1

Cybersecurity Scenario Designer Jobs in Seattle, WA

Cyber Insider Risk Manager

Seattle, WA · On-site

$126K - $170K/yr

... Designing and implementing insider risk detection use cases, monitoring processes, and escalation ... scenarios, high-risk user groups, and crown jewel assets to help clients prioritize and deploy ...

Manager, Digital Identity

Seattle, WA · Hybrid

$150K - $178K/yr

The Digital Identity Manager (Entra ID) is responsible for designing, implementing, and supporting ... Preferred Certifications -SC 300 (Identity and Access Administrator) -SC 100 (Cybersecurity ...

Senior Software Engineer

Redmond, WA · On-site

$137K - $180K/yr

... cybersecurity threats. Do you enjoy designing and building full-stack products that deliver real ... scenario. * Build and operate agentic AI systems that can reason, plan, and act across complex ...

next page

Showing results 1-20

Cybersecurity Scenario Designer information

What is a cybersecurity scenario designer?

Cybersecurity Scenario Designers are professionals who create realistic simulations and scenarios to test and improve an organization's cybersecurity defenses. They develop exercises such as cyberattack simulations, tabletop exercises, and red team/blue team drills to help security teams prepare for real-world threats. Their work involves understanding potential cyber threats, designing scenarios that mimic these threats, and evaluating how well security teams respond. This role is crucial for identifying vulnerabilities and enhancing an organization’s ability to detect, respond to, and recover from cyber incidents.

What are some common challenges faced by cybersecurity scenario designers when creating realistic training simulations?

Cybersecurity Scenario Designers often face the challenge of balancing realism with training objectives—scenarios must be complex enough to reflect evolving threats, but not so intricate that they overwhelm participants. Keeping scenarios up-to-date with the latest attack vectors and techniques requires continual research and collaboration with incident response teams. Additionally, designers must work closely with technical experts and trainers to ensure that scenarios are relevant to the organization's environment and that learning outcomes are measurable and actionable.

What are the key skills and qualifications needed to thrive as a cybersecurity scenario designer, and why are they important?

To thrive as a Cybersecurity Scenario Designer, you need a strong understanding of cybersecurity principles, threat modeling, and incident response, often supported by a degree in computer science or a related field. Familiarity with tools such as SIEM platforms, penetration testing suites, and cyber range environments, along with certifications like CISSP or CEH, is typically required. Creativity, attention to detail, and effective communication are crucial soft skills for crafting realistic scenarios and collaborating with cross-functional teams. These skills and qualifications ensure the development of relevant, challenging scenarios that prepare organizations to defend against evolving cyber threats.

What are popular job titles related to Cybersecurity Scenario Designer jobs in Seattle, WA?

For Cybersecurity Scenario Designer jobs in Seattle, WA, the most frequently searched job titles are:

What job categories do people searching Cybersecurity Scenario Designer jobs in Seattle, WA look for?

The top searched job categories for Cybersecurity Scenario Designer jobs in Seattle, WA are:

What cities near Seattle, WA are hiring for Cybersecurity Scenario Designer jobs?

Cities near Seattle, WA with the most Cybersecurity Scenario Designer job openings:

Cyber Insider Risk Manager

Deloitte

Seattle, WA • On-site

$126K - $170K/yr

Full-time

Re-posted 22 hours ago


Deloitte rating

8.2

Company rating: 8.2 out of 10

Based on 93 frontline employees who took The Breakroom Quiz

47th of 154 rated financial services


Job description

Cyber Defense & Resilience - Senior Consultant
Are you interested in working in a dynamic environment that offers opportunities for professional growth and new responsibilities? If so, Deloitte & Touche LLP could be the place for you. Traditional security and integrated risk programs have often been unsuccessful in unifying the need to both secure, automate and support technology innovation required by the business.
Recruiting for this role ends on 12/31/2026.
Work you'll do
As an Insider Risk Senior Consultant on the Cyber team, you will be responsible for:
Assisting in developing comprehensive strategies for insider risk programs, including program assessments and roadmaps, using Deloitte's Insider Risk capability framework and industry practices
Assisting in the operation of client insider risk programs, including the triage, analysis, investigation, and remediation of insider risk-related inquiries
Leading client workshops, interviews, and process walkthroughs with cross-functional stakeholders, including Human Resources, Legal, Privacy, and Security, to document business processes, goals, and program requirements
Aligning insider risk indicator and policy development with business needs and industry-leading standards, frameworks, and practices, including the CERT Insider Threat Framework, National Insider Threat Task Force guidelines, and MITRE ATT&CK for Enterprise
Designing and implementing insider risk detection use cases, monitoring processes, and escalation workflows using Security Information and Event Management, User and Entity Behavior Analytics, and Data Loss Prevention capabilities
Evaluating insider risk scenarios, high-risk user groups, and crown jewel assets to help clients prioritize and deploy monitoring, detection, response, and program management capabilities
A successful candidate would possess these skills:
Ability to work independently and collaborate as part of a team
Effective written and verbal communication skills
Meticulous attention to detail and quality of work product
Ability to build and sustain professional relationships
Ability to lead projects or workstreams
Ability to manage and prioritize multiple tasks in a fast-paced and dynamic environment
Strong interpersonal skills and professional demeanor
Ability to meet deadlines
Ability to mentor and provide clear guidance to others
The team
Deloitte's Cyber team helps complex organizations more confidently pursue their growth, innovation and performance agendas through proactive management of the associated business and cyber risks. Our professionals provide advisory and implementation services that integrate risk, regulatory, and technology skills to help clients transform their legacy programs. We work across a variety of different risk and compliance programs that extend well beyond Cyber Risk. Learn more about Deloitte Advisory's Cyber Risk Services practice.
Qualifications
Required:
3+ years of experience in insider risk, security operations, investigations, compliance, data protection, or enterprise risk management
1+ years of experience managing an insider risk program or conducting insider risk investigations and monitoring insider risk behaviors
Experience using Security Information and Event Management, User and Entity Behavior Analytics, and Data Loss Prevention tools to support insider risk operations
Experience developing insider risk procedures, playbooks, workflows, metrics, or governance models
Experience working with cross-functional stakeholders such as Human Resources, Legal, Privacy, Ethics, or Security
Ability to travel up to 50%, on average, based on the work you do and the clients and industries/sectors you serve
Limited immigration sponsorship may be available.
Preferred:
Bachelor's degree or equivalent experience
Experience in consulting or professional services
Experience responding to and recovering from cybersecurity incidents
Hands-on experience configuring, tuning, and operationalizing UEBA and/or User Activity Monitoring (UAM) platforms to support insider risk detection (e.g., Splunk UEBA, Proofpoint ITM, Microsoft Purview IRM, etc.)
Hands-on experience with at least one Data Loss Prevention solution such as Microsoft Purview, Proofpoint DLP, or Zscaler DLP
One or more of the following certifications: CERT Insider Threat Program Senior Consultant Certificate, CERT Insider Threat Analyst, CERT Insider Risk Measure Management Measures of Effectiveness, Certified Information Systems Security Professional, Certified Information Privacy Professional, Certified Information Security Senior Consultant, or Certified Information Systems Auditor
The wage range for this role takes into account the wide range of factors that are considered in making compensation decisions including but not limited to skill sets; experience and training; licensure and certifications; and other business and organizational needs. The disclosed range estimate has not been adjusted for the applicable geographic differential associated with the location at which the position may be filled. At Deloitte, it is not typical for an individual to be hired at or near the top of the range for their role and compensation decisions are dependent on the facts and circumstances of each case. A reasonable estimate of the current range is $105,400 to $207,800.
You may also be eligible to participate in a discretionary annual incentive program, subject to the rules governing the program, whereby an award, if any, depends on various factors, including, without limitation, individual and organizational performance.
#CyberCDR27


Qualifications:

Cyber Defense & Resilience - Senior Consultant
Are you interested in working in a dynamic environment that offers opportunities for professional growth and new responsibilities? If so, Deloitte & Touche LLP could be the place for you. Traditional security and integrated risk programs have often been unsuccessful in unifying the need to both secure, automate and support technology innovation required by the business.
Recruiting for this role ends on 12/31/2026.
Work you'll do
As an Insider Risk Senior Consultant on the Cyber team, you will be responsible for:
Assisting in developing comprehensive strategies for insider risk programs, including program assessments and roadmaps, using Deloitte's Insider Risk capability framework and industry practices
Assisting in the operation of client insider risk programs, including the triage, analysis, investigation, and remediation of insider risk-related inquiries
Leading client workshops, interviews, and process walkthroughs with cross-functional stakeholders, including Human Resources, Legal, Privacy, and Security, to document business processes, goals, and program requirements
Aligning insider risk indicator and policy development with business needs and industry-leading standards, frameworks, and practices, including the CERT Insider Threat Framework, National Insider Threat Task Force guidelines, and MITRE ATT&CK for Enterprise
Designing and implementing insider risk detection use cases, monitoring processes, and escalation workflows using Security Information and Event Management, User and Entity Behavior Analytics, and Data Loss Prevention capabilities
Evaluating insider risk scenarios, high-risk user groups, and crown jewel assets to help clients prioritize and deploy monitoring, detection, response, and program management capabilities
A successful candidate would possess these skills:
Ability to work independently and collaborate as part of a team
Effective written and verbal communication skills
Meticulous attention to detail and quality of work product
Ability to build and sustain professional relationships
Ability to lead projects or workstreams
Ability to manage and prioritize multiple tasks in a fast-paced and dynamic environment
Strong interpersonal skills and professional demeanor
Ability to meet deadlines
Ability to mentor and provide clear guidance to others
The team
Deloitte's Cyber team helps complex organizations more confidently pursue their growth, innovation and performance agendas through proactive management of the associated business and cyber risks. Our professionals provide advisory and implementation services that integrate risk, regulatory, and technology skills to help clients transform their legacy programs. We work across a variety of different risk and compliance programs that extend well beyond Cyber Risk. Learn more about Deloitte Advisory's Cyber Risk Services practice.
Qualifications
Required:
3+ years of experience in insider risk, security operations, investigations, compliance, data protection, or enterprise risk management
1+ years of experience managing an insider risk program or conducting insider risk investigations and monitoring insider risk behaviors
Experience using Security Information and Event Management, User and Entity Behavior Analytics, and Data Loss Prevention tools to support insider risk operations
Experience developing insider risk procedures, playbooks, workflows, metrics, or governance models
Experience working with cross-functional stakeholders such as Human Resources, Legal, Privacy, Ethics, or Security
Ability to travel up to 50%, on average, based on the work you do and the clients and industries/sectors you serve
Limited immigration sponsorship may be available.
Preferred:
Bachelor's degree or equivalent experience
Experience in consulting or professional services
Experience responding to and recovering from cybersecurity incidents
Hands-on experience configuring, tuning, and operationalizing UEBA and/or User Activity Monitoring (UAM) platforms to support insider risk detection (e.g., Splunk UEBA, Proofpoint ITM, Microsoft Purview IRM, etc.)
Hands-on experience with at least one Data Loss Prevention solution such as Microsoft Purview, Proofpoint DLP, or Zscaler DLP
One or more of the following certifications: CERT Insider Threat Program Senior Consultant Certificate, CERT Insider Threat Analyst, CERT Insider Risk Measure Management Measures of Effectiveness, Certified Information Systems Security Professional, Certified Information Privacy Professional, Certified Information Security Senior Consultant, or Certified Information Systems Auditor
The wage range for this role takes into account the wide range of factors that are considered in making compensation decisions including but not limited to skill sets; experience and training; licensure and certifications; and other business and organizational needs. The disclosed range estimate has not been adjusted for the applicable geographic differential associated with the location at which the position may be filled. At Deloitte, it is not typical for an individual to be hired at or near the top of the range for their role and compensation decisions are dependent on the facts and circumstances of each case. A reasonable estimate of the current range is $105,400 to $207,800.
You may also be eligible to participate in a discretionary annual incentive program, subject to the rules governing the program, whereby an award, if any, depends on various factors, including, without limitation, individual and organizational performance.
#CyberCDR27


Education:Bachelor's DegreeEmployment Type:

What Deloitte employees say

Pay

Benefits

Hours and flexibility

Workplace

Get the full story on Breakroom