Insider Risk Analyst
Listed on 2026-07-30
-
IT/Tech
Cybersecurity
Role Overview
The Insider Risk Analyst is responsible for identifying, analyzing, and mitigating potential insider risks to the organization. This role involves monitoring and assessing data to detect suspicious activities, policy violations, and vulnerabilities that could compromise the confidentiality, integrity, and availability of the company's information assets. The analyst works closely with various departments, including IT, HR, and Legal, to ensure a comprehensive approach to insider risks and data management.
Responsibilities- Conduct thorough analysis of data to identify potential insider risks and vulnerabilities.
- Monitor user and entity behavior analytics (UEBA) and related telemetry to detect anomalous behavior and suspicious activity.
- Utilize security information and event management (SIEM) tools to analyze logs and alerts.
- Support DLP policy tuning, alert review, and compliance monitoring to reduce unauthorized data exfiltration.
- Support the guidance on the deployment and tuning of user activity monitoring (UAM) signatures to detect policy violations.
- Collaborate with cross‑functional teams to triage, investigate and respond to insider risk incidents.
- Provide detailed assessments and reports on identified threats, vulnerabilities, and policy violations.
- Recommend risk‑based mitigation strategies and control improvements to strengthen the organization’s security posture.
- Stay updated on the latest trends, tactics, and developments in insider risk detection and prevention.
- Conduct training and awareness programs for employees to promote a culture of integrity, security, and compliance.
- Bachelor's degree in Cybersecurity, Information Technology, or a related field. Advanced degree preferred.
- Minimum of 1‑2 years of experience in cybersecurity preferred.
- Proficiency with cybersecurity tools and technologies, including SIEM, UEBA, EDR, UAM, Microsoft Purview and Microsoft Defender.
- Strong analytical and problem‑solving skills with the ability to triage alerts, correlate multiple data sources, and identify trends and patterns.
- Excellent verbal and written communication skills, with the ability to document investigations clearly and convey technical information to non‑technical stakeholders.
- Ability to work both independently and collaboratively in a fast‑paced environment.
- Relevant certifications such as CISSP, CISM, CIPP, or CERT Insider Threat Program Manager are highly desirable.
- Experience in conducting confidential investigations and handling digital evidence.
- Experience with operating system, cloud access, and web proxy event logs preferred.
- Experience and skills in other areas of compliance will be considered.
- Knowledge of cybersecurity and privacy laws and regulations.
NOTE:
This job description is not intended to be all‑inclusive. The employee may perform other related duties as negotiated to meet the ongoing needs of the organization.
Starr is an equal opportunity employer, which means we consider all suitably qualified applicants regardless of gender identity or expression, ethnic origin, nationality, religion or beliefs, age, sexual orientation, disability status or any other protected characteristic. We recruit and develop our people based on merit and are committed to creating an inclusive environment for all employees.
#J-18808-Ljbffr(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).