LinkedIn logo
LinkedInPosted 2 weeks ago

Sr. Technical Investigator, Trust Investigations Account Security

$136,000–$221,000 year

HybridMountain View Santa Clara County, California, United States

Full TimeSenior LevelAssociates DegreeEnterpriseInternet

Job Summary

Lead root-cause investigations into complex, coordinated, or high-impact account security campaigns, including account rental/seat-sharing networks, from initial leads through resolution. Serve as incident commander for major account-compromise incidents, coordinating response and ensuring timely, accurate resolution and member remediation. Author detection rules and data pipelines tuned specifically to ATO patterns and typologies like session hijacking, MFA bypass, and device/network fingerprint anomalies. Partner with Engineering and Data Science to build and refine analysis, threat-hunting, and mitigations for account abuse. Mentor other investigators on technical, investigative, and tooling capabilities, fostering a culture of rigor and continuous learning. Work with product, engineering, and data science partners to develop detection rules, pipelines, and runbooks that help stop account takeover and account rental activity at scale.

Required Qualifications

  • Bachelor's Degree in a related technical discipline, or equivalent practical experience
  • 5+ years of experience with scripting or data analysis tools (SQL, Python, or similar), with the ability to synthesize complex data into actionable insights
  • 5+ years of experience in proactive threat investigations of account, content, or behavioral abuse in trust & safety, social media, online platforms, or fintech — including meaningful direct experience with account takeover, credential compromise, or authentication abuse
  • 3+ years of experience with investigation techniques/tools and evidence handling, including working across diverse structured and unstructured data sets
  • This role will be based in Mountain View, CA
  • The work location of this role is hybrid, meaning it will be performed both from home and from a LinkedIn office on select days, as determined by the business needs of the team

Desired Qualifications

  • Master's Degree in Cyber Security, Criminal Justice, Computer Science, or a related technical discipline
  • Direct experience building or maintaining detection rules, alerting logic, or data pipelines (not just consuming them)
  • Strong technical acumen and the ability to translate data and investigative outcomes into actionable insights for engineering, AI, and senior leadership partners
  • Experience leading proactive threat hunting against large-scale, coordinated account takeover or credential-abuse operations
  • Familiarity with authentication and session security concepts (MFA/2FA, passkeys, device/session fingerprinting, cookie and token security) and how they're exploited or defended
  • Experience with frameworks such as MITRE ATT&CK or the cyber kill chain, and the ability to adapt them to account takeover and authentication-abuse typologies
  • Demonstrated ability to navigate cross-functional dependencies and drive collaboration across engineering, product, data science, and legal teams
  • Excellent written and verbal communication skills, with the ability to influence across all levels of an organization
  • Experience mentoring or developing other investigators
  • Experience working in global teams spanning multiple locations and time zones

Hiring someone like this?

Get your role in front of qualified candidates on Sorce.

Get started

Apply to this job in one click with Sorce

Apply on Sorce