Position Summary:
We are seeking an Expert Insider Threat Specialist, a key member PG&E’s security team. The successful candidate will apply analytical skills, technical acumen, and an investigative mindset to detect and assess security threats to PG&E’s workforce, customers, information, and critical assets. They will employ analytical and investigative methods and work cross-functionally across the cybersecurity, physical security, internal audit, HR, compliance, management, and legal functions to reduce business risk and drive resolutions.
Key Responsibilities:
- Leads development and implementation of new data sources and analytical methods
- Works collaboratively with other subject matter experts to identify and assess threats and risks
- Manages security software applications and adapts configurations to align with emerging threats
- Builds and maintains strong relationships with internal business units and external agencies
- Leads analytically focused research and threat assessments
- Uses intelligence feeds and analytical tools to maintain situational awareness to identify, track, and monitor emerging security threats to PG&E’s workforce, customers, information, and critical assets
- Conducts preliminary inquiries to establish facts, assess risk, and determine follow-up action
- Performs behavioral threat assessment and behavioral analysis
- Communicates findings and recommendations to management
- Performs proactive, hypothesis-driven threat hunting using a variety of enterprise security tools and data sources
- Assists with cyber security incident response activities
- Acts as an enterprise insider risk/insider threat subject matter expert
Required Education & Experience:
- High school or GED
- 6 years of analytical or investigative experience in intelligence/counterintelligence, law enforcement, security, insider threat, or other related experience
- At least three years of experience in information security, security, or risk management in areas such as:
- Enterprise security platforms such as DLP, SIEM, UEBA, etc
- Open-source intelligence analysis
- Digital forensics or digital investigations
- Other relevant technical experience
- Must be able to qualify for NERC CIP clearance
- Bachelor’s Degree
- Current holder of security certifications or ability to obtain within one year of hire: CISSP, GIAC, CFE, CTM or other relevant certification
- Previous Utility experience
- Insider threat program functional experience
- Advanced written and verbal communication skills
- Ability to apply critical thinking to novel problems lacking a standard or a widely accepted solution
- Ability to operate effectively as part of a team or work independently
- Intellectual curiosity and an ability to learn by doing
- Advanced competency with data analysis
- Ability to sustain attention and effort towards a complex, ambiguous problem for extended periods without feedback or definitive results