drjobs FLEX Senior Insider Threat Management Analyst

FLEX Senior Insider Threat Management Analyst

Employer Active

1 Vacancy
drjobs

Job Alert

You will be updated with latest job alerts via email
Valid email field required
Send jobs
Send me jobs like this
drjobs

Job Alert

You will be updated with latest job alerts via email

Valid email field required
Send jobs
Job Location drjobs

Bethesda, MD - USA

Hourly Salary drjobs

$ 47 - 80

Vacancy

1 Vacancy

Job Description

Description
This is a temporary position.

Responsible forsupporting the Global Insider Threat Management will include incident response to insider incidents andcollaborating with multiple areas of the business including human resources business data owners legal physical security SOC/CIRT software development and information technology groups. Act as a technical subject matter expert to enhance adjacent programs such as threat intelligence cybersecurity incident response risk management audit ethics etc. He/She will track and manage program metrics (KPI/KRI) to ensure the advancement of the program across the enterprise while mitigating human risk to the organization. He/She will also assist in supporting the digital aspects of Marriotts Executive Protection Program.

CANDIDATE PROFILE

Education and Experience

Required:

  • Bachelors degree in Criminal Justice Computer Science MIS or related field or equivalent experience/certification
  • 5 years experience in insider threat/risk or information security that includes crossfunctional incident response risk assessments threat mitigation and/or investigative support.
  • 3 years SIEM DLP UEBA user experience
  • 3 years experience with Endpoint and Detection Response platforms (ex. CrowdStrike Falcon) and root cause analysis.

Preferred:

  • Current information security certification including Certified Information Security Manager (CISM) Certified Information Systems Auditor (CISA) or Certified Information Systems Security Professional (CISSP)
  • Excellent communication skills and problemsolving ability
  • Demonstrated ability to work independently and with others
  • Ability to manage the details and compliance with standards and expectations
  • Technical infrastructure operations administration or engineering background

CORE WORK ACTIVITIES

Insider Threat Management & Response

  • Establish a framework for researching documenting and integrating assessments.
  • Responsible for gathering relevant intelligence regarding attacker tactics techniques and procedures.
  • Work as needed with the incident response team to triage alerts triggered by suspicious or malicious activity.
  • Act as a technical subject matter expert to enhance adjacent programs such as incident response threat hunting and custom detection development.
  • Develop and report on key metrics of the insider threat management program.
  • Utilize the corporate Endpoint Detection and Response tool and SIEM to identify anomalous activity and potential threats to the enterprise infrastructure.
  • Perform analysis of adversary tradecraft malicious code and capabilities for hunt pivoting purposes.
  • Manage the analysis of artifacts to determine potential specific adversary and motives.
  • Responds to crisis or urgent situations within the pertinent domain to mitigate immediate and potential threats and comply with relevant data breach laws. Uses mitigation preparedness and response and recovery approaches as needed to maximize safety and security of systems preservation of intellectual property and information security. Investigates and analyzes all relevant security and privacy response activities.
  • Conducts assessments of threats and vulnerabilities determines deviations from acceptable configurations or enterprise or local policy assesses the level of risk and develops and/or recommends and operationalizes appropriate mitigation countermeasures.
  • Identifies and assesses the capabilities and activities of; produces findings to help initialize or support law enforcement and counterintelligence investigations or activities.
  • Analyzes threat information from multiple sources disciplines and agencies across industry and regulatory organizations.
  • Synthesizes and places regulatory and intelligence information in context; draws insights about the possible implications

The pay range for this position is $47.35 to $80.24 per hour.

Washington Applicants Only: Employees will accrue 0.0334 PTO balance for every hour worked and eligible to receive minimum of 9 holidays annually.

FLEX opportunities offer coverage for medical dental vision health care flexible spending account dependent care flexible spending account life insurance disability insurance accident insurance adoption expense reimbursements paid parental leave 401(k) plan stock purchase plan discounts at Marriott properties commuter benefits employee assistance plan and childcare discounts. Benefits are subject to terms and conditions which may include rules regarding eligibility enrollment waiting period contribution benefit limits election changes benefit exclusions and others.

Marriott HQ is committed to a hybrid work environment that enables associates to Be connected. Headquartersbased positions are considered hybrid for candidates within a commuting distance to Bethesda MD; candidates outside of commuting distance to Bethesda MD will be considered for Remote positions.

The application deadline for this position is 15 days after the date of this posting May 12 2025.

Marriott International is an equal opportunity believe in hiring a diverse workforce and sustaining an inclusive peoplefirst are committed to nondiscrimination onanyprotectedbasis such as disability and veteran status or any other basis covered under applicable law.




Required Experience:

Senior IC

Employment Type

Full-Time

Company Industry

Report This Job
Disclaimer: Drjobpro.com is only a platform that connects job seekers and employers. Applicants are advised to conduct their own independent research into the credentials of the prospective employer.We always make certain that our clients do not endorse any request for money payments, thus we advise against sharing any personal or bank-related information with any third party. If you suspect fraud or malpractice, please contact us via contact us page.