Job Description
The Senior Data Protection Analyst serves as a technical lead for our Data Loss Prevention (DLP) and
Data Security Posture Management (DSPM) initiatives. This position is responsible for designing,
implementing, and managing enterprise-grade data security technologies and processes that prevent
unauthorized data exposure, ensure regulatory compliance, and reduce risk to sensitive data across
hybrid cloud environments.
Performs other projects and duties as assigned.
Essential Functions, Duties and Responsibilities
Serve as the subject matter expert and technical lead for DLP and DSPM initiatives.Define technical architecture and roadmaps for data security technologies, ensuring alignmentwith broader security and compliance goals.
Lead proof-of-concepts (POCs),solution evaluations, and deployments of DLP / DSPM platforms.Develop and maintain DLP policies, rulesets, and response workflows for endpoint, network,cloud, and email channels.
Monitor and tune DLP alerts, ensuring high fidelity and low false positive rates.Collaborate with incident response and investigations teams on DLP-related events and escalations.Implement and manage DSPM tools to discover, classify, and monitor sensitive data acrossSaaS, IaaS, PaaS, and on-premise environments.
Analyze findings and coordinate remediation of risky configurations, overexposed data, and policyviolations.
Establish KPIs and metrics for DSPM coverage and risk reduction.Partner with Privacy, Compliance, Legal, and Data Governance teams to ensure data protectionstrategies meet regulatory and organizational requirements (e.g., GDPR, HIPAA, CCPA).
Support data classification initiatives and integrate them into DLP / DSPM tools and processes.Document technical standards, runbooks, and training materials for operational and auditpurposes.
Stay current on emerging threats, technologies, and best practices in data protection and cloudsecurity.
Drive automation and orchestration opportunities in data protection operations using scripting orSOAR platforms.
Conduct regular assessments of data security posture and drive continuous maturity ofcapabilities.
Required Knowledge, Skills and Competencies
Knowledgeable of DSPM platforms (e.g., Laminar, Cyera, Dig Security, Symmetry Systems, orWiz DSPM).
Strong understanding of cloud security principles (AWS, Azure, GCP) and dataclassification / tagging frameworks.
Strong proficiency with security tools (e.g., CASB, SIEM, SOAR) or data discovery and encryptionplatforms.
Knowledge of data privacy laws and regulations (e.g., GDPR, HIPAA, CCPA).Excellent analytical, documentation, and communication skills.Intermediate proficiency in Microsoft Office Suite products to include Excel.Strong PC proficiency.Industry and Work Experience
3-7 years of experience in cybersecurity or data protection roles, with at least 2 years leadingtechnical implementation of DLP and / or DSPM solutions required.
Hands-on experience with DLP technologies (e.g., Symantec, Cyera, Microsoft Purview,Forcepoint, Proofpoint, or similar technologies) required.
Mid-sized to large environment support experience preferred.Financial industry experience preferred.Academic
Bachelor's degree in Computer Science, Information Security, or a related field required.Information Systems Security Professional (CISSP), Cloud Security Professional (CCSP),Certified Data Privacy Solutions Engineer (CDPSE), and / or GIAC (e.g., GISP, GSEC) certifications preferred.