Point your AI agent at freehire and let it find you a job.

Get the CLI →

jobgether

NewBe an early applicant

Senior Security Engineer, Insider Threat

Discussion

Summary

You will build and mature an insider threat program, focusing on detection engineering, threat hunting, incident response, and digital forensics to protect data and infrastructure using Python, SQL, and AWS.

This position is listed on behalf of a partner company, who manages all applications and next steps. Our partner is looking for a Senior Security Engineer, Insider Threat based in United States.

This is a high-impact security engineering role within a fast-paced Threat Detection and Response environment.
You will help build and mature an insider threat program designed to protect sensitive data, systems, and infrastructure.
The role combines detection engineering, threat hunting, incident response, digital forensics, and security analytics.
You will develop scalable detection logic, automation, and models to identify anomalous behavior and data exfiltration.
You will collaborate closely with engineering, HR, Legal, and other business teams during complex investigations.
The position offers the opportunity to shape security capabilities across a large and technically sophisticated environment.
A strong balance of technical depth, investigative judgment, and calm decision-making is essential for success.

Accountabilities

  • Identify security visibility gaps across corporate and production environments and partner with relevant teams to improve logging and detection coverage.
  • Participate in a 24/7 on-call rotation supporting threat detection and incident response activities.
  • Apply coding, data analytics, investigation, and threat-hunting techniques to identify and respond to insider threats.
  • Develop scalable detection logic to identify data misuse, abuse, and exfiltration.
  • Build automation and detection models that identify anomalous activity and strengthen security response capabilities.
  • Proactively hunt for insider threats across corporate and production environments.
  • Collaborate with engineering teams to design and implement advanced detection solutions.
  • Partner with HR and Legal on sensitive and complex insider threat investigations.
  • Design and advise on countermeasures that reduce insider threat exposure and mitigate identified risks.
  • Contribute subject-matter expertise during insider threat incident response activities.
  • Support security awareness, communications, and training initiatives related to insider risk.
  • Requirements

    • 5+ years of hands-on security operations experience, including areas such as detection engineering, threat hunting, incident response, digital forensics, and/or threat intelligence.
    • Bachelor’s degree in a technical discipline or equivalent practical experience.
    • Experience or exposure to data science, security analytics, or analytical approaches for insider threat detection.
    • Familiarity with insider threat technologies, particularly Data Loss Prevention (DLP) and User and Entity Behavior Analytics (UEBA).
    • Strong understanding of how insider threat programs and incident response teams coordinate during active investigations.
    • Knowledge of insider threat challenges within consumer-facing/B2C technology environments.
    • Familiarity with the Cyber Kill Chain and MITRE ATT&CK frameworks and their application to insider threat scenarios.
    • Demonstrated experience automating security detection and response workflows.
    • Proficiency in Python and SQL.
    • Hands-on experience with AWS services such as EC2, S3, Lambda, and RDS is preferred.
    • Strong self-direction, organization, prioritization, and investigative judgment.
    • Ability to remain composed and effective when handling high-pressure security incidents.
    • Must be authorized to work in the United States without sponsorship.
    • Benefits

      • $130–$142 per hour, depending on experience.
      • Fully remote position within the United States.
      • Full-time schedule of 40 hours per week, Monday through Friday, 8 hours per day.
      • Approximately 12-month contract, from September 22, 2026 through September 21, 2027.
      • Opportunity to help build a new insider threat program and influence security strategy at scale.
      • High-impact work spanning threat detection, incident response, security engineering, analytics, and investigations.
      • Collaboration with engineering, HR, Legal, and business stakeholders in a complex technology environment.
      • Exposure to advanced security technologies, automation, data analytics, and cloud infrastructure.
      • Opportunity to contribute to security awareness and organizational risk-reduction initiatives.
How Jobgether works:
We use an AI-powered matching process to ensure your application is reviewed quickly, objectively, and fairly against the role's core requirements. Our system identifies the top-fitting candidates, and this shortlist is then shared directly with the hiring company. The final decision and next steps (interviews, assessments) are managed by their internal team.
We appreciate your interest and wish you the best!
Why Apply Through Jobgether?
Data Privacy Notice: By submitting your application, you acknowledge that Jobgether will process your personal data to evaluate your candidacy and share relevant information with the hiring employer. This processing is based on legitimate interest and pre-contractual measures under applicable data protection laws (including GDPR). You may exercise your rights (access, rectification, erasure, objection) at any time.
#LI-CL1

Skills

See also

Security jobs by country — openings, pay and top skills →

Tailor your CV for this role?

We couldn't check your fit for this role — add a CV to your profile to see it next time.

A new version of freehire is available