Job Description For FLEX Senior Insider Threat Management Analyst
This is a temporary position.
Responsible for supporting the Global Insider Threat Management Program. Duties will include incident response to insider incidents and collaborating with multiple areas of the business, including human resources, business data owners, legal, physical security, SOC/CIRT, software development and information technology groups. Act as a technical subject matter expert to enhance adjacent programs such as threat intelligence, cybersecurity incident response, risk management, audit, ethics, etc. He/She will track and manage program metrics (KPI/KRI) to ensure the advancement of the program across the enterprise, while mitigating human risk to the organization. He/She will also assist in supporting the digital aspects of Marriott's Executive Protection Program.
CANDIDATE PROFILE
Education and Experience
Required:
- Bachelor's degree in Criminal Justice, Computer Science, MIS, or related field or equivalent experience/certification
- 5+ years' experience in insider threat/risk, or information security that includes cross-functional incident response, risk assessments, threat mitigation, and/or investigative support.
- 3+ years' SIEM, DLP, UEBA user experience
- 3+ years' experience with Endpoint and Detection Response platforms (ex. CrowdStrike Falcon) and root cause analysis.
Preferred: - Current information security certification, including Certified Information Security Manager (CISM), Certified Information Systems Auditor (CISA) or Certified Information Systems Security Professional (CISSP)
- Excellent communication skills and problem-solving ability
- Demonstrated ability to work independently and with others
- Ability to manage the details and compliance with standards and expectations
- Technical infrastructure operations, administration, or engineering background
CORE WORK ACTIVITIESInsider Threat Management & Response - Establish a framework for researching, documenting, and integrating assessments.
- Responsible for gathering relevant intelligence regarding attacker tactics, techniques, and procedures.
- Work as needed with the incident response team to triage alerts triggered by suspicious or malicious activity.
- Act as a technical subject matter expert to enhance adjacent programs such as incident response, threat hunting, and custom detection development.
- Develop and report on key metrics of the insider threat management program.
- Utilize the corporate Endpoint Detection and Response tool and SIEM to identify anomalous activity and potential threats to the enterprise infrastructure.
- Perform analysis of adversary tradecraft, malicious code, and capabilities for hunt pivoting purposes.
- Manage the analysis of artifacts to determine potential specific adversary and motives.
- Responds to crisis or urgent situations within the pertinent domain to mitigate immediate and potential threats and comply with relevant data breach laws. Uses mitigation, preparedness, and response and recovery approaches, as needed, to maximize safety and security of systems, preservation of intellectual property, and information security. Investigates and analyzes all relevant security and privacy response activities.
- Conducts assessments of threats and vulnerabilities, determines deviations from acceptable configurations or enterprise or local policy, assesses the level of risk, and develops and/or recommends and operationalizes appropriate mitigation countermeasures.
- Identifies and assesses the capabilities and activities of; produces findings to help initialize or support law enforcement and counterintelligence investigations or activities.
- Analyzes threat information from multiple sources, disciplines, and agencies across industry and regulatory organizations.
- Synthesizes and places regulatory and intelligence information in context; draws insights about the possible implications
The pay range for this position is $47.35 to $80.24 per hour.
Washington Applicants Only: Employees will accrue 0.0334 PTO balance for every hour worked and eligible to receive minimum of 9 holidays annually.
FLEX opportunities offer coverage for medical, dental, vision, health care flexible spending account, dependent care flexible spending account, life insurance, disability insurance, accident insurance, adoption expense reimbursements, paid parental leave, 401(k) plan, stock purchase plan, discounts at Marriott properties, commuter benefits, employee assistance plan, and childcare discounts. Benefits are subject to terms and conditions, which may include rules regarding eligibility, enrollment, waiting period, contribution, benefit limits, election changes, benefit exclusions, and others.
Marriott HQ is committed to a hybrid work environment that enables associates to Be connected. Headquarters-based positions are considered hybrid, for candidates within a commuting distance to Bethesda, MD; candidates outside of commuting distance to Bethesda, MD will be considered for Remote positions.
The application deadline for this position is 15 days after the date of this posting, May 12, 2025.
Marriott International is an equal opportunity employer. We believe in hiring a diverse workforce and sustaining an inclusive, people-first culture. We are committed to non-discrimination on any protected basis, such as disability and veteran status, or any other basis covered under applicable law.
Marriott International is the world's largest hotel company, with more brands, more hotels and more opportunities for associates to grow and succeed.
Be where you can do your best work,
begin your purpose,
belong to an amazing global team, and
become the best version of you.
Muzammel Huque Chy
Makkah, Saudi Arabia