DLP Analyst focusing on safeguarding sensitive data across endpoints, cloud services, and email. Managing DLP technologies and ensuring compliance with security policies in a hybrid role.
Responsibilities
Monitor and investigate DLP alerts generated by Microsoft Purview, Egress, and endpoint agents across Intune (Windows) and JAMF (macOS)
Administer and maintain DLP tools and technologies, ensuring they are configured correctly and functioning as intended
Analyze incidents to determine true positives, identify root causes, and recommend remediation actions
Define, implement, and review DLP policies, data classification, and conditional access rules to ensure alignment with business needs, regulatory requirements, and to stay current with evolving threats and industry standards
Lead discussions with Information Security, Compliance, Legal, HR, and IT to identify and mitigate data handling risks
Conduct periodic reviews of data movement patterns and access controls to ensure ongoing policy effectiveness
Maintain security configurations in Microsoft Intune and JAMF Pro to support DLP enforcement at the endpoint level
Lead the development and execution of governance and lifecycle processes for security policies, including documentation, change control, exception handling, and awareness initiatives
Responsible for audit and compliance reporting for data protection controls and assist with incident investigations involving potential data exposure
Develop and maintain a playbook for data leakage scenarios, policy violations, and insider threat alerts
Develop and conduct training sessions and awareness programs to educate employees on data security best practices and the importance of adhering to DLP policies
Hybrid role, with occasional after-hours support for incident response or high-severity investigations
Participation in on-call rotations may be required for DLP-related incidents.
Requirements
Bachelor’s degree in Cybersecurity, Information Technology, or a related field, or equivalent experience
7+ years of experience in cybersecurity, with at least 5 years focused on Data Loss Prevention
Hands-on experience with Microsoft Purview DLP, Egress, Microsoft Intune, and JAMF Pro preferred
Strong understanding of data classification, endpoint protection, email encryption, and cloud DLP
Familiarity with conditional access policies, Microsoft Entra ID (Azure AD), and Zero Trust principles
Working knowledge of security frameworks and regulatory standards (e.g., GDPR, HIPAA, ISO 27001, PCI-DSS)
Relevant security certifications (e.g., Microsoft SC-400, SC-300, CompTIA Security+, CISSP, CISM, CDPSE, GIAC) are highly desirable
5+ years of experience in a Security Operations Center (SOC) or with SIEM integration for DLP events
Knowledge of insider risk detection, UEBA, or behavioral analytics
Experience collaborating in cross-functional global teams on policy development or risk mitigation.
Intern supporting IT Security team at OneDigital with hands - on experience and mentoring. Engaging in real - world assignments and responsibilities within IT Security.
Cyber Threat Intelligence Analyst at AIG specializing in cyber threat research and intelligence production. Collaborating with an interdisciplinary team to enhance cybersecurity situational awareness and reporting.
Senior Cyber Security Analyst protecting customers from cyber threats while enhancing cyber security services at technology firm. Focused on both security operations and technical delivery.
Cybersecurity Analyst assisting in the review and implementation of cybersecurity initiatives across a large environment at Kemper. Responding to cyber threats and improving processes and technologies.
Senior Information Security Analyst managing Information Security Management System at BMLL Technology. Supporting compliance with ISO 27001 and enhancing security measures.
Graduate Cyber Security Analyst at McKesson participating in a 24 - month Cyber Academy program. Monitor security alerts and contribute to incident response efforts while gaining mentorship.
Threat Intelligence Analyst role analyzing cyber threats and providing strategic recommendations. Working with cybersecurity teams at PwC Canada to safeguard client data and systems.
Contract Security Analyst specializing in security operations and incident response for cloud security at Embark. Focus on alert handling, detection engineering, and data loss prevention.
Cyber Security Analyst providing security operations support for USAF Cloud One project. Engaging in incident response and cybersecurity compliance activities within a hybrid environment.
Cybersecurity Analyst responsible for monitoring, analyzing, and responding to security incidents in SOC. Developing detection rules and conducting threat - hunting campaigns within a hybrid work setup.