Lead Engineer - Insider Risk

Relha LLC

Brooklyn Park (MN)

Hybrid

USD 132,000 - 238,000

Full time

4 days ago
Be an early applicant

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

Target is seeking a Lead Engineer – Insider Risk to lead the design and improvement of the Insider Threat and DLP programs. You will define metrics, ensure comprehensive coverage, and work with Cyber Fusion Center teams to strengthen protection of data and systems.

The role requires 7+ years in cybersecurity focused on incident response, DLP, and insider threats, with hands-on experience in Python or PowerShell and DLP tools. Remote or Hybrid work arrangements may be available based on needs.

Qualifications

  • 4 year degree or equivalent experience.
  • 7+ years in cybersecurity with focus on Incident Response, DLP and Insider Threat.
  • Deep knowledge of DLP tools (e.g. ZScaler, ForcePoint, Symantec).
  • Programming experience in Python or PowerShell.
  • Experience maintaining SIEM, UEBA, EDR, and cloud security platforms.

Responsibilities

  • Monitor and maintain DLP technologies across endpoints, networks, cloud and email.
  • Investigate root causes, implement remediation and blocking measures.
  • Integrate DLP with SIEM, UEBA, CASB and EDR.
  • Develop and refine detection rules using tradecraft, threat intel and prior cases.
  • Collaborate with HR, security architecture and policy teams to raise overall posture.

Skills

Cybersecurity
Python
PowerShell
DLP tools
SIEM/UEBA/EDR
Insider Threat
Threat intel

Education

4 year degree or equivalent

Tools

ZScaler
ForcePoint
Symantec

Job description

The pay range is $132,000.00 - $238,000.00

Pay is based on several factors which vary based on position. These include labor markets and in some instances may include education, work experience and certifications. In addition to your pay, Target cares about and invests in you as a team member, so that you can take care of yourself and your family. Target offers eligible team members and their dependents comprehensive health benefits and programs, which may include medical, vision, dental, life insurance and more, to help you and your family take care of your whole selves.Other benefits for eligible team members include 401(k), employee discount, short term disability, long term disability, paid sick leave, paid national holidays, and paid vacation.Find competitive benefits from financial and education to well-being and beyond at https://corporate.target.com/careers/benefits.

About us:

Working at Target means helping all families discover the joy of everyday life. We bring that vision to life through our values and culture. Learn more about Target here.

As a Lead Engineer – Insider Risk, you will be pivotal in the protection of Target’s data, systems, and intellectual property by ensuring employees do not conduct malicious activities.

In this role, you will play a critical part in safeguarding enterprise data, protecting customer trust in Target, and strengthening the organization’s overall security posture against insider threats by improving detection visibility and fidelity within our UEBA, alerting functionality, and responding and mitigating all identified threats.

As a Lead Engineer you will:

Help lead the design, implementation and continuous improvement of the Insider Threat and DLP programs.

Define metrics through which we can ensure our coverage is comprehensive, effective, and efficient in an ever-changing threat landscape.

Cross train with other teams within the Cyber Fusion Center such as Cyber Threat Intelligence, Incident Response, Security Architecture, and Enterprise Incident Management.

Assist in implementation of net new DLP capabilities and ITP UEBA engine.

Become proficient in workflow automation within our SOAR platform and automate previously manual processes.

Responsibilities:

Monitor, investigate and maintain DLP technologies across endpoints, network sensors, cloud platforms, and email systems.

Conduct root cause analysis, recommend remediation actions, and institute blocking procedures as needed to prevent similar risk moving forward.

Integrate DLP tools with SIEM, UEBA, CASB, and endpoint detection platforms.

Conduct continuous improvement of custom rules based on tradecraft knowledge, anomaly detection hunts, threat intelligence, and previous cases.

Work closely with Employee Relations, Human Resources, Security Architecture, and policy teams to improve Target’s overall security posture and move from detection to prevention.

Core responsibilities of this job are described within this job description. Job duties may change at any time due to business needs.

About you:
4 year degree or equivalent experience

7+ years in cybersecurity with a focus in Incident Response, DLP, and Insider Threat

Extensive experience with DLP tools (e.g. ZScaler, ForcePoint, Symantec)

Deep understanding of Insider Threat methodologies and behavioral analytics to differentiate between uncommon and malicious activity

Demonstrated programming experience in Python, PowerShell or equivalent
Experience with maintaining SIEM, UEBA, EDR, and cloud security platforms

Demonstrated ability to build strong cross-functional partnerships and influence enterprise security strategy

Experience working closely with cyber threat intelligence, incident response, or detection engineering teams

Strong problem-solving skills with the ability to navigate complex, ambiguous security challenges

Excellent communication skills, with the ability to present complex concepts clearly to technical and executive audiences

Commitment to operational excellence, safety, and continuous improvement

Self-directed learner who stays current with evolving cybersecurity threats, technologies and best practices

This position may be considered for a Remote or Hybrid (known internally at Target as "Flex for Your Day") work arrangement based on Target's needs. A Remote work arrangement means the team member worksfull-time from home oran alternatelocation that's not a Target location, does not have a desk at a Target location and may travel to HQ up to 4 times a year. A Hybrid/Flex for Your Day work arrangement means the team member's core role may be performed either remote or onsite at a Target location depending upon what your role, team and tasks require for that day. Work duties cannot be performed outside of the country of the primary work location, unless otherwise prescribed by Target.

Benefits Eligibility
Americans with Disabilities Act (ADA)

In compliance with state and federal laws, Target will make reasonable accommodations for applicants with disabilities. If a reasonable accommodation is needed to participate in the job application or interview process, please reach out to [emailprotected] . Non-accommodation-related requests, such as application follow-ups or technical issues, will not be addressed through this channel.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Lead Engineer - Insider Risk
Lead Engineer - Insider Risk

Roundel • Brooklyn Park (MN)

Hybrid
USD 132,000 - 238,000
Lead Engineer AI Security – Security Architecture(Remote Or Hybrid)
Lead Engineer AI Security – Security Architecture(Remote Or Hybrid)

Target • Brooklyn Park (MN)

Hybrid
USD 132,000 - 238,000
Health benefits
401(k)
Life insurance
+4
Lead Engineer Cyber AI - Cybersecurity
Lead Engineer Cyber AI - Cybersecurity

Target • Brooklyn Park (MN)

Hybrid
USD 132,000 - 238,000
Health benefits
401(k)
Employee discount
Lead Engineer - Email and Data Protection (Cybersecurity)
Lead Engineer - Email and Data Protection (Cybersecurity)

Target • Brooklyn Park (MN)

Hybrid
USD 132,000 - 238,000
Health benefits
401(k)
Paid time off
Lead Engineer - AI Security
Lead Engineer - AI Security

Relha LLC • Brooklyn Park (MN)

Hybrid
USD 132,000 - 238,000
Principal Engineer - Cybersecurity Incident Response
Principal Engineer - Cybersecurity Incident Response

Target • Brooklyn Park (MN)

On-site
USD 168,000 - 303,000
Health benefits
401(k)
Paid sick leave
+1
Lead Engineer - Cloud Security (Software Developer)
Lead Engineer - Cloud Security (Software Developer)

Target • Brooklyn Park (MN)

Hybrid
USD 132,000 - 238,000
Lead Security Engineer – Proactive Security
Lead Security Engineer – Proactive Security

Target • Brooklyn Park (MN)

Hybrid
USD 132,000 - 238,000
Health benefits
401(k)
Paid sick leave
+3
Principal Engineer - Application Security (AI security, Pen Testing, DevSecOps)
Principal Engineer - Application Security (AI security, Pen Testing, DevSecOps)

Relha LLC • Brooklyn Park (MN)

Hybrid
USD 168,000 - 303,000
Health benefits
401(k) plan
Paid time off
Lead Security Engineer – Proactive Security
Lead Security Engineer – Proactive Security

Roundel • Brooklyn Park (MN)

Hybrid
USD 132,000 - 238,000
Comprehensive health benefits
401(k) plan
Employee discount
+1