Jobs and Careers
WO

Security Engineer - Insider Threat / Senior Security Engineer - Insider Threat

Workday
United Statesfull_timeVerifiedPosted 9 Oct 2025
💰 $207,600/yr($117,800/yr$207,600/yr)

About the role

Your work days are brighter here.

We’re obsessed with making hard work pay off, for our people, our customers, and the world around us. As a Fortune 500 company and a leading AI platform for managing people, money, and agents, we’re shaping the future of work so teams can reach their potential and focus on what matters most. The minute you join, you’ll feel it. Not just in the products we build, but in how we show up for each other. Our culture is rooted in integrity, empathy, and shared enthusiasm. We’re in this together, tackling big challenges with bold ideas and genuine care. We look for curious minds and courageous collaborators who bring sun-drenched optimism and drive. Whether you're building smarter solutions, supporting customers, or creating a space where everyone belongs, you’ll do meaningful work with Workmates who’ve got your back. In return, we’ll give you the trust to take risks, the tools to grow, the skills to develop and the support of a company invested in you for the long haul. So, if you want to inspire a brighter work day for everyone, including yourself, you’ve found a match in Workday, and we hope to be a match for you too.

About the Team

At Workday, we help the world’s largest organizations adapt to what’s next by bringing finance, HR, and planning into a single enterprise cloud. We work hard, and we’re serious about what we do. But we like to have fun, too. We put people first, celebrate diversity, drive innovation, and do good in the communities where we live and work.

Workday's Cyber Defense team helps protect an ever-growing technology, global footprint. We are responsible for monitoring, detecting, and responding to threats to the company and keeping the trust of our customers. Functions like Security Response, Threat Intelligence, Detection Engineering, Secure Code Development and many others make up the fabric of who we are and what we do daily around the world.

About the Role

We are seeking a Security Engineer to join our Insider Threat organization to assist with monitoring, detecting, and mitigating insider risk. You will help Workday identify patterns for detections and build out processes and controls to mitigate identified areas of opportunity. You will work closely with our Security Incident Response Team and Cyber Incident Management team to identify and mitigate enterprise threats to the confidentiality, integrity, and availability of Workday information systems and information.

About You

Security Engineer - Insider Threat

Basic Qualifications

  • 5+ years of experience in incident response, insider threat, threat detection, or threat hunting.

  • 3+ years of experience monitoring, investigating, and remediating insider threats.

  • Hands-on experience performing log analysis against various log sources including user activity logs, network logs, cloud logs, and endpoint logs.

  • BS or MS degree in Computer Science, Engineering, Cybersecurity, or equivalent job experience.

 Other Qualifications

  • Strong understanding of cybersecurity fundamentals.

  • Experience planning and executing threat hunts and driving organizational change based on findings.

  • Demonstrated knowledge of adversary TTPs (Tactics, Techniques and Procedures).

  • Ability to apply behavioral analysis techniques to identify patterns of behavior that may indicate malicious or unauthorized activity.

  • Excellent analytical, problem-solving, and communication skills

  • Ability to drive multiple projects and priorities while managing operational responsibilities.

  • Excellent written and verbal communication skills, building positive relationships with partner organizations.

Sr. Security Engineer - Insider Threat

Basic Qualifications

  • 7+ years of experience in incident response, insider threat analysis, threat detection, counterintelligence or a related domain

  • 5+ years of experience monitoring, investigating, and remediating insider threats.

  • 5+ years in conducting interviews and writing detailed reports.

  • Hands-on experience performing log analysis against various log sources including user activity logs, network logs, cloud logs, and endpoint logs.

  • Knowledge of DLP, UEBA, SIEM, SOAR and other insider risk security tooling

  • Broad understanding of internal and external investigations, cybersecu

Apply for this role

Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.

Apply Now →Generate Application Kit

Free account required — sign up in 30s

Company

Workday

View company profile →