Insider Threat & DLP Analyst

at NBCUniversal
  • $100k-$130k
  • Remote - United States

Remote

Cybersecurity

Mid-level

Job description

Company Description

NBCUniversal is one of the world’s leading media and entertainment companies. We create world-class content, which we distribute across our portfolio of film, television, and streaming, and bring to life through our theme parks and consumer experiences. We own and operate leading entertainment and news brands, including NBC, NBC News, MSNBC, CNBC, NBC Sports, Telemundo, NBC Local Stations, Bravo, USA Network, and Peacock, our premium ad-supported streaming service. We produce and distribute premier filmed entertainment and programming through Universal Filmed Entertainment Group and Universal Studio Group, and have world-renowned theme parks and attractions through Universal Destinations & Experiences. NBCUniversal is a subsidiary of Comcast Corporation.

Our impact is rooted in improving the communities where our employees, customers, and audiences live and work. We have a rich tradition of giving back and ensuring our employees have the opportunity to serve their communities. We champion an inclusive culture and strive to attract and develop a talented workforce to create and deliver a wide range of content reflecting our world.

Comcast NBCUniversal has announced its intent to create a new publicly traded company (‘Versant’) comprised of most of NBCUniversal’s cable television networks, including USA Network, CNBC, MSNBC, Oxygen, E!, SYFY and Golf Channel along with complementary digital assets Fandango, Rotten Tomatoes, GolfNow, GolfPass, and SportsEngine. The well-capitalized company will have significant scale as a pure-play set of assets anchored by leading news, sports and entertainment content. The spin-off is expected to be completed during 2025.

Job Description

NBCUniversal’s Cyber Defense Operations team is responsible for providing operational support for the layered defense of tools and capabilities deployed at NBCUniversal to support the Threat Operations lifecycle in a highly collaborative, fast paced, and agile fashion. The Insider Threat and DLP Analyst provides expert-level contributions to NBCU’s Cyber Defense Team by protecting the company’s critical assets from internal threats and reducing overall risk. This position will be looked upon as a subject matter expert (SME) in the fields of data loss prevention and insider threat escalation. This position will report to the Sr Director of Cyber Investigation and Insider Threat and will act as a member of the Insider Threat team as an individual contributor, working tickets, escalating and responding to identified insider threats and reporting findings in a clear and concise fashion.

The ideal candidate would have a working knowledge of current and relevant security technologies and how to apply them to cyber investigation activities.  A clear investigative methodology with a focus on preserving evidence and analyzing data to form conclusions that will steer DLP and Insider Threat analysis.  Experience working in Cyber Operations, dispositioning security alerts, escalating findings for action and evaluating business intention.  Experience responding to multi-faceted security issues and assisting with the coordination of subsequent enforcement activities and efforts prioritizing mission critical elements is ideal.

Finally, a successful candidate will effectively communicate the findings of key Cyber investigations and services to deliver succinct and biased free summaries to the Cyber Leadership.

Responsibilities:

  • Perform highly sensitive and confidential investigations, including some digital forensic analysis, involving internal risks such as employee misconduct, intellectual property theft, embezzlement, misuse, harassment, and physical security threats.
  • Lead proactive efforts to identify, disrupt, and protect NBCU from any internal threats that may undermine the integrity and operations of the business.
  • Work closely with HR, legal, and compliance teams to address insider threat incidents.
  • Monitor user activity and behavior to detect signs of potential insider threats.
  • Investigate suspicious activities and incidents related to insider threats.
  • Triage and Analyze DLP Alerts
  • Contribute to the development of DLP policies, rules, and best practices.
  • Collaborate with IT and security teams to integrate DLP controls with other security measures.
  • Provide on call response as required for major event support
  • Conduct high level forensic analysis of physical devices and other electronic data sources in support of internal investigations and other legal requests using forensically sound processes.
  • Provide subject matter guidance and work collaboratively with incident response and other cyber security teams in the event of a cross-functional investigation.
  • Drive continuous improvement across the Insider Threat team and its processes.
  • Utilize a range of data sources, systems, and tools to collect, search, recover, sort, and organize large volumes of digital evidence during all phases of the investigative process.
  • Develop behavior anomaly capabilities as the landscape evolves.
  • Maintain awareness of new tactics and techniques used by insider threats and industry best practices.
  • Assist team leadership with the development, collection, and publication of metrics that illustrate team performance and highlight obstacles thwarting team potential.

Qualifications

Basic Requirements:

  • Minimum of 4 years’ experience in computer forensics, investigations, or similar information security discipline.
  • Working knowledge and proven experience with current DLP and Insider Threat best practices and methodologies.
  • Demonstrated expertise in both working in and handling extremely confidential investigations.
  • Experience with forensic technologies such as EnCase, FTK, AXIOM, and Cellebrite (or the like).
  • Experience with emerging cloud technology services and their effect on data security considerations.
  • Understanding of methods of internal and external data movement and exfiltration.
  • Ability to navigate a complex global network as part of the investigative research process.
  • Strong understanding of enterprise email systems including Office 365 and MS Exchange.
  • Experience in DLP/Insider Threat Investigations (Corporate/Law Enforcement/Government/Military)
  • Experience with enterprise level SIEM and/or DLP tools such as Splunk, DataDog, LogRhythm, and EDR/UEBA tools like Crowdstrike, Carbon Black, or Exabeam (or the like).
  • Bachelor of Science in Computer Science, Information Systems, Software Engineering, Criminal Justice, or any combination of education and relevant experience.

Desired Characteristics:

  • Self-starter with a sense of urgency who takes ownership and responsibility for service delivery.
  • Works independently with minimal guidance while also working collaboratively with the team to achieve strategic goals.
  • Professional, clear, and concise communication to both technical and non-technical audiences.
  • Excellent analytical ability, sharp attention to detail, creative problem solving, and consultative skills.
  • Proven organizational skills (time management and prioritization).
  • Position requires access to highly sensitive confidential material; integrity and discretion are mandatory.
  • GIAC Certified Forensic Analyst - GCFA
  • GIAC Certified Forensic Examiner - GCFE
  • Certified Forensic Computer Examiner - CFCE
  • Certified Information Systems Security Professional - CISSP
  • NOTE: An equivalent combination of experience, education and/or training may be substituted for the listed minimum requirements.

Additional Requirements:

  • Fully Remote: This position has been designated as fully remote, meaning that the position is expected to contribute from a non-NBCUniversal worksite, most commonly an employee’s residence.
  • Occasional travel may be required, but less than 10% of the time.

This position is eligible for company sponsored benefits, including medical, dental and vision insurance, 401(k), paid leave, tuition reimbursement, and a variety of other discounts and perks. Learn more about the benefits offered by NBCUniversal by visiting the Benefits page of the Careers website. Salary range: $100,000 - $130,000

We are accepting applications for this position on an ongoing basis.

Additional Information

As part of our selection process, external candidates may be required to attend an in-person interview with an NBCUniversal employee at one of our locations prior to a hiring decision. NBCUniversal’s policy is to provide equal employment opportunities to all applicants and employees without regard to race, color, religion, creed, gender, gender identity or expression, age, national origin or ancestry, citizenship, disability, sexual orientation, marital status, pregnancy, veteran status, membership in the uniformed services, genetic information, or any other basis protected by applicable law.

If you are a qualified individual with a disability or a disabled veteran, you have the right to request a reasonable accommodation if you are unable or limited in your ability to use or access nbcunicareers.com as a result of your disability. You can request reasonable accommodations by emailing [email protected].

For LA County and City Residents Only:  NBCUniversal will consider for employment  qualified applicants with criminal histories, or arrest or conviction records, in a manner  consistent with relevant legal requirements, including the City of Los Angeles’ Fair Chance Initiative For Hiring Ordinance, the Los Angeles County Fair Chance Ordinance for Employers, and the California Fair Chance Act, where applicable.

Share this job:
Please let NBCUniversal know you found this job on Remote First Jobs 🙏

Similar Remote Jobs

Benefits of using Remote First Jobs

Discover Hidden Jobs

Unique jobs you won't find on other job boards.

Advanced Filters

Filter by category, benefits, seniority, and more.

Priority Job Alerts

Get timely alerts for new job openings every day.

Manage Your Job Hunt

Save jobs you like and keep a simple list of your applications.

Search remote, work from home, 100% online jobs

We help you connect with top remote-first companies.

Search jobs

Hiring remote talent? Post a job

Frequently Asked Questions

What makes Remote First Jobs different from other job boards?

Unlike other job boards that only show jobs from companies that pay to post, we actively scan over 20,000 companies to find remote positions. This means you get access to thousands more jobs, including ones from companies that don't typically post on traditional job boards. Our platform is dedicated to fully remote positions, focusing on companies that have adopted remote work as their standard practice.

How often are new jobs added?

New jobs are constantly being added as our system checks company websites every day. We process thousands of jobs daily to ensure you have access to the most up-to-date remote job listings. Our algorithms scan over 20,000 different sources daily, adding jobs to the board the moment they appear.

Can I trust the job listings on Remote First Jobs?

Yes! We verify all job listings and companies to ensure they're legitimate. Our system automatically filters out spam, junk, and fake jobs to ensure you only see real remote opportunities.

Can I suggest companies to be added to your search?

Yes! We're always looking to expand our listings and appreciate suggestions from our community. If you know of companies offering remote positions that should be included in our search, please let us know. We actively work to increase our coverage of remote job opportunities.

How do I apply for jobs?

When you find a job you're interested in, simply click the 'Apply Now' button on the job listing. This will take you directly to the company's application page. We kindly ask you to mention that you found the position through Remote First Jobs when applying, as it helps us grow and improve our service 🙏

Apply