Insider Threat Investigator
Company: Robinhood
Location: Menlo Park
Posted on: April 1, 2026
|
|
|
Job Description:
Join us in building the future of finance. Our mission is to
democratize finance for all. An estimated $124 trillion of assets
will be inherited by younger generations in the next two decades.
The largest transfer of wealth in human history. If you’re ready to
be at the epicenter of this historic cultural and financial shift,
keep reading. About the team role We are building an elite team,
applying frontier technologies to the world’s biggest financial
problems. We’re looking for bold thinkers. Sharp problem-solvers.
Builders who are wired to make an impact. Robinhood isn’t a place
for complacency, it’s where ambitious people do the best work of
their careers. We’re a high-performing, fast-moving team with
ethics at the center of everything we do. Expectations are high,
and so are the rewards. At Robinhood, security is foundational to
trust. The Insider Trust team sits at the center of that mission:
protecting Robinhood and our customers from risks that originate
from within. We operate at the intersection of security, people,
and risk, working closely with Legal, People Relations, Physical
Security, Detection & Response, and business leaders to address
complex and sensitive situations. This is a hands-on investigative
and analytical role for someone who thrives in ambiguity, can
connect disparate signals, and is motivated to uncover the truth
behind risky behavior. You will support and execute investigations
today, while building toward owning more complex cases over time.We
operate with a bias for action: moving quickly to assess and
mitigate risk while enabling the business to continue operating
effectively. Our goal is not to slow teams down, but to help them
move fast, safely. This role includes occasional travel to support
high-priority investigations and on-site security assessments. This
role is based in our Menlo Park, CA office, with in-person
attendance expected at least 3 days per week. At Robinhood, we
believe in the power of in-person work to accelerate progress,
spark innovation, and strengthen community. Our office experience
is intentional, energizing, and designed to fully support
high-performing teams. What you’ll do Support & Execute Insider
Threat Investigations: Conduct investigations into potential
insider threats, including data exfiltration and policy violations.
Partner with senior investigators while building toward independent
case ownership. Analyze Behavioral & Technical Signals: Correlate
data across endpoints, cloud systems, and user activity (DLP, UEBA,
SIEM) to identify risk patterns and anomalies. Turn Signals into
Insights: Go beyond alerts - develop context, identify intent, and
surface insights that drive action. Contribute to Risk Reduction
Efforts: Support initiatives aimed at reducing insider risk,
including identifying control gaps, improving detections, and
strengthening investigative processes. Support Nation-State Risk
Mitigation Efforts: Assist in identifying and evaluating potential
insider risk tied to external influence, including nation-state
actor tactics such as coercion, infiltration, or data targeting.
Partner Cross-Functionally: Collaborate with Legal, People
Relations, Physical Security, and Detection & Response to ensure
investigations are aligned, defensible, and effective. Produce
Clear, Actionable Reporting: Document findings in a concise,
structured manner with evidence-based recommendations. Help Build
Scalable Processes: Contribute to playbooks, workflows, and
automation efforts that make investigations more efficient and
repeatable. Operate with Speed and Pragmatism: Move quickly in
high-pressure situations, helping the business mitigate risk
without creating unnecessary friction. We prioritize enabling teams
to operate safely, not slowing them down. What you bring 5 years of
insider threat, investigations, or related security roles
Experience supporting or conducting investigations involving user
behavior, data misuse, or policy violations Strong understanding
of: Insider threat patterns and risk indicators Data exfiltration
methods Investigative techniques Experience working with tools such
as: DLP, UAM, UEBA, and SIEM Endpoint and/or cloud telemetry
Ability to analyze large datasets and identify meaningful patterns
Strong critical thinking and ability to connect technical signals
to human behavior Solid written communication skills with the
ability to clearly explain findings Comfortable working in
fast-paced, ambiguous environments Why this role matters Insider
risk is one of the hardest problems in security: high-impact, low
signal, and often hidden in normal behavior. This role helps
protect: Customer data Company IP Financial integrity Trust in the
platform You will play a direct role in identifying risk early,
supporting critical investigations, and helping Robinhood stay
ahead of both internal threats and externally influenced insider
risk. What we offer Challenging, high-impact work to grow your
career. Performance-driven compensation with multipliers for
outsized impact, bonus programs, equity ownership, and 401(k)
matching. Best-in-class benefits to fuel your work, including 100%
paid health insurance for employees with 90% coverage for
dependents. Lifestyle wallet — a highly flexible benefits spending
account for wellness, learning, and more. Employer-paid life &
disability insurance, fertility benefits, and mental health
benefits. Time off to recharge including company holidays, paid
time off, sick time, parental leave, and more! Exceptional office
experience with catered meals, events, and comfortable workspaces.
In addition to the base pay range listed below, this role is also
eligible for bonus opportunities equity benefits. Base pay for the
successful applicant will depend on a variety of job-related
factors, which may include education, training, experience,
location, business needs, or market demands. The expected base pay
range for this role is based on the location where the work will be
performed and is aligned to one of 3 compensation zones. For other
locations not listed, compensation can be discussed with your
recruiter during the interview process. Base Pay Range: Zone 1
(Menlo Park, CA; New York, NY; Bellevue, WA; Washington, DC)
$140,000 - $165,000 USD Zone 2 (Denver, CO; Westlake, TX; Chicago,
IL) $123,000 - $145,000 USD Zone 3 (Lake Mary, FL; Clearwater, FL;
Gainesville, FL) $110,000 - $129,000 USD Click here to learn more
about our Total Rewards, which vary by region and entity. If our
mission energizes you and you’re ready to build the future of
finance, we look forward to seeing your application. Robinhood
provides equal opportunity for all applicants, offers reasonable
accommodations upon request, and complies with applicable equal
employment and privacy laws. Inclusion is built into how we hire
and work—welcoming different backgrounds, perspectives, and
experiences so everyone can do their best. Please review the for
your country of application.
Keywords: Robinhood, San Mateo , Insider Threat Investigator, IT / Software / Systems , Menlo Park, California