Data Loss Prevention Engineer implementing and operating data loss prevention programs to protect sensitive data. Collaborating with business stakeholders on data security while minimizing operational impact.
Responsibilities
Design, implement, and maintain DLP policies across endpoint, network, email, and cloud platforms to prevent unauthorized data disclosure.
Develop and maintain complex detection patterns using regular expressions (regex), keyword matching, file fingerprinting, and metadata-based rules for identifying sensitive data (PII, PHI, PCI, intellectual property, etc.).
Configure and tune DLP rules to detect sensitive data across structured and unstructured formats including documents, databases, emails, web traffic, and cloud storage.
Continuously optimize detection accuracy by reducing false positives while maintaining effective coverage of true data exposure risks.
Monitor, analyze, and investigate DLP alerts and events to determine if they represent genuine data exposure risks or false positives.
Conduct detailed analysis of flagged events including reviewing content snippets, user behavior patterns, file metadata, and transmission channels.
Correlate DLP events with other security data sources (SIEM, endpoint detection, user behavior analytics) to identify potential insider threats or data exfiltration attempts.
Document investigation findings and provide clear recommendations on incident severity, required remediation actions, and policy adjustments.
Escalate confirmed data exposure incidents to the incident response team and support forensic investigations as needed.
Engage with engineering teams to maintain and optimize DLP infrastructure including agents, network sensors, cloud connectors, and management consoles.
Develop and maintain automated workflows for alert triage, policy updates, and reporting.
Create and maintain comprehensive documentation of DLP policies, detection patterns, investigation procedures, and operational runbooks.
Test new DLP rules and policies in non-production environments before deployment to minimize business disruption.
Integrate DLP systems with other security tools including SIEM, SOAR, ticketing systems, and data classification platforms.
Requirements
Bachelor degree in Computer Science, Information Security, Information Technology, or related field.
3-5 years of experience in cybersecurity with at least 2 years focused on data loss prevention, data security, or security operations.
Strong proficiency in regular expressions (regex) for pattern matching and data identification.
Experience with enterprise DLP solutions.
Understanding of data classification frameworks and sensitive data types (PII, PHI, PCI, trade secrets, intellectual property).
Knowledge of data transmission protocols and common data exfiltration channels (email, web uploads, removable media, cloud storage, messaging platforms).
Strong analytical skills with ability to investigate security events and distinguish true positives from false positives.
Experience with SIEM platforms and security event correlation.
Basic Proficiency with scripting or automation (Python, PowerShell, or similar) for data analysis and workflow automation.
Excellent written and verbal communication skills with ability to explain technical findings to non-technical stakeholders.
Understanding of data privacy regulations such as GDPR, CCPA, HIPAA, and PCI-DSS.
Benefits
Medical, Dental, and Vision insurance
Basic and Supplemental Life Insurance options
401(k) retirement plans with company match
Health Spending Accounts (HSA/FSA)
Flexible time off and 11 paid holidays
Family-building benefits, including Maternity, Adoption, and Parental Leave
Tuition Reimbursement and certification support, reflecting our commitment to lifelong learning
Working Student assisting with Health Day Events in various companies throughout Germany and Europe. Role involves supporting participants during health checks and ensuring smooth event operations.
Infection Prevention Specialist at UAMS providing leadership in infection control programs to improve patient outcomes. Collaborating on epidemiology and infection prevention guidance across service lines.
Pharmacy Technician IV overseeing controlled substance monitoring and opioid stewardship initiatives at UAMS. Ensuring compliance with regulatory standards and performing analytical functions in a healthcare setting.
Marketing & Events Executive at Beam coordinating logistics and executing campaigns. Delivering standout events and campaigns for impactful social change.
Creating and managing centralized executive event and travel calendars to optimize leadership presence. Collaborating with multiple teams for strategic alignment and event planning.
Loss Prevention Detective overseeing safety programs and theft prevention at TJ Maxx stores. Conducting investigations and maintaining integrity while supporting store management.
Trade Show and Events Coordinator leading major and regional trade shows for Acumed's Marketing teams. Responsible for planning, executing, and managing event budgets and vendor relations.
Loss Prevention Detective at TJX managing safety programs and theft resolution in retail environment. Collaborating with Store Management to maintain integrity and reduce shrinkage in store operations.
Event Marketing Manager responsible for managing events for a B2B SaaS company. Executing the event program and optimizing participation in various events.