Remotery

Senior Security Engineer, Data Loss Prevention

Posted Aug 5

This is a fully remote position, open to applicants in United States.

📋 Description

• Design, implement, and optimize enterprise DLP policies across Microsoft 365, endpoints, email, SaaS, cloud, and collaboration platforms.

• Identify, classify, and safeguard sensitive information through data classification, sensitivity labels, policy conditions, and enforcement measures.

• Monitor and investigate DLP alerts related to potential data exposure, improper sharing, indicators of data exfiltration, or policy breaches.

• Collaborate with Legal, Compliance, Privacy, Risk, Records, and business stakeholders to ensure DLP controls align with regulatory requirements.

• Develop and uphold DLP standards, operational procedures, runbooks, exception processes, and escalation workflows.

• Assess and enhance controls for collaboration and file-sharing platforms.

• Assist CASB and SaaS governance initiatives by identifying unsanctioned data movement, risky sharing practices, excessive permissions, and opportunities for policy enforcement.

• Conduct root cause analysis on recurring alerts, control deficiencies, and data handling challenges.

• Integrate DLP telemetry into SIEM, SOAR, monitoring, and response processes in collaboration with security, identity, messaging, endpoint, network, and application teams.

• Prepare communications regarding DLP findings, policy adjustments, and corrective actions.

• Provide technical guidance and mentorship to junior analysts and security team members.


⛳️ Requirements

• A minimum of 5 years of experience in cybersecurity, data protection, security operations, governance, risk, compliance, or equivalent technology roles, or a suitable combination of education and experience.

• Proficient understanding of DLP concepts, sensitive data management, information protection, data classification, and policy-based enforcement.

• Hands-on experience in supporting or managing enterprise security controls, particularly within Microsoft 365, email, endpoint, cloud, or SaaS platforms.

• Capability to analyze DLP alerts, user activities, sharing patterns, policy matches, and event logs.

• Working knowledge of identity and access principles, authentication mechanisms, file permissions, collaboration tools, and data-sharing workflows.

• Excellent written and verbal communication abilities.

• Capacity to convey technical findings in clear, practical, and business-relevant language.

• Ability to adhere to structured processes while continually seeking improvements.

• Familiarity with Microsoft Purview Information Protection and DLP, including sensitivity labels, trainable classifiers, DLP rules, audit logs, alerts, and policy tuning.

• Understanding of Microsoft Defender for Cloud Apps, CASB concepts, SaaS discovery, session controls, and cloud data exposure monitoring.

• Knowledge of security controls for endpoints, email, and collaboration across Windows, Microsoft 365, Exchange Online, Teams, SharePoint, and OneDrive.

• Familiarity with SIEM and security platforms such as Splunk, Microsoft Sentinel, QRadar, ArcSight, ELK, or similar tools.

• Understanding of sensitive data types and regulatory requirements including PII, PCI, PHI, financial data, client confidential information, legal matter data, and regulated business records.

• Knowledge of TCP/IP, DNS, HTTP/S, VPNs, proxies, firewalls, APIs, and cloud storage patterns.

• Preferred experience with Microsoft Purview DLP, Endpoint DLP, Information Protection, Insider Risk Management, eDiscovery, Audit, or Data Lifecycle Management.

• Preferred experience with CASB, SaaS security, cloud access governance, or file-sharing risk management.

• Preferred experience supporting investigations involving Legal, Compliance, Privacy, Risk, Records, HR, or regulatory stakeholders.

• Preferred experience with SOAR, ticketing, workflow automation, and process documentation.

• Relevant certifications are preferred, including Microsoft certifications, CISSP, SSCP, Security+, CISA, CISM, GIAC, or vendor-specific certifications.

• Legal authorization to work in the location of the offered position.

• Successful completion of the Firm’s pre-employment screening process and background check, where permitted.


🏝️ Benefits

• Hybrid & Remote work arrangements.

• Fragomen Academy.

• Leadership Academy.

• Practical Management Academy.

• Regional Development Conferences.

• Three managerial check-ins per year through the Feedback Works process.

• Programs supporting health and wellness.

• Programs promoting work-life balance.

• Benefits encompassing a wide array of well-being needs.

• Commitment to diversity, inclusion, and equal opportunity.

• Community support and giving-back initiatives.

• Sustainability initiatives.

People also viewed

New Monday1 day ago

IT Compliance and Information Security Consultant

DE flagGermany OnlyFull-timeCybersecurity / Security Engineer
ApplyView job
Lincoln Financial1 day ago

AVP, Cybersecurity AI Solutions Development

US flagNorth Carolina, +1 more stateFull-timeCybersecurity / Security Engineer$192.8k – $308.4k/year
ApplyView job
Optiv1 day ago

Senior Security Advisor – Threat Exposure Management

CA flagCanada OnlyFull-timeCybersecurity / Security Engineer$134k – $180k/year
ApplyView job
Pax81 day ago

Senior Manager, Cybersecurity Incident Response and Business Continuity

US flagUnited States OnlyFull-timeCybersecurity / Security Engineer$150k – $175k/year
ApplyView job
CACI International Inc1 day ago

Information Systems Security Engineering – ISSE

US flagIllinois OnlyFull-timeCybersecurity / Security Engineer$75.2k – $158.1k/year
ApplyView job
GitLab1 day ago

Staff Corporate Security Engineer

US flagUnited States, +1 more countryFull-timeCybersecurity / Security Engineer$168k – $238k/year
ApplyView job

Never miss a great job!

Get handpicked remote jobs straight to your inbox weekly.

Trusted by 7,400+ designers