Deloitte Jobs

Job Information

Deloitte Software Solutions Specialist - Insider Threat Data Analytics Engineer - DAS Enterprise Risk Management in Mechanicsburg, Pennsylvania

Deloitte Services LP includes internal support areas such as Marketing and Communications, Human Resources/Talent, Information Technology, Facilities Management, and Financial Support Services.

Software Solutions Specialist - Insider Threat Data Analytics Engineer - DAS Enterprise Risk Management

Are you passionate about technology and interested in joining a community of collaborative colleagues who respectfully and courageously seek to challenge the status quo? If so, read on to learn more about an exciting opportunity with Deloitte's Information Technology Services (ITS). We are curious and life-long learners focused on technology and innovation.

Work you'll do

The Data Analytics Engineer will support the Insider Threat Team and be responsible for maintaining systems to facilitate the analysis of insider threat alerts and events, integrating available data sources from a variety of internal and external sources into the Insider Threat Management workflow, cleaning data as necessary, and developing associated analytical models.

This position is part of a team focused on ensuring the security and integrity of critical information, enterprise systems, and environments through predictive analysis and insider threat detection to counter threats before they materialize.

The Insider Threat Team is responsible for collaborating and partnering with various Business Units (BUs) and stakeholders across the organization to manage insider threat detection, mitigation, investigation and response efforts across the organization. The Insider Threat Team will leverage various technical and non-technical datasets for early detection of insider threats and work closely with affected business units to ensure Insider Threat activities are managed effectively and efficiently. The Insider Threat Data Engineer will participate in the activities of a small, expert team that develops strong rulesets, correlation with regressive statistics, and advanced analytical models to enable preventive threat detection efforts.


  • Integrates available data sources from a variety of internal and external sources into the Insider Threat Management workflow, cleaning the data sources as necessary.

  • Develops analytical models that leverage relevant data from the Insider Threat detection tools, and other applicable data sources, to identify anomalies potentially indicative of an insider threat.

  • Collaborates with the Insider Threat Management Intelligence Analysts to develop and tune data sets and analytical models to enhance detection capabilities and analysis workflows.

  • Implements and maintains the solutions used by the insider threat management team and develops associated design and configuration documentation

  • Develops mechanisms to monitor and test the effectiveness of insider threat management solutions and associated analytical models, and incorporates enhancements as necessary

  • Work with the Insider Threat Management Team to identify and implement opportunities for continuous program improvement.

The Team

Information Technology Services (ITS) helps power Deloitte's success. ITS is the engine that helps to drive Deloitte, which serves many of the world's largest organizations. We develop and deploy cutting-edge internal and go-to-market solutions that help Deloitte operate effectively and lead in the market. Our reputation is built on a tradition of delivering with excellence.

The 2,200 professionals in ITS deliver services internally including:

  • Cyber security

  • Technology support

  • Technology & Infrastructure

  • Application development and management

  • Relationship management group

  • Strategy

  • Deployment

  • PMO

  • Financials

  • Communications

For more information on ITS, you can visit our dedicated recruitment page at .

Deloitte Application Studios (DAS)

Deloitte Application Studios (DAS) is the internal software and applications development team responsible for delivering leading-edge technologies to Deloitte professionals. Their broad portfolio includes web and mobile productivity tools that empower our people to log expenses, enter timesheets, book travel and more, anywhere, anytime. DAS enables our client service professionals through a comprehensive suite of applications across the business lines. In addition to application delivery, DAS offers full-scale design services, a robust mobile portfolio, cutting-edge analytics, and innovative custom development.


  • A Bachelor's degree in computer science, Information Security, or equivalent combination of education and related work experience.

  • approximately 2-4 years' experience in data science, information security, or a related field.

  • A balance of technical understanding of threat detection technology and service delivery skills.

  • Skilled in trouble-shooting complicated IT systems.

  • A strong understanding of the cyber threat landscape, with expertise in the cyber and insider threat analysis process.

  • Understanding of latest security trends, especially those associated with insider threat detection, response, and mitigation.

  • Working knowledge of cyber intelligence, the intelligence lifecycle, and the current cyber threat landscape, including threat actors and techniques.

  • Experience using a analytics platform and rule configuration.

  • Knowledge of contemporary SIEM/UBA platforms and their application to cyber threat analysis.

  • Experience with writing small bash, python, splunk scripts, sql queries and java programs

  • Experience with server administration in both on-prem and cloud environments

  • Knowledge of networking protocols, encryption, firewalls, host and network intrusion detection systems, data loss prevention systems, Windows and Linux.

  • Understanding of information security, and incident analysis.

  • Advanced written and verbal communications skills.

  • Travel up to 10% (While 10% of travel is a requirement of the role, due to COVID-19, non-essential travel has been suspended until further notice.)

  • Must be legally authorized to work in the United States without the need for employer sponsorship, now or at any time in the future.



    All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, age, disability or protected veteran status, or any other legally protected basis, in accordance with applicable law.