Insider Threat Detection Engineer

NVIDIA

Virginia (IL)

On-site

USD 168,000 - 311,000

Full time

3 days ago
Be an early applicant

Get more replies from employers

Send a job-specific resume in minutes.

Benefits offered by this job

Equity
Benefits

Job summary

NVIDIA seeks an Insider Threat Engineer to protect people, IP, and data across identity, endpoint, cloud, and collaboration environments. You will build detections, automation, and investigation tools, turning complex activity into clear timelines and findings for cross-functional teams.

You will collaborate with Security, Legal, HR, Privacy, IT, and engineering teams, applying threat models and telemetry requirements to reduce risk and improve coverage.

Qualifications

  • Bachelor’s degree in Computer Science, Cybersecurity, Information Security, Data Engineering, or equivalent.
  • 7+ years in insider threat, detection engineering, security operations or related fields.
  • Experience conducting security investigations with evidence collection and timelines.
  • Experience with SIEM, DLP, UEBA, EDR, insider-risk management and case management.
  • Proficiency in at least one programming/scripting language and building automation with APIs.
  • SQL and data-analysis skills; ability to correlate data from multiple sources.

Responsibilities

  • Build, test, deploy, and tune detections across identity, endpoint, cloud, and data-protection systems.
  • Lead investigations involving data movement, external sharing, and access anomalies.
  • Collect and correlate data to reconstruct activity and establish timelines.
  • Develop automation, data pipelines, dashboards, and investigation tools.
  • Improve insider-risk and data loss prevention capabilities and telemetry coverage.
  • Present findings with confidence levels and documented evidence to partners.
  • Collaborate with Security, Legal, HR, Privacy, and engineering teams during investigations.

Skills

Python
Go
Java
JavaScript/TypeScript
SQL
Data analysis
Threat hunting

Education

Bachelor's degree in Computer Science or Security, or equivalent experience

Tools

SIEM
DLP
UEBA
EDR
Insider-risk management
Case management
SOAR

Job description

NVIDIA is hiring an Insider Threat Engineer to join the team responsible for protecting our people, intellectual property, engineering systems, and data. We protect source code, hardware and software designs, AI models and artifacts, research, build systems, and computing environments. Our work combines security engineering with insider-threat investigations across identity, endpoint, cloud, collaboration, source-code, and data-protection systems. We build detections, automation, integrations, and investigation tools, and we use those capabilities to examine activity that may put NVIDIA at risk. In this role, you will turn technical and business information into timelines and findings that others can understand and act on. We work closely with Security, Legal, HR, Privacy, IT, and engineering teams throughout an investigation. We are looking for someone who can write code, analyze complex activity, handle sensitive information carefully, and distinguish facts from assumptions.

What You’ll Be Doing
  • Build, test, deploy, and tune detections across identity, endpoint, cloud, SaaS, collaboration platforms, source-code repositories, build systems, removable media, data movement, and employee-lifecycle signals.
  • Lead and support investigations involving unusual data movement, unapproved application use, external sharing, access anomalies, compromised accounts, employee transitions, and other defined insider-risk scenarios.
  • Collect and correlate information from endpoint, identity, cloud, source-code, collaboration, data-protection, and approved business sources to reconstruct activity and establish timelines.
  • Develop automation, data pipelines, integrations, dashboards, and investigation tools that reduce manual work and help us investigate cases more consistently and efficiently.
  • Operate and improve our insider-risk and data loss prevention capabilities by assessing policy performance, detection coverage, alert quality, false positives, and connections to case-management workflows.
  • Use documented hypotheses, threat models, test cases, version control, peer review, and performance measures to improve detections; work with system owners when we identify gaps in telemetry or controls.
  • Present findings that distinguish facts from inferences and explain confidence levels, data limitations, alternative explanations, and unanswered questions to Security, Incident Response, Legal, HR, Privacy, and business partners.
  • Work with authorized partners on evidence preservation, containment, escalation, and remediation while following requirements for investigative scope, access, confidentiality, auditing, and retention.
What We Need To See
  • Bachelor’s degree in Computer Science, Cybersecurity, Information Security, Data Engineering, or a related field, or equivalent experience.
  • 7+ years of experience in insider threat, detection engineering, security operations, incident response, digital forensics, data protection, threat hunting, or a related security field.
  • Experience conducting security investigations, including defining scope, collecting evidence, developing timelines, analyzing activity, documenting findings, escalating concerns, and applying lessons learned.
  • Experience with security technologies such as SIEM, DLP, UEBA, EDR, insider-risk management, identity security, case management, or security orchestration.
  • Proficiency in at least one programming or scripting language, such as Python, Go, Java, JavaScript, or TypeScript, and experience building automation with APIs, structured data, source control, and testing.
  • SQL, security-query, and data-analysis skills, including experience correlating incomplete or inconsistent data from multiple sources.
  • Knowledge of identity and access management, endpoints, cloud services, collaboration platforms, SaaS integrations, data classification, source-code environments, and data-exfiltration methods.
  • Experience translating insider-risk scenarios into telemetry requirements, detection logic, investigation workflows, controls, test cases, and performance measures.
  • Ability to assess activity objectively, distinguish indicators from substantiated findings, avoid assumptions about intent, and explain the limits of available evidence.
  • Clear written and verbal communication and experience working with technical, legal, privacy, HR, and business partners on sensitive matters.
Ways To Stand Out From The Crowd
  • Experience engineering insider-risk, data loss prevention, or endpoint data-protection capabilities and connecting their signals to SIEM, orchestration, enrichment, or case-management systems.
  • Experience investigating data movement across email, cloud storage, collaboration tools, source-code repositories, build systems, artifact stores, removable media, browsers, AI tools, and unmanaged or partially managed environments.
  • Experience building security data pipelines, entity timelines, relationship models, behavioral baselines, or applications used by investigators.
  • Knowledge of digital forensics, evidence preservation, chain of custody, incident-response coordination, and the legal, privacy, and employee-relations requirements associated with workforce investigations.
  • Experience turning investigation needs into technical capabilities; senior candidates may also bring experience leading projects, reviewing designs, and mentoring engineers or investigators.

Your base salary will be determined based on your location, experience, and the pay of employees in similar positions. The base salary range is 168,000 USD - 270,250 USD for Level 4, and 196,000 USD - 310,500 USD for Level 5.

  • You will also be eligible for equity and benefits.

Applications for this job will be accepted at least until August 21, 2026.

This posting is for an existing vacancy.

NVIDIA uses AI tools in its recruiting processes.

NVIDIA is committed to fostering an inclusive work environment and proud to be an equal opportunity employer. As we highly value diversity in our current and future employees, we do not discriminate (including in our hiring and promotion practices) on the basis of race, religion, color, national origin, gender, gender expression, sexual orientation, age, marital status, veteran status, disability status or any other characteristic protected by law.

, , JR2023268

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Insider Threat Detection Engineer
Insider Threat Detection Engineer

NVIDIA • North Carolina

On-site
USD 168,000 - 311,000
Equity
Benefits
Insider Threat Detection Engineer
Insider Threat Detection Engineer

Nvidia Corporation in • Santa Clara (CA)

On-site
USD 168,000 - 311,000
Equity
Benefits
Insider Threat Detection Engineer
Insider Threat Detection Engineer

NVIDIA • Washington

On-site
USD 196,000 - 311,000
Equity
Insider Threat Detection Engineer
Insider Threat Detection Engineer

NVIDIA • Austin (TX)

On-site
USD 168,000 - 311,000
Equity
Benefits
Insider Threat Detection Engineer
Insider Threat Detection Engineer

Nvidia Corporation • Santa Clara (CA)

On-site
USD 168,000 - 311,000
Equity
Benefits
Insider Threat Detection Engineer
Insider Threat Detection Engineer

NVIDIA • Redmond (WA)

On-site
USD 168,000 - 311,000
Insider Threat Detection Engineer
Insider Threat Detection Engineer

NVIDIA Gruppe • California (MO)

On-site
USD 168,000 - 270,000
Equity
Benefits
Insider Threat Detection Engineer
Insider Threat Detection Engineer

NVIDIA • California (MO)

Hybrid
USD 168,000 - 311,000
Equity
Benefits
Insider Threat Detection Engineer
Insider Threat Detection Engineer

NVIDIA Corporation • California (MO)

Hybrid
USD 168,000 - 311,000
Equity
Comprehensive benefits
Insider Threat Detection Engineer
Insider Threat Detection Engineer

Relha LLC • Santa Clara (CA), Northern (KY)

Hybrid
USD 168,000 - 311,000
Equity
Benefits