Monitor and investigate DLP alerts generated by Microsoft Purview, Egress, and endpoint agents across Intune (Windows) and JAMF (macOS)
Administer and maintain DLP tools and technologies, ensuring they are configured correctly and functioning as intended
Analyze incidents to determine true positives, identify root causes, and recommend remediation actions
Define, implement, and review DLP policies, data classification, and conditional access rules to ensure alignment with business needs, regulatory requirements, and to stay current with evolving threats and industry standards
Lead discussions with Information Security, Compliance, Legal, HR, and IT to identify and mitigate data handling risks
Conduct periodic reviews of data movement patterns and access controls to ensure ongoing policy effectiveness
Maintain security configurations in Microsoft Intune and JAMF Pro to support DLP enforcement at the endpoint level
Lead the development and execution of governance and lifecycle processes for security policies, including documentation, change control, exception handling, and awareness initiatives
Responsible for audit and compliance reporting for data protection controls and assist with incident investigations involving potential data exposure
Develop and maintain a playbook for data leakage scenarios, policy violations, and insider threat alerts
Develop and conduct training sessions and awareness programs to educate employees on data security best practices and the importance of adhering to DLP policies
Hybrid role, with occasional after-hours support for incident response or high-severity investigations
Participation in on-call rotations may be required for DLP-related incidents.
Requirements
Bachelor’s degree in Cybersecurity, Information Technology, or a related field, or equivalent experience
7+ years of experience in cybersecurity, with at least 5 years focused on Data Loss Prevention
Hands-on experience with Microsoft Purview DLP, Egress, Microsoft Intune, and JAMF Pro preferred
Strong understanding of data classification, endpoint protection, email encryption, and cloud DLP
Familiarity with conditional access policies, Microsoft Entra ID (Azure AD), and Zero Trust principles
Working knowledge of security frameworks and regulatory standards (e.g., GDPR, HIPAA, ISO 27001, PCI-DSS)
Relevant security certifications (e.g., Microsoft SC-400, SC-300, CompTIA Security+, CISSP, CISM, CDPSE, GIAC) are highly desirable
5+ years of experience in a Security Operations Center (SOC) or with SIEM integration for DLP events
Knowledge of insider risk detection, UEBA, or behavioral analytics
Experience collaborating in cross-functional global teams on policy development or risk mitigation.
IT & Security Analyst managing IT operations and security for WEBTOON Entertainment in Los Angeles. Collaborating with global security teams and overseeing user access and security systems.
Information Security Analyst managing critical governance, risk, and compliance topics. Leading incident responses and security policy development in a hybrid work model.
Information Security Analyst overseeing access management for SKY applications, ensuring security compliance and incident management. Involves technical support and lifecycle management of requests.
Cyber Security Analyst enhancing cyber resilience for the Swiss financial sector with a focus on threat intelligence. Collaborating closely with partners and regulatory agencies to safeguard against cyber threats.
Junior Information Security Analyst at Dotz supporting IT in security solutions and information asset protection. Engaging with various technology areas and projects on cybersecurity initiatives.
Cybersecurity Analyst developing and implementing information security programs at WebTPA. Liaising between IT and business partners, addressing security requirements throughout project life cycle.
Cyber Security Analyst managing user access and security for all company applications at a non - profit organization. Collaborating with teams to monitor cyber security incidents and ensure compliance with policies.
Cyber Security Analyst managing cyber security incidents and improving resilience at Heathrow Airport. Leading response playbook development and simulation exercises for effective incident handling.
Security Operations Analyst responsible for monitoring and analyzing security events at Gen Digital. Collaborating with experts to protect global systems and data while enhancing cybersecurity posture.