Insider Threat Investigator II
Listed on 2026-09-15
-
IT/Tech
Cybersecurity, Information Security & Data Protection, Security Management & Operations
Ready to take your career global? Make your mark at one of the biggest names in payments. We’re looking for an Insider Threat Investigator III to join our ever-evolving Corporate Security & Insider Threat Team and help shape the future of global commerce. In this role, you will play a critical part in protecting Global Payments’ people, data, clients, and business operations from insider risks that can impact trust, security, and innovation.
You will lead complex investigations, influence the evolution of our Insider Threat Program, and help strengthen security capabilities across a global technology environment. Working alongside cross-functional partners and security experts, you will drive meaningful outcomes, uncover emerging threats, and develop proactive strategies that support Global Payments' mission of delivering secure, reliable payment solutions while enabling the company's continued growth and transformation.
You'll Own
- Lead high-impact insider threat investigations from detection through resolution, driving timely outcomes that reduce organizational risk, protect critical assets, and strengthen stakeholder confidence.
- Advance the Insider Threat Program by identifying emerging trends, improving investigative methodologies, and influencing the development of detection capabilities, tooling, and high-fidelity alerting.
- Transform complex data into actionable intelligence that enables informed business decisions, strengthens security posture, and improves the organization's ability to proactively identify insider threats.
- Drive collaboration across security, legal, human resources, digital forensics, and business teams to align investigative efforts, accelerate case resolution, and support consistent risk mitigation outcomes.
- Shape the future of insider threat defense by developing innovative detection strategies, investigative playbooks, and program enhancements that improve operational effectiveness and organizational resilience.
- 3 to 5 years of insider threat, corporate investigation, cybersecurity, or related investigative experience with a proven ability to manage complex cases from initial assessment through closure.
- Demonstrated success conducting detailed investigations, analyzing large data sets, presenting evidence clearly, and delivering recommendations that reduce risk and improve business outcomes.
- Strong knowledge of User and Entity Behavior Analytics (UEBA), Data Loss Prevention (DLP), digital forensics, incident response, threat-informed defense, cyber security principles, and the MITRE ATT&CK framework.
- Experience working with security technologies such as Endpoint Detection and Response (EDR), Security Information and Event Management (SIEM), Cloud Access Security Broker (CASB), Privileged Access Management (PAM), intrusion prevention and detection systems, and related security platforms.
- A collaborative, analytical, and highly ethical approach, with strong communication skills, sound judgment, and the ability to make effective decisions in complex and evolving situations.
- 5 to 7 years of insider threat investigation experience, including prior law enforcement, intelligence, military, or corporate investigative experience.
- Hands‑on experience securing cloud environments across Amazon Web Services (AWS), Microsoft Azure, or Google Cloud Platform (GCP), supported by relevant certifications.
- Experience using scripting languages such as Python, Power Shell, Bash, or JavaScript to automate investigations, improve data analysis, or enhance detection capabilities.
- Certifications- CERT ITPM, GCFA, CFCE, CFI, CFSR, CFE, or Similar Credentials
Our inclusive and global teams win together every day. We’re proud to have the…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).