Talent.com
Insider Risk Engineer - Cyber

Insider Risk Engineer - Cyber

Western Alliance BankPhoenix, AZ, United States
18 hours ago
Job type
  • Full-time
Job description

Job Title :

Insider Risk Engineer - Cyber

Location : CityScape

What you'll do :

As a Insider Risk Engineer - Cyber you'll work both independently and as part of a cohesive team to manage and provide ownership of innovative threat detection, security audit, and logging solutions. You'll take the lead to communicate, collaborate and justify cyber recommendations to a broad base of stakeholders throughout the IT, Cyber and Audit department. Western Alliance Bank's Insider Risk Program is a strategic initiative within the Security Risk & Compliance function, supporting the bank's growth into a Large Financial Institution. It focuses on identifying, preventing, and mitigating risks to the bank and its customers that may arise from inadvertent or intentional actions by employees, contractors, or third parties.

As the Insider Risk Engineer, you'll be a key member of a multidisciplinary team that partners closely with Data Security, the Security Monitoring Center, Privacy, Legal, and HR, among others. You'll manage the full stack (front end and back end) of applications utilized to help Western Alliance Bank prevent, detect and respond to insider risk events of interest. You'll own the review and development of new processes and technologies to enhance the program's ongoing maturity. Additionally, you'll lead the continuous review and improvement of the defense, auditing, access standards, tactics, and techniques to meet regulatory guidelines as well as owning the resiliency of insider risk applications and platforms via routine disaster recovery exercises. You'll partner with vendors routinely to optimize insider risk products, as well as ensure costs / licenses do not exceed expectations, while maintaining capacity planning to ensure quality and value delivery of insider risk program objectives.

  • Proactively identify and fix issues to improve backend service scalability, resiliency, and fault tolerance. Respond to insider risk events of interest in a timely manner alongside team members and key stakeholders. Respond to audit inquiries and ensure processes and procedures are within regulatory guidelines.
  • Foster the highest level of engineering practices and follow relevant company procedures, in addition to being held accountable for relevant documentation.
  • Design and implement advanced detection logic to surface subtle behavioral anomalies indicative of insider risk across diverse data sources.
  • Continuously refine and tune Insider Risk policies to reduce false positives and improve signal-to-noise ratio in alerting workflows.
  • Engineer scalable data pipelines to ingest, normalize, and correlate identity, access, and activity data for risk modeling.
  • Collaborate with security monitoring, threat intelligence and modeling teams to incorporate contextual enrichment and behavioral baselines into Insider Risk analytics.
  • Prototype and evaluate emerging technologies (e.g., ML models, graph analytics) to enhance Insider Risk detection capabilities.
  • Revisit Insider Risk tooling architecture design routinely with vendor and peers to either or all : minimize cost, optimize performance, scale, and meet new requirements.

What you'll need :

  • 6+ years of related experience in IT Security, IT App Support, IT Development or similar field.
  • Bachelor's degree in related field required.
  • Previous leadership experience preferred.
  • Advanced knowledge of general Financial Services or Banking is preferred.
  • Advanced to expert experience with and knowledge of Linux, Python, PowerShell, SIEM and Bash. Solid understanding of authentication protocols SAML, SSO, and LDAP. Solid understanding of concepts regarding SIEM, SOAR, Firewall, Proxies, SSL / TLS, Secure Mail Gateways, Application Firewalls, NAC, Vulnerability Scanners, and EDR.
  • Advanced experience with logging infrastructure concepts : syslog; log parsing; log de-duping; methods for log pulling; RFC 5424; CEF Format; JSON; key value pair format; log enrichment; log maintenance; log troubleshooting.
  • Solid understanding of load balancers, DNS, SMTP, etc. for troubleshooting application functionality.
  • Advanced experience of NIST, MITRE and Administration of either or all of an IT Automation platform, SOAR, Firewall, IAM platform, SIEM, cloud cyber defense platform etc.
  • Hands-on experience deploying and operating a User & Entity Behavioral Analytics (UEBA) platform in a mid-large sized corporation, preferably in Financial Services.
  • Expertise building Application Program Interfaces (APIs) from source systems of record to bring technical and non-technical indicators into the UEBA.
  • Intermediate - Advanced ability to query and extract data from security monitoring systems (e.g., SIEM, EDR, NDR, etc.) for performing Insider Risk analysis.
  • Experience correlating UEBA signals with identity, access, and data movement logs to detect anomalous behavior.
  • Familiarity with government and industry best practice frameworks for managing Insider Risk (e.g., Carnegie Mellon, SIFMA, MITRE, NIST, etc.).
  • Ability to translate behavioral indicators into risk scoring models and escalation thresholds.
  • Experience working cross-functionally with Legal, HR, and Compliance teams to investigate and respond to Insider Risk cases.
  • Advanced speaking and writing communication skills.
  • Benefits you'll love :

    We offer all the important things you'd want - like competitive salaries, an ownership stake in the company, medical and dental insurance, time off, a great 401k matching program, tuition assistance program, an employee volunteer program, and a wellness program. In addition, you'll have the opportunity to bolster your business knowledge, learning the ins and outs of how successful companies operate and manage their finances, giving you invaluable hands-on experience to help grow your career!

    About the company :

    Western Alliance Bank is a wholly owned subsidiary of Western Alliance Bancorporation. Alliance Bank of Arizona, Alliance Association Bank, Bank of Nevada, Bridge Bank, First Independent Bank, and Torrey Pines Bank are divisions of Western Alliance Bank; Member FDIC. AmeriHome Mortgage is a Western Alliance Bank company.

    Western Alliance Bancorporation is committed to equal employment and will consider all qualified applicants without regard to race, sex, color, religion, age, nation origin, marital status, disability, protected veteran status, sexual orientation, gender identity or genetic information. Western Alliance Bancorporation is committed to working with and providing reasonable accommodations for individuals with disabilities. If you are an individual with a disability and require a reasonable accommodation to complete any part of the application process and / or need an alternative method of applying, please email HR@westernalliancebank.com or call 602-386-2488. When contacting us, please provide your contact information and state the nature of your accessibility issue. We will only respond to inquiries concerning requests that involve a reasonable accommodation in the application process.

    Western Alliance Bancorporation

    Create a job alert for this search

    Cyber Engineer • Phoenix, AZ, United States

    Related jobs
    • Promoted
    • New!
    Cyber Security Risk Management Engineer

    Cyber Security Risk Management Engineer

    ViaSatTempe, AZ, United States
    Full-time
    At Viasat, we're on a mission to deliver connections with the capacity to change the world.For more than 35 years, Viasat has helped shape how consumers, businesses, governments and militaries arou...Show moreLast updated: 18 hours ago
    • Promoted
    • New!
    Cyber Security Engineer

    Cyber Security Engineer

    Ports America Shared Services, Inc.Tempe, AZ, United States
    Full-time
    In the maritime industry, where colossal ships dock, and millions of tons of cargo are moved with precision, it takes teams of dedicated individuals to keep global trade in motion.Working in this d...Show moreLast updated: 18 hours ago
    • Promoted
    • New!
    Cyber Security Engineer

    Cyber Security Engineer

    Ports AmericaTempe, AZ, United States
    Full-time
    In the maritime industry, where colossal ships dock, and millions of tons of cargo are moved with precision, it takes teams of dedicated individuals to keep global trade in motion.Working in this d...Show moreLast updated: 18 hours ago
    • Promoted
    Offensive Cybersecurity Engineer (Web and Cloud)

    Offensive Cybersecurity Engineer (Web and Cloud)

    ViasatTempe, AZ, United States
    Full-time
    At Viasat, we're on a mission to deliver connections with the capacity to change the world.For more than 35 years, Viasat has helped shape how consumers, businesses, governments and militaries arou...Show moreLast updated: 1 day ago
    • Promoted
    Offensive Cybersecurity Engineer (Hardware)

    Offensive Cybersecurity Engineer (Hardware)

    ViasatTempe, AZ, United States
    Full-time
    At Viasat, we're on a mission to deliver connections with the capacity to change the world.For more than 35 years, Viasat has helped shape how consumers, businesses, governments and militaries arou...Show moreLast updated: 1 day ago
    • Promoted
    Cybersecurity Saviynt engineer

    Cybersecurity Saviynt engineer

    Syntricate TechnologiesScottsdale, AZ, United States
    Full-time
    Must have 3-5 years minimum Saviynt experience • Must have strong experience working on Linux servers • Collate functional and technical requirements related to Identity Governance • Work with partner...Show moreLast updated: 30+ days ago
    • Promoted
    • New!
    Cybersecurity Engineer

    Cybersecurity Engineer

    Maricopa Community College DistrictTempe, AZ, United States
    Full-time +1
    District Support Services Cntr.Summer Hours : Monday - Thursday, 7am-6pm.The Maricopa County Community College District is one of the largest community college systems in the nation.Home to 10 indiv...Show moreLast updated: 18 hours ago
    • Promoted
    • New!
    Cybersecurity Engineer II

    Cybersecurity Engineer II

    American ExpressPhoenix, AZ, United States
    Full-time
    At American Express, our culture is built on a 175-year history of innovation, shared values and Leadership Behaviors, and an unwavering commitment to back our customers, communities, and colleague...Show moreLast updated: 18 hours ago
    • Promoted
    Cyber Security Risk Management Engineer

    Cyber Security Risk Management Engineer

    ViasatTempe, AZ, United States
    Full-time
    At Viasat, we're on a mission to deliver connections with the capacity to change the world.For more than 35 years, Viasat has helped shape how consumers, businesses, governments and militaries arou...Show moreLast updated: 30+ days ago
    • Promoted
    • New!
    Senior Cyber Threat Intelligence Engineer (Remote)

    Senior Cyber Threat Intelligence Engineer (Remote)

    USAA CareersPhoenix, AZ, United States
    Remote
    Full-time
    At USAA, our mission is to empower our members to achieve financial security through highly competitive products, exceptional service and trusted advice. We seek to be the #1 choice for the military...Show moreLast updated: 18 hours ago
    • Promoted
    • New!
    Senior Cybersecurity Engineer (Networking)

    Senior Cybersecurity Engineer (Networking)

    AmentumPhoenix, AZ, United States
    Full-time
    Amentum is a global leader in advanced engineering and innovative technology solutions, trusted by the United States and its allies to address their most significant and complex challenges in scien...Show moreLast updated: 18 hours ago
    • Promoted
    • New!
    Cybersecurity Architect

    Cybersecurity Architect

    Clearway Energy, Inc.Scottsdale, AZ, United States
    Full-time
    We are looking to hire a Cybersecurity Architect with an analytical mind and a detailed understanding of cybersecurity methodologies, tools, and processes. Cybersecurity architects are expected to h...Show moreLast updated: 18 hours ago
    • Promoted
    • New!
    Offensive Cybersecurity Engineer

    Offensive Cybersecurity Engineer

    ViaSatTempe, AZ, United States
    Full-time
    At Viasat, we're on a mission to deliver connections with the capacity to change the world.For more than 35 years, Viasat has helped shape how consumers, businesses, governments and militaries arou...Show moreLast updated: 18 hours ago
    • Promoted
    • New!
    Cybersecurity Engineer

    Cybersecurity Engineer

    Eliassen GroupPhoenix, AZ, United States
    Permanent
    We are looking for a Cybersecurity Engineer who is eager to contribute to a small, fast-paced team! Our ideal candidate will have a background in Information Assurance (IA) and Cybersecurity framew...Show moreLast updated: 18 hours ago
    • Promoted
    • New!
    Senior Cyber Threat Intelligence Engineer

    Senior Cyber Threat Intelligence Engineer

    USAA CareersLaveen, AZ, United States
    Full-time
    Increase your chances of an interview by reading the following overview of this role before making an application.At USAA, our mission is to empower our members to achieve financial security throug...Show moreLast updated: 18 hours ago
    • Promoted
    • New!
    Cybersecurity Engineer II, Identity and Access Management

    Cybersecurity Engineer II, Identity and Access Management

    Benchmark ElectronicsTempe, AZ, United States
    Full-time +1
    At Benchmark, we are driven by our purpose : to innovate for a healthier, safer, and better-connected world to create a brighter future. When you join us, you become part of a team passionate about m...Show moreLast updated: 18 hours ago
    • Promoted
    Cybersecurity Engineer (SOAR)

    Cybersecurity Engineer (SOAR)

    Phoenix CyberPhoenix, AZ, United States
    Full-time
    Phoenix Cyber is looking for Cybersecurity Engineers to join our client delivery team.This is a remote, work-from-home position with the possibility of minimal travel within the continental United ...Show moreLast updated: 30+ days ago
    • Promoted
    • New!
    JR. Cybersecurity Engineer

    JR. Cybersecurity Engineer

    Insight GlobalPhoenix, AZ, United States
    Full-time
    Perform vulnerability scanning to monitor the organizations security stance and ensure the maintenance of a secure environment. Review logging and monitoring systems to identify issues, threats or a...Show moreLast updated: 18 hours ago