Skip to main content

Palantir

Information Security Engineer - Insider Risk

New York, NYfull-timemidAdded 1 month ago

About this role

Palantir seeks an Information Security Engineer to detect and prevent insider threats while protecting the company's critical data and assets globally. You'll work on a 24/7 security team identifying and mitigating risks from both external and internal threats across the organization's environment.

What you'll do

  • Prevent, detect, and investigate security events and active threats across Palantir's environment
  • Identify and mitigate insider risks and potential compromises to the network
  • Serve as part of a critical line of defense protecting company data and sensitive assets
  • Monitor and respond to security threats on a 24/7 basis
  • Develop technical solutions to make adversarial attacks more difficult
  • Support Palantir's global security operations

What they're looking for

  • Security event detection and response
  • Insider threat identification and analysis
  • Technical security expertise
  • Problem-solving and troubleshooting
  • Team collaboration
  • Network security knowledge
  • Integrity and security mindset
  • Ability to work under pressure
Apply with Autofill

Opens the application — the Jobs AI extension fills it for you. Set up autofill

Opens the official application on the employer’s site. No login required.

Palantir

Palantir builds data platforms and software solutions that help government and enterprise customers tackle complex operational challenges, with a focus on responsible AI governance and privacy. The company is hiring software engineers and interns for forward-deployed customer roles, infrastructure and platform teams, and specialized privacy and civil liberties engineering positions.

View all jobs at Palantir

Likely interview questions

  • Walk us through your experience detecting and investigating insider threats. What tools or methodologies have you used, and what was the outcome?
  • How would you design a detection system to identify anomalous user behavior that could indicate an insider risk, and what data sources would you prioritize?