Senior Security Engineer, Data Loss Prevention

🔥 il y a 20 heures

🇺🇸 États-Unis – Télétravail

⏰ Temps Plein

🟠 Senior

👮‍♂️ Cybersécurité / Ingénieur Sécurité

🗣️🇺🇸🇬🇧 Anglais requis

Cloud

Cyber Security

DNS

Firewalls

Splunk

TCP/IP

Postuler Maintenant
Trouver des Emplois à Distance Similaires

📊 Vérifiez votre score de CV pour ce poste

Améliorez vos chances d'obtenir un entretien en vérifiant votre score de CV avant de postuler.

Logo of Fragomen

Fragomen

5001 - 10000 employés

Fondée en 1951

⚖️ Juridique

💼 Conseil

📋 Conformité

Legal • Consulting • Compliance

Fragomen est un cabinet mondial d'avocats spécialisés en immigration, de consultants, et de conseillers offrant des services de mobilité et d'immigration aux employeurs et aux particuliers dans le monde entier. Le cabinet publie des recherches et des analyses (y compris des rapports sur les tendances de l'immigration mondiale et des aperçus régionaux), émet des alertes sur l'immigration, organise des événements et des webinaires, et exploite un Centre de Stratégie et d'Analyses Appliquées pour développer des orientations politiques et de conformité. Fragomen s'engage également dans les partenariats technologiques et stratégiques (par exemple, une joint-venture sur les solutions d'identité numérique) pour soutenir la conformité en matière d'immigration, la mobilité des travailleurs, et les services de conseil connexes.

Description

• Design, implement, and tune enterprise DLP policies across Microsoft 365, endpoint, email, SaaS, cloud, and collaboration platforms • Identify, classify, and protect sensitive information using data classification, sensitivity labels, policy conditions, and enforcement actions • Monitor and investigate DLP alerts involving potential data exposure, improper sharing, data exfiltration indicators, or policy violations • Partner with Legal, Compliance, Privacy, Risk, Records, and business stakeholders to align DLP controls with requirements • Develop and maintain DLP standards, operating procedures, runbooks, exception processes, and escalation workflows • Evaluate and improve controls for collaboration and file-sharing platforms • Support CASB and SaaS governance efforts by identifying unsanctioned data movement, risky sharing, excessive permissions, and policy enforcement opportunities • Conduct root cause analysis on recurring alerts, control gaps, and data handling issues • Integrate DLP telemetry into SIEM, SOAR, monitoring, and response processes with security, identity, messaging, endpoint, network, and application teams • Prepare communications regarding DLP findings, policy changes, and corrective actions • Provide technical guidance and mentorship to junior analysts and security team members

🎯 Exigences

• 5+ years of experience in cybersecurity, data protection, security operations, governance, risk, compliance, or related technology roles, or equivalent combination of education and experience • Working knowledge of DLP concepts, sensitive data handling, information protection, data classification, and policy-based enforcement • Hands-on experience supporting or operating enterprise security controls, especially in Microsoft 365, email, endpoint, cloud, or SaaS platforms • Ability to analyze DLP alerts, user activity, sharing patterns, policy matches, and event logs • Working knowledge of identity and access concepts, authentication mechanisms, file permissions, collaboration tooling, and data-sharing workflows • Strong written and verbal communication skills • Ability to explain technical findings in clear, practical, business-appropriate language • Ability to follow structured processes while continuously improving them • Knowledge of Microsoft Purview Information Protection and DLP, including sensitivity labels, trainable classifiers, DLP rules, audit logs, alerts, and policy tuning • Knowledge of Microsoft Defender for Cloud Apps, CASB concepts, SaaS discovery, session controls, and cloud data exposure monitoring • Knowledge of endpoint, email, and collaboration security controls across Windows, Microsoft 365, Exchange Online, Teams, SharePoint, and OneDrive • Knowledge of SIEM and security platforms such as Splunk, Microsoft Sentinel, QRadar, ArcSight, ELK, or similar tools • Knowledge of sensitive data types and regulatory drivers including PII, PCI, PHI, financial data, client confidential information, legal matter data, and regulated business records • Knowledge of TCP/IP, DNS, HTTP/S, VPNs, proxies, firewalls, APIs, and cloud storage patterns • Preferred experience with Microsoft Purview DLP, Endpoint DLP, Information Protection, Insider Risk Management, eDiscovery, Audit, or Data Lifecycle Management • Preferred experience with CASB, SaaS security, cloud access governance, or file-sharing risk management • Preferred experience supporting investigations involving Legal, Compliance, Privacy, Risk, Records, HR, or regulatory stakeholders • Preferred experience with SOAR, ticketing, workflow automation, and process documentation • Relevant certifications are preferred, including Microsoft certifications, CISSP, SSCP, Security+, CISA, CISM, GIAC, or vendor certifications • Legal authorization to work in the offered position’s location • Successful completion of the Firm’s pre-employment screening process and background check, where permitted

🏖️ Avantages

• Hybrid & Remote work arrangements • Fragomen Academy • Leadership Academy • Practical Management Academy • Regional Development Conferences • Three managerial check-ins per year through the Feedback Works process • Programs supporting health and wellness • Programs addressing work-life balance • Benefits covering a wide range of well-being needs • Diversity, inclusion, and equal opportunity commitment • Community support and giving-back initiatives • Sustainability initiatives

Postuler Maintenant

Emplois Similaires

🔥 il y a 21 heures

Banner Health

10 000+ employés

🏥 Santé

⚕️ Assurance santé

Cybersecurity Engineer III securing Banner Health’s nonprofit healthcare infrastructure. Designing cyber solutions, leading incident response, compliance, integrations, and security projects.

🗣️🇺🇸🇬🇧 Anglais requis

Cloud

Cyber Security

🔥 il y a 21 heures

GE Vernova

10 000+ employés

💼 Conseil

📦 Logistique

🏭 Fabrication

Security Technologies Leader modernizing GE Vernova’s global physical security ecosystem for safer, more resilient energy operations. Integrating AI, automation, analytics, and enterprise platforms worldwide.

🇺🇸 États-Unis – Télétravail

💵 $112 400 - $187 400 / an

⏰ Temps Plein

🟠 Senior

👮‍♂️ Cybersécurité / Ingénieur Sécurité

🗣️🇺🇸🇬🇧 Anglais requis

Cyber Security

🔥 il y a 21 heures

beehiiv

51 - 200

☁️ SaaS

📱 Médias

🤝 B2B

Security software engineer protecting beehiiv’s newsletter, podcast, website, and digital-product platform from abuse and fraud. Building anti-abuse systems, investigating incidents, and integrating security tools.

🇺🇸 États-Unis – Télétravail

💵 $160 000 - $180 000 / an

⏰ Temps Plein

🟡 Intermédiaire

🟠 Senior

👮‍♂️ Cybersécurité / Ingénieur Sécurité

🗣️🇺🇸🇬🇧 Anglais requis

Cypress

DNS

Jest

RSpec

Ruby

Ruby on Rails

Selenium

Switching

🔥 il y a 21 heures

Interface Systems

501 - 1000

💼 Conseil

🏨 Hôtellerie

📦 Logistique

Sr. Coordinator supporting Interface Systems’ managed business security installations. Troubleshooting Access Control, CCTV/VMS, alarms, and low-voltage systems for field technicians.

🇺🇸 États-Unis – Télétravail

💵 $58 000 - $61 000 / an

⏰ Temps Plein

🟡 Intermédiaire

🟠 Senior

👮‍♂️ Cybersécurité / Ingénieur Sécurité

🗣️🇺🇸🇬🇧 Anglais requis

🔥 il y a 22 heures

Kami

51 - 200

📚 Éducation

☁️ SaaS

🤖 Intelligence artificielle

Security Engineer fixing code-level vulnerabilities across Kami’s digital classroom platform. Hardening cloud infrastructure, integrating secure SDLC guardrails, and automating incident response.

🇺🇸 États-Unis – Télétravail

💰 €1 000 000 Seed Round en 2019-01

⏰ Temps Plein

🟡 Intermédiaire

🟠 Senior

👮‍♂️ Cybersécurité / Ingénieur Sécurité

🦅 Parrain de Visa H1B

info

🗣️🇺🇸🇬🇧 Anglais requis

Cloud

Firewalls