yoinka

Insider Threat Detection Engineer

NVIDIA

RemoteUS CA RemoteSeniorH-1B sponsor company
Sign in to applyVerified 1d ago
Location
US CA Remote
Work model
Remote
Level
Senior
H-1B history
394 approvals (FY2023)
Posted
Aug 17, 2026

Skills

CybersecurityGoJavaJavaScriptPythonSQLTypeScript

About this role

NVIDIA is hiring an Insider Threat Engineer to join the team responsible for protecting our people, intellectual property, engineering systems, and data. We protect source code, hardware and software designs, AI models and artifacts, research, build systems, and computing environments. Our work combines security engineering with insider-threat investigations across identity, endpoint, cloud, collaboration, source-code, and data-protection systems. We build detections, automation, integrations, and investigation tools, and we use those capabilities to examine activity that may put NVIDIA at risk. In this role, you will turn technical and business information into timelines and findings that others can understand and act on. We work closely with Security, Legal, HR, Privacy, IT, and engineering teams throughout an investigation. We are looking for someone who can write code, analyze complex activity, handle sensitive information carefully, and distinguish facts from assumptions. What You’ll Be Doing : We develop and operate the capabilities NVIDIA uses to identify and investigate insider threats. In this role, you will: Build, test, deploy, and tune detections across identity, endpoint, cloud, SaaS, collaboration platforms, source-code repositories, build systems, removable media, data movement, and employee-lifecycle signals. Lead and support investigations involving unusual data movement, unapproved application use, external sharing, access anomalies, compromised accounts, employee transitions, and other defined insider-risk scenarios. Collect and correlate information from endpoint, identity, cloud, source-code, collaboration, data-protection, and approved business sources to reconstruct activity and establish timelines. Develop automation, data pipelines, integrations, dashboards, and investigation tools that reduce manual work and help us investigate cases more consistently and efficiently. Operate and improve our insider-risk and data loss prevention capabilities by assessing policy performance, detection coverage, alert quality, false positives, and connections to case-management workflows. Use documented hypotheses, threat models, test cases, version control, peer review, and performance measures to improve detections; work with system owners when we identify gaps in telemetry or controls. Present findings that distinguish facts from inferences and explain confidence levels, data limitations, alternative explanations, and unanswered questions to Security, Incident Response, Legal, HR, Privacy, and business partners. Work with authorized partners on evidence preservation, containment, escalation, and remediation while following requirements for investigative scope, access, confidentiality, auditing, and retention. What We Need to See: We are looking for candidates who bring both engineering experience and the ability to investigate sensitive security matters. Bachelor’s degree in Computer Science, Cybersecurity, Information Security, Data Engineering, or a related field, or equivalent experience. 7+ years of experience in insider threat, detection engineering, security operations, incident response, digital forensics, data protection, threat hunting, or a related security field. Experience conducting security investigations, including defining scope, collecting evidence, developing timelines, analyzing activity, documenting findings, escalating concerns, and applying lessons learned. Experience with security technologies such as SIEM, DLP, UEBA, EDR, insider-risk management, identity security, case management, or security orchestration. Proficiency in at least one programming or scripting language, such as Python, Go, Java, JavaScript, or TypeScript, and experience building automation with APIs, structured data, source control, and testing. SQL, security-query, and data-analysis skills, including experience correlating incomplete or inconsistent data from multiple sources. Knowledge of identity and access

Listing verified 1d ago. Applications go through the company's official careers site.

← Back to Yoinka

Insider Threat Detection Engineer at NVIDIA, US CA Remote | Yoinka