via Workday
$85K - 120K a year
Conduct assessments of human-centric cyber risks and manage DLP strategies to protect sensitive information.
5-7 years in Information Security focusing on human cyber risk and data protection, bachelor's degree, and knowledge of NIST or ISO 27001.
About Gartner IT: Join a world-class team of skilled engineers who build creative digital solutions to support our colleagues and clients. We make a broad organizational impact by delivering cutting-edge technology solutions that power Gartner. Gartner IT values its culture of nonstop innovation, an outcome-driven approach to success, and the notion that great ideas can come from anyone on the team. About the role Gartner’s Information Security Team is a group of passionate information security professionals dedicated to Protecting, Detecting, and Responding to threats. Our team is filled with lifelong learners who are consistently researching ways to better defend and stay ahead of the threats of tomorrow. We are a collaborative group, where good ideas come together whether they come from the most experienced or the newest members of the team. We're looking for a well-rounded and motivated Lead Security Analyst to join our Human Cyber Risk & Assessment Team. In this critical role, you'll be instrumental in safeguarding our organization from human-centric cyber threats. You'll leverage your expertise in information security best practices to identify, assess, and mitigate risks associated with human behavior, ensuring the protection of our sensitive data and systems. This is an excellent opportunity for a professional with 5-7 years of experience in Information Security who is passionate about proactive security measures and building a strong security posture. What you will do: Conduct comprehensive assessments of human-centric cyber risks, identifying vulnerabilities and potential attack vectors tied to human actors like phishing, social engineering, and insider threats. Design, implement, and manage Data Loss Prevention (DLP) strategies and controls to prevent unauthorized disclosure or exfiltration of sensitive information. You'll also monitor DLP alerts, investigate incidents, and recommend remediation steps. Develop and implement programs to detect, analyze, and mitigate insider risks, including monitoring user behavior and collaborating with relevant stakeholders (e.g., HR, Legal) on incident response. Stay ahead of current attack vectors, trends, and techniques used by threat actors targeting human vulnerabilities, proactively identifying emerging threats and recommending countermeasures. Advocate for and ensure adherence to information security best practices across the organization, especially regarding human behavior and data handling. Configure, monitor, and optimize security tools relevant to human cyber risk. Support during security incidents related to human-centric threats, assisting with investigation, containment, eradication, and recovery efforts. Contribute to the development and delivery of security awareness training programs to educate employees on human cyber risks and best practices. Generate reports on human cyber risk posture, incident metrics, and the effectiveness of security controls, while maintaining accurate documentation of security processes. Collaborate with cross-functional teams, including IT Operations, Legal, HR, and other security teams, to achieve security objectives. Present Security Risk Findings to Leadership Assist with mentoring Junior Level Analyst What you will need: Bachelor's degree in Computer Science, Information Security, or a related field (relevant experience may be considered in lieu of a degree). 5-7 years of hands-on experience in Information Security, with a focus on human cyber risk, data loss prevention, and insider threat. Strong understanding of information security best practices, frameworks (e.g., NIST, ISO 27001), and regulatory requirements. In-depth knowledge of Data Loss Prevention (DLP) principles, technologies, and implementation strategies. Proven experience with Insider Risk Management methodologies and tools. Familiarity with current attack vectors tied to human actors, including phishing, social engineering, business email compromise (BEC), and malware delivery. Must have: Technical & Data Security Capabilities Hands-on experience with Data Loss Prevention (DLP) and Data Security Posture Management (DSPM) platforms to govern unstructured data and prevent exfiltration. Experience with Email Security platforms and Endpoint Protection tools (device control, USB policy enforcement, local storage monitoring). Proficiency in analyzing data security telemetry across cloud platforms (e.g., M365 Purview, Google Workspace, OneDrive/SharePoint). Human Cyber Risk & Governance Experience analyzing human risk indicators, insider threat telemetry, or security awareness campaign metrics (e.g., phishing performance, EDP training completions). Understanding of Acceptable Use Policies (AUP) and experience managing risk-based exception workflows without causing business disruption. Professional & Analytical Skills Strong analytical skills with a proven track record of investigating data security alerts, performing root-cause analysis, and evaluating complex employee risk profiles. Exceptional written and verbal communication skills, specifically the ability to conduct empathetic yet firm security remediations with employees and present risk insights to leadership (HR, Legal, IT). Self-starter with the ability to manage independent investigations while collaborating seamlessly across a global security organization. Nice to have: Relevant security certifications (e.g., CISSP, CISM, GSEC, Security+, SSAP). Who you are: A lifelong learner with a desire for continuous personal and professional development. Someone with proven communication, collaboration, and critical thinking skills. Able to build trusting, meaningful relationships with peers, stakeholders, partners, and suppliers. Capable of defining and communicating risk in a business-relevant language to both non-technical and technical audiences including Leadership teams. Someone who can apply expert knowledge to solve complex business/technical issues. Don’t meet every single requirement? We encourage you to apply anyway. You might just be the right candidate for this, or other roles! What you will get: Competitive compensation. Limitless growth and learning opportunities. Ongoing mentorship and apprenticeship; Leadership courses, development programs, technical courses, certification opportunities and more! A collaborative and positive culture - join a diverse team of professionals that are as smart and driven as you. A chance to make an impact – your work will contribute directly to our strategy. Hybrid Work Environment - enjoy the flexibility of working from home and the energy of collaborating with peers in our dynamic offices. 20+ PTO days plus holidays and floating holidays in your first year. Extensive medical, dental insurance and vision plan. 401K with corporate match, immediate vesting. Health-and-wellness-related allowance programs. Parental leave. Tuition reimbursement. Employee Stock Purchase Plan. Employee Assistance Program. Gartner Gives Charity Match. And much more! #LI-Hybrid #LI-TW1 Who are we? At Gartner, Inc. (NYSE:IT), we guide the leaders who shape the world. Our mission relies on expert analysis and bold ideas to deliver actionable, objective business and technology insights, helping enterprise leaders and their teams succeed with their mission-critical priorities. Since our founding in 1979, we’ve grown to 20,000 associates globally who support over 13,000 client enterprises in ~90 countries and territories. We do important, interesting and substantive work that matters. That’s why we hire associates with the intellectual curiosity, energy and drive to want to make a difference. The bar is unapologetically high. So is the impact you can have here. What makes Gartner a great place to work? Our vast, virtually untapped market potential offers limitless opportunities – opportunities that may not even exist right now – for you to grow professionally and flourish personally. How far you go is driven by your passion and performance. We hire remarkable people who collaborate and win as a team. Together, our singular, unifying goal is to deliver results for our clients. Our teams are inclusive and composed of individuals from different geographies, cultures, religions, ethnicities, races, genders, sexual orientations, abilities and generations. We invest in great leaders who bring out the best in you and the company, enabling us to multiply our impact and results. This is why, year after year, we are recognized worldwide as a great place to work. Gartner is the world authority on AI At Gartner, you’ll join a company at the very center of the AI revolution. Gartner has proactive, objective guidance throughout clients’ AI journeys. We set the standard for how organizations leverage artificial intelligence to drive meaningful impact. You’ll have access to unmatched resources, expertise, and technology, and play a key role in helping Gartner and our clients innovate and grow as we leverage AI to transform business and technology landscapes. It’s an exciting time to be at Gartner, with limitless opportunities to make a real impact, grow your skills, and build a lasting, meaningful career in a field that’s reshaping the way we operate. If you’re passionate about AI and want to be part of a team that’s guiding the leaders who shape the world, Gartner is the place for you. What do we offer? Gartner offers world-class benefits, highly competitive compensation and disproportionate rewards for top performers. In our hybrid work environment, we provide the flexibility and support for you to thrive — working virtually when it's productive to do so and getting together with colleagues in a vibrant community that is purposeful, engaging and inspiring. Ready to grow your career with Gartner? Join us. Gartner believes in fair and equitable pay. A reasonable estimate of the base salary range for this role is 94,000 USD - 134,000 USD. Please note that actual salaries may vary within the range, or be above or below the range, based on factors including, but not limited to, education, training, experience, professional achievement, business need, and location. In addition to base salary, employees will participate in either an annual bonus plan based on company and individual performance, or a role-based, uncapped sales incentive plan. Our talent acquisition team will provide the specific opportunity on our bonus or incentive programs to eligible candidates. We also offer market leading benefit programs including generous PTO, a 401k match up to $7,200 per year, the opportunity to purchase company stock at a discount, and more. The policy of Gartner is to provide equal employment opportunities to all applicants and employees without regard to race, color, creed, religion, sex, sexual orientation, gender identity, marital status, citizenship status, age, national origin, ancestry, disability, veteran status, or any other legally protected status and to seek to advance the principles of equal employment opportunity. Gartner is committed to being an Equal Opportunity Employer and offers opportunities to all job seekers, including job seekers with disabilities. If you are a qualified individual with a disability or a disabled veteran, you may request a reasonable accommodation if you are unable or limited in your ability to use or access the Company’s career webpage as a result of your disability. You may request reasonable accommodations by calling Human Resources at +1 (203) 964-0096 or by sending an email to ApplicantAccommodations@gartner.com. Job Requisition ID:112466 By submitting your information and application, you confirm that you have read and agree to the country or regional recruitment notice linked below applicable to your place of residence. Gartner Applicant Privacy Link: https://jobs.gartner.com/applicant-privacy-policy For efficient navigation through the application, please only use the back button within the application, not the back arrow within your browser.
This job posting was last updated on 8/12/2026