
Senior Security Engineer, Data Loss Prevention
Posted Aug 5

Posted Aug 5
This is a fully remote position, open to applicants in United States.
• Design, implement, and optimize enterprise DLP policies across Microsoft 365, endpoints, email, SaaS, cloud, and collaboration platforms.
• Identify, classify, and safeguard sensitive information through data classification, sensitivity labels, policy conditions, and enforcement measures.
• Monitor and investigate DLP alerts related to potential data exposure, improper sharing, indicators of data exfiltration, or policy breaches.
• Collaborate with Legal, Compliance, Privacy, Risk, Records, and business stakeholders to ensure DLP controls align with regulatory requirements.
• Develop and uphold DLP standards, operational procedures, runbooks, exception processes, and escalation workflows.
• Assess and enhance controls for collaboration and file-sharing platforms.
• Assist CASB and SaaS governance initiatives by identifying unsanctioned data movement, risky sharing practices, excessive permissions, and opportunities for policy enforcement.
• Conduct root cause analysis on recurring alerts, control deficiencies, and data handling challenges.
• Integrate DLP telemetry into SIEM, SOAR, monitoring, and response processes in collaboration with security, identity, messaging, endpoint, network, and application teams.
• Prepare communications regarding DLP findings, policy adjustments, and corrective actions.
• Provide technical guidance and mentorship to junior analysts and security team members.
• A minimum of 5 years of experience in cybersecurity, data protection, security operations, governance, risk, compliance, or equivalent technology roles, or a suitable combination of education and experience.
• Proficient understanding of DLP concepts, sensitive data management, information protection, data classification, and policy-based enforcement.
• Hands-on experience in supporting or managing enterprise security controls, particularly within Microsoft 365, email, endpoint, cloud, or SaaS platforms.
• Capability to analyze DLP alerts, user activities, sharing patterns, policy matches, and event logs.
• Working knowledge of identity and access principles, authentication mechanisms, file permissions, collaboration tools, and data-sharing workflows.
• Excellent written and verbal communication abilities.
• Capacity to convey technical findings in clear, practical, and business-relevant language.
• Ability to adhere to structured processes while continually seeking improvements.
• Familiarity with Microsoft Purview Information Protection and DLP, including sensitivity labels, trainable classifiers, DLP rules, audit logs, alerts, and policy tuning.
• Understanding of Microsoft Defender for Cloud Apps, CASB concepts, SaaS discovery, session controls, and cloud data exposure monitoring.
• Knowledge of security controls for endpoints, email, and collaboration across Windows, Microsoft 365, Exchange Online, Teams, SharePoint, and OneDrive.
• Familiarity with SIEM and security platforms such as Splunk, Microsoft Sentinel, QRadar, ArcSight, ELK, or similar tools.
• Understanding of sensitive data types and regulatory requirements including PII, PCI, PHI, financial data, client confidential information, legal matter data, and regulated business records.
• Knowledge of TCP/IP, DNS, HTTP/S, VPNs, proxies, firewalls, APIs, and cloud storage patterns.
• Preferred experience with Microsoft Purview DLP, Endpoint DLP, Information Protection, Insider Risk Management, eDiscovery, Audit, or Data Lifecycle Management.
• Preferred experience with CASB, SaaS security, cloud access governance, or file-sharing risk management.
• Preferred experience supporting investigations involving Legal, Compliance, Privacy, Risk, Records, HR, or regulatory stakeholders.
• Preferred experience with SOAR, ticketing, workflow automation, and process documentation.
• Relevant certifications are preferred, including Microsoft certifications, CISSP, SSCP, Security+, CISA, CISM, GIAC, or vendor-specific certifications.
• Legal authorization to work in the location of the offered position.
• Successful completion of the Firm’s pre-employment screening process and background check, where permitted.
• Hybrid & Remote work arrangements.
• Fragomen Academy.
• Leadership Academy.
• Practical Management Academy.
• Regional Development Conferences.
• Three managerial check-ins per year through the Feedback Works process.
• Programs supporting health and wellness.
• Programs promoting work-life balance.
• Benefits encompassing a wide array of well-being needs.
• Commitment to diversity, inclusion, and equal opportunity.
• Community support and giving-back initiatives.
• Sustainability initiatives.
New Monday
Lincoln Financial
Optiv
Pax8
Get handpicked remote jobs straight to your inbox weekly.