1

Insider Risk Jobs in Arizona (NOW HIRING)

Senior Cybersecurity Engineer

Phoenix, AZ · On-site

$105K - $143K/yr

Triages, investigates, and resolves DLP and CASB alerts, coordinating with Incident Response, HR, and Legal on potential data exfiltration and insider-risk events. * Maintains DLP and CASB policy ...

Senior Cybersecurity Engineer

Phoenix, AZ · On-site

$105K - $143K/yr

Triages, investigates, and resolves DLP and CASB alerts, coordinating with Incident Response, HR, and Legal on potential data exfiltration and insider-risk events. * Maintains DLP and CASB policy ...

Senior Cybersecurity Engineer

Phoenix, AZ · On-site

$105K - $143K/yr

Triages, investigates, and resolves DLP and CASB alerts, coordinating with Incident Response, HR, and Legal on potential data exfiltration and insider-risk events. * Maintains DLP and CASB policy ...

Senior Cybersecurity Engineer

Phoenix, AZ · On-site

$105K - $143K/yr

Triages, investigates, and resolves DLP and CASB alerts, coordinating with Incident Response, HR, and Legal on potential data exfiltration and insider-risk events. * Maintains DLP and CASB policy ...

Senior Cybersecurity Engineer

Phoenix, AZ · On-site

$105K - $143K/yr

Triages, investigates, and resolves DLP and CASB alerts, coordinating with Incident Response, HR, and Legal on potential data exfiltration and insider-risk events. * Maintains DLP and CASB policy ...

Senior Cybersecurity Engineer

Phoenix, AZ · On-site

$105K - $143K/yr

Triages, investigates, and resolves DLP and CASB alerts, coordinating with Incident Response, HR, and Legal on potential data exfiltration and insider-risk events. * Maintains DLP and CASB policy ...

... Insider. They culture focuses on delivering happiness, our commitment to transparency, and the ... Anti-Fraud Risk Engineer LOCATION : Phoenix AZ SALARY : Based on Experience SPONSORSHIP : No ...

... Insider. They culture focuses on delivering happiness, our commitment to transparency, and the ... Anti-Fraud Risk Engineer LOCATION : Phoenix AZ SALARY : Based on Experience SPONSORSHIP : No ...

... and insider risk management. Varonis protects data first, not last. Learn more atwww.varonis.com. The Role: The Commercial Sales Representative is responsible for selling and presenting Varonis ...

Technical Account Manager

Phoenix, AZ · Remote

$160K - $185K/yr

TAMs are accountable for translating Varonis capabilities into reduced risk, controlled access, and ... insider threats, cyber-attacks, and policy violations * Help customers identify and mitigate risks ...

... DoDI 5205.11, Risk Management Framework (NIST 800-53, JSIG), and related SCI/DoD manuals and ... Insider Threat, OPSEC, and Program Protection execution. What you'll need * You must be a U.S ...

... DoDI 5205.11, Risk Management Framework (NIST 800-53, JSIG), and related SCI/DoD manuals and ... Insider Threat, OPSEC, and Program Protection execution. What you'll need * You must be a U.S ...

... DoDI 5205.11, Risk Management Framework (NIST 800-53, JSIG), and related SCI/DoD manuals and ... Insider Threat, OPSEC, and Program Protection execution. What you'll need * You must be a U.S ...

Showing results 21-40

Insider Risk information

What is an insider risk professional?

An Insider Risk professional is responsible for identifying, assessing, and mitigating threats posed by individuals within an organization, such as employees, contractors, or business partners. These threats can include data theft, fraud, sabotage, or unintentional errors that could harm the company. Insider Risk professionals develop policies, monitor user behavior, and implement security controls to protect sensitive information and assets. Their goal is to balance organizational security with privacy and productivity.

What are the key skills and qualifications needed to thrive as an insider risk analyst, and why are they important?

To thrive as an Insider Risk Analyst, you need a solid background in information security, risk assessment, and data analysis, often supported by a degree in cybersecurity or a related field. Familiarity with security information and event management (SIEM) tools, user behavior analytics, and certifications such as CISSP or CISA are commonly required. Strong analytical thinking, discretion, and communication skills are crucial for identifying threats and collaborating with cross-functional teams. These skills ensure prompt detection and mitigation of internal security threats, protecting organizational assets and data integrity.

What are some common challenges faced by professionals in insider risk roles, and how can they be addressed?

Professionals in Insider Risk roles often face challenges such as balancing employee privacy with security needs, detecting subtle behavioral indicators of risk, and fostering a culture of trust while enforcing policies. Addressing these challenges requires strong communication skills, collaboration with HR and IT departments, and the utilization of advanced monitoring tools that respect privacy regulations. Additionally, ongoing training and clear protocols help teams respond effectively while maintaining organizational transparency.

What is the difference between Insider Risk vs Insider Threat Analyst?

AspectInsider RiskInsider Threat Analyst
Primary FocusIdentifying and managing potential risks posed by insiders to prevent security breachesDetecting, analyzing, and responding to insider threats and security incidents
Required CredentialsSecurity certifications (CISSP, CISA), risk management experienceCybersecurity certifications (CEH, GIAC), threat analysis experience
Work EnvironmentRisk management teams, security departments, corporate settingsSecurity operations centers, incident response teams, cybersecurity units

Insider Risk professionals focus on proactively identifying and mitigating potential insider-related threats, emphasizing risk management strategies. In contrast, Insider Threat Analysts are more involved in detecting and responding to actual threats and security incidents. Both roles require cybersecurity knowledge and certifications but differ in their primary responsibilities within security teams.

What does an insider risk analyst do?

An insider risk analyst monitors and investigates potential threats from employees or trusted individuals who may intentionally or unintentionally compromise an organization’s security. They analyze data, use security tools, and develop strategies to detect, prevent, and respond to insider threats, often working with cybersecurity teams and requiring knowledge of risk management and security protocols.
Infographic showing various Insider Risk job openings in Arizona as of August 2026, with employment types broken down into 1% As Needed, 87% Full Time, 8% Part Time, 2% Temporary, and 2% Contract. Highlights an 87% Physical, 5% Hybrid, and 8% Remote job distribution.

Senior Cybersecurity Engineer

Clayco

Phoenix, AZ • On-site

$105K - $143K/yr

Full-time

Medical, Dental, Vision, Life, Retirement, PTO

Posted 4 days ago


Clayco rating

8.6

Company rating: 8.6 out of 10

Based on 6 frontline employees who took The Breakroom Quiz


Job description

About Us

Clayco is a full-service, turnkey real estate development, master planning, architecture, engineering, and construction firm that safely delivers clients across North America the highest quality solutions on time, on budget, and above and beyond expectations. With $8.1 billion in revenue for 2025, Clayco specializes in the "art and science of building," providing fast track, efficient solutions for mission critical, industrial, life sciences, power & energy, aviation, commercial, institutional, residential and sports & entertainment related building projects.

The Role We Want You For

Under the direction of the SOC Manager, the Sr. Cybersecurity Engineer is a senior technical role focused primarily on the engineering, operation, and optimization of Clayco’s Data Loss Prevention (DLP) and Cloud Access Security Broker (CASB) solutions, while also supporting the broader security control stack. The role is responsible for engineering effective, supportable, and sustainable control configurations to meet the design requirements and objectives of our security control solutions, including initial implementations, life-cycle management changes, and necessary integrations. Operation, oversight, gap remediation, and change management of the security control stack as a member of the SOC team will be included in the day-to-day responsibilities.

This role will oversee the Data Loss Prevention (DLP) & Cloud Access Security Broker (CASB) solutions for Clayco’s environment to include configuration and administration of applicable policies, alerts, data sources, and remediation of any misconfigurations. This role will also identify and remediate gaps across Clayco’s cybersecurity control set to include agent deployments, configuration changes, and tuning activities.

The Specifics of the Role

  • As a member of the Cybersecurity Team, contributes however and whenever necessary to Incident Response efforts as circumstances dictate.
  • Assists with management of access controls, policies, and rules configurations for firewalls, DNS Layer Security, Email Security & Fraud Defense, Web App Firewalls (WAF), as well as responds to operational issues for each.
  • Operates the Data Loss Prevention (DLP) and Cloud Access Security Broker (CASB) solutions to include their administration, maintenance, support, troubleshooting, and optimization of the solutions such as:
  • Endpoint, Network, and Cloud/SaaS DLP Platforms
  • Host-based DLP Agents and CASB Connectors
  • Required Integrations (CASB, SaaS APIs, Identity Provider, SIEM/SOAR)
  • Data Classification & Sensitive Data Discovery Inputs
  • Conducts regularly scheduled and ad-hoc data discovery and policy scans across endpoints, network, and cloud/SaaS applications, ensuring that high-fidelity DLP and CASB detection data is successfully and reliably ingested into the Incident Management & Workflow Platform in coordination with GRC.
  • Partners with GRC and business units to map data flows, classify sensitive data, and address data-protection gaps by aligning DLP and CASB policies with regulatory and contractual requirements (e.g., GDPR, CCPA, HIPAA, PCI-DSS) and deploying specialized controls (encryption, tokenization, blocking, or quarantine) as needed.
  • Develops DLP and CASB incident reports, data-risk ratings, and compliance scorecards that define the current state of data exposure for Clayco’s environment.
  • Designs, tests, and tunes DLP detection rules and data classification policies (e.g., PII, PCI, PHI, source code, financials, and confidential business data) to balance data protection with business productivity while minimizing false positives.
  • Administers CASB controls for sanctioned and unsanctioned cloud applications, including Shadow IT discovery, application risk scoring, and enforcement of access, sharing, and data-residency policies.
  • Triages, investigates, and resolves DLP and CASB alerts, coordinating with Incident Response, HR, and Legal on potential data exfiltration and insider-risk events.
  • Maintains DLP and CASB policy, exception, and runbook documentation, and produces KRI/KPI metrics on data-loss events, policy violations, and remediation timelines.
  • Understands and complies with Clayco’s Change Management process to ensure that change is justified, tested, approved, and communicated effectively.
  • Serves as a senior technical resource and mentor on DLP and CASB matters, providing guidance to SOC analysts and junior engineers and representing the data-protection program in cross-functional initiatives.
  • Interfaces with vendor support teams to keep abreast of developments in product lines.
  • Performs other duties as assigned.

Requirements

  • Bachelor’s Degree (Cybersecurity, Computer Science, or Information Technology) preferred, or equivalent work experience.
  • Certified Cloud Security Professional (CCSP, (ISC)²), Cloud Security Alliance Certificate of Cloud Security Knowledge (CSA CCSK), or equivalent (current status or obtained within 6 months of assuming role).
  • 6-8 years of technical work experience in Information Security.
  • 3-5 years of direct work-related Cybersecurity Operations experience, including hands-on experience administering and engineering Data Loss Prevention (DLP) and Cloud Access Security Broker (CASB) solutions, as well as Security Control Engineering (firewalls, email security gateways, WAFs, etc.).
  • Experience with scripting languages (Python, PowerShell, BASH, etc.).
  • Understanding of malware, emerging threats, attacks, and vulnerability exploitation with a personal drive to continue learning.
  • Experience in Enterprise Client-Server, Cloud (Azure, AWS, GCP), & IoT Hybrid environments and knowledge of how various technologies and processes interact and behave.
  • Knowledge of secure network/systems configuration management as well as an understanding of networking protocols, concepts, and devices.
  • Excellent oral and written communication skills, including the ability to document functional requirements, test and validation criteria, communication plans, KRI/KPI reports, and other relevant operational communications.
  • Ability to respond to incidents or outages 24/7, including holidays and weekends.
  • Ability to thrive in a fast-paced environment.
  • Minimal travel required.

Some Things You Should Know

  • This position will service our clients regionally.
  • Our clients and projects are nationwide - Travel will be required.
  • No other builder can offer the collaborative design-build approach that Clayco does.
  • We work on creative, complex, award-winning, high-profile jobs.
  • The pace is fast!
  • This position is classified as a safety-sensitive role in accordance with applicable state and federal laws. Candidates selected for this position will be subject to a comprehensive background check, which includes mandatory drug testing.

Why Clayco?

  • 2025 Best Places to Work – St. Louis Business Journal, Los Angeles Business Journal, and Phoenix Business Journal.
  • 2025 ENR Top 400 – Top Data Center Contractor (Top 3).
  • 2025 ENR Top 100 Design-Build Firms – Design-Build Contractor (Top 5).
  • 2025 ENR Top 100 Green Contractors – Green Contractor (Top 3).

Benefits

  • Discretionary Annual Bonus: Subject to company and individual performance.
  • Comprehensive Benefits Package Including: Medical, dental and vision plans, 401k, generous PTO and paid company holidays, employee assistance program, flexible spending accounts, life insurance, disability coverage, learning & development programs and more!

Compensation

  • The salary range for this position considers a wide range of factors in making compensation decisions including but not limited to: Education, qualifications, skills, training, experience, certifications, internal equity, and location. Compensation decisions are dependent on the facts and circumstances of each case.

What Clayco employees say

Pay

Hours and flexibility

Workplace

Get the full story on Breakroom