Lead Cybersecurity – Insider Risk Analyst (Telemetry, Insider Risk Detection, and AI-Driven Security Operations)
Core
Lead handler for escalated insider risk and cyber incidents, driving detection engineering, micro-hunts, and AI-assisted analytics to improve response fidelity.
Role type
Senior IC cybersecurity incident response lead (insider risk & telemetry)
Builds
Automated detection rules, security analytics pipelines, and incident response playbooks
Domain
Cybersecurity, Insider Risk, Threat Detection, Security Operations
Deliverable
production ML models | product features | dashboards & analysis | client delivery | infrastructure
Required skills
Incident response leadership, Telemetry analysis, SIEM analytics (Splunk), EDR tooling, Threat intelligence, Scripting (Python/PowerShell/Bash), Cloud security, UEBA, Automation/Orchestration
Preferred skills
Tanium, SOAR, AI-assisted analytics, Insider risk programs, Cloud/SaaS threat response, Mentorship
Technologies
Splunk, EDR, Tanium, SOAR, Python, PowerShell, Bash, APIs, Cloud environments
Responsibilities
Lead escalated insider risk and cyber incident investigations; Develop and tune detection rules and analytics; Perform targeted micro-hunts; Implement AI-assisted monitoring and automation; Mentor analysts and serve as SME; Produce executive incident reports and summaries
Seniority
Senior, hands-on IC with mentorship responsibilities