Insider Threat Consultant
Listed on 2026-07-19
-
IT/Tech
Cybersecurity, Information Security & Data Protection, Security Management & Operations
Consultant, Insider Threat
Enterprise Cyber Security
Full Time, Springfield MA (Hybrid)
The Opportunity
Mass Mutual is advancing an enterprise Insider Threat program focused on identifying and managing human-driven cyber risk. The Insider Threat Consultant will play a key role in developing the asset intelligence, monitoring strategies, detection capabilities, and investigative processes necessary to identify and manage insider-driven risk.
This role combines deep technical expertise, critical asset analysis, behavioral risk assessment, and investigative discipline to understand how people interact with sensitive assets and to identify patterns of activity that may indicate elevated risk. The consultant will partner with cybersecurity operations, detection engineering, HR, Legal, Privacy, and business stakeholders to align monitoring and investigative capabilities with asset sensitivity and business impact.
This position is suited for an experienced practitioner who can operate across technical, analytical, and investigative domains while helping build and mature an enterprise-scale insider threat program.
The Team
The Insider Threat team is a specialized cybersecurity function responsible for understanding and managing the risks that trusted individuals may pose to Mass Mutual's critical assets, systems, information, and operations.
The team operates at the intersection of critical asset protection, identity and access management, behavioral analytics, cyber defense, investigations, and workforce risk. Team members develop the intelligence, monitoring strategies, detection capabilities, investigative processes, and analytical frameworks necessary to identify and reduce insider-driven risk.
The team partners closely with Cyber Operations, Detection Engineering, Human Resources, Legal, Privacy, Compliance, Fraud Operations, and business stakeholders to ensure insider risk is identified, assessed, and managed in a consistent, defensible, and risk-informed manner.
The Impact
The Insider Threat Consultant will:
- Identify and prioritize critical assets requiring enhanced monitoring and protection.
- Analyze how critical assets are accessed, used, and shared across the enterprise.
- Map relationships between identities, access privileges, business processes, and critical assets.
- Analyze behavioral and technical indicators associated with insider risk.
- Identify patterns of activity that may indicate misuse or mishandling of critical assets.
- Conduct and support complex insider threat investigations.
- Correlate identity, access, asset, and behavioral signals across multiple data sources.
- Monitor and analyze deception environments and adversary interaction signals.
- Partner with detection engineering and security operations to develop and refine insider threat detection logic.
- Contribute to tuning enterprise security tooling to improve identification of insider-driven risk.
- Support development of early-warning frameworks and proactive risk identification.
- Produce clear, defensible analytical findings and case documentation.
- Support executive reporting and enterprise risk visibility.
The consultant's work will improve visibility into critical assets, strengthen understanding of user-to-asset trust relationships, increase the fidelity of insider threat detections, and help prevent compromise of the confidentiality, integrity, and availability of Mass Mutual's most important information and systems.
The Minimum Qualifications
- 8+ years of experience in cybersecurity, insider threat, investigations, intelligence analysis, data protection, enterprise architecture, or related disciplines.
- 2+ years of experience working cross-functionally with security, HR, Legal, Privacy, business, or investigative stakeholders.
Preferred Qualifications
- Experience supporting or building an Insider Threat Program.
- Experience supporting Critical Asset Protection, Information Protection, Data Protection, or Human Risk Management initiatives.
- Experience conducting cyber, digital, fraud, employee misconduct, or insider threat investigations.
- Experience analyzing logs, endpoint telemetry, identity activity, access patterns, and behavioral signals.
- Hands-on experience…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).