Senior Insider Threat Detection Engineer

The Charles Schwab Corporation

California (MO)

On-site

USD 90,000 - 130,000

Full time

4 days ago
Be an early applicant
Application generator

A complete application in a minute — tailored resume and cover letter, ready to send.

Get past ATS filters

Benefits offered by this job

401(k) with company match
Paid time off
Sabbatical every 5 years
Parental leave and family benefits
Tuition reimbursement
Health, dental, and vision insurance

Job summary

The Charles Schwab Corporation is seeking a Threat Detection & Monitoring professional to monitor insider threat tools, triage alerts, and lead investigations. You will analyze data, document findings, and support incident response across HR, Legal, and Risk teams.

Ideal candidates have 2–5+ years in cybersecurity, experience with SIEM/UEBA/DLP/EDR, and strong communication. This role emphasizes collaboration, analytics, and ongoing improvement of detection capabilities.

Qualifications

  • Bachelor’s degree in Cybersecurity, IT, or related field (or equivalent experience).
  • 2–5+ years of experience in cybersecurity or insider threat.
  • Experience with SIEM, UEBA, DLP, or EDR tools.
  • Strong analytical and data interpretation skills.
  • Knowledge of networking concepts and threat actor techniques.
  • Experience with alert triage, incident investigations, and case management.
  • Familiarity with behavioral analytics and detection methodologies.
  • Experience working cross-functionally with HR, Legal, or Risk teams.
  • Strong written and verbal communication skills, including executive-ready reporting.

Responsibilities

  • Monitor insider threat tools (UEBA, SIEM, DLP, EDR) to identify anomalous or suspicious user activity.
  • Triage and prioritize alerts, correlating data from multiple sources to determine risk and required action.
  • Identify trends and behavioral patterns indicative of insider risk activity.
  • Conduct thorough investigations into potential insider threats.
  • Collect, analyze, and interpret data to develop actionable findings.
  • Document investigations with clear evidence and timelines.
  • Support the full lifecycle of insider threat incidents.
  • Execute response playbooks and contribute to post-incident reviews.
  • Escalate high-risk findings in accordance with policy.
  • Refine and optimize detection rules and alerts.
  • Support development of new detection use cases.
  • Partner with engineering teams to enhance analytics.
  • Partner with HR, Legal, and Security teams.
  • Communicate findings to technical and non-technical stakeholders.
  • Serve as liaison for insider threat escalations.
  • Prepare reports and summaries on insider threat activity.
  • Provide recommendations to improve security posture.
  • Maintain accurate case documentation.
  • Contribute to playbooks, SOPs, and workflows.
  • Identify gaps and recommend improvements.
  • Support program maturity initiatives.

Skills

SIEM
UEBA
DLP
EDR
Analytical skills
Networking concepts

Education

Bachelor's degree in Cybersecurity, IT, or related field

Job description

The Charles Schwab Corporation is seeking a Threat Detection & Monitoring professional to monitor insider threat tools, triage alerts, and lead investigations. You will analyze data, document findings, and support incident response across HR, Legal, and Risk teams.

Ideal candidates have 2–5+ years in cybersecurity, experience with SIEM/UEBA/DLP/EDR, and strong communication. This role emphasizes collaboration, analytics, and ongoing improvement of detection capabilities.

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Sr Specialist - Security Development & Engineering
Sr Specialist - Security Development & Engineering

The Charles Schwab Corporation • California (MO)

On-site
USD 90,000 - 130,000
401(k) with company match
Paid time off
Sabbatical every 5 years
+3
Senior Security Analytics & Operations Engineer
Senior Security Analytics & Operations Engineer

Charles Schwab • Southlake (TX)

On-site
USD 95,000 - 135,000
Bonus opportunities
Senior Security Analytics & Operations Specialist (On-Site)
Senior Security Analytics & Operations Specialist (On-Site)

Charles Schwab Corporation • Southlake (TX)

On-site
USD 120,000 - 180,000
Bonus opportunities
Senior Insider Threat Leader — Strategy & Detection
Senior Insider Threat Leader — Strategy & Detection

Socket.dev • Westport (CT)

On-site
USD 225,000 - 375,000
Hybrid work schedule
Senior Threat Detection Engineer
Senior Threat Detection Engineer

Koitecc Solutions • Bismarck (ND)

On-site
USD 107,000 - 284,000
Insider Threat Analyst
Insider Threat Analyst

Motion Recruitment Partners LLC • Washington, Northern (KY)

Hybrid
USD 90,000 - 140,000
Senior Insider Risk Security Engineer - Lead Threat Program
Senior Insider Risk Security Engineer - Lead Threat Program

Dragonfli Group • Washington

Hybrid
USD 120,000 - 160,000
Senior Threat Hunting & Detection Engineer
Senior Threat Hunting & Detection Engineer

CVS Health • Little Rock (AR)

On-site
USD 107,000 - 284,000
Insider Threat Detection & Response Engineer
Insider Threat Detection & Response Engineer

United States Digital Space LLC • United States

Remote
USD 120,000 - 180,000
Senior Vice President, Information Security
Senior Vice President, Information Security

BNY Mellon • Houston (TX)

On-site
USD 220,000 - 350,000