL and PowerShell, plus strong understanding of insider threat tactics including data exfiltration, fraud, intellectual property theft, and sabotage.
  • Residence within approximately 60 minutes of one of the listed U.S. metropolitan areas is required.

Nice to have

  • Microsoft SC-401 certification or other cybersecurity and insider threat certifications.
  • Bachelor’s degree or higher in cybersecurity, information technology, data science, or a related field.
  • Experience with Claude Code or similar agentic AI development tools.
  • Experience with Microsoft Graph API, adaptive scopes, sensitivity labels, trainable classifiers, Proofpoint ITM administration, and SIEM/UEBA integrations.

Culture & Benefits

  • Remote work with a dedicated, interruption-free workspace required to protect member PHI and HIPAA information.
  • Self-provided internet service must support at least 25 Mbps download and 10 Mbps upload speeds.
  • 40-hour workweek with full-time employment.
  • Medical, dental, vision, life insurance, short- and long-term disability, and 401(k) benefits.
  • Paid time off, company and personal holidays, parental and caregiver leave, and bonus incentive eligibility.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →