About the role

  • Data Loss Prevention Engineer implementing and operating data loss prevention programs to protect sensitive data. Collaborating with business stakeholders on data security while minimizing operational impact.

Responsibilities

  • Design, implement, and maintain DLP policies across endpoint, network, email, and cloud platforms to prevent unauthorized data disclosure.
  • Develop and maintain complex detection patterns using regular expressions (regex), keyword matching, file fingerprinting, and metadata-based rules for identifying sensitive data (PII, PHI, PCI, intellectual property, etc.).
  • Configure and tune DLP rules to detect sensitive data across structured and unstructured formats including documents, databases, emails, web traffic, and cloud storage.
  • Continuously optimize detection accuracy by reducing false positives while maintaining effective coverage of true data exposure risks.
  • Monitor, analyze, and investigate DLP alerts and events to determine if they represent genuine data exposure risks or false positives.
  • Conduct detailed analysis of flagged events including reviewing content snippets, user behavior patterns, file metadata, and transmission channels.
  • Correlate DLP events with other security data sources (SIEM, endpoint detection, user behavior analytics) to identify potential insider threats or data exfiltration attempts.
  • Document investigation findings and provide clear recommendations on incident severity, required remediation actions, and policy adjustments.
  • Escalate confirmed data exposure incidents to the incident response team and support forensic investigations as needed.
  • Engage with engineering teams to maintain and optimize DLP infrastructure including agents, network sensors, cloud connectors, and management consoles.
  • Develop and maintain automated workflows for alert triage, policy updates, and reporting.
  • Create and maintain comprehensive documentation of DLP policies, detection patterns, investigation procedures, and operational runbooks.
  • Test new DLP rules and policies in non-production environments before deployment to minimize business disruption.
  • Integrate DLP systems with other security tools including SIEM, SOAR, ticketing systems, and data classification platforms.

Requirements

  • Bachelor degree in Computer Science, Information Security, Information Technology, or related field.
  • 3-5 years of experience in cybersecurity with at least 2 years focused on data loss prevention, data security, or security operations.
  • Strong proficiency in regular expressions (regex) for pattern matching and data identification.
  • Experience with enterprise DLP solutions.
  • Understanding of data classification frameworks and sensitive data types (PII, PHI, PCI, trade secrets, intellectual property).
  • Knowledge of data transmission protocols and common data exfiltration channels (email, web uploads, removable media, cloud storage, messaging platforms).
  • Strong analytical skills with ability to investigate security events and distinguish true positives from false positives.
  • Experience with SIEM platforms and security event correlation.
  • Basic Proficiency with scripting or automation (Python, PowerShell, or similar) for data analysis and workflow automation.
  • Excellent written and verbal communication skills with ability to explain technical findings to non-technical stakeholders.
  • Understanding of data privacy regulations such as GDPR, CCPA, HIPAA, and PCI-DSS.

Benefits

  • Medical, Dental, and Vision insurance
  • Basic and Supplemental Life Insurance options
  • 401(k) retirement plans with company match
  • Health Spending Accounts (HSA/FSA)
  • Flexible time off and 11 paid holidays
  • Family-building benefits, including Maternity, Adoption, and Parental Leave
  • Tuition Reimbursement and certification support, reflecting our commitment to lifelong learning
  • Wellness and Mental Health counseling services
  • Concierge and work/life support resources
  • Adoption Assistance Reimbursement
  • Perks and discount programs

Job title

Engineer, Data Loss Prevention

Job type

Experience level

Mid levelSenior

Salary

$91,365 - $152,274 per year

Degree requirement

Bachelor's Degree

Location requirements

Report this job

See something inaccurate? Let us know and we'll update the listing.

Report job