Cyber Insider Risk Manager
Posted yesterday
deloitteMiami (FL)
Information Security AnalystsOther Management Consulting Services
SENIORITY
Lead
About the role
Position SummaryCyber Defense & Resilience - Insider Risk ManagerAre you interested in working in a dynamic environment that offers opportunities for professional growth and new responsibilities? If so, Deloitte & Touche LLP could be the place for you. Traditional security and integrated risk programs have often been unsuccessful in unifying the need to both secure, automate and support technology innovation required by the business.Recruiting for this role ends on 12/31/2026.Work you'll doAs an Insider Risk Manager on the Cyber team, you will be responsible for:Developing comprehensive strategies for insider risk programs, including program assessments and roadmaps, using Deloitte's Insider Risk capability framework and industry practicesAssisting in the operation of client insider risk programs, overseeing a dedicated team of investigators in the triage, analysis, investigation, and remediation of insider risk-related inquiriesLeading client workshops, interviews, and process walkthroughs with cross-functional stakeholders, including Human Resources, Legal, Privacy, and Security, to document business processes, goals, and program requirementsAligning insider risk indicator and policy development with business needs and industry-leading standards, frameworks, and practices, including the CERT Insider Threat Framework, National Insider Threat Task Force guidelines, and MITRE ATT&CK for EnterpriseDesigning and implementing insider risk detection use cases, monitoring processes, and escalation workflows using Security Information and Event Management, User and Entity Behavior Analytics, and Data Loss Prevention capabilitiesEvaluating insider risk scenarios, high-risk user groups, and crown jewel assets to help clients prioritize and deploy monitoring, detection, response, and program management capabilitiesA successful candidate would possess these skills:Ability to work independently and collaborate as part of a teamEffective written and verbal communication skillsMeticulous attention to detail and quality of work productAbility to build and sustain professional relationshipsAbility to lead projects or workstreamsAbility to manage and prioritize multiple tasks in a fast-paced and dynamic environmentStrong interpersonal skills and professional demeanorAbility to meet deadlinesAbility to mentor and provide clear guidance to othersThe teamDeloitte's Cyber team helps complex organizations more confidently pursue their growth, innovation and performance agendas through proactive management of the associated business and cyber risks. Our professionals provide advisory and implementation services that integrate risk, regulatory, and technology skills to help clients transform their legacy programs. We work across a variety of different risk and compliance programs that extend well beyond Cyber Risk. Learn more about Deloitte Advisory's Cyber Risk Services practice.QualificationsRequired:6+ years of experience in insider risk, security operations, investigations, compliance, data protection, or enterprise risk management2+ years of experience managing an insider risk program or conducting insider risk investigations and monitoring insider risk behaviorsExperience using Security Information and Event Management, User and Entity Behavior Analytics, and Data Loss Prevention tools to support insider risk operationsExperience developing insider risk procedures, playbooks, workflows, metrics, or governance modelsExperience working with cross-functional stakeholders such as Human Resources, Legal, Privacy, Ethics, or SecurityAbility to travel up to 50%, on average, based on the work you do and the clients and industries/sectors you serveLimited immigration sponsorship may be available.Preferred:Bachelor's degree or equivalent experienceExperience in consulting or professional servicesExperience responding to and recovering from cybersecurity incidentsHands-on experience configuring, tuning, and operationalizing UEBA and/or User Activity Monitoring (UAM) platforms to support insider risk detection (e.g., Splunk UEBA, Proofpoint ITM, Microsoft Purview IRM, etc.)Hands-on experience with at least one Data Loss Prevention solution such as Microsoft Purview, Proofpoint DLP, or Zscaler DLPOne or more of the following certifications: CERT Insider Threat Program Manager Certificate, CERT Insider Threat Analyst, CERT Insider Risk Measure Management Measures of Effectiveness, Certified Information Systems Security Professional, Certified Information Privacy Professional, Certified Information Security Manager, or Certified Information Systems AuditorThe wage range for this role takes into account the wide range of factors that are considered in making compensation decisions including but not limited to skill sets; experience and training; licensure and certifications; and other business and organizational needs. The disclosed range estimate has not been adjusted for the applicable geographic differential associated with the location at which the position may be filled. At Deloitte, it is not typical for an individual to be hired at or near the top of the range for their role and compensation decisions are dependent on the facts and circumstances of each case. A reasonable estimate of the current range is $134,500 to $265,100.You may also be eligible to participate in a discretionary annual incentive program, subject to the rules governing the program, whereby an award, if any, depends on various factors, including, without limitation, individual and organizational performance.#CyberCDR27Deloitte is committed to providing reasonable accommodations for people with disabilities. If you require a reasonable accommodation to participate in the recruiting process, please direct your inquiries to the Global Call Center (GCC) at USTalentCICInbox@deloitte.com.Recruiting tipsFrom developing a stand out resume to putting your best foot forward in the interview, we want you to feel prepared and confident as you explore opportunities at Deloitte. Check out recruiting tips from Deloitte recruiters.Our people and cultureOur inclusive culture empowers our people to be who they are, contribute their unique perspectives, and make a difference individually and collectively. It enables us to leverage different ways of thinking, ideas, and perspectives, and bring more creativity and innovation to help solve our clients' most complex challenges. This makes Deloitte one of the most rewarding places to work.Our purposeDeloitte's purpose is to make an impact that matters for our people, clients, and communities. At Deloitte, purpose is synonymous with how we work every day. It defines who we are. Our purpose comes through in our work with clients that enables impact and value in their organizations, as well as through our own investments, commitments, and actions across areas that help drive positive outcomes for our communities. Learn more.Professional developmentFrom entry-level employees to senior leaders, we believe there's always room to learn. We offer opportunities to build new skills, take on leadership opportunities and connect and grow through mentorship. From on-the-job learning experiences to formal development programs, our professionals have a variety of opportunities to continue to grow throughout their career.As used in this posting, "Deloitte" means Deloitte & Touche LLP, a subsidiary of Deloitte LLP. Please see for a detailed description of the legal structure of Deloitte LLP and its subsidiaries. Certain services may not be available to attest clients under the rules and regulations of public accounting.All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, age, disability or protected veteran status, or any other legally protected basis, in accordance with applicable law.Qualified applicants with criminal histories, including arrest or conviction records, will be considered for employment in accordance with the requirements of applicable state and local laws, including the Los Angeles County Fair Chance Ordinance for Employers, City of Los Angeles's Fair Chance Initiative for Hiring Ordinance, San Francisco Fair Chance Ordinance, and the California Fair Chance Act. See notices of various fair chance hiring and ban-the-box laws where available. Fair Chance Hiring and Ban-the-Box Notices | Deloitte US CareersRequisition code: 359160Job ID359160Strategy, Growth, and Transformation| Enterprise Technology Strategy and TransformationSame job available in 13 locations
Before you apply
Applying takes about a minute. These four things decide how fast it moves after that.
Your profile is current
It's what we read first. Occupations, seniority and locations matter more than a long history.
Two examples you can talk through
Not a portfolio — just two pieces of work where you can explain the decisions and what you'd change.
A number in mind
What you're on now and what would make you move. We negotiate better when we know both.
Your notice period
Employers plan around it, and it's the question that stalls offers most often.
Once you apply, someone reads it and calls you before anything reaches the employer — usually within two working days.
More like this
