Senior Cyber Insider Threat Engineer - Network Activity Logs (Remote)
Company: Molina Healthcare
Position Overview
The Senior Engineer, Insider Threat will implement cyber intelligence (CyInt) collection, compilation, and analysis for the insider threat program. This role involves developing and supporting insider threat systems, working closely with cybersecurity teams, analysts, and stakeholders to enhance threat detection capabilities.
Key Responsibilities
- Lead the design, development, and implementation of insider threat monitoring and detection strategies.
- Collaborate with cybersecurity analysts and engineers to develop monitoring capabilities.
- Analyze logs from various data sources to identify potential threats.
- Automate investigation and escalation workflows.
- Support internal investigations with forensic analysis and log review.
- Develop insider risk techniques and procedures, including use cases for data exfiltration, fraud, privilege escalation, and sabotage.
- Evaluate and improve existing technical solutions for insider threat detection.
- Guide the technical architecture of insider threat systems to align with organizational goals.
- Publish threat intelligence products and briefings for stakeholders.
- Define security controls and metrics to measure program effectiveness.
- Stay updated on emerging insider threat trends and update strategies accordingly.
- Ensure compliance with policies and regulations through stakeholder coordination.
Minimum Qualifications
- Bachelor’s degree in Computer Science, Cybersecurity, Information Systems, or related field.
- Expertise in cybersecurity and insider threat concepts, protocols, and tools.
- Experience with UEBA deployment, data source integration, and configuration.
- Strong knowledge of data protection and privacy regulations.
- At least 6 years of experience in cybersecurity, DLP, Security Operations, or related fields.
- Experience leading technical investigations using insider threat tools.
- Ability to manage confidential matters professionally.
- Proficiency with data analytics tools for insider threat information collection.
- Experience developing and implementing controls around various operating systems and SaaS applications.
- Proficiency in automating workflows and integrating security tools.
Preferred Qualifications
- Experience with UEBA/SIEMs and EDR tools.
- Experience with insider threat investigations and broad system forensics.
- Ability to communicate technical concerns to non-technical audiences.
- Experience with insider threat tools such as Red Vector, Code42, Exabeam, DTEX.
- Familiarity with cybersecurity fundamentals, networking, and data exfiltration methods.
- Experience with analysis tools like Excel or SQL, and developing PowerPoint presentations.
- Relevant security certifications (e.g., Security+, CISSP, CISM, CEH).
Salary Range: $80,412 - $188,164 annually.