Insider Threat Investigator

Concentric

United States

Remote

USD 135,000 - 165,000

Full time

2 days ago
Be an early applicant
Application generator

Turn this role into an interview — a resume and cover letter built around what this employer wants.

Get past ATS filters

Benefits offered by this job

HSA medical plan
Employer-paid insurance
11 paid holidays
Paid leave

Job summary

Concentric is seeking an Insider Threat Investigator to join a team embedded with a client in San Francisco. This full-time remote role follows Pacific Time hours (9:00 a.m.–5:00 p.m.).

You will conduct comprehensive investigations into internal threats, manage cases, and collaborate with Security and Legal teams to protect client operations. Ideal candidates have 8+ years in insider threat investigations, strong interviewing skills, and experience coordinating multi-team remediation efforts,

Qualifications

  • Bachelor's degree in criminal justice, cybersecurity, intelligence studies or related field required.
  • 8+ years of hands-on insider threat investigations experience in cybersecurity, law enforcement, counterintelligence, or equivalent.
  • 4+ years experience in insider risk mitigation and remediation; coordinating projects with organizational leads.

Responsibilities

  • Investigate complex insider threats and coordinate with cross-functional teams.
  • Utilize open-source research, legal and compliance considerations in investigations.
  • Lead incident management as incident commander and coordinate remediation actions.

Skills

Insider threat investigations
Open-source research
Interviewing witnesses
Cross-functional collaboration
Communication skills

Education

Bachelor's Degree in criminal justice, cybersecurity, intelligence studies, or a closely related field

Job description

Are you interested in joining an organization with a global reach? In a world of shifting threats, Concentric is your trusted ally. Powered by elite professionals from military, government, and intelligence backgrounds. If you are passionate about intelligence, risk analysis, threat management, executive protection, security operations, or business resiliency, Concentric may be the organization you’ve been searching for!

Concentric is a risk consultancy specializing in delivering strategic security and intelligence services. We provide holistic, intelligent security solutions for private clients and corporations globally. Concentric offers strategic advisory services, risk assessments, physical protection, threat intelligence, open‑source monitoring, program audits, secure embedded staffing, and training for security teams and intelligence analysts.

Our core values

Integrity – Collaboration – Relationships – Excellence – Creativity – Results

Join Us,

Concentric – "Your World Secured"

Insider Threat Investigator

We’re currently looking to hire an Insider Threat Investigator to join our team embedded with our client in San Francisco.

This is a full‑time remote position with hours Monday through Friday, 9:00 a.m. to 5:00 p.m. Pacific Time. Candidates located in the Pacific Time Zone are preferred.

JOB DESCRIPTION

The Insider Threat Investigator will be responsible for conducting comprehensive investigations of internal threats to client operations while contributing to and protecting client culture and business interests. This role provides investigations, case management, and other related security services to address internal threats to the client company. You will use hands‑on investigation skills, critical thinking in cybersecurity, adaptive puzzle‑solving, and strong communication with team members worldwide to prevent, disrupt, and mitigate complex security issues. You will balance your time between 70% investigative functions and 30% project management for remediation of vulnerability gaps.

RESPONSIBILITIES
  • Work complex security incidents with multiple stakeholders, including those without experience in the threat and intelligence fields
  • Work with Security Analysts, utilizing law enforcement databases, social media platforms, and the deep/dark web to investigate known and potential threats
  • Produce actionable and concise threat analysis products in a timely manner to inform cross-functional groups, executive managers, and enterprise-wide security operations
  • Manage Safety and Security team relationships with local law enforcement partners and other investigative, research, and intelligence groups and vendors
  • Coordinate and/or participate in data and/or equipment recovery efforts
  • Maintain communication with Client management regarding the status and completion of investigative products or operational decisions that affect performance or investigative standards
  • Conform with and abide by all regulations, policies, work procedures, and instructions
  • Identify, assess, and investigate insider risk incidents and behaviors of concern, providing mitigation recommendations for highly complex problems.
  • Develop and coordinate investigative plans using open-source intelligence and technical tools to gather and analyze evidence.
  • Lead incident management coordination as an incident commander.
  • Conduct sensitive interviews with victims, witnesses, and persons of interest during investigations, both virtually and in person.
  • Document investigative results clearly, using case management software to ensure accurate reporting, tracking, and documentation of workplace violence incidents and behaviors of concern throughout the incident lifecycle.
  • Participants and partners with stakeholders to identify new opportunities and solutions that will aid in mitigating insider risks.
  • Conduct comprehensive after-action reviews to identify and implement best practices and lessons learned.
  • Develop and maintain relationships with multidisciplinary teams, including Talent, Employee Relations, Legal, Cybersecurity, and Technology teams, business leaders, and external partners.
  • Develop and refine associated policies, procedures, and other documentation that are in accordance with data privacy and legal requirements and expectations.
  • Provide program analytics and case management to detect, identify, and assess concerning behaviors, and develop strategies to mitigate identified risks.
  • Communicate complex insider risk threat issues in a way that is understandable to cross-functional partners who may have limited experience in the field.
  • This position may require up to 10% travel
REQUIRED QUALIFICATIONS
  • Bachelor's Degree in criminal justice, cybersecurity, intelligence studies, or a closely related field
  • 8+ years of hands‑on insider threat investigations experience in cybersecurity, law enforcement, counterintelligence, or private sector industry equivalent.
  • 4+ years experience in the Industry supporting insider risk mitigation and remediation; conducting complex coordination of projects and initiatives to close identified vulnerabilities with organizational leads and owners.
  • Experience interviewing insider risk actors, witnesses, and impacted individuals.
  • Strong competency in industry standards for corporate investigations, employment legal considerations, and practices related to information confidentiality and integrity.
  • Experience in insider threat incident triage, coordinating cross‑functional response, and conducting investigations across digital and human domains.
  • Experience interviewing persons of interest and/or potential witnesses.
  • Experience supporting a comprehensive threat management program and direct experience conducting investigations, intelligence collection and analysis, and case management.
  • Extensive experience utilizing open-source research, criminal background information, and other online investigative techniques.
  • Demonstrated ability to independently manage sensitive cases, interpret evidence, and communicate findings to corporate stakeholders.
  • Ability to work some non‑traditional hours (e.g., nights, weekends, or holidays) and respond to emergent or time‑sensitive situations.
  • Excellent written and oral communication skills, demonstrable during the interview process.
  • Ability to build partnerships and work collaboratively and cross‑functionally.
  • Must be highly adaptable and flexible.
PREFERRED QUALIFICATIONS
  • ASIS Professional Certified Investigator (PCI)
  • Data analysis
  • Planning and policy drafting
  • Training and Exercise experience
  • Language skills are a plus
COMPENSATION & BENEFITS
  • The HSA medical plan covers 100% of the premium for employee-only coverage. The PPO medical plan requires an employee contribution for employee-only coverage. For both plans, Concentric covers a substantial portion of the premium for dependents.
  • Concentric also offers an HSA employer contribution
  • Medical FSA
  • Employer-paid insurance: life, STD, LTD, and AD&D
  • 11 paid holidays
  • Paid leave (vacation, sick, parental)
  • Pet Insurance
  • National discount employee program
  • Employee Assistance Program for personal needs
  • Credentity Protection - Eclipse Digital Protection by Concentric
  • Free access to our Risk Intelligence Dashboard and GEAR App. Providing 24/7 access to trusted risk intelligence and remote support, helping you stay informed, prepared, and protected wherever you operate.
  • Dedicated Security and Intelligence Training Programs for Professional Development
  • Coaching and Mentoring Opportunities

$150,000 - $150,000 USD

Concentric and SPS Global acknowledge the systemic barriers in the security industry and recognize that removing those barriers will require a collaborative and conscious effort. Concentric and SPS Global are committed to programs and initiatives that promote diversity, equity, and inclusion, enhancing our organization and the broader community. We are creating a diverse environment and are proud to be an equal opportunity employer. We encourage people from all backgrounds to apply. All qualified applicants will receive consideration for employment regardless of race, color, religion, gender, gender identity or expression, sexual orientation, national origin, genetics, disability, age, or veteran status.

Concentric Advisors and SPS Global are committed to protecting the privacy and security of all applicants who submit personal information to us. You can access our GDPR and CCPA policy by clicking the GDPR button at the bottom of our career page.

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Insider Threat Investigator
Insider Threat Investigator

Concentric • San Francisco (CA)

Remote
USD 135,000 - 165,000
Security Operations Coordinator
Security Operations Coordinator

Concentric • Washington

On-site
USD 75,000 - 80,000
HSA medical plan
Employer-paid life, STD, LTD, and AD&D
401k with employer match & immediate v
+6
Security Operations Coordinator
Security Operations Coordinator

Concentric • Dallas (TX)

On-site
USD 75,000 - 80,000
HSA medical plan premium covered for 1
Employer-paid life, STD, LTD, AD&D
401k with employer match
+6
Security Operations Coordinator
Security Operations Coordinator

Concentric • New York (NY)

On-site
USD 75,000 - 80,000
HSA medical plan for employee
Medical FSA
401k with employer match
+7
Intelligence Analyst (OSINT), Seattle
Intelligence Analyst (OSINT), Seattle

Concentric • Seattle (WA)

On-site
USD 82,000 - 85,000
HSA medical plan
Employer-paid insurance
Paid leave (vacation, sick, parental)
+2
Regional Security Coordinator
Regional Security Coordinator

Concentric • Detroit (MI)

On-site
USD 113,000 - 138,000
HSA medical plan
Paid holidays
Paid leave (vacation, sick, parental)
+2
Security Operations Coordinator
Security Operations Coordinator

Concentric • Miami (FL)

On-site
USD 75,000 - 80,000
HSA medical plan
PPO medical plan option
401k with employer match
+4
JSOC Operator ll
JSOC Operator ll

Concentric Advisors, Inc. • Redwood City (CA)

On-site
USD 54,000 - 56,000
HSA health plan
401(k) with employer match
Paid holidays
+2
Security Operations Coordinator
Security Operations Coordinator

Concentric • Nashville (TN)

On-site
USD 75,000 - 80,000
Health Insurance
401k with employer match
Paid holidays
+1
Security Operations Coordinator
Security Operations Coordinator

Concentric • Atlanta (GA)

On-site
USD 75,000 - 80,000
Health insurance
401k with employer match
Paid holidays
+3