Staff Insider Risk Engineer

🔥 0 minutes ago

🌐 Malaysia, South Korea, +3 more countries – Remote

infoinfo

⏰ Full Time

🔴 Lead

🎲 Risk

👻 Ghost score 10%

infoinfo
Apply Now
Find Similar Remote Jobs

📊 Check your resume score for this job

Improve your chances of getting an interview by checking your resume score before you apply.

Logo of Reinsurance Group of America, Incorporated

Reinsurance Group of America, Incorporated

1001 - 5000 employees

Founded 1973

💼 Consulting

📦 Logistics

🛡️ Insurance

Consulting • Logistics • Insurance

Reinsurance Group of America, Incorporated (RGA) is a leading global reinsurance company that focuses exclusively on life and health reinsurance solutions. With a strong commitment to providing innovative products and services, RGA helps its clients manage risk and enhance their insurance portfolios through its expertise in underwriting, claims management, and financial solutions. The company operates in multiple global markets, leveraging its extensive data and analytics capabilities to offer tailored solutions that meet the unique needs of the life and health insurance sectors.

📋 Description

• Create, drive, and execute standards, procedures, and processes to manage, mitigate, and reduce cyberattack risk against RGA • Enable Global Security Operations through operations, development, and engineering activities • Serve as technical lead for Insider Risk Management and build and mature RGA's Insider Risk capabilities • Participate in a 24/7 on-call rotation, alert triage, and incident investigations as required • Drive Security Operations functions including incident response, threat detection, offensive security, and insider risk management • Design, build, and enhance insider risk monitoring, detection, and investigative capabilities • Develop and maintain detection use cases, workflows, and content across SIEM, UEBA, and Insider Risk platforms • Lead complex investigations involving insider threats, compromised accounts, and suspicious user activity across endpoint, identity, email, cloud, and network environments • Analyze and mitigate risks related to data exfiltration, privileged access misuse, fraud, policy violations, sensitive data exposure, and third-party access • Develop automation and orchestration solutions using scripting, APIs, and SOAR technologies • Perform advanced security analysis, threat emulation, detection validation, and telemetry assessments • Drive security audit, compliance, risk reduction, logging, and security tooling initiatives • Deliver projects, dashboards, metrics, and reporting to improve security operations and reduce cyber risk • Partner with Legal, Human Resources, Privacy, Compliance, Internal Audit, and Technology teams • Provide technical leadership, mentoring, and guidance to junior team members

🎯 Requirements

• Bachelor's Degree in Arts/Sciences (BA/BS) or equivalent experience • 6+ years of experience in cybersecurity, security engineering, security operations, incident response, threat detection, threat hunting, offensive security, or insider threat/risk management • 3+ years of experience developing automation, orchestration, and workflows to scale security operations • Experience leading complex investigations, incident response activities, forensic analysis, and threat detection initiatives • Experience developing security monitoring capabilities, behavioral analytics, metrics, reporting, and addressing telemetry gaps • Experience with SIEM, EDR, UEBA, and threat intelligence platforms such as Splunk, Microsoft Sentinel, CrowdStrike, Microsoft Defender, Exabeam, or similar technologies • Working knowledge of Windows, Mac, Linux, networking, cloud platforms (AWS, Azure, GCP), identity technologies (Active Directory, Okta, SAML, OAuth, OpenID Connect), email security, and DNS security • Proficiency in PowerShell, Python, or similar scripting languages, including API integrations and security automation • Strong analytical, investigative, problem-solving, and communication skills, with the ability to work independently in a globally distributed environment • Experience leading purple team exercises, threat emulation, or detection validation activities preferred • Experience with Microsoft 365 security technologies, including Defender, Entra ID, Purview Insider Risk Management, and Data Loss Prevention (DLP), preferred • Understanding of legal, privacy, compliance, and regulatory considerations related to insider risk investigations preferred • Professional cybersecurity certifications and industry contributions through conferences, publications, or technical communities preferred

🏖️ Benefits

• Gain valuable knowledge from and experience with diverse, caring colleagues around the world • Respectful, welcoming environment that fosters individuality and encourages pioneering thought • Vast, endless career potential • AI-assisted preliminary screening with personalized job recommendations, automated interview scheduling, experience-based candidate evaluation, and chatbot answers • Personal support from an RGA recruiter throughout the hiring process

Apply Now