Data Security Posture Management (DSPM) Lead Manager

Auxis

Bogotá ciudad

Presencial

COP 144.000.000 - 216.000.000

Jornada completa

hace 33 horas
Sé de los primeros/as/es en solicitar esta vacante
Generador de candidaturas

Transforma esta oferta en una entrevista: un currículum y una carta de presentación creados pensando en lo que quiere el empleador.

Supera los filtros ATS

Descripción de la vacante

Auxis in Bogotá is seeking a DSPM Lead to design, implement, and manage Data Security Posture Management across cloud, hybrid, and on‑prem environments. You will gain visibility into where sensitive data resides, how it is accessed, and how its security posture can be strengthened, while ensuring compliance with global regulations.

The role requires hands‑on DSPM expertise and collaboration with Information Security, Data Governance, Risk & Compliance, and GTech to protect data across regions

Formación

  • Bachelor’s degree in information management or related field.
  • 5+ years in Data Management, Governance, or Compliance.
  • Deep DSPM concepts: discovery, classification, lineage, access governance.
  • Cloud security architecture across Azure, AWS, SaaS.
  • Strong IAM controls, RBAC, and data-level access models.
  • Knowledge of GDPR, HIPAA, SOX, ISO 27001, NIST frameworks.

Responsabilidades

  • Lead sensitive data discovery and classification efforts.
  • Assess data exposure risks and misconfigurations.
  • Collaborate with IAM to enforce least-privilege access.
  • Implement encryption, masking, tokenization, and DLP policies.
  • Provide monitoring and automated reporting to leadership.
  • Align DSPM with DLM and Data Governance programs.

Conocimientos

English proficiency
Attention to detail
Analytical thinking
Cross-functional collaboration
Translate regulatory requirements
Continuous improvement

Educación

Bachelor’s degree in Information Management or related field
Certifications: CISSP, CISM, CCSP or Azure Security Engineer

Herramientas

Veronis
Proofpoint
Cyberhaven

Descripción del empleo

Job Summary

We are seeking an DSPM Lead who is responsible for designing, implementing, and managing the firm’s Data Security Posture Management capabilities across cloud, hybrid, and on‑premise environments. This role provides continuous visibility into where sensitive data resides, how it is accessed, whether it complies with global regulations, and how its security posture can be strengthened. The position serves as a bridge between Information Security, Data Governance, Risk &Compliance, and GTech to ensure data‑level protection across all regions and systems. The ideal candidate will have hands‑on expertise in DSPM technology.

Responsibilities
Sensitive Data Discovery & Classification
  • Lead automated discovery of sensitive and regulated data across cloud platforms, SaaS, databases, and on prem systems, as described in DSPM core components.
  • Ensure classification and tagging of PII, PHI, financial, client, and regulated data based on policy and regulatory requirements.
Risk Assessment & Exposure Analysis
  • Continuously assess data exposure risks, excessive permissions, and misconfigurations across environments.
  • Evaluate compliance alignment with ISO 27001, NIST 800‑53, GDPR, HIPAA, SOX, and internal standards.
Data Security Controls & Remediation
  • Collaborate with Identity & Access Management to enforce least‑privilege access and remove excessive permissions.
  • Recommend and implement security controls such as encryption, masking, tokenization, and DLP policies.
  • Work with platform and application teams to remediate identified data security gaps.
Monitoring & Reporting
  • Provide continuous monitoring of data access patterns, anomalies, and compliance posture across hybrid environments.
  • Deliver automated reporting to Security, Compliance, IT Leadership, and audit stakeholders.
  • Track and report metrics related to risk reduction, compliance, and overall data security posture.
Policy Alignment & Governance Collaboration
  • Ensure alignment between DSPM strategy and the firm’s Data Lifecycle Management (DLM) and Data Governance programs.
  • Support the development and enforcement of data‑centric security policies, standards, and operating procedures.
  • Work with Data Owners and Stewards to validate classification requirements and ensure ongoing data protection across the lifecycle.
Tool & Technology Enablement
  • Partner with GTech and Enterprise Architecture to ensure integrations align with global DSPM frameworks and strategy.
  • Experience with DSPM vendor solutions (e.g., Veronis, Proofpoint, Cyberhaven) based on business needs and risk posture.
Cross‑Functional Incident Response Support
  • Support escalations for data‑related security incidents in coordination with Legal, Compliance, GTech, and Business units.
  • Participate in investigations involving data leakage, unauthorized access, or policy violations.
Skills
Skills and Experience
  • English B2+ or Higher
  • Attention to detail and accuracy
  • Strong problem-solving and analytical abilities
  • Collaborative mindset across IT, Legal, and Compliance
  • Ability to translate compliance requirements into technical controls
  • Commitment to continuous improvement and data stewardship
Education / Professional Experience/ Qualifications
  • Required Qualifications
  • Bachelor’s degree in Information Management, Library Science, Computer Science, Business Administration, or a related field.
  • 5+ years of experience in Data Management, Data/Information Governance, or Compliance within a digital environment.
  • Deep understanding of DSPM concepts: data discovery, classification, lineage, access governance, risk scoring, and remediation workflows.
  • Experience with cloud security architecture across Azure, AWS, and SaaS platforms.
  • Strong understanding of IAM controls, RBAC, Conditional Access, and data‑level access models.
  • Knowledge of encryption, masking, tokenization, and secure data handling practices.
  • Strong familiarity with GDPR, HIPAA, SOX, ISO 27001, NIST frameworks, and global data protection laws.
  • Ability to interpret regulatory requirements into technical and operational controls.
  • Ability to analyze complex data landscapes and identify risks and remediation priorities.
  • Strong communication skills for preparing executive‑ready dashboards and reports.
  • Ability to collaborate with cross‑functional teams globally (US, EU, APAC).
  • Preferred Qualifications
  • 5+ years in Information Security, Data Governance, or Cloud Security programs.
  • Experience working within multinational environments with complex data architectures.
  • Certifications: CISSP, CISM, CCSP, Azure Security Engineer, or equivalent.
  • Prior experience deploying DSPM technologies or building governance frameworks.
Consigue la evaluación confidencial y gratuita de tu currículum.
o arrastra y suelta tu archivo aquí
Similar jobs

Puestos de trabajo similares que vale la pena comparar

DSPM Lead: Data Security Posture & Compliance
DSPM Lead: Data Security Posture & Compliance

Auxis • Bogotá ciudad

Presencial
COP 144.000.000 - 216.000.000
Senior Data Security Engineer
Senior Data Security Engineer

J.S. Held LLC • Colombia

A distancia
COP 256.871.000 - 330.264.000
Flexible work environment
Generous Annual Leave Policy
Comprehensive Medical Insurance
Sr. Security Engineer
Sr. Security Engineer

Fortra • Colombia

Presencial
COP 110.000.000 - 190.000.000
Security Specialist (GCP)
Security Specialist (GCP)

GFT TECHNOLOGIES SE • Bogotá

Presencial
COP 120.000.000 - 190.000.000
CyberSecurity Manager
CyberSecurity Manager

Lean Tech • Norte

Presencial
COP 280.260.000 - 467.101.000
Data Quality Management - Expert Project & Transformation GBS AMERICAS
Data Quality Management - Expert Project & Transformation GBS AMERICAS

SGS • Bogotá ciudad

Presencial
COP 60.000.000 - 100.000.000
Permanent contract
Social security
GBS experience
+3
Senior Information Security Operations Analyst
Senior Information Security Operations Analyst

Mastercard • Bogotá ciudad

Presencial
COP 108.000.000 - 156.000.000
Lead Security Engineer
Lead Security Engineer

EPAM Systems • Colombia

Presencial
COP 120.000.000 - 180.000.000
Healthcare benefits
Global career opportunities
LinkedIn Learning access
CyberSecurity Manager
CyberSecurity Manager

Lean Solutions Group • Colombia

Presencial
COP 120.000.000 - 200.000.000
Cyber Security Engineer
Cyber Security Engineer

Aditi Consulting • Colombia

Presencial
COP 220.734.000 - 294.313.000