Senior Security Engineer, Insider Risk

Weights & Biases Weights & Biases · Data AI · Bellevue, WA +4 · Technology

Senior Security Engineer focused on Insider Risk, responsible for developing, tuning, and optimizing Data Loss Prevention (DLP) policies and analyzing various audit logs to build behavioral intelligence and detect data exfiltration. The role involves designing detection logic, building data pipelines, and supporting investigations within a security stack.

What you'd actually do

  1. Design, develop, and deploy advanced detection logic and use cases within the Insider Risk platforms to identify unauthorized data movement, anomalous system activity, and policy violations.
  2. Work with Security Engineering department to ingest and normalize high-fidelity telemetry from cloud environments, SaaS services, and endpoint agents into the Insider Risk security stack/tooling.
  3. Design and implement technical “tripwires” and behavioral models that identify patterns associated with data exfiltration, such as unusual download volumes, unauthorized file sharing, or anomalous access to sensitive repositories.
  4. Define telemetry requirements and partner with Security Engineering to build and maintain high-fidelity data pipelines from DLP agents and cloud providers into our monitoring platforms.
  5. Serve as the technical subject matter expert during complex investigations, providing deep-dive forensic analysis, log reconstruction and evidence gathering and preservation.

Skills

Required

  • Security Engineering
  • Security Operations
  • DLP
  • User-centric monitoring
  • Cloud-native security tools
  • Cloud audit log analysis
  • Data analysis languages
  • Telemetry gap identification

Nice to have

  • UEBA logic building/maintenance
  • CSPM
  • Multi-cloud visibility management
  • Data classification frameworks
  • Technical implementation of data labeling/tagging
  • Global privacy regulations (GDPR, CCPA)
  • Compliant data monitoring
  • High-sensitivity environment operation
  • Privacy
  • Ethics
  • Employee trust

What the JD emphasized

  • DLP policy engineering
  • ingestion/analysis of cloud-native, endpoint and SaaS audit logs
  • behavioral detection development
  • data pipeline oversight
  • technical incident support
  • infrastructure maintenance
  • 7+ years experience in Security Engineering or Security Operation and 4+ years of DLP or user-centric monitoring experience
  • Demonstrated expertise in configuring and/or managing enterprise-grade DLP solutions
  • Deep proficiency in analyzing and querying cloud audit logs
  • Strong command of data analysis languages
  • Experience identifying gaps in telemetry or detection coverage and driving improvements