Demo

Cybersecurity Operations (Insider Threat Investigations Lead)

Ares Operations LLC
York, NY Full Time
POSTED ON 1/14/2026
AVAILABLE BEFORE 2/13/2026
Over the last 20 years, Ares’ success has been driven by our people and our culture. Today, our team is guided by our core values – Collaborative, Responsible, Entrepreneurial, Self-Aware, Trustworthy – and our purpose to be a catalyst for shared prosperity and a better future. Through our recruitment, career development and employee-focused programming, we are committed to fostering a welcoming and inclusive work environment where high-performance talent of diverse backgrounds, experiences, and perspectives can build careers within this exciting and growing industry. Job Description PRIMARY FUNCTIONS AND ESSENTIAL RESPONSIBILITIES: Use monitoring and detection platforms to investigate anomalous and potentially risky activity Lead investigations, coordinating support from other teams where required Advise and assist in the onboarding and operationalization of a new Insider Threta tool. Evaluate other tooling as needed. Create standard operating procedures for investigations and cross-functional processes Prepare chain-of-evidence and engage with Legal counsel, if/when required Help establish and maintain investigative standards, workflows, and documentation practices Ensure investigative activities comply with legal, regulatory, and ethical requirements related to privacy, labor law, and corporate governance General Requirements: Candidate should be willing to work flexible hours when needed due to the nature of insider threats Candidate should be able to work in a hybrid capacity from the local Ares office Strong analytical, critical thinking, and problem-solving skills High level of personal integrity, and the ability to professionally handle confidential matters and show an appropriate level of judgment and maturity Ability to interact effectively at all levels with sensitivity to cultural diversity Ability to adapt as the external environment and organization evolves Passionate about Insider Threat and has the inclination to learn current technologies / concepts / improvements Experience with User and Entity Behavior Analytics (UEBA) platforms and methodologies. Ability to develop and tune behavioral baselines and anomaly detection models. Knowledge of cyber security frameworks and attack methodologies Understanding of common Attack methods and their SIEM signatures Understanding of network protocols (TCP/IP stack, SSL/TLS, IPSEC, SMTP/IMAP, FTP, HTTP etc.) Understanding of Operating System, Web Server, database, and Security devices (firewall/NIDS/NIPS) logs and log formats Knowledge of physical security especially as it intersects with cybersecurity Understanding of Identity and Access Management, authentication, and authorization Understanding of cloud identity models, privileged access management, and data exfiltration risks in cloud environments Knowledge of intrusion detection methodologies and techniques for detecting host- and network- based intrusions via intrusion detection technologies Excellent verbal and written English communication skills Ability to prioritize tasks based on the risk they pose to the enterprise Experience working with Python, R, or Jupyter Notebooks for data analysis and threat modeling a plus, but not required. Experience with the following tools would be an advantage, but not essential: SIEM (e.g. Microsoft Sentinel, Splunk, Securonix) EDR/XDR (e.g. SentinelOne, Carbon Black, Crowdstrike Falcon) Vulnerability Management (e.g. Tenable Nessus, Rapid7, Qualys) Attack Surface Management (e.g. Shodan, Randori, HackerOne) Network Detection and Response (e.g. Vectra AI, Darktrace DETECT, ExtraHop Reveal) Insider Threat Management (e.g. DTEX, Proofpoint ITM, Microsoft Insider Risk) QUALIFICATIONS: Bachelor’s degree in Computer Science, Information Technology, Business or equivalent discipline or demonstrated requisite years of experience for on-the-job training. Recommended: Professional Certifications such as CISSP, CCSK, GIAC, or OSCP Between 10-15 years of experience in Enterprise Cybersecurity in the financial, government, military, law enforcement or technology sector Previous experience supporting or leading incident response or detection engineering functions Deep understanding of insider threat indicators, data exfiltration patterns, analyzing and correlating activities from different tools, and cybercrime tactics Experience with timely deliveries Experience preferred with threat hunting, incident response, SIEM, Data Loss Prevention and Insider Threat platforms. Experience with offensive security practices (e.g. red teaming, penetration testing) is an advantage Deep understanding and practice of operational security Candidate should be willing to work flexible hours when needed due to the nature of insider threats Candidate should be able to work in a hybrid capacity from the local Ares office Strong analytical, critical thinking, and problem-solving skills High level of personal integrity, and the ability to professionally handle confidential matters and show an appropriate level of judgment and maturity Ability to interact effectively at all levels with sensitivity to cultural diversity Reporting Relationships Head of Cybersecurity Operations Compensation The anticipated base salary range for this position is listed below. Total compensation may also include a discretionary performance-based bonus. Note, the range takes into account a broad spectrum of qualifications, including, but not limited to, years of relevant work experience, education, and other relevant qualifications specific to the role. $210,000 - $230,000 The firm also offers robust Benefits offerings. Ares U.S. Core Benefits include Comprehensive Medical/Rx, Dental and Vision plans; 401(k) program with company match; Flexible Savings Accounts (FSA); Healthcare Savings Accounts (HSA) with company contribution; Basic and Voluntary Life Insurance; Long-Term Disability (LTD) and Short-Term Disability (STD) insurance; Employee Assistance Program (EAP), and Commuter Benefits plan for parking and transit. Ares offers a number of additional benefits including access to a world-class medical advisory team, a mental health app that includes coaching, therapy and psychiatry, a mindfulness and wellbeing app, financial wellness benefit that includes access to a financial advisor, new parent leave, reproductive and adoption assistance, emergency backup care, matching gift program, education sponsorship program, and much more. There is no set deadline to apply for this job opportunity. Applications will be accepted on an ongoing basis until the search is no longer active. Ares Management Corporation (NYSE: ARES) is a leading global alternative investment manager offering clients complementary primary and secondary investment solutions across the credit, real estate, private equity and infrastructure asset classes. We seek to provide flexible capital to support businesses and create value for our stakeholders and within our communities. By collaborating across our investment groups, we aim to generate consistent and attractive investment returns throughout market cycles. As of March 31, 2025, Ares Management's global platform had approximately $546 billion of assets under management(1) with more than 4,100 employees operating across North America, South America, Europe, Asia Pacific and the Middle East. For more information, please visit www.aresmgmt.com. Ares Management LLC (together with its related operating and administrative subsidiaries, “Ares Management”) is an Equal Employment Opportunity employer and considers all applicants for employment without regard to race, color, religion, ethnicity, creed, sex, age, national origin, alienage or citizenship status, disability, medical condition, pregnancy, marital status, partnership status, sexual orientation, status regarding public assistance, military or veteran status, domestic violence victim status, gender identity and expression, transgender status, genetic information, status as unemployed, political affiliation or any other characteristic protected by federal, state or local law. Ares Management will consider for employment qualified applicants with criminal histories in a manner consistent with the requirements of the Fair Chance Initiative for Hiring Ordinance. (1) As of March 31, 2025. AUM amounts include funds managed by Ivy Hill Asset Management, LP., a wholly owned portfolio company of Ares Capital Corporation and registered investment adviser.

Salary : $210,000 - $230,000

If your compensation planning software is too rigid to deploy winning incentive strategies, it’s time to find an adaptable solution. Compensation Planning
Enhance your organization's compensation strategy with salary data sets that HR and team managers can use to pay your staff right. Surveys & Data Sets

What is the career path for a Cybersecurity Operations (Insider Threat Investigations Lead)?

Sign up to receive alerts about other jobs on the Cybersecurity Operations (Insider Threat Investigations Lead) career path by checking the boxes next to the positions that interest you.
Income Estimation: 
$163,631 - $209,073
Income Estimation: 
$192,911 - $256,346
Income Estimation: 
$163,631 - $209,073
Income Estimation: 
$192,911 - $256,346
Income Estimation: 
$99,793 - $130,112
Income Estimation: 
$125,027 - $157,872
Income Estimation: 
$228,678 - $310,400
Income Estimation: 
$282,790 - $435,557
Income Estimation: 
$214,167 - $272,269
Income Estimation: 
$150,041 - $190,701
View Core, Job Family, and Industry Job Skills and Competency Data for more than 15,000 Job Titles Skills Library

Job openings at Ares Operations LLC

  • Ares Operations LLC Los Angeles, CA
  • Over the last 20 years, Ares' success has been driven by our people and our culture. Today, our team is guided by our core values – Collaborative, Responsi... more
  • 6 Days Ago

  • Ares Operations LLC York, NY
  • Over the last 20 years, Ares’ success has been driven by our people and our culture. Today, our team is guided by our core values – Collaborative, Responsi... more
  • 11 Days Ago

  • Ares Operations LLC Bellevue, WA
  • Over the last 20 years, Ares’ success has been driven by our people and our culture. Today, our team is guided by our core values – Collaborative, Responsi... more
  • Just Posted

  • Ares Operations LLC York, NY
  • Over the last 20 years, Ares’ success has been driven by our people and our culture. Today, our team is guided by our core values – Collaborative, Responsi... more
  • Just Posted


Not the job you're looking for? Here are some other Cybersecurity Operations (Insider Threat Investigations Lead) jobs in the York, NY area that may be a better fit.

  • Con Edison Company of New York York, NY
  • Overview The System Analyst will join Con Edison's Cybersecurity Operations team. This team implements and utilizes various tools and processes to build, r... more
  • 18 Days Ago

  • Lensa York, NY
  • Lensa is a career site that helps job seekers find great jobs in the US. We are not a staffing firm or agency. Lensa does not hire directly for these jobs,... more
  • 9 Days Ago

AI Assistant is available now!

Feel free to start your new journey!