
Cybersecurity Engineer – Insider Threat
T-Mobile
full-time
Posted on:
Location Type: Office
Location: Bellevue • Kansas • Texas • United States
Visit company websiteExplore more
Salary
💰 $79,900 - $144,100 per year
About the role
- Analyze and investigate alerts through the alert lifecycle
- Improve process efficiency by creating and implementing creative and sustainable changes to existing investigation methodologies
- Identify and implement recommendations for security and data security improvements
- Implement, test & monitor info security improvements
- Maintain transparency inside & outside of information security at the People management level.
- Communicate with groups such as application support, engineering ops, finance, privacy, risk management, etc.
- Lead information security policy lifecycle throughout, including intake, creation, review, approval, implementation, publishing, communication & maintenance
- Implement security projects driven by groups both internal and external to info security
- Analysis of underlying technologies that form the solution vital for the application of threat identification, analysis, and thread model design
- Threat model to depict trust boundary, threat agent(s), threat vector(s), and safeguard(s) necessary to protect person, asset, data, and T-Mobile brand
Requirements
- Bachelor's Degree in Computer Science or Information Technology plus 2 years of related work experience OR combination of education and experience deemed equivalent
- 2-4 years of experience in info security technology or related field
- 2-4 years of experience implementing and managing cybersecurity measures in a large-scale environment
- 2-4 years of experience with security technologies such as firewalls, intrusion detection systems, and encryption
- 2-4 years of technical project management within cybersecurity frameworks.
- Deep understanding of cybersecurity laws and regulations to ensure the organization meets all compliance requirements.
- Ability to work effectively with cross-functional teams to enhance cybersecurity measures and response strategies.
- Strong analytical skills to solve complex cybersecurity issues and enhance system security.
- Experience with incident handling for insider threat related incidents
- Expertise in identifying, evaluating, and mitigating risks in cybersecurity to protect organizational data and infrastructure.
- Experience with Microsoft security tools, Zscaler, Splunk
- Ability to document cybersecurity processes, incidents, and protocols clearly and effectively for various audiences.
- Moderate to advance knowledge of Scripting tools (Python/Perl/Shell/HTML/PHP)
- Knowledge of federal & compliance regulations e.g. SOX, PCI & CPNI
- Solid understanding of T-Mobile’s network elements and how they work together (EIT, Engineering & 3rd Party)
- In-depth knowledge of security standard methodologies in large-scale environments
- Experience with implementation of various threat modeling approaches pertaining to one or more of the following STRIDE, PASTA, TRIKE, ATTACK TREE, DREAD, KILL CHAIN, CAPEC, Mobile Application threat model, Cyber Threat Tree, and data flow diagram
- Certified Information Systems Security Professional (CISSP)
- CISSP and/or CCSK and/or CCSP and/or CISA/CISM certification a plus
- At least 18 years of age
- Legally authorized to work in the United States.
Benefits
- medical, dental and vision insurance
- flexible spending account
- 401(k)
- employee stock grants
- employee stock purchase plan
- paid time off
- up to 12 paid holidays
- paid parental and family leave
- family building benefits
- back-up care
- enhanced family support
- childcare subsidy
- tuition assistance
- college coaching
- short- and long-term disability
- voluntary AD&D coverage
- voluntary accident coverage
- voluntary life insurance
- voluntary disability insurance
- voluntary long-term care insurance
- mobile service & home internet discounts
- pet insurance
- access to commuter and transit programs
Applicant Tracking System Keywords
Tip: use these terms in your resume and cover letter to boost ATS matches.
Hard skills
cybersecurityinformation securitythreat modelingincident handlingrisk evaluationscripting (Python, Perl, Shell, HTML, PHP)security technologies (firewalls, intrusion detection systems, encryption)technical project managementprocess documentationsecurity standard methodologies
Soft skills
analytical skillscommunicationcross-functional teamworkproblem-solvingleadershiptransparencycreativityefficiency improvementstakeholder engagementadaptability
Certifications
Certified Information Systems Security Professional (CISSP)CCSKCCSPCISACISM