Respond to DLP alerts, monitor DLP consoles and analyze security events to identify potential data loss incidents.
Hands-on investigation and threat hunting in SIEM, UEBA and DLP tools.
Respond to alerts from AI security tools for monitoring and protection.
Respond to AI-related security incidents or abuse.
Conduct in-depth investigations of suspected insider threat incidents, including unauthorized access, data exfiltration, and policy violations.
Regularly review and fine-tune DLP and UEBA rules/policies to reduce false positives and improve detection accuracy.
Develop and implement insider threat detection use cases, alert rules, and incident response playbooks.
Prepare detailed reports on investigation findings, risk assessments, and recommended remediation actions.
Assess potential insider threats by evaluating the risks associated with users, data, and systems.
Participate in data protection audits, compliance reviews, and risk assessments related to DLP.
Contribute to knowledge-sharing initiatives by documenting case studies from DLP and UEBA incidents.
Assist business units in identifying sensitive data and map out potential leakage points.
Gathers documentation and contributes to the Global Insider Threat Management Team knowledge base.
Organizes and facilitates cross-function insider threat project alignment with all applicable stakeholders to accomplish common goals.
Duties as assigned.
Requirements
3-5 years of experience in cybersecurity, information security, or a related field with a focus on insider threat analysis and investigation.
Proven experience in digital forensics, incident response, or threat hunting.
Hands-on investigation and threat hunting in SIEM (Security Information and Event Management), DLP (Data Loss Prevention), UEBA (User and Entity Behavior Analytics) and other relevant security technologies.
Hands-on experience or exposure to AI technologies
Bachelor's degree in Cybersecurity Information Assurance or related field experience.
Experience with insider threat detection platforms like SIEM, DLP, and UEBA.
Knowledge of relevant legal and regulatory requirements related to data protection and privacy.
Tech Stack
Cyber Security
Benefits
Comprehensive medical, dental, and vision coverage
Including 100% coverage for out-patient in-network mental health services
Fertility coverage for eligible medical plan participants
Wellbeing reimbursements for fitness classes, spa treatments, meal services, travel, and so much more (up to $720/year)
Student Loan Repayment Assistance and Tuition Reimbursement
401(k) with 100% immediate vesting on the first 5% of your contributions, plus an additional UMG contribution
A variety of ways to prioritize much-needed time away from work including:
Flexible Paid Time Off (PTO) for exempt employees
3-weeks PTO for non-exempt employees
2-weeks paid Winter Break
10 Company Holidays (including Juneteenth and Wellbeing Day)
Summer Fridays (between Memorial Day and Labor Day)
Generous paid parental leave for every type of parent