Senior Insider Threat Engineer

Humana

Confirmed live today High trust
Remote

Quick summary

Work type
Remote
Location
Louisville, KYCharlotte, NCTampa, FLDallas, TXWashington, DC
Salary
$97,900–$133,500 / yr
Posted
6 days ago
Freshness
Confirmed live today
Closes
Sep 28, 2026

Market check

Salary context

Below market

How this pay compares to similar roles

Similar $182k
This role $116k
$83k most similar roles pay here $235k

This role pays less than 98% of similar roles. Most pay $151,500–$213,000 — the shaded band above. At the midpoint, this role pays about $116k versus about $182k for comparable roles.

Based on 240 similar postings.

Employer

About Humana

Humana Inc. is a leading American for-profit health insurance company based in Louisville, Kentucky, specializing in Medicare Advantage plans.

Humana currently has 10 open roles on FindRole.

Listed pay typically runs $135,200–$185,900 across 10 roles with salary data.

Most-posted roles

View all roles at Humana

At a glance

TL;DR · Senior Insider Threat Engineer

The Senior Insider Threat Engineer joins the insider threat team to manage the configuration, tuning, and optimization of enterprise insider threat technologies. This role involves building and refining Microsoft Purview Insider Risk Management and Communication Compliance policies, developing trainable classifiers, and performing alert triage to reduce analyst fatigue. The engineer will also provide eDiscovery support for legal holds and investigations while managing Proofpoint Insider Threat Management to capture user activity telemetry. Key responsibilities include correlating data from Splunk and Defender XDR to identify risks like data exfiltration or intellectual property theft. Technical requirements include proficiency in KQL, PowerShell, and Graph API to automate operations. The role ensures compliance with HIPAA, HITRUST, PCI-DSS, and SOC2 standards while protecting sensitive information through advanced detection rules and automated reporting for the organization's security ecosystem.

What you'll do

  • Configure, tune, and maintain Microsoft Purview Insider Risk Management and Communication Compliance policies.
  • Develop and refine insider risk use cases, sensitive information types, and trainable classifiers.
  • Investigate Purview alerts and perform root-cause analysis to reduce false positives and improve signal fidelity.
  • Execute eDiscovery requests and manage legal holds for HR and legal investigations.
  • Operate and tune Proofpoint Insider Threat Management to capture user activity telemetry and evidence.
  • Correlate Purview and Proofpoint data with SIEM, UEBA, and EDR platforms to enrich investigations.
  • Develop KQL scripts and PowerShell queries to automate policy deployment and operational reporting.
  • Track key performance indicators regarding alert volume, mean time to respond, and detection coverage.

What we're looking for

  • 5+ years of experience in cybersecurity focusing on insider threat, data loss prevention, information protection, and/or compliance technologies.
  • Hands-on experience configuring and tuning Microsoft Purview Insider Risk Management, Communication Compliance, and DLP.
  • Experience supporting eDiscovery activities using Microsoft Purview eDiscovery Standard/Premium or comparable platforms.
  • Working knowledge of endpoint insider threat monitoring platforms such as Proofpoint ITM or equivalent.
  • Working knowledge of insider threat tactics, techniques, and procedures including data exfiltration, fraud, IP theft, and sabotage.
  • Proficiency with KQL and PowerShell for querying, automation, and policy management across the Microsoft 365/Purview ecosystem.
  • Strong communication skills to translate technical findings into business risk language for peers and leadership.
  • Bachelor's degree or higher in Cybersecurity, Information Technology, Data Science, or related field (preferred); additional certifications like CISSP or CISM (preferred).

More like this

Similar roles

Insider Threat Engineer

Cloudflare, Inc

Austin, TX 67 days ago
SIEM EDR UEBA DLP Python PowerShell Splunk Elastic CrowdStrike SentinelOne EnCase FTK X-Ways AWS GCP Azure Digital Forensics Incident Response Threat Hunting
5+ yrs exp Hybrid

Insider Risk Security Engineer

Lam Research

Tualatin, OR 27 days ago
Insider Risk Management DLP UEBA Microsoft E5 KQL YARA Regex JSON Lucene Query Syntax Cloud Security Security Engineering Behavioral Analysis Information Security Cybersecurity
5+ yrs exp

Insider Risk Security Engineer

Lam Research

Fremont, CA 27 days ago $114,000$253,000
Insider Risk Management DLP UEBA Microsoft E5 KQL YARA Regex JSON Lucene Query Syntax Cloud Security Cybersecurity Engineering Information Security Counterintelligence
5+ yrs exp Hybrid

Insider Risk Security Engineer

Lam Research

Phoenix, AZ 27 days ago
Insider Risk Management DLP UEBA Microsoft E5 KQL YARA Regex JSON Lucene Query Syntax Cloud Security Cybersecurity Engineering Behavioral Analysis Counterintelligence
5+ yrs exp

Senior Insider Threat Analyst

Anduril Industries

Reston, VA 83 days ago $166,000$220,000
Insider Threat Digital Forensics Incident Response SIEM EDR DLP Python Go Terraform AWS CDK AWS Data Lake Counterintelligence AI Cybersecurity
5+ yrs exp