Insider Risk Analyst

Starr

New York (NY)

On-site

USD 85,000 - 120,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

Starr, a global leader in commercial insurance, seeks an Insider Risk Analyst to identify and mitigate insider threats. You will monitor data, analyze UEBA telemetry, and use SIEM tools to detect suspicious activity across the organization.

Collaborating with IT, HR, and Legal, you will triage incidents, prepare detailed assessments, and propose risk-based mitigations to strengthen Starr's security posture.

Qualifications

  • Degree in cybersecurity, IT, or related field required; advanced degree preferred.
  • 1–2 years in cybersecurity preferred.
  • Proficiency with SIEM, UEBA, EDR, UAM, and Microsoft Purview/Defender.
  • Strong analytical and problem-solving skills; able to triage alerts and identify patterns.
  • Excellent communication; able to document investigations clearly for non-technical stakeholders.
  • Ability to work independently and collaboratively in a fast-paced environment.
  • Certifications such as CISSP, CISM, CIPP, or CERT Insider Threat Program Manager are desirable.

Responsibilities

  • Analyze data to identify insider risks and vulnerabilities.
  • Monitor UEBA telemetry to detect anomalous behavior.
  • Use SIEM tools to analyze logs and alerts.
  • Support DLP policy tuning and alert reviews.
  • Assist deployment and tuning of UAM signatures.
  • Collaborate with IT, HR, Legal to triage incidents.
  • Provide detailed risk assessments and reports.
  • Recommend mitigation strategies to strengthen security posture.
  • Stay updated on insider threat trends and prevention methods.
  • Conduct employee training to promote security culture.

Skills

SIEM
UEBA
EDR
UAM
Microsoft Purview

Education

Bachelor's degree in Cybersecurity/IT
Advanced degree preferred

Tools

Microsoft Defender

Job description

Join Starr, a global leader in commercial insurance with over a century of expertise. We empower our employees to innovate, make impactful decisions, and build lasting client relationships worldwide. At Starr, you'll work in an entrepreneurial culture alongside accessible leaders, leveraging our financial strength and vast industry experience to deliver solutions for our clients, no matter how complex. Grow your career with a rapidly growing company that invests in its people and their ability to drive real progress.

The Insider Risk Analyst is responsible for identifying, analyzing, and mitigating potential insider risks to the organization. This role involves monitoring and assessing data to detect suspicious activities, policy violations, and vulnerabilities that could compromise the confidentiality, integrity, and availability of the company's information assets. The Insider Risk Analyst will work closely with various departments, including IT, HR, and others in Legal, to ensure a comprehensive approach to insider risks and data management.

Essential Job Functions
  • Conduct thorough analysis of data to identify potential insider risks and vulnerabilities.
  • Monitor user and entity behavior analytics (UEBA) and related telemetry to detect anomalous behavior and suspicious activity.
  • Utilize security information and event management (SIEM) tools to analyze logs and alerts.
  • Support DLP policy tuning, alert review, and compliance monitoring to reduce unauthorized data exfiltration.
  • Support the guidance on the deployment and tuning of user activity monitoring (UAM) signatures to detect policy violations.
  • Collaborate with cross‑functional teams to triage, investigate and respond to insider risk incidents.
  • Provide detailed assessments and reports on identified threats, vulnerabilities, and policy violations.
  • Recommend risk‑based mitigation strategies and control improvements to strengthen the organization's security posture.
  • Stay updated on the latest trends, tactics, and developments in insider risk detection and prevention.
  • Conduct training and awareness programs for employees to promote a culture of integrity, security and compliance.
Job Requirements
  • Bachelor's degree in Cybersecurity, Information Technology, or a related field. Advanced degree preferred.
  • Minimum of 1-2 years of experience in cybersecurity preferred.
  • Proficiency with cybersecurity tools and technologies, including SIEM, UEBA, EDR, UAM, and Microsoft Purview and Microsoft Defender are preferred.
  • Strong analytical and problem‑solving skills with the ability to triage alerts, correlate multiple data sources, and identify trends and patterns.
  • Excellent verbal and written communication skills, with the ability to document investigations clearly and convey technical information to non‑technical stakeholders.
  • Ability to work both independently and collaboratively in a fast‑paced environment.
  • Relevant certifications such as CISSP, CISM, CIPP, or CERT Insider Threat Program Manager are highly desirable. Experience in conducting confidential investigations and handling digital evidence.
  • Experience with operating system, cloud access, and web proxy event logs is preferred.
  • Experience and skills in other areas of compliance will be considered.
  • Knowledge of cybersecurity and privacy laws and regulations.

NOTE: This job description is not intended to be all-inclusive. Employee may perform other related duties as negotiated to meet the ongoing needs of the organization.

Starr is an equal opportunity employer, which means we'll consider all suitably qualified applicants regardless of gender identity or expression, ethnic origin, nationality, religion or beliefs, age, sexual orientation, disability status or any other protected characteristic. We recruit and develop our people based on merit and we're committed to creating an inclusive environment for all employees. We offer first‑class training and development opportunities to all employees. Our aim is to grow our own talent and bring out the best in people.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Insider Risk Analyst
Insider Risk Analyst

Starr Companies • New York (NY)

On-site
USD 90,000 - 120,000
Insider Risk Analyst
Insider Risk Analyst

Starr Insurance Holdings, Inc. • City of Rochester (NY)

On-site
USD 90,000 - 140,000
Insider Risk Analyst: Detect & Mitigate Insider Threats
Insider Risk Analyst: Detect & Mitigate Insider Threats

Starr • New York (NY)

On-site
USD 85,000 - 120,000
Insider Risk Analyst — Detect, Investigate & Mitigate
Insider Risk Analyst — Detect, Investigate & Mitigate

Starr Companies • New York (NY)

On-site
USD 90,000 - 120,000
Insider Risk Analyst | UEBA & SIEM Focus
Insider Risk Analyst | UEBA & SIEM Focus

Starr Insurance Holdings, Inc. • City of Rochester (NY)

On-site
USD 90,000 - 140,000
Security Observability Engineer
Security Observability Engineer

Starr • Destin (FL)

On-site
USD 100,000 - 130,000
Sr. Insider Risk Analyst
Sr. Insider Risk Analyst

Cathay Bank in • El Monte (CA)

On-site
USD 110,000 - 165,000
Security Observability Engineer
Security Observability Engineer

Starr Insurance Holdings, Inc. • Destin (FL)

On-site
USD 100,000 - 130,000
Underwriting Analyst
Underwriting Analyst

Starr Insurance Companies • New York (NY)

On-site
USD 55,000 - 75,000
Sr. Insider Risk Analyst
Sr. Insider Risk Analyst

Irvine TechNology Corporation • El Monte (CA)

Hybrid
USD 74,000 - 86,000