All roles

Insider Threat Investigator

Remote · USA Full-time New today

About the Team At DoorDash we’re building the industry’s most scalable and reliable delivery network to support our three-sided marketplace of consumers, merchants, and Dashers. Security is integral to the success of the business, as we secure the data and protect the privacy of our business and various stakeholders. The Security Operations team spans several capabilities, to include Threat Response, Threat Hunt, Threat Intelligence, Detection Engineering, Corporate Security, and Security Platform Engineering. Our Mission is to create a secure DoorDash environment through proactive threat preparation and rapid response. We are committed to protecting our people, partners, customers, and technologies with robust safeguards and unwavering vigilance.

About the Role

The Insider Threat Investigator will be a foundational member of the Internal Investigations team, Security Operations. This role will be responsible for monitoring, detecting, investigating, and responding to anomalous events and behaviors that may pose risk to the company. This is a critical role that will analyze threat intelligence, develop use cases, conduct data analysis, execute complex investigations, drive detection engineering, write reports, advise on preventative controls, and collaborate with multiple internal teams to ensure coordinated investigation and response efforts. You will report into the Director, Security Operations under the Chief Information Security Officer. You’re excited about this opportunity because you will…

  • Use monitoring and detection platforms to investigate anomalous activity for potential insider risk
  • Advise and assist in the onboarding and implementation of custom tooling designed to alert on anomalous behaviors
  • Create and maintain a use case library to inform detections, and develop corresponding playbooks and escalation procedures
  • Create standard operating procedures and cross-functional processes to govern investigation and response collaboration between teams
  • Prepare investigative reports and briefings for leadership
  • Maintain chain-of-evidence and engage with External Law Enforcement, when required
  • Lead training or other education and awareness opportunities for the enterprise as required

We’re excited about you because…

  • 7+ years of experience in federal law enforcement, incident response, or insider threat investigations.
  • Experience with a broad range of technologies including endpoint detection and network technologies, SOAR/SIEM platforms, User Entity Behavior Analytics (UEBA) platforms, and User Activity Monitoring (UAM), and Data Loss Prevention (DLP) tools
  • Deep experience in conducting ethical, legal, complex investigations
  • Understanding of cloud and distributed IT environments
  • Familiarity with log sources, forwarders, parsing, and data pipelines
  • Experience partnering with cross functional teams to support an investigation
  • Excellent understanding of information security operations related frameworks and standards (e.g., MITRE Att&ck and NIST)
  • Excellent verbal and written communication, presentation, and stakeholder management skills
  • Relevant certifications (e.g. CDITR, SEI certs, ACFE, ATAP)

We expect this position to be filled by 9/9/25. Notice to Applicants for Jobs Located in NYC or Remote Jobs Associated With Office in NYC Only We use Covey as part of our hiring and/or promotional process for jobs in NYC and certain features may qualify it as an AEDT in NYC. As part of the hiring and/or promotion process, we provide Covey with job requirements and candidate submitted applications. We began using Covey Scout for Inbound from August 21, 2023, through December 21, 2023, and resumed using Covey Scout for Inbound again on June 29, 2024. The Covey tool has been reviewed by an independent auditor. Results of the audit may be viewed here: Covey Apply tot his job Apply To this Job

Related roles

Associate, Customer Enablement

Remote · USA Full-time

IT Documentation Specialist (Network, Cloud, Service Desk) *Remote EST*

Remote · USA Full-time

Sr. Counsel, eDiscovery (Remote)

Remote · USA Full-time

Director, Global Patient Safety Science

Remote · USA Full-time

Associate Director, PV Sciences, Global Medical Safety Oncology (Remote)

Remote · USA Full-time

Lead Cybersecurity - eDiscovery Collection and Preservation Specialist

Remote · USA Full-time

Compensated Digital Writing Positions | Begin Publishing Kindle Books and Earn Royalties From Home

Remote · USA Full-time

[Remote] Sr Master Data System & Business Analyst (100% Remote)

Remote · USA Full-time

Project Manager, Operations

Remote · USA Full-time

Remote bolthires Marketplace Optimization Specialist – eCommerce Growth, Content Strategy, Advertising & Data Analytics

Remote · USA Full-time

Remote Insurance Broker

Remote · USA Full-time

Hiring Now: Starbucks Remote Jobs Minneapolis $25/Hour

Remote · USA Full-time

Customer Support Specialist (United States)

Remote · USA Full-time

Senior Release Scheduler and Project Analyst - Remote Opportunity in Government IT Services with Career Growth and Flexible Work Arrangements

Remote · USA Full-time

Turkish Audio Annotation Analyst - Türkiye

Remote · USA Full-time

Private Investigator- Albuquerque, NM

Remote · USA Full-time

Customer Service Representative - Work From Home

Remote · USA Full-time

Experienced Data Entry Assistant for Remote and On-Site Opportunities at arenaflex – Career Growth and Development in a Dynamic Work Environment

Remote · USA Full-time

Remote – Data Solutions Architect with TOGAF OR C4 Models Expertise :: Chicago, IL (Hybrid) Need Locals Only

Remote · USA Full-time

Principal Business Immigration Paralegal

Remote · USA Full-time