Associate Director, Insider Threat Operations Lead (Remote)
RTXAbout the role
Date Posted:
2023-11-01Country:
United States of AmericaLocation:
RAZ99: RTN Remote, ArizonaPosition Role Type:
RemoteRTX Corporation is an Aerospace and Defense company that provides advanced systems and services for commercial, military and government customers worldwide. It comprises three industry-leading businesses – Collins Aerospace Systems, Pratt & Whitney, and Raytheon. Its 185,000 employees enable the company to operate at the edge of known science as they imagine and deliver solutions that push the boundaries in quantum physics, electric propulsion, directed energy, hypersonics, avionics and cybersecurity. The company, formed in 2020 through the combination of Raytheon Company and the United Technologies Corporation aerospace businesses, is headquartered in Arlington, VA.
To realize our full potential, RTX is committed to creating a company where all employees are respected, valued and supported in the pursuit of their goals. We know companies that embrace diversity in all its forms not only deliver stronger business results, but also become a force for good, fueling stronger business performance and greater opportunity for employees, partners, investors and communities to succeed.
The following position is to join our RTX Corporate, Enterprise Services, Research Center or BBN team:
Role Overview:
Enterprise Services (ES) Cybersecurity has an immediate opening for a qualified leader to join RTX Cyber Defense reporting to the Director of Cyber Detection & Response. As the Associate Director of Insider Threat Operations, you will be responsible for overseeing and enhancing our organization's capabilities to detect, investigate, and mitigate insider threats. You will collaborate with multiple stakeholders, including HR, Legal, Ethics, Privacy, and Global Security to create a comprehensive strategy for mitigating insider threats while maintaining a culture of trust and transparency.
Responsibilities:
The ideal candidate shall perform specific activities that include, but are not limited to the following:
- Develop and lead the strategic vision for the RTX Cyber Defense Insider Threat Operations program, aligning it with Global Security Services and Cyber Defense strategy, key initiatives, and maturity targets.
- Develop, maintain, and execute effective cyber response plans and playbooks in support of investigating suspected insider threats and performing containment and mitigation activities
- Develop, maintain, and execute effective response plans and playbooks for investigating suspected insider threats and performing containment and mitigation activities.
- Work closely with cross-functional stakeholders to support insider threat investigation activities, including Legal, HR, Ethics, Privacy, and Global Security.
- Collaborate with other Cyber Defense functions, including Content Development, Threat Intelligence, and Cyber Engineering, to maintain shared awareness of emerging threats and trends and enhance detection & mitigation controls, including data loss prevention and behavioral analytics capabilities.
- Create and maintain investigative playbooks and train SOC analysts to triage incidents related to potential insider threat activity and escalate as necessary.
- Maintain detailed records of investigations, produce reports, and communicate findings to senior management and relevant stakeholders.
- Perform other duties as assigned and as required to continuously drive process excellence.
Experience/Qualifications:
- Typically requires a University Degree or equivalent experience and a minimum 12 years of experience, or an Advanced Degree and a minimum 10 years of experience.
- Minimum 12 years of experience in technical Cyber Defense operational roles, including Insider Threat, Incident Response, SOC, and Forensics.
- Minimum 5 years of proven experience leading technical cybersecurity teams.
- Deep technical knowledge of the insider threat detection and analysis methodologies and how to leverage technical indicators and analytics to detect internal threats.
- Extensive experience with security tools and technologies used to detect and mitigate insider threats, including user entity and behavior analytics (UEBA) and data loss prevention (DLP) technologies.
- Excellent written and verbal communication skills; must be able to effectively communicate technical details to peers and all levels of executive leadership with varying levels of technical expertise.
- Demonstrated experience building successful teams with strong cross-functional relationships both within and outside of Security.
- Strong knowledge of cybersecurity principles, practices, and technologies.
- Ability to analyze the cyber risk of complex business network to develop a cyber defense strat
Apply for this role
Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.
Apply Now →Generate Application KitFree account required — sign up in 30s