12 ago
|
Jobgether
|
Italia
ppbThis position is listed on behalf of a partner company, who manages all applications and next steps. Our partner is looking for a Sr. Insider Data Risk Analyst based in Italy. /b /p /brpThis is a senior individual contributor role focused on protecting sensitive information, systems, and people from insider and data-loss risks. You will own complex investigations from initial triage through resolution while helping mature insider risk management and Data Loss Prevention capabilities. The role sits at the intersection of cybersecurity, data protection, privacy, and regulated financial services. You will work closely with People/HR, Legal, Compliance, Engineering, IT, and Security teams on highly sensitive cases requiring discretion and sound judgment. The position also offers an opportunity to strengthen risk processes, automate investigations, and apply AI to emerging security challenges. Success requires a highly organized professional who can translate complex findings into clear recommendations for both technical teams and leadership. /p /brh3Accountabilities /h3 /brul /brliOwn insider risk investigations from initial triage through closure, including establishing case timelines, coordinating containment and escalation, documenting determinations, and capturing lessons learned. /li /brliMature the Insider Risk Management Program by developing scalable case-management processes, risk-tiering methodologies, investigation standards, and repeatable workflows. /li /brliOperate, monitor, and tune Data Loss Prevention capabilities across SaaS applications, endpoints, and other environments, improving detection quality while reducing false positives. /li /brliInvestigate potential data exfiltration, misuse, policy violations, and inappropriate access involving source code, cloud platforms, collaboration tools, third‑party applications, and critical business or trading systems. /li /brliStrengthen data classification and governance practices while aligning DLP controls with information sensitivity and business risk. /li /brliAssess risks associated with unauthorized AI and agentic tooling, including potential exposure of sensitive or proprietary information through approved and unsanctioned AI applications. /li /brliUse workflow automation, AI, and security orchestration capabilities to improve alert triage, investigation efficiency,
and the overall maturity of insider risk processes. /li /brliLead insider risk and data protection assessments, maintain risk registers, and track remediation activities and emerging threats. /li /brliPartner with People/HR, Legal, Compliance, Engineering, IT, and Security on sensitive personnel cases, departures, policy violations, and data‑handling concerns with a high level of discretion and care. /li /brliSupport internal and external audits, regulatory requirements, and security assurance activities related to insider risk, data protection, privacy, and information security. /li /brliContribute insider risk and secure data‑handling content to security awareness and employee training programs. /li /brliServe as a senior escalation point for insider risk cases and mentor colleagues on investigation methodologies, case management, and effective risk analysis. /li /brliMonitor developments in insider risk, data protection, privacy, cybersecurity, and financial services regulation to identify opportunities for continuous improvement. /li /br /ul /brh3Requirements: /h3 /brul /brli4+ years of professional experience in insider risk, Data Loss Prevention, digital forensics, security investigations, or a closely related discipline. /li /brliDemonstrated hands‑on experience leading sensitive investigations and managing cases involving personnel matters, data misuse, policy violations, or potential exfiltration. /li /brliPractical experience operating and tuning DLP solutions across SaaS and endpoint environments, with an understanding of detection quality and false‑positive reduction. /li /brliExperience with workflow automation, AI, or SOAR platforms for alert triage, investigation support, and case orchestration. /li /brliStrong understanding of data classification, data governance, data protection, and information security principles. /li /brliWorking knowledge of SIEM platforms and log analysis, such as Elastic/ELK or Splunk,
to support investigations and establish evidence‑based conclusions. /li /brliFamiliarity with security and compliance frameworks including NIST CSF, ISO 27001, SOC 2, and privacy regulations such as GDPR and APPI. /li /brliStrong written and verbal communication skills, with the ability to produce clear investigation reports, case documentation, risk assessments, and executive summaries. /li /brliExceptional integrity, discretion, and judgment when handling confidential personnel, customer, business, and security information. /li /brliStrong organizational skills and attention to detail, with the ability to manage multiple sensitive investigations in a fast‑paced, distributed environment. /li /brliAbility to collaborate effectively with People/HR, Legal, Compliance, Engineering, IT, and Security stakeholders. /li /brliExperience with digital forensics, eDiscovery, UEBA, insider risk platforms, security operations, or incident response is an advantage. /li /brliScripting or automation experience using technologies such as Python or SQL is a plus. /li /brliExperience with major cloud platforms and familiarity with supporting SOC 2, ISO 27001, or regulatory audits is beneficial. /li /brliExposure to fintech, financial services, trading platforms, or regulated environments is strongly valued. /li /brliRelevant certifications such as GCFA, GCFE, CISSP, CISM, CIPP, CFE, or equivalent are considered a plus. /li /brliFamiliarity with financial services regulatory expectations and multi‑jurisdiction privacy requirements is advantageous. /li /brliA genuine interest in AI‑related data risk and using emerging AI capabilities to improve security operations and investigation workflows. /li /br /ul /brh3Benefits: /h3 /brul /brliCompetitive salary and stock options. /li /brliHealth benefits. /li /brlibUSD $500 /b new‑hire home‑office setup allowance. /li /brlibUSD $150 monthly /b stipend through a Brex Card. /li /brliOpportunity to work within a globally distributed team spanning multiple countries and time zones. /li /brliExposure to cutting‑edge cybersecurity, financial technology, cloud infrastructure, AI, and data protection challenges. /li /brliAn inclusive environment committed to diversity and equal opportunity. /li /br /ul /brp#LI-CL1 /p /p #J-18808-Ljbffr
📌 Sr. Insider & Data Risk Analyst (Italia)
🏢 Jobgether
📍 Italia