Insider Risk Security Engineer
Posted 23hrs ago
Employment Information
Report this job
Job expired or something wrong with this job?
Job Description
Insider Risk Security Engineer strengthening Zscaler’s cloud security platform against insider threats. Leading detection engineering, investigations, and defensible playbooks across enterprise security operations.
Responsibilities:
- Refine Insider Risk Program detection rules to reduce noise, close coverage gaps, and surface high-fidelity alerts in adequate time
- Perform endpoint and user activity investigations using EDR/XDR, UEBA, and SIEM tools, managing cases end-to-end to create factual timelines
- Develop and iterate insider risk investigation playbooks, translating case patterns and lessons learned into scalable, defensible processes
- Serve as a key contact for HR, Legal, business leaders, and other stakeholders on active investigations
- Prepare clear evidentiary case documentation
- Mentor junior analysts and represent the team with HR, Legal, and executive stakeholders
- Report to the Senior Architect in the Enterprise Security Department and take operational direction from the Insider Risk Team Lead
Requirements:
- Foundational understanding of AI/ML technologies and experience leveraging, securing, or positioning AI-driven solutions to optimize outcomes within your functional domain
- U.S. Citizenship required
- Minimum 6+ years of experience in insider risk, data protection, fraud investigation, or security operations, with a proven track record in senior investigative roles, process ownership, and the design of detection frameworks and playbooks
- Experience managing and dispositioning alerts within a SIEM or SOAR
- Strong communication skills with proven ability to engage cross-functionally with HR, Legal, business leaders, and other stakeholders while maintaining discretion and sound judgment
- Proficiency in Python or JavaScript with experience applying automation to investigative workflows
- Hands-on experience with Zscaler's product portfolio in a large-scale enterprise environment preferred
- Experience working with product development teams to implement security use cases preferred
- Relevant certifications such as GCFA or GCFE, or equivalent forensics credentials preferred
- Familiarity with CERT, NIST, and NSA frameworks preferred
Benefits:
- Various health plans
- Time off plans for vacation and sick time
- Parental leave options
- Retirement options
- Education reimbursement
- In-office perks



















