Staff Security Analyst, Insider Threat

Anduril Industries

Quick summary

Work type
On-site
Location
Costa Mesa, CA
Salary
$191,000–$253,000 / yr
Posted
today

Market check

Salary context

Above market

How this pay compares to similar roles

Similar $170k
This role $222k
$115k most similar roles pay here $268k

This role pays more than 87% of similar roles. Most pay $142,400–$198,600 — the shaded band above. At the midpoint, this role pays about $222k versus about $170k for comparable roles.

Based on 239 similar postings.

Employer

About Anduril Industries

Anduril Industries is a defense technology company that builds advanced hardware and software systems for national security, including autonomous drones, surveillance systems, and the Lattice AI command platform.

Anduril Industries currently has 1882 open roles on FindRole.

Listed pay typically runs $146,000–$194,000 across 1696 roles with salary data.

Most-posted roles

View all roles at Anduril Industries

At a glance

TL;DR · Staff Security Analyst, Insider Threat

As a Staff Security Analyst at Anduril’s Insider Threat team, you will play a pivotal role in safeguarding the organization from internal security threats by identifying and investigating anomalous activities. Your responsibilities include conducting comprehensive insider threat investigations, implementing controls to reduce the attack surface, and collaborating with cross-functional teams such as HR and Legal to provide technical expertise. You will also develop custom tooling to automate manual processes, produce metrics for incident response, and translate complex security issues into actionable insights for non-technical stakeholders. This role requires experience in data analysis within large-scale environments, familiarity with EDR tools and telemetry sources, and a strong understanding of modern adversary tradecraft. Preferred qualifications include proficiency in Python or Go, infrastructure as code languages like Terraform, and expertise in handling sensitive data such as CUI.

What you'll do

  • Identify, triage, and investigate insider threat-related security incidents.
  • Own end-to-end Insider Threat investigations and provide technical expertise.
  • Evaluate and implement controls to reduce the organization's attack surface.
  • Produce metrics to support incident response and streamline investigations.
  • Provide strategic vision for hunting and identifying insider threats proactively.
  • Translate complex technical issues into clear, actionable insights for stakeholders.

What we're looking for

  • Proven experience in insider threat investigations, digital forensics, and incident response.
  • Experience conducting data analysis in large-scale data lake environments.
  • Knowledge of modern adversary tradecraft and mitigating controls.
  • Expertise with Endpoint Detection and Response (EDR) tools and Data Loss Prevention (DLP).
  • Strong analytical skills for interpreting complex data and deriving actionable insights.
  • Ability to work autonomously, take ownership of complex projects, and mentor team members.
  • Technical expertise in translating security issues into clear, actionable insights for non-technical stakeholders.

More like this

Similar roles

Staff Security Analyst, Insider Threat

Anduril Industries

Seattle, WA today $191,000$253,000
Python Go Terraform AWS CDK Endpoint Detection and Response (EDR) Data Loss Prevention (DLP) CI/CD PostgreSQL Kubernetes Prometheus Grafana Linux Git JSON YAML Counterintelligence Export Controlled Information (ECI)

Security Engineer, Insider Threat

DoorDash, Inc

Remote (San Francisco, CA, US) 2 days ago $130,600$192,000
SIEM SOAR UEBA UAM DLP SQL Git Kubernetes AWS GCP Azure Python Linux CI/CD
Remote

Sr Insider Threat Engineer

PayPal

Scottsdale, Arizona 86 days ago $123,500$183,700
SIEM Python SQL Kubernetes AWS CI/CD Git Linux Docker Prometheus Grafana Nginx JSON YAML
Hybrid

Insider Threat Program Chief Engineer

Leidos

Springfield, Virginia 31 days ago $154,050$278,475
ITIL NIST FISMA CISSP Oracle Database User Activity Monitoring Everfox High Speed Guard Platform Cisco Juniper Docker Kubernetes AWS Python PostgreSQL Git Jenkins Terraform Ansible Prometheus Grafana

Staff Cyber Threat Hunter

Adobe

San Jose 36 days ago $214,100$310,100
Python Kubernetes CI/CD AWS SIEM SQL SPL KQL Git ML Anomaly Detection Statistical Analysis Threat Intelligence Red Team CSIRT Docker Terraform

Staff Cyber Threat Hunter

Adobe

Remote (San Jose, CA) 3 days ago $214,100$310,100
Python Kubernetes CI/CD APIs Git SIEM SQL SPL KQL ML Anomaly Detection Statistical Concepts Cloud TTP Automation Workflow Improvements
Remote