Insider Risk Investigator
Boston, MA; New York City, NY; Washington, DC
Posted 9d ago
About the job
Anthropic is seeking an exceptional Insider Risk Investigator with expertise in both human and technical investigations to support and protect its mission. The Insider Risk Team works cross-functionally to deter, identify, investigate, and mitigate risks to Anthropic's most critical assets, including its people, data, and infrastructure. This role involves a blend of technical analysis and human interaction to ensure the safety and security of the organization.
Responsibilities
- Triage custom technical detection alerts.
- Conduct end-to-end insider risk investigations, collaborating with IT, Detection and Response, Legal, HR, and other teams.
- Monitor and triage external threats targeting employees.
- Conduct sensitive interviews of employees and other involved parties.
- Perform technical analysis of logs from SIEM, DLP, and UEBA systems.
- Leverage AI tools like Claude to accelerate investigation workflows and data analysis.
- Build and maintain investigation documentation.
- Assist in improving processes, procedures, and systems for detecting, mitigating, and investigating insider risks.
- Develop, refine, and operationalize insider risk indicators, scenarios, and mitigation strategies.
- Provide rapid security assessments to support business operations.
- Support education and awareness programs to promote a strong security culture.
- Serve as a subject matter expert for insider risk and provide training to team members.
Requirements
- Bachelor's degree or equivalent combination of education, training, and/or experience.
- 5-8 years of experience in insider risk, corporate investigations, or a related domain.
- 3-5 years of experience conducting investigative interviews.
- At least 1-2 years of private sector experience.
- Experience conducting OSINT for threat assessment or counterintelligence.
- Experience using DLP, UEBA, SIEM, SOAR, and other insider risk security tooling for detections and investigations.
- Knowledge of open-source research techniques and tooling.
- Broad understanding of internal/external investigations, cybersecurity, interview techniques, risk assessment, and cross-functional relationship management.
- Ability to communicate complex security findings clearly and concisely to non-technical stakeholders.
- Track record of rapid response to time-sensitive security requests.
- Comfort operating across organizational boundaries (Security, People, Legal, IT).
- Exceptional communication and collaboration skills.
- Ability to lead projects with little guidance.
- Demonstrated ability to operate independently with minimal oversight while managing sensitive cases.
Benefits
- Annual compensation range: $245,000 - $305,000 USD