Job Closed
This listing is no longer active.
CyberSecurity as a Solution: Enabling Secure Business.
Security Engineer – Insider Risk
Location
United States
Posted
106 days ago
Salary
0
Seniority
Lead
Job Description
Security Engineer – Insider Risk
Dragonfli Group
• Assist in developing playbooks, workflows, and implementation roadmaps to mature the Insider Threat operational support program. • Administer and optimize the Insider Risk toolset, specifically DLP, UEBA, SIEM, and Microsoft Defender/Entra/Purview. • Develop and maintain a convergence model to reduce risk to personnel and assets across regional operating divisions. • Lead and assist in the investigation of all incidents involving potential insider threats. • Coordinate with business and technology leaders to develop programmatic solutions and deliver high-level presentations on findings. • Implement federal government and industry standards regarding insider threat programs and maintain programmatic gap analyses.
Job Requirements
- 7+ years of relevant experience in a cyber-related field.
- 5+ years of experience specifically configuring and administering security tools.
- BS/BA in a cyber-related field (Direct experience or professional certifications may substitute for academic credentials).
- Demonstrated experience with Linux Operating Systems and Microsoft 365 environments.
- Experience thriving within heavily regulated environments (e.g., federal or financial sectors).
- U.S. Citizenship or Permanent Residency is required.
Benefits
- Insurance - health, dental, and vision
- Paid Time Off (PTO) and 11 Federal Holidays
- 401(k) employer match
Related Guides
Related Categories
Related Job Pages
More Security Engineer Jobs
Senior Legal Advisor
JobgetherWe use an AI-powered matching process to ensure your application is reviewed quickly, objectively, and fairly against the role's core requirements. Our system identifies the top-fitting candidates, and this shortlist is then shared directly with the hiring company. The final decision and next steps (interviews, assessments) are managed by their internal team. We appreciate your interest and wish you the best! Data Privacy Notice: By submitting your application, you acknowledge that Jobgether will process your personal data to evaluate your candidacy and share relevant information with the hiring employer. This processing is based on legitimate interest and pre-contractual measures under applicable data protection laws (including GDPR). You may exercise your rights (access, rectification, erasure, objection) at any time. #LI-CL1 We may use artificial intelligence (AI) tools to support parts of the hiring process, such as reviewing applications, analyzing resumes, or assessing responses. These tools assist our recruitment team but do not replace human judgment. Final hiring decisions are ultimately made by humans. If you would like more information about how your data is processed, please contact us.
This position is for a Senior Counsel - REMOTE, where you will join a dynamic Legal and Compliance department, providing high-caliber legal advice to internal stakeholders. Support business units across the company with diverse legal needs. Develop and improve processes for the Legal and Compliance Department. Ensure that legal obligations are met and the company is fully protected. Identify and propose solutions to complex legal challenges. Navigate data privacy legislation to keep policies up-to-date.
• FedRAMP Ownership: Own the entire process for maintaining and managing FedRAMP/GovRamp authorizations, including control implementation, documentation (e.g., System Security Plan - SSP), continuous monitoring, and annual audits (A&A). • Audit Management: Serve as the primary point of contact for all external security and compliance audits (including SOC 2 Type II), coordinating efforts between auditors, legal counsel, and technical teams to ensure successful outcomes and high-quality evidence collection. • Compliance Program Management: Design, implement, and lead the corporate security compliance program, ensuring adherence to the specific controls required by all key frameworks. • Security-by-Design Review: Collaborate closely with the Product Management and Engineering teams, reviewing product roadmaps, features, and architectures to ensure security and government compliance (especially FedRAMP/GovRamp controls) are integrated from the initial design phase (Security-by-Design). • Product Requirements Translation: Translate complex regulatory and certification controls into clear, actionable technical requirements and user stories for product development teams. • Risk Mitigation: Conduct risk assessments on product features, third-party integrations, and new technologies to proactively identify and mitigate compliance and security risks before product launch. • Contractual Review: Support the Legal Team by critically reviewing and negotiating security and privacy clauses in customer contracts, RFPs, vendor agreements, and data processing addendums (DPAs), specifically pertaining to government and regulated clients. • Policy & Training: Develop, document, and enforce comprehensive security, privacy, and data governance policies. Conduct targeted training for teams involved in government-facing products. • Executive Reporting: Provide regular, executive-level reports to the Chief Legal Counsel on the status of compliance efforts, identified risks, and strategic security posture.
• Help design, create, and implement systems for Cloud Security on our SaaS platform • Monitor, analyze, and respond to security threats • Shape and enforce security policies, standards, and best practices • Work independently to define strategies and solutions that align with security • Provide technical and security engineering support during pre-sales and post-sales phases • Be the technical liaison for customers regarding security-related topics • Assist with managing disaster recovery and penetration test projects • Support AWS security processes, blueprints, and documentation
Cybersecurity Risk Advisor
ECIPremier MSP and MSSP, specializing in cybersecurity, cloud, AI and data solutions for the alternative financial industry
• create a relationship with clients as a trusted cybersecurity advisor • develop and implement cybersecurity risk management strategies tailored to the needs of financial services and government clients in various regions • advise clients on compliance with regulatory frameworks and global standards like ISO 27001, NIST, and CIS • conduct security assessments and gap analyses to identify weaknesses and recommend actionable improvements • collaborate with client stakeholders, including CISOs and IT leadership, to align cybersecurity initiatives with business objectives • stay current with evolving cyber threats, regulatory updates, and industry trends across various regions • support clients during internal and external audits, including preparation of documentation and remediation planning • collaborate with team members and contribute to the continuous improvement of internal methodologies and knowledge sharing • respond to ad hoc client queries related to cybersecurity, risk, and compliance



