RGA logo

Staff Insider Risk Engineer

RGA

Kuala Lumpur, Malaysia
Full-time
Staff
Senior
6+ yrs
Salary not listedPosted 2h ago

Real job — pulled straight from RGA’s careers page · Verified August 21, 2026 · No reposts.

Job description

RGA is hiring a Staff Insider Risk Engineer — a full-time, based in Kuala Lumpur, Malaysia role. Apply directly on RGA's careers page below.

Staff Insider Risk Engineer

Location: Malaysia, Kuala Lumpur, Korea, Seoul, India, Mumbai, Singapore, Singapore, Japan, Tokyo

Remote Type: Remote

Time Type: Full time

Job Description

You desire impactful work.
 

You’re RGA ready

RGA is a purpose-driven organization working to solve today’s challenges through innovation and collaboration. A Fortune 200 Company and listed among its World’s Most Admired Companies, we’re the only global reinsurance company to focus primarily on life- and health-related solutions. Join our multinational team of intelligent, motivated, and collaborative people, and help us make financial protection accessible to all.

Position Summary

Responsible for creating, driving, and executing standards, procedures, and processes that manage, mitigate, and reduce the risk of cyberattacks against RGA. Enable Global Security Operations by participating in operations, development, and engineering activities.

This role will serve as the technical lead for Insider Risk Management, responsible for building and maturing RGA's Insider Risk capabilities. The position will partner closely with Threat Detection, Threat Intelligence, Incident Response, Legal, Human Resources, Privacy, Compliance, and Technology teams to identify, investigate, and mitigate risks posed by malicious insiders, negligent users, compromised accounts, and trusted third parties.

What You Will Do

  • Participate in a 24/7 on-call rotation, alert triage, and incident investigations as required.
  • Drive one or more Security Operations functions, including incident response, threat detection, offensive security, and insider risk management.
  • Design, build, and enhance insider risk monitoring, detection, and investigative capabilities.
  • Develop and maintain detection use cases, workflows, and content across SIEM, UEBA, and Insider Risk platforms.
  • Lead complex investigations involving insider threats, compromised accounts, and suspicious user activity across endpoint, identity, email, cloud, and network environments.
  • Analyze and mitigate risks related to data exfiltration, privileged access misuse, fraud, policy violations, sensitive data exposure, and third-party access.
  • Develop automation and orchestration solutions using scripting, APIs, and SOAR technologies to improve operational efficiency and scale.
  • Perform advanced security analysis, threat emulation, detection validation, and telemetry assessments to strengthen monitoring capabilities.
  • Drive security audit, compliance, risk reduction, logging, and security tooling initiatives.
  • Deliver projects, dashboards, metrics, and reporting that improve security operations and reduce cyber risk.
  • Partner with Legal, Human Resources, Privacy, Compliance, Internal Audit, and Technology teams on investigations, risk assessments, and insider risk initiatives.
  • Provide technical leadership, mentoring, and guidance to junior team members.

Qualifications

  • Bachelor's Degree in Arts/Sciences (BA/BS) or equivalent experience.
  • 6+ years of experience in cybersecurity, security engineering, security operations, incident response, threat detection, threat hunting, offensive security, or insider threat/risk management.
  • 3+ years of experience developing automation, orchestration, and workflows to scale security operations.
  • Experience leading complex investigations, incident response activities, forensic analysis, and threat detection initiatives.
  • Experience developing security monitoring capabilities, behavioral analytics, metrics, reporting, and addressing telemetry gaps.
  • Experience leading purple team exercises, threat emulation, or detection validation activities preferred.
  • Strong knowledge of insider threat methodologies, security operations, threat detection engineering, identity security, data protection, and cloud security.
  • Experience with SIEM, EDR, UEBA, and threat intelligence platforms such as Splunk, Microsoft Sentinel, CrowdStrike, Microsoft Defender, Exabeam, or similar technologies.
  • Experience with Microsoft 365 security technologies, including Defender, Entra ID, Purview Insider Risk Management, and Data Loss Prevention (DLP), preferred.
  • Working knowledge of Windows, Mac, Linux, networking, cloud platforms (AWS, Azure, GCP), identity technologies (Active Directory, Okta, SAML, OAuth, OpenID Connect), email security, and DNS security.
  • Proficiency in PowerShell, Python, or similar scripting languages, including API integrations and security automation.
  • Strong analytical, investigative, problem-solving, and communication skills, with the ability to work independently in a globally distributed environment.
  • Understanding of legal, privacy, compliance, and regulatory considerations related to insider risk investigations preferred.
  • Professional cybersecurity certifications and industry contributions through conferences, publications, or technical communities preferred.

#LI-KW1

What you can expect from RGA:

  • Gain valuable knowledge from and experience with diverse, caring colleagues around the world.

  • Enjoy a respectful, welcoming environment that fosters individuality and encourages pioneering thought.

  • Join the bright and creative minds of RGA, and experience vast, endless career potential.

We’re excited to get to know you and connect your unique skills with our global opportunities. To create a modern and seamless experience, we use artificial intelligence (AI) in parts of our preliminary screening process. This technology helps us personalize job recommendations, automate interview scheduling, evaluate candidates based solely on experience—without considering name, gender, or other personal details—and provide real-time answers through our chatbot. AI is used only during early screening and never makes hiring decisions. Your RGA recruiter will work closely with you every step of the way to ensure the process feels personal, thoughtful, and focused on you.

Get Security Engineer jobs like this

New roles from thousands of companies land hourly, straight from their careers pages. Get the freshest matches by email so you never miss one.

Email me new jobs
CAE Inc. logo

Information Systems Security Officer

Pittsburgh, PA
✓ From careers page· 10m ago
CAE Inc. logo

Information Systems Security Officer

Altus, OK
✓ From careers page· 10m ago
CAE Inc. logo

Information Systems Security Officer

Charleston, SC
✓ From careers page· 11m ago
CAE Inc. logo

Information Systems Security Officer

McChord, WA
✓ From careers page· 11m ago

Frequently asked questions

What skills are required for Staff Insider Risk Engineer at RGA?

The required skills for Staff Insider Risk Engineer at RGA include: Cybersecurity, SIEM, Microsoft 365, PowerShell, Python, API, Splunk, AWS, Azure, GCP, Active Directory, SAML, OAuth, JIRA, Agile.

What is the seniority level for Staff Insider Risk Engineer at RGA?

Staff Insider Risk Engineer at RGA is a Staff / Senior level position.

How do I apply for Staff Insider Risk Engineer at RGA?

You can view the full description and apply for Staff Insider Risk Engineer at RGA on EchoJobs: https://echojobs.io/job/rga-staff-insider-risk-engineer-xfzv8.