Data Protection Analyst

Eliassen Group

Boston (KY)

Hybrid

USD 106,000 - 133,000

Full time

2 days ago
Be an early applicant
Application generator

A complete application in a minute — tailored resume and cover letter, ready to send.

Get past ATS filters

Benefits offered by this job

Comprehensive benefits package

Job summary

Eliassen Group in Boston, MA is seeking a Sr. Analyst, Data Protection to define strategy, design policies, partner with stakeholders, analyze risks, and advance an enterprise Data Protection Program.

This role emphasizes DLP, data classification, and rights management with Microsoft Purview and 365 security. The position is full-time and requires 6+ years in information security, with hands-on Purview experience and a track record in enterprise-scale protections.

Qualifications

  • Bachelor’s degree or equivalent work experience in a related field.
  • 6+ years of information security experience with focus on DLP, data classification, data protection, or information protection.
  • Hands-on experience with Microsoft Purview Information Protection, Microsoft Purview DLP, Endpoint DLP, Network or Web DLP, Cloud Access Security Broker, Defender for Cloud Apps, and Microsoft 365 security technologies.
  • Experience designing, testing, implementing, managing, and optimizing enterprise DLP, data classification, and sensitivity labeling policies and controls.
  • Experience analyzing DLP incidents and use cases and developing policies and mitigation strategies.
  • Experience working with engineering teams to implement and optimize controls.
  • Experience with enterprise-scale rollouts and change management in a global environment.
  • Strong understanding of data security, regulatory compliance, privacy requirements, and information governance.
  • Strong written and oral communication skills.
  • Ability to partner across functions and levels to achieve results.
  • Strong organizational skills with effective prioritization in a fast-paced environment.
  • Preferred certifications: CISSP, CISM, CIPP, Microsoft Security, or equivalent.

Responsibilities

  • Design, implement, and maintain DLP policies across endpoints, email, network or web, cloud applications, collaboration platforms, and data repositories.
  • Tune policies and optimize rules to reduce false positives and improve detection accuracy.
  • Lead testing, validation, and deployment of new DLP controls and policy updates.
  • Manage DLP incident workflows, escalations, and exception processes.
  • Identify emerging data protection risks and implement proactive monitoring controls.
  • Coordinate rollout of sensitivity labels and rights management or encryption controls across Microsoft 365 and integrated applications, including testing, documentation, communications, and end user training.
  • Monitor label adoption, effectiveness, and compliance with corporate data handling requirements.
  • Align and merge DLP policies with sensitivity label controls.
  • Collaborate with data owners and business units to identify, classify, and protect sensitive information assets.
  • Support program strategy, key metrics, and continuous improvement initiatives.
  • Support internal and external audits with evidence of controls, monitoring, and compliance reporting.
  • Maintain documentation for policies, exceptions, configurations, and operational procedures.
  • Serve as SME for DLP, data classification, and information protection technologies.
  • Provide guidance and training on data protection best practices.
  • Partner cross-functionally to gather requirements, translate needs into enforceable data protection policies, and mature the Data Protection Program.

Skills

DLP policies
Microsoft Purview
Data classification
Information protection
Policy tuning
Stakeholder collaboration
Auditing
Risk metrics

Education

Bachelor's degree

Tools

Microsoft Purview Information Protection
Microsoft Purview DLP
Defender for Cloud Apps
Microsoft 365 security

Job description

Description

Hybrid 3 days onsite in Boston, MA

Our client seeks a Sr. Analyst, Data Protection to help define strategy, design policies, partner with stakeholders, analyze risks and metrics, and advance an enterprise Data Protection Program. You will operate within the Governance, Risk and Compliance team to execute the Data Protection Program, including Data Loss Prevention, Data Classification, Rights Management, and related controls. You will collaborate with Information Security Cyber Operations, IT, Legal/Privacy, and business stakeholders to design, implement, and manage effective protections for data in motion, at rest, and in use, with emphasis on Microsoft Purview DLP and Microsoft 365 security capabilities.

This is a full‑time, permanent opportunity, offering a competitive salary and comprehensive benefits package. Qualified applicants must be willing and able to work on a w2 basis.

Salary: $105,500 - $133,000/ yr. w2

JN -092026-108734

Responsibilities
  • Design, implement, and maintain DLP policies across endpoints, email, network or web, cloud applications, collaboration platforms, and data repositories.
  • Tune policies and optimize rules to reduce false positives and improve detection accuracy.
  • Lead testing, validation, and deployment of new DLP controls and policy updates.
  • Manage DLP incident workflows, escalations, and exception processes.
  • Identify emerging data protection risks and implement proactive monitoring controls.
  • Coordinate rollout of sensitivity labels and rights management or encryption controls across Microsoft 365 and integrated applications, including testing, documentation, communications, and end user training.
  • Monitor label adoption, effectiveness, and compliance with corporate data handling requirements.
  • Align and merge DLP policies with sensitivity label controls.
  • Collaborate with data owners and business units to identify, classify, and protect sensitive information assets.
  • Support program strategy, key metrics, and continuous improvement initiatives.
  • Support internal and external audits with evidence of controls, monitoring, and compliance reporting.
  • Maintain documentation for policies, exceptions, configurations, and operational procedures.
  • Serve as SME for DLP, data classification, and information protection technologies.
  • Provide guidance and training on data protection best practices.
  • Partner cross-functionally to gather requirements, translate needs into enforceable data protection policies, and mature the Data Protection Program.
Experience Requirements
  • Bachelor’s degree or equivalent work experience in a related field.
  • 6+ years of information security experience with focus on DLP, data classification, data protection, or information protection.
  • Hands‑on experience with Microsoft Purview Information Protection, Microsoft Purview DLP, Endpoint DLP, Network or Web DLP, Cloud Access Security Broker, Defender for Cloud Apps, and Microsoft 365 security technologies.
  • Experience designing, testing, implementing, managing, and optimizing enterprise DLP, data classification, and sensitivity labeling policies and controls.
  • Experience analyzing DLP incidents and use cases and developing policies and mitigation strategies.
  • Experience working with engineering teams to implement and optimize controls.
  • Experience with enterprise‑scale rollouts and change management in a global environment.
  • Strong understanding of data security, regulatory compliance, privacy requirements, and information governance.
  • Strong written and oral communication skills.
  • Ability to partner across functions and levels to achieve results.
  • Strong organizational skills with effective prioritization in a fast‑paced environment.
  • Preferred certifications: CISSP, CISM, CIPP, Microsoft Security, or equivalent.
Education Requirements

Bachelor’s degree or equivalent work experience in Information Security, Cybersecurity, Computer Science, Information Technology, Information Systems, Business Administration, Legal or Privacy, or a related field.

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Data Protection Analyst
Data Protection Analyst

Eliassen Group • Boston (MA)

Hybrid
USD 106,000 - 133,000
Data Protection Analyst Microsoft Purview
Data Protection Analyst Microsoft Purview

Tata Consultancy Services • Atlanta (GA)

On-site
USD 80,000 - 120,000
Data Protection Analyst Microsoft Purview
Data Protection Analyst Microsoft Purview

Tata Consultancy Services • Wilmington (MA)

On-site
USD 64,000 - 95,000
Data Security Analyst
Data Security Analyst

Clarivate Analytics US LLC • Olathe (KS)

Hybrid
USD 90,000 - 140,000
Senior Data Protection & DLP Policy Lead (Hybrid)
Senior Data Protection & DLP Policy Lead (Hybrid)

Eliassen Group • Boston (KY)

Hybrid
USD 106,000 - 133,000
Comprehensive benefits package
Senior Data Protection Analyst
Senior Data Protection Analyst

cyberhaven • United States

On-site
USD 100,000 - 170,000
Competitive compensation
Stock options
Flexible time off
+1
Data Loss Prevention -DLP Analyst
Data Loss Prevention -DLP Analyst

Compunnel, Inc. • Quincy (MA)

On-site
USD 90,000 - 115,000
Data Security Engineer - DLP & Purview
Data Security Engineer - DLP & Purview

Insight Global • Milwaukee (WI)

On-site
USD 110,000 - 140,000
Data Protection Analyst
Data Protection Analyst

Hidden Jobs • United States

On-site
USD 85,000 - 125,000
Data Security Specialist
Data Security Specialist

Milbank LLP • New York (NY)

On-site
USD 140,000 - 160,000