Security Engineer (Insider Risk)

Dragonfli Group

Washington (District of Columbia)

Hybrid

USD 120,000 - 160,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Benefits offered by this job

Insurance - health, dental, and vision
Paid Time Off (PTO) and 11 Federal Holidays
401(k) employer match

Job summary

A cybersecurity firm in Washington, DC is seeking a Senior-level Security Engineer focused on Insider Risk. This position requires over 7 years of relevant experience and deep expertise in security tools like DLP and SIEM. The role involves optimizing insider threat operations, leading investigations, and developing programmatic solutions for federal clients. Ideal candidates will have significant experience in regulated environments and be skilled in both technical and communication aspects. This is a multi-year contract position with a preference for candidates with federal contracting experience.

Qualifications

  • 7+ years of relevant experience in a cyber-related field.
  • 5+ years of experience specifically configuring and administering security tools.
  • Experience thriving within heavily regulated environments.
  • Demonstrated experience with Linux Operating Systems and Microsoft 365 environments.
  • U.S. Citizenship or Permanent Residency is required.

Responsibilities

  • Assist in developing playbooks, workflows, and implementation roadmaps.
  • Administer and optimize the Insider Risk toolset.
  • Develop and maintain a convergence model to reduce risk.
  • Lead and assist in the investigation of insider threats.
  • Coordinate with leaders to develop programmatic solutions.

Skills

Proficiency with Splunk
SIEM
DLP
EDR
Microsoft Purview/Defender
Analytical Thinking
Communication
Collaboration
Interpersonal Skills
Organizational Skills

Education

BS/BA in a cyber-related field

Tools

Linux Operating Systems
Microsoft 365

Job description

Dragonfli Group is a cybersecurity and IT consulting firm providing services to federal agencies and Fortune 100 enterprises. Headquartered in Washington, DC, Dragonfli supports clients in securing mission-critical systems across on-site, hybrid, and fully remote environments.

As a Senior-level Security Engineer focused on Insider Risk, you will be responsible for maturing and optimizing an Insider Threat operational support program. This role requires 7+ years of relevant experience in cyber-related fields, with at least 5 years dedicated to configuring and administering security tools. You will leverage a sophisticated technical stack—including DLP, UEBA, SIEM, and the Microsoft Purview/Defender suite—to monitor, detect, and mitigate potential internal threats. You will act as a bridge between technical implementation and executive reporting, developing playbooks and leading investigations into high-stakes security incidents.

This is a multi-year contract position involving a large US federal agency. Candidates with previous federal contracting experience are preferred. U.S. Citizenship or Permanent Residency required. If hired, all work related to this role must be performed within the continental U.S.

Primary Responsibilities
  • Program Maturation: Assist in developing playbooks, workflows, and implementation roadmaps to mature the Insider Threat operational support program.
  • Tool Optimization: Administer and optimize the Insider Risk toolset, specifically DLP, UEBA, SIEM, and Microsoft Defender/Entra/Purview.
  • Risk Mitigation: Develop and maintain a convergence model to reduce risk to personnel and assets across regional operating divisions.
  • Incident Leadership: Lead and assist in the investigation of all incidents involving potential insider threats.
  • Stakeholder Coordination: Coordinate with business and technology leaders to develop programmatic solutions and deliver high-level presentations on findings.
  • Standards Compliance: Implement federal government and industry standards regarding insider threat programs and maintain programmatic gap analyses.
Requirements
Must-Have Qualifications
  • Experience: 7+ years of relevant experience in a cyber-related field.
  • Tool Administration: 5+ years of experience specifically configuring and administering security tools.
  • Education: BS/BA in a cyber-related field (Direct experience or professional certifications may substitute for academic credentials).
  • Technical Proficiency: Demonstrated experience with Linux Operating Systems and Microsoft 365 environments.
  • Compliance Background: Experience thriving within heavily regulated environments (e.g., federal or financial sectors).
  • Citizenship: U.S. Citizenship or Permanent Residency is required.
Preferred Qualifications
  • Forensics: Experience in digital forensics and incident response (DFIR).
  • Federal Experience: Previous experience supporting large US federal agency contracts.
Skill(s)
  • Technical Security Tools: Proficiency with Splunk, SIEM, DLP, EDR, and Microsoft Purview/Defender.
  • Analytical Thinking: Strong analytical and problem-solving skills with high attention to detail.
  • Communication: Excellent written and verbal communication, including the ability to develop and deliver presentations to senior management.
  • Collaboration: Ability to work effectively with cross-functional teams and diverse stakeholders.
  • Interpersonal Skills: Industry-leading interpersonal skills for coordinating between business and technology leaders.
  • Organizational Skills: Strong organizational capabilities for managing complex programmatic roadmaps.
Benefits
  • Insurance - health, dental, and vision
  • Paid Time Off (PTO) and 11 Federal Holidays
  • 401(k) employer match
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Insider Threat Data Specialist
Insider Threat Data Specialist

FedTec • Woodlawn (MD)

On-site
USD 110,000 - 150,000
Comprehensive medical, dental, and vis
401(k) retirement plans with company
Paid time off
+4
Insider Threat Engineer
Insider Threat Engineer

Jobtailor • Austin (TX)

On-site
USD 120,000 - 180,000
Insider Threat Analyst
Insider Threat Analyst

NR Labs LLC • Washington

On-site
USD 95,000 - 130,000
Senior Cyber Security Specialist I - Insider Threat Analysis
Senior Cyber Security Specialist I - Insider Threat Analysis

Walgreens • United States

Hybrid
USD 98,000 - 158,000
Insider Threat Analyst
Insider Threat Analyst

Agile Defense • Washington

On-site
USD 110,000 - 160,000
Insider Threat Monitoring Lead
Insider Threat Monitoring Lead

Agile Defense, LLC • Reston (VA)

Hybrid
USD 160,000 - 185,000
Cybersecurity Engineer 6 - Insider Threat Platform Engineer
Cybersecurity Engineer 6 - Insider Threat Platform Engineer

Kinsley Power Systems • Columbus (OH)

On-site
USD 120,000 - 150,000
Insider Risk Investigator - USDS
Insider Risk Investigator - USDS

TikTok • Washington

Hybrid
USD 88,000 - 177,000
401(k) with company match
Paid parental leave
Medical, dental, and vision benefits
Cyber Security Specialist - Senior Level | Insider Threat Management and Analysis [DITMAC0013012]
Cyber Security Specialist - Senior Level | Insider Threat Management and Analysis [DITMAC0013012]

ProSidian Consulting, LLC • Quantico (VA)

On-site
USD 120,000 - 150,000
Competitive compensation with performance incentives
Group medical, dental, and vision insurance
401(k) retirement savings plan with company match
+4
Insider Threat Monitoring Analyst
Insider Threat Monitoring Analyst

Via Logic LLC • Ashburn (VA)

On-site
USD 120,000 - 180,000