Insider Threat Hunt Analyst at Northern Trust

Chicago, Illinois, United States

Northern Trust Logo
Not SpecifiedCompensation
Mid-level (3 to 4 years)Experience Level
Full TimeJob Type
UnknownVisa
Financial Services, BankingIndustries

Requirements

  • 3+ years of experience in cybersecurity, preferably in Insider Threat, Digital Forensics, Threat hunting, or incident response
  • Proficiency in writing and tuning detection logic in SIEM platforms (e.g., Splunk, Sentinel, Elastic)
  • Strong understanding of cybersecurity principles, including SIEM, IDS/IPS, and endpoint detection and response (EDR) solutions
  • Strong technical background in log analysis, data correlation, and behavioral analytics
  • Working knowledge of the MITRE ATT&CK framework
  • Excellent problem-solving skills and attention to detail

Responsibilities

  • Conduct proactive threat hunts focused on potential insider threats using endpoint, network and cloud log data
  • Develop and refine insider threat detection use cases
  • Create and deploy insider focused threat detection rules
  • Recommend improvements to insider monitoring, alerting and automation
  • Collaborate with cross-functional teams on insider risk scenarios
  • Stay informed on the latest insider threat trends, tactics and techniques

Skills

Key technologies and capabilities for this role

SIEMSplunkSentinelElasticThreat HuntingInsider ThreatDigital ForensicsIncident ResponseEndpoint LogsNetwork LogsCloud LogsDetection Rules

Questions & Answers

Common questions about this position

What is the salary range for the Insider Threat Hunt Analyst position?

The salary range is $114,500 - $194,700 USD, which is a good faith estimate of base pay.

What benefits does Northern Trust offer?

Northern Trust provides a comprehensive benefits package including retirement benefits (401k and pension), health and welfare benefits (medical, dental, vision, spending accounts and disability), paid time off, parental and caregiver leave, life & accident insurance, and other voluntary and well-being benefits.

Is this position remote or does it require office work?

This information is not specified in the job description.

What skills are required for the Insider Threat Hunt Analyst role?

Required skills include 3+ years of experience in cybersecurity (preferably Insider Threat, Digital Forensics, Threat hunting, or incident response), proficiency in writing and tuning detection logic in SIEM platforms (e.g., Splunk, Sentinel, Elastic), strong understanding of cybersecurity principles including SIEM, IDS/IPS, and EDR, strong technical background in log analysis, data correlation, and behavioral analytics, and working knowledge of the MITRE ATT&CK framework.

What makes a strong candidate for this Insider Threat Hunt Analyst position?

A strong candidate has 3+ years in cybersecurity with experience in Insider Threat, Digital Forensics, Threat hunting, or incident response, proficiency in SIEM platforms like Splunk or Elastic, strong log analysis skills, and knowledge of MITRE ATT&CK; preferred qualifications include a relevant degree, certifications like GCIH or Security+, and understanding of human behavioral analytics.

Northern Trust

About Northern Trust

N/AHeadquarters
N/AYear Founded
N/ACompany Stage

Land your dream remote job 3x faster with AI