Senior Info Security Engineer Analyst - Data Protection Engineer

UnitedHealth Group

Philippines

On-site

PHP 600,000 - 900,000

Full time

6 days ago
Be an early applicant
Application generator

An application made for this job — a tailored resume and cover letter that speak straight to the posting.

Get past ATS filters

Job summary

UnitedHealth Group in the Philippines seeks a security operations professional to deploy and manage DLP controls across healthcare clients, focusing on data protection and insider threat prevention.

You will collaborate with Cybersecurity, Legal, HR, Compliance, Privacy, and IT, analyze telemetry and incidents, and help client audits while using AI tools to improve efficiency.

Qualifications

  • 2+ years in cybersecurity, information security, or security operations.
  • 1+ years administering, configuring, or monitoring DLP platforms (Symantec DLP, Microsoft Purview, Netskope).
  • 1+ years analyzing security logs, telemetry, and endpoint activity using SIEM, CASB, or UBA tools.
  • 1+ years conducting incident investigations, digital forensics, or insider threat analysis, including collection and preservation of digital evidence.
  • Experience utilizing or evaluating automated workflows, AI-driven analytics, or scripting (e.g., Python, PowerShell).

Responsibilities

  • Deploy DLP solutions across healthcare clients and contribute to insider threat program development.
  • Monitor, triage alerts from DLP, UEBA, CASB, SIEM, and endpoint security systems.
  • Conduct deep-dive investigations into insider threats and data leakage with proper evidence handling.
  • Correlate information across platforms to identify activity and document timelines, root causes, and remediations.
  • Partner with Cybersecurity, Legal, HR, Compliance, Privacy, and IT to strengthen data protection controls.
  • Maintain, test, and tune DLP policies and alert thresholds to reduce false positives.
  • Analyze security telemetry and develop behavioral baselines; participate in threat-hunting.
  • Prepare investigation reports, executive summaries, and dashboards for audits and risk reviews.
  • Use enterprise-approved AI tools to streamline workflows and improve efficiency.
  • Evaluate emerging trends to inform solution design and strategic innovation.
  • Comply with employment terms and company policies, including potential work location changes.

Skills

Cybersecurity
DLP platforms
SIEM/CASB/UBA
Incident investigations
Automation / AI analytics

Tools

Symantec DLP
Microsoft Purview
Netskope

Job description

Job Description:

Optum is a global organization that delivers care, aided by technology to help millions of people live healthier lives. The work you do with our team will directly improve health outcomes by connecting people with the care, pharmacy benefits, data and resources they need to feel their best. Here, you will find a culture guided by inclusion, talented peers, comprehensive benefits and career development opportunities. Come make an impact on the communities we serve as you help us advance health optimization on a global scale. Join us to start Caring. Connecting. Growing together.


Primary Responsibilities:


  • Manage the deployment of Data Loss Prevention (DLP) solutions across all healthcare clients and contribute to the strategic development of comprehensive insider threat program to streamline consistency

  • Monitor, analyze, and triage alerts from DLP, User and Entity Behavior Analytics (UEBA), CASB, SIEM, and endpoint security systems to identify unauthorized data movement, data exfiltration, policy violations, or abnormal user activity

  • Conduct deep-dive investigations into potential insider threats and data leakage incidents, analyzing telemetry logs, and preserving digital evidence while maintaining strict chain of custody procedures

  • Correlate information across multiple security platforms to identify malicious or negligent activity, and document detailed timelines, root causes, and recommended remediations

  • Partner closely with Cybersecurity, Legal, HR, Compliance, Privacy, and IT teams to identify suspicious behavior, coordinate sensitive investigations, and strengthen data protection controls

  • Maintain, test, and tune DLP policies, detection rules, and alert thresholds to reduce false positives, validate new use cases, and optimize controls across endpoints, email, cloud platforms, and collaboration tools

  • Analyze security telemetry, develop behavioral baselines, and participate in proactive threat-hunting activities to identify recurring behaviors, emerging insider threat risks, and client-specific operational effectiveness

  • Prepare detailed investigation reports, executive summaries, and metrics dashboards for clients; support audits, compliance reviews, and assist in creating security awareness content

  • Use enterprise-approved AI tools to streamline workflows, automate tasks, and drive continuous improvement

  • Evaluate emerging trends to inform solution design and strategic innovation

  • Comply with the terms and conditions of the employment contract, company policies and procedures, and any and all directives (such as, but not limited to, transfer and/or re-assignment to different work locations, change in teams and/or work shifts, policies in regards to flexibility of work benefits and/or work environment, alternative work arrangements, and other decisions that may arise due to the changing business environment). The Company may adopt, vary or rescind these policies and directives in its absolute discretion and without any limitation (implied or otherwise) on its ability to do so


Required Qualifications:


  • 2+ years of experience in cybersecurity, information security, or security operations

  • 1+ years of experience administering, configuring, or monitoring Data Loss Prevention (DLP) platforms (such as Symantec DLP, Microsoft Purview, Netskope, etc.)

  • 1+ years of experience analyzing security logs, telemetry, and endpoint activity using SIEM, CASB, or User Behavior Analytics (UBA) tools

  • 1+ years of experience conducting incident investigations, digital forensics, or insider threat analysis, including the collection and preservation of digital evidence

  • Experience utilizing or evaluating automated workflows, AI-driven analytics, or scripting (e.g., Python, PowerShell) to streamline security processes and automate repetitive analyst tasks.


Preferred Qualifications:


  • Professional security certifications such as Certified Information Systems Security Professional (CISSP), Certified Information Security Manager (CISM), GCFE, GCIH, or platform-specific DLP certifications

  • Experience in the healthcare industry, with a strong understanding of healthcare regulatory frameworks such as HIPAA, HITECH, or HITRUST

  • Experience developing behavioral baselines or participating in threat-hunting activities

  • Experience using generative AI or machine learning tools for security-related data analysis, productivity, or alert summaries

  • Knowledge of digital forensics, chain of custody procedures, and evidence collection

  • Proven solid analytical and problem-solving skills, with the ability to correlate data from disparate security platforms

  • Proven excellent communication and reporting skills, with experience presenting complex security issues to HR, legal, compliance, and executive leadership


At UnitedHealth Group, our mission is to help people live healthier lives and make the health system work better for everyone. We believe everyone–of every race, gender, sexuality, age, location and income–deserves the opportunity to live their healthiest life. Today, however, there are still far too many barriers to good health which are disproportionately experienced by people of color, historically marginalized groups and those with lower incomes. We are committed to mitigating our impact on the environment and enabling and delivering equitable care that addresses health disparities and improves health outcomes — an enterprise priority reflected in our mission.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Senior Info Security Engineer Analyst - Data Protection Engineer
Senior Info Security Engineer Analyst - Data Protection Engineer

Optum, a UnitedHealth Group Company • Mimaropa

On-site
PHP 600,000 - 1,200,000
Senior Info Security Engineer Analyst - Data Protection Engineer
Senior Info Security Engineer Analyst - Data Protection Engineer

UnitedHealth Group • Hinoba-an

On-site
Confidential
Data Security Investigator & DLP Engineer
Data Security Investigator & DLP Engineer

UnitedHealth Group • Hinoba-an

On-site
Confidential
Information Security Engineer Analyst
Information Security Engineer Analyst

Optum Philippines • Muntinlupa

On-site
PHP 480,000 - 720,000
Remote DLP & Insider Threat Security Engineer
Remote DLP & Insider Threat Security Engineer

Optum, a UnitedHealth Group Company • Metro Manila

On-site
PHP 900,000 - 1,300,000
Hybrid work
Laptop provided
Market total rewards
+12
Information Security Engineer Analyst - SOC Analyst
Information Security Engineer Analyst - SOC Analyst

Optum Philippines • Muntinlupa

On-site
PHP 300,000 - 520,000
Senior Info Security Risk Analyst - NCR and Cebu
Senior Info Security Risk Analyst - NCR and Cebu

Optum Philippines • Philippines

Hybrid
PHP 900,000 - 1,500,000
Senior Information Security Risk Analyst
Senior Information Security Risk Analyst

Optum Philippines • Manila

On-site
PHP 600,000 - 1,000,000
Information Security Risk Consultant IT Audit
Information Security Risk Consultant IT Audit

UnitedHealth Group • Muntinlupa

On-site
PHP 1,300,000 - 2,000,000
Data Analyst
Data Analyst

Optum, a UnitedHealth Group Company • Philippines

On-site
PHP 300,000 - 600,000