Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

Lead Cybersecurity - Insider Risk Analyst (Telemetry, Insider Risk Detection, and AI-Driven Security

$141.3k - $237.4k

AT&T

This position requires office presence of a minimum of 5 days per week and is only located in the location(s) posted. No relocation is offered. Join AT&T and help shape the future of communications and technology that connect the world. We value innovators who seek to explore the unknown and challenge the status quo. Bring your bold ideas and fearless spirit to redefine connectivity and transform how people share stories and experiences. At AT&T, you won’t just imagine the future—you’ll build it. The Lead Cybersecurity Insider Risk Analyst leads the response to high-priority and escalated cybersecurity incidents, with a focus on insider risk and telemetry-driven detection. This role oversees end-to-end incident handling—including detection, analysis, containment, eradication, recovery, reporting, and prevention—across employees, contractors, and third-party vendors. The position also drives continuous improvement through development of new detection logic, micro-hunts, and the integration of automation and AI-assisted analytics to increase detection fidelity and reduce manual effort. Success in this role requires advanced technical depth, strong operational rigor, and the ability to communicate clearly with both technical teams and executive stakeholders. Key Roles and Responsibilities Incident leadership: Serve as lead handler for escalated insider risk and cyber incidents;establishinvestigation strategy, ensuretimelyexecution, and drive incident closure. Advanced investigation and triage: Conduct deep-dive analysis of security events using telemetry, endpoint/network evidence, and threat intelligence todeterminescope, impact, and root cause. Detection engineering and continuous improvement: Create, tune, and deploy new detection rules and analytics aligned to evolving threats and suspicious behaviors; reduce false positives and improve signal-to-noise. Micro-hunts and threat intelligence: Perform targeted hunts to discover emerging behaviors and translate findings into actionable detections, controls, and playbooks. Remediation and containment: Partner with IT and security stakeholders to drive containment, remediation, and recovery actions across endpoints, identities, and cloud services. Process and program maturity: Contribute to incident response process improvements, documentation standards, and after-action reviews; support development of tabletop exercise scenarios. Executive communication: Produce clear, concise updates for leadership (status, impact, risk, and next steps) and deliver required incident reports and post-incident summaries. Mentorship and SME support: Coach and mentor analysts in triage and investigation practices; serve as a subject matter expert across the incident response organization. Integrations, Automation, and AI-Driven Security Operations Build andmaintainintegrations between multiple enterprise security tools to improve automation, asset inventory accuracy, vulnerability identification, and response workflows. Implement AI-assisted monitoring and analytics to improve correlation, enrichment, prioritization, and triage of alerts; reduce manual effort and improve time to decision. Develop andmaintainrisk-scoring approaches for endpoints and users based on security posture, vulnerabilities, and behavioral signals. Produce trend analyses and operational health reporting (e.g., coverage, agent health, patch/compliance drift, and incident patterns) and translate results into improvement actions. Develop andmaintainautomation via APIs, scripting, and orchestration to support agent deployment/upgrade workflows, compliance checks and remediation, rapid scoping, containment support, targeted remediation, and continuous control validation. Technical Scope Use case management platforms, endpoint/network telemetry, and threat intelligence sources to investigate, document, and resolve incidents. Apply incident handling methodologies and attack frameworks (e.g., kill chain / MITRE ATT&CK-aligned thinking) to guide response and reporting. Perform in-depth analysis of threats, exploits, vulnerabilities, and malware families;validatehypotheses using host and network evidence. Conduct investigations across Windows, macOS, and Linux environments. Leverage Endpoint Detection and Response (EDR) tooling and cloud security telemetry to scope activity and support containment/remediation actions. Use Splunk and relatedanalytics toolingto query, correlate, and operationalize security data for investigations and reporting. Demonstratestrongunderstanding of enterprise infrastructure and connectivity (e.g., VPN/partner connectivity) and common network protocols. Design, implement, and tune security detections in response to emerging threats and insider risk behaviors. Develop scripts and automation (e.g., Python, PowerShell, Bash) to enrich investigations and streamline operational workflows. Collaborate with partneranalyticand engineering teams to align detections, telemetry, and response actions across the broader security ecosystem. Required Qualifications 5+ years of hands-on cybersecurity experience in incident response, security operations, insider risk, threat detection, or a closely related function. Demonstrated experience leading or handling escalated incidents, including triage, investigation, containment, remediation, and post-incident reporting in complex enterprise environments. Proficiencywith security telemetry and investigation workflows across endpoint and network data sources; experience using SIEM analytics (e.g., Splunk) and EDR tooling. Working knowledge across multiple domains such as host analysis, network forensics, cloud environments, UEBA/anomaly detection, intrusion detection, threat research/intelligence, detection engineering, and data analysis. Ability to develop ormaintainautomation using scripting (e.g., Python, PowerShell, Bash) and/or APIs to improve security operations. Strong written and verbal communication skills, including the ability to produce executive-ready summaries and lead discussions with technical and non-technical stakeholders. Demonstrated integrity and discretion in handling sensitive investigations and confidential data. Preferred Qualifications Experience with Tanium (or comparable endpoint management/telemetry platforms) and building integrations across enterprise security tools. Experience implementing automation or orchestration in security operations (SOAR, APIs, pipelines, scripted workflows) to accelerate response and improve consistency. Experience applying AI-assisted analytics for alert enrichment, correlation/deduplication, prioritization, and operational reporting. Experience with insider risk programs, user/entity behavior analytics (UEBA), and behavior-based detection strategies. Experience investigating and responding to threats in cloud and SaaS environments. Experience mentoring analysts and contributing to training, playbooks, and tabletop exercise development. Relevant industry certifications (e.g., GCIA, GCIH, GCFA, CISSP, or equivalent) and/or a bachelor’s degree in a related field. Education/Experience Bachelor’s degree (BS/BA) desired in Computer Science or Cybersecurity. 5+ years of related experience. Certification is required in some areas. Supervisor No Our Lead Cybersecurity jobs earn between $141,300.00 - $237,400.00 USD Annual. Joining our team comes with amazing perks and benefits Medical/Dental/Vision coverage 401(k) plan Tuition reimbursement program Paid Time Off and Holidays (based on date of hire, at least 23 days of vacation each year and 9 company-designated holidays) Paid Parental Leave Paid Caregiver Leave Additional sick leave beyond what state and local law require may be available but is unprotected Adoption Reimbursement Disability Benefits (short term and long term) Life and Accidental Death Insurance Supplemental benefit programs: critical illness/accident hospital indemnity/group legal Employee Assistance Programs (EAP) Extensive employee wellness programs Employee discounts up to 50% off on eligible AT&T mobility plans and accessories, AT&T internet (and fiber where available) and AT&T phone Weekly Hours 40 Time Type Regular Location Dallas, Texas, USA:NC:Charlotte / Ibm Dr - Adm:8505 Ibm Dr Salary Range $141,300.00 - $237,400.00 AT&T and its subsidiaries are committed to equal employment opportunity. All hiring, promotion, and other employment decisions remain merit-based and free from discrimination on the basis of race, color, religion, religious creed, national origin, ancestry, age, sex, sexual orientation, gender, gender identity, gender expression, physical disability, mental disability, pregnancy, medical condition, genetic information, marital status, citizenship status, military status, veteran status, or any other characteristic protected by federal, state, or local laws. In addition, AT&T will provide reasonable accommodations to qualified individuals with disabilities. AT&T is a fair chance employer and does not initiate a background check until an offer is made. #J-18808-Ljbffr AT&T

Vacancy posted 2 days ago
Similar jobs that could be interesting for youBased on the Lead Cybersecurity - Insider Risk Analyst (Telemetry, Insider Risk Detection, and AI-Driven Security in Dallas, TX vacancy
  • $119k - $187k

     ...Wells Fargo is seeking a Lead Information Security Analyst to help drive the continued...  ...who has successfully driven transformation and wants the...  .... Collaborate with IT, cybersecurity, HR, and business teams to...  ...maintain security and minimize risks. Manage IAM-related... 
    Suggested
    Full time
    Work experience placement
    Work at office
    Work from home
    Visa sponsorship
    2 days per week
    3 days per week

    Wells Fargo

    Dallas, TX
    4 days ago
  • $120k - $180k

     ...confidence to reach further. Overview The Senior Cyber Security Engineer will lead and execute security initiatives across the application...  ...appropriate, to evaluate software behavior and identify embedded risks. Support the establishment and execution of a software... 
    Suggested
    Full time

    East West Bank

    Dallas, TX
    3 days ago
  • $140k - $190k

     ...digital, mission-driven, FDIC insured...  ...analytic approaches to detect, assess, and mitigate fraud risk. You will help...  ...to help bring a secured banking...  ...topologies Able to lead fraud/risk investigations...  ...mentoring other analysts Cross‑...  ...artificial intelligence (AI) tools to... 
    Suggested
    Full time

    Varo Bank

    Dallas, TX
    3 days ago
  • $99k - $232k

     ...Not Applicable Specialism Cybersecurity & Privacy Management Level...  ...an SRE - Enterprise & Cloud Security - AI Driven Security - Manager, you will...  ...our Cyber, Data & Tech Risk practice, you will apply data...  ...scale. As a Manager, you will lead teams and manage client accounts... 
    Suggested
    Full time
    H1b

    PwC

    Dallas, TX
    4 days ago
  • AT&T is seeking a Lead Cybersecurity Insider Risk Analyst to lead escalated insider risk incidents using telemetry‑driven detection across endpoints, networks, and cloud services. You will drive containment, remediation, and post‑incident reporting while advancing detection... 
    Suggested

    AT&T

    Dallas, TX
    2 days ago
  • $124k - $280k

     ...Not Applicable Specialism Cybersecurity & Privacy Management Level...  ...an SRE - Enterprise & Cloud Security - AI Driven Security - Senior Manager,...  ...Within our Cyber, Data & Tech Risk practice, you will leverage...  ...this role at PwC, you will lead large projects and innovate... 
    Full time
    H1b

    PwC

    Dallas, TX
    5 days ago
  • $126.82k - $149.2k

     ...Intelligence Lead Analyst to help...  ...insights for security teams and business...  ...hunting, detection engineering,...  ...research, internal telemetry, and partner...  ...-driven context and...  ...strategy and risk-based decision...  ...Exposure to AI use cases within...  ...or similar cybersecurity/intelligence... 
    Full time
    Local area
    3 days per week

    US Bank

    Irving, TX
    2 days ago
  • $125.76k - $188.64k

     ...Information Security,...  ...:Citi, the leading global bank...  ...a seasoned Cybersecurity Product Manager (AI & Security...  ...accelerate detection, triage, and...  ...fatigue, erode analyst trust, and...  ...introduce new risks. They can distinguish...  ...that AI-driven features...  ...Response, Insider Threat, Vulnerability... 
    Full time

    Citigroup

    Irving, TX
    9 hours ago
  • $150.1k - $227k

     ...SalesforceSalesforce is the #1 AI CRM, where humans with...  ...career at the company leading workforce...  ...Professional Services Security Assurance (PSSA) team —...  ...translating complex technical risks into actionable security...  ...degree in Computer Science, Cybersecurity, Information Security,... 
    Full time

    Salesforce

    Dallas, TX
    4 days ago
  • $130k - $175k

     ...world. We're one global team driven by our common purpose to...  ...support function within the Cybersecurity Engineering team, with an initial...  ..., enterprise reporting and risk visibility remain core to the...  ...processes, environments, and overall security posture, ensuring operational... 
    Full time
    Work at office
    Local area
    Remote work
    Worldwide
    Relocation package
    Flexible hours

    AECOM

    Dallas, TX
    4 days ago
  • $118.3k - $207.4k

    Third‑Party IT Risk Manager is responsible for leading and modernizing Wolters...  ...distributed, market‑driven technology and...  ...organization’s risk appetite, security standards, and...  ...monitoring, AI, and risk quantification...  ...years of experience in cybersecurity, technology risk,... 
    Full time
    Contract work
    Work at office
    Shift work

    Wolters Kluwer

    Dallas, TX
    3 days ago
  •  ...experienced and meticulous Lead Network & Security Architect to join the...  ...Localized instances inside the labs that pull...  ..., Computer Science, Cybersecurity, or a related...  ...center infrastructure for AI, cloud, and hybrid cloud...  ...enabling AI-driven growth.Built on a legacy... 
    Work at office
    Local area
    Remote work
    Worldwide
    Shift work

    Celestica

    Richardson, TX
    4 days ago
  •  ...solutions and next-generation AI. We empower businesses—...  ...opportunity for a Security Practice Lead to join our Cybersecurity National Practice. This individual...  ...With our expertise inAI-driven analytics, cloud...  ...optimizes costs, and reduces risk. Presidio’s expert technical... 
    Full time
    For contractors
    Local area

    Presidio

    Irving, TX
    3 days ago
  • $119k - $206k

     ...Fargo is seeking a Lead Information Security Engineer to join...  ...with enterprise risk and business objectives...  ...management and cybersecurity leadership to...  ...Secrets management and detection, Infrastructure...  ...Familiarity with AI/LLM-enabled...  ...mitigating and compliance-driven culture which... 
    Full time
    Work experience placement
    Shift work

    Wells Fargo

    Irving, TX
    1 day ago
  •  ...Leadership Program in the Risk & Security Analyst track, you’ll help identify...  ...Vanguard against evolving cybersecurity threats and operational risks...  ...a team where innovation is driven by purpose. You’ll work alongside...  ..., influence, and lead. The Technology Leadership... 
    Visa sponsorship

    The Vanguard Group

    Dallas, TX
    1 day ago
  •  ...Team as a Cloud Security Engineer...  ...paced, deadline-driven environment. The...  ...remediation and validate risk mitigation...  ..., and threat detection practices using...  ...cloud logging and telemetry tools; ability...  ...Technology, Cybersecurity, or equivalent...  ...securityCertifications such as AI-900, AZ 500, SC... 
    Full time

    Greenberg Traurig LLP

    Dallas, TX
    1 day ago
  • ONEOK is seeking a Senior Offensive Security Analyst to lead red-team operations, simulate adversary...  ...emphasizes translating offensive findings into detectable controls and architectural...  ...mentor team members while communicating risk to executives. #J-18808-Ljbffr ONEOK

    ONEOK

    Dallas, TX
    5 days ago
  • $190k

     ...solutions through leading-edge management consulting...  ...Architecture, Cybersecurity, Digital...  ...Enterprise Application and Risk functions. We...  ...applies a discovery-driven approach in order...  ...technology. As a Lead AI Tech Architect,...  ...Citizenship, active security clearance or... 
    Contract work
    Work at office
    Local area

    The Boston Consulting Group

    Dallas, TX
    1 day ago
  •  ...ResponsibilitiesProductionize and scale AI-enabled security solutions from...  ...combination detection, CVE chaining...  ...intelligence, risk scoring, and...  ...Science, Cybersecurity, Engineering, or...  ...our clients. To lead through product and...  ...believe our mission-driven and highly collaborative... 
    Full time

    Vanguard

    Dallas, TX
    9 hours ago
  • DescriptionSenior Project Manager - Cybersecurity & AI‑Driven TransformationRole SummaryWe...  ...cybersecurity background to lead the AI‑enabled modernization of core security capabilities. This role is central...  ..., regulatory drivers, and risk priorities into clear, executable... 
    Full time
    Work at office
    Remote work
    Work from home
    Flexible hours

    Cadence Bank

    Dallas, TX
    9 hours ago
  •  ...Director of Cyber Security 10916 The ideal candidate...  ...automation and AI. Key Responsibilities Lead enterprise cyber defense, including detection engineering, incident...  ...strategy and risk management. Build...  ...field. ~10+ years of cybersecurity experience, including... 

    Thomas, Edwards Group

    Dallas, TX
    2 days ago
  •  ...Information Security Officer (CISO...  ..., Technology Risk secures Goldman...  ...for detecting and preventing...  ...efforts, measuring cybersecurity risk, and designing...  ...analysis, AI, and event-...  ...threat landscape Lead the security...  ...and driven to manage tasks...  ...as a Level 2 analyst Understanding... 

    Goldman Sachs

    Dallas, TX
    1 day ago
  • Vanguard’s Technology Leadership Program in Risk & Security Analyst track offers graduates a two-year rotational experience across cybersecurity, risk management, and identity & access management. You’ll identify threats, assess controls, and contribute to risk-informed... 
    Rotational program

    The Vanguard Group

    Dallas, TX
    1 day ago
  • $157k - $227k

    Lead GSRS physical security penetration testing on a global scale.Partner with the...  ...Bachelor’s degree in Security Risk Management, or equivalent...  ...ecosystem through data driven decisions and the maturation...  ...ability to anticipate, deter, detect, and act are the pillars of... 

    Google

    Sunnyvale, TX
    3 days ago
  •  ...an Identity and Security Engineer...  ...paced, deadline-driven environment. The...  ...management solutions, leads the design of...  ...and high-risk identitiesBuilds...  ...systems Engineers detection logic, monitoring...  ...of AI model infrastructure...  ...preferredRelevant professional cybersecurity certifications,... 
    Full time
    Remote work
    Flexible hours

    Greenberg Traurig LLP

    Dallas, TX
    4 days ago
  • $169.01k - $370.53k

     ...collaborative, team-driven culture. At KPMG,...  ...facility, and leading market tools, we help...  ...Specialist Director, Cloud Security to join our...  ...security posture, risk remediation,...  ...adoption of cloud and AI-enabled technologies...  ...with cloud, cybersecurity, architecture, and... 
    H1b
    Local area

    KPMG

    Dallas, TX
    9 hours ago
  •  ...currently seeking a AI Security Architect-...  ...integrity risks, data poisoning...  ...inference-time abuse. Lead technically,...  ..., threat detection, guardrails, and...  ...capabilities (telemetry, monitoring,...  ...): Design LLM-driven and agentic workflows...  ...and automate cybersecurity posture (e.g.,... 
    For subcontractor
    Work at office
    Remote work
    Flexible hours

    NTT DATA

    Dallas, TX
    2 days ago
  •  ...unifying a security data lake,...  ...and agentic AI into a single...  ...detection, investigation...  ...curious and self-driven Senior Technical...  ...with analysts, directors,...  ...ourcomeo Plan and lead QBRs/EBRs...  ...renewal risk signals...  ...experience in cybersecurity technologies...  ...log telemetry (network, Identity... 
    Full time
    Remote work
    Flexible hours

    Anomali

    Dallas, TX
    2 days ago
  • $85k - $90k

     ...experienced Information Security Analyst to support...  ...incidents, improve detection capabilities,...  ...environments, and AI-assisted security...  ...application, and identity telemetry for potential...  ...and confirmed cybersecurity incidents.Perform...  ...scanning, risk prioritization, remediation... 
    Remote work
    Visa sponsorship
    Free visa

    NPAworldwide

    Syracuse, NY
    4 days ago
  • $153k - $297k

     ...Our growth is driven by delivering real...  ...Director, AI Security Frontier Engineering...  ..., from risk and gap assessment...  ...maturation of security telemetry, monitoring, and detection engineering...  ...science, Cybersecurity, or a related technical...  ...independently leading technical... 
    H1b
    Local area

    KPMG

    Dallas, TX
    2 days ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to Lead Cybersecurity - Insider Risk Analyst (Telemetry, Insider Risk Detection, and AI-Driven Security. Be the first to apply!