Skip to main content

Palantir

Information Security Engineer - Insider Risk

Washington, D.C.full-timemidAdded 1 month ago

About this role

Palantir seeks an Information Security Engineer to detect and prevent insider threats across the organization's global systems. Working 24/7 as part of the security team, you'll identify security events, investigate threats, and protect sensitive data and assets from both internal and external adversaries.

What you'll do

  • Monitor and detect insider risk events and security threats across Palantir's environment
  • Investigate active security incidents and respond to detected threats
  • Develop detection strategies and mitigation approaches for insider risks
  • Provide 24/7 security monitoring and rapid incident response
  • Protect company data, people, and sensitive global assets
  • Collaborate with team members on complex security challenges

What they're looking for

  • Threat detection and analysis
  • Security incident investigation
  • Insider risk assessment
  • Network and system security knowledge
  • Problem-solving and analytical thinking
  • Team collaboration
  • Technical security expertise
  • Crisis management under pressure
Apply with Autofill

Opens the application — the Jobs AI extension fills it for you. Set up autofill

Opens the official application on the employer’s site. No login required.

Palantir

Palantir builds data platforms and software solutions that help government and enterprise customers tackle complex operational challenges, with a focus on responsible AI governance and privacy. The company is hiring software engineers and interns for forward-deployed customer roles, infrastructure and platform teams, and specialized privacy and civil liberties engineering positions.

View all jobs at Palantir

Likely interview questions

  • Describe your experience detecting and investigating insider threats. What tools or methodologies have you used to identify suspicious user behavior?
  • How would you design a detection system to identify data exfiltration attempts while minimizing false positives?