Insider Threat Associate Director
Listed on 2026-07-23
-
IT/Tech
Cybersecurity
Are you ready to make an impact at DTCC? Do you want to work on innovative projects, collaborate with a dynamic and supportive team, and receive investment in your professional development? At DTCC, we are at the forefront of innovation in the financial markets. We are committed to helping our employees grow and succeed. We believe that you have the skills and drive to make a real impact.
We foster a thriving internal community and are committed to creating a workplace that looks like the world that we serve.
The Information Technology group delivers secure, reliable technology solutions that enable DTCC to be the trusted infrastructure of the global capital markets. The team delivers high-quality information through activities that include development of essential, building infrastructure capabilities to meet client needs and implementing data standards and governance.
Pay And Benefits- Competitive compensation, including base pay and annual incentive
- Comprehensive health and life insurance and well‑being benefits, based on location
- Pension / Retirement benefits
- Paid Time Off and Personal/Family Care, and other leaves of absence when needed to support your physical, financial, and emotional well‑being.
- DTCC offers a flexible/hybrid model of 3 days onsite and 2 days remote (onsite Tuesdays, Wednesdays and a third day unique to each team or employee).
Reporting to the Director of Defensive Cyber Operations, the Insider Threat Manager is responsible for leading a team of investigators who monitor, detect, and proactively prevent insider threats. This role provides both people leadership and technical direction, ensuring the threat hunt program is intelligence‑informed and aligned with organizational risk priorities, regulatory expectations, and industry best practices.
As a first‑line manager, you are accountable for the day‑to‑day execution and continuous improvement of the Insider Threat program. You leverage your expertise in adversary tradecraft, telemetry analysis, and detection engineering, while developing and empowering investigators to operate as high‑performing cyber defenders. You play a critical role in Cyber Security Operations and partner closely with Cyber Monitoring & Incident Response, Cyber Threat Hunt, Cyber Threat Intelligence, Detection Engineering, and Offensive Cyber Operations.
YourPrimary Responsibilities
- Be accountable for the operational performance and effectiveness of the team.
- Lead, mentor, and develop a team of investigators, fostering a culture of curiosity, rigor, and continuous improvement.
- Plan, prioritize, and oversee investigations and proactive risk reduction actions based on Threat Intelligence, Lessons Learned, and Risk Signals.
- Translate high‑level threat intelligence and organizational risk into actionable hunt objectives and execution plans.
- Ensure consistent use of defined methodologies, documentation standards, and quality review processes.
- Partner with Cyber Monitoring & Incident Response to transition investigation findings to incident response activities when applicable.
- Identify visibility gaps, control weaknesses, and tooling limitations; collaborate with stakeholders to remediate issues.
- Develop, track, and report key metrics, including coverage, outcomes, and impact, to leadership and stakeholders.
- Communicate findings and trends clearly through high‑quality written reports and presentations tailored to technical and non‑technical audiences.
- Support regulatory, audit, and risk management inquiries related to insider threats.
- Act as an escalation point for high‑prioritiy investigations, investigative questions, or urgent threat activity.
- Promote and evangelize the value of proactive insider risk reduction throughout the organization.
- Participate in on‑call escalation and perform emergency after‑hours work when required.
- Travel to conferences, training, and other company offices as needed (up to ~30%).
NOTE:
The Responsibilities of this role are not limited to the details above.
- Min of 8 years of relevant experience
- Bachelor's degree and/or equivalent experience
- 5+ years of cybersecurity…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).