Insider Risk Security Engineer
Listed on 2026-10-03
-
IT/Tech
Cybersecurity, Information Security & Data Protection
1 Zscaler (NASDAQ: ZS) accelerates digital transformation so customers can be more agile, efficient, resilient, and secure. The Zscaler Zero Trust Exchange platform protects thousands of customers from cyberattacks and data loss by securely connecting users, devices, and applications in any location. Distributed across 160+ public exchanges globally and thousands of private exchanges at the edge, the SASE-based Zero Trust Exchange is the world’s largest in-line cloud security platform.
We believe the future of work is Human + AI and are building an AI-native enterprise where human potential is amplified by machine intelligence to solve the world’s hardest security challenges. Driven by deep customer obsession, we are committed to the mission, outcome, and to each other. We bring these commitments to life through three core behaviors: ownership and collaboration, trust through outcomes and impact, and a challenge culture with ongoing feedback.
Ready to make an impact at the company pioneering security transformation in the AI era? Join us at Zscaler.
We are looking for an Insider Risk Security Engineer to join our team. This is a Remote (United States) role, reporting to the Senior Architect in the Enterprise Security Dept department. Serving as a senior contributor on the Insider Risk program within Enterprise Security, you will take operational direction from the Insider Risk Team Lead while operating with high ownership to refine playbooks, lead detection engineering, mentor junior analysts, and represent the team with, Legal, and executive stakeholders.
Whatyou’ll do (Role Expectations)
- Sharpen the Insider Risk Program’s detection capabilities by refining rules to reduce noise, close coverage gaps, and surface high-fidelity alerts in adequate time
- Perform endpoint and user activity investigations using EDR/XDR, UEBA, and SIEM tools, managing cases end-to-end to create factual timelines
- Drive the development and iteration of insider Risk investigation playbooks, translating case patterns and lessons learned into scalable, defensible processes
- Serve as a key contact for, Legal, business leaders and other stakeholders on active investigations, preparing clear evidentiary case documentation
- You thrive in ambiguity and are comfortable building the path forward in dynamic environments, treating complexity as an opportunity to deliver meaningful solutions.
- You act like an owner with a passion for the mission, navigating seamlessly between strategic thinking and hands-on execution while operating with uncompromised integrity.
- You are a positive force who approaches complex challenges with constructive energy, inspiring teammates to stay focused on shared solutions.
- You operate with urgency, balancing speed and quality to execute relentlessly and achieve high-impact outcomes.
- You are resilient and adaptable, maintaining composure in high-pressure situations and guiding the team through change with a steady, positive approach.
- Foundational understanding of AI/ML technologies and experience leveraging, securing, or positioning AI-driven solutions to optimize outcomes within your functional domain
- U.S. Citizenship required
- Minimum 6+ years of experience in insider risk, data protection, fraud investigation, or security operations, with a proven track record in senior investigative roles, process ownership, and the design of detection frameworks and playbooks
- Experience managing and dispositioning alerts within a SIEM or SOAR
- Strong communication skills with proven ability to engage cross-functionally with, Legal, business leaders, and other stakeholders while maintaining discretion and sound judgment
- Proficiency in Python or…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).