Insider Threat Analyst
SpaceXUSA3w ago
Job description
About the role
SpaceX is on the lookout for a dedicated Insider Threat Analyst to play a crucial role in identifying and mitigating internal risks that could jeopardize its spacecraft, satellite systems, and proprietary technologies. In this position, you will analyze unusual activities, generate intelligence reports, and collaborate with various teams, including security, legal, and human resources, to safeguard the company's assets and personnel. This role is vital in fortifying advanced programs against threats from both domestic and international adversaries.
Key facts
What you'll do
- Conduct thorough investigations into potential threats to the company's intellectual property and overall security by leveraging a variety of data sources.
- Assess alerts related to data breaches, potential data destruction, or other alarming signs that may indicate insider threats.
- Utilize Data Loss Prevention (DLP), Security Information and Event Management (SIEM), and User and Entity Behavior Analytics (UEBA) tools to identify atypical behaviors and detect patterns of concern.
- Collaborate closely with teams in Information Security, Human Resources, Legal, Government Security, and Physical Security, as well as external agencies, throughout the investigative process.
- Prepare and present metrics, case studies, and reports that align with the objectives and timelines of the insider threat program.
- Communicate findings to leadership and relevant stakeholders through both written reports and verbal presentations.
- Create and deliver training materials for internal teams and external partners to enhance awareness and understanding of insider threats.
- Engage with government and industry contacts to share threat intelligence and assess the maturity of the insider threat program.
- Ensure the protection of sensitive case files, employee personal information, and intelligence products throughout the investigative process.
- Propose and assist in the implementation of ongoing enhancements to the insider threat program to improve its effectiveness.
Requirements
- A bachelor's degree combined with at least 2 years of experience in internal investigations, information security, or IT; alternatively, 4 or more years of relevant experience in these fields without a degree will be considered.
- A commitment to working extended hours and weekends when necessary to address critical operational needs.
- Willingness to travel on an ad hoc basis as required by the role.
- An active TS/SCI clearance or the ability to obtain one; candidates with existing clearances will be subject to pre-employment screening, including background checks and drug/alcohol testing, with random testing during employment.
Nice to have
- At least 1 year of experience working with a SIEM tool such as Splunk, Panther, or Exabeam, or conducting digital forensic investigations in either a government or corporate environment.
- Familiarity with the objectives of insider threat programs, stakeholder engagement, and common insider threat behaviors.
- Experience using Microsoft Purview for eDiscovery purposes.
- Knowledge of continuous assessment and detection tuning techniques for insider risk management.
- A background in planning investigations, collecting evidence, interviewing subjects, and reporting findings.
- Capability to conduct interviews on short notice while adhering to internal protocols.
- Excellent written and verbal communication skills, with an emphasis on clear and concise reporting.
- Strong attention to detail and organizational abilities.
- Adaptability to shifting priorities and the ability to meet evolving deadlines.
- A quick learner who can adapt to new technical environments and workflows.
- Sound judgment in handling sensitive and confidential tasks.
Skills & tools
- Proficiency in SIEM platforms such as Splunk, Panther, and Exabeam.
- Experience with DLP and UEBA tools.
- Familiarity with Microsoft Purview for eDiscovery processes.
- Knowledge of digital forensics techniques.
- Skills in network monitoring tools.
- Competence in data analytics and query development.
Practical notes
- The salary range for Level I positions is between $85,000 and $100,000 annually; for Level II, it ranges from $95,000 to $120,000 per year. The actual level and salary will be determined based on experience, education, and relevant skills.
- Compensation packages may include eligibility for stock options, long-term cash awards, discretionary bonuses, and discounted stock purchases through an Employee Stock Purchase Plan.
- Benefits offered include medical, vision, and dental insurance, a 401(k) retirement plan, short and long-term disability coverage, life insurance, paid parental leave, three weeks of paid vacation accrual, at least ten paid holidays each year, and paid sick leave according to company policy.
- Due to ITAR regulations, applicants must be U.S. citizens, U.S. nationals, lawful permanent residents, refugees, asylees, or otherwise eligible for the necessary U.S. Department of State authorizations.