Enable job alerts via email!
Boost your interview chances
Create a job specific, tailored resume for higher success rate.
A leading company is seeking a Lead Information Security Engineer to spearhead the Data Loss Prevention and Insider Risk Management programs. This role involves designing DLP strategies, managing data classification, and integrating analytics tools. Ideal candidates will have substantial industry experience and are passionate about enhancing data security.
The Lead Information Security Engineer will be the organization’s subject matter expert (SME) for the Data Loss Prevention (DLP) and Insider Risk Management (IRM) programs. This role will be responsible for spearheading the design and implementation of enterprise level DLP and IRM strategies. This individual contributor role will be a member of a global engineering team that collaborates with various organizations and vendors to continually assess and improve the effectiveness of DLP and IRM controls and policies.
Key Responsibilities and Duties
DLP Program Development: Lead the design and implementation of a cohesive DLP strategy, including data classification, policy creation, standards, and best practices to safeguard sensitive information.
Data Classification and Labeling: Develop and manage data classification schemes and collaborate with data owners to ensure data is accurately labeled according to sensitivity and regulatory requirements.
Data Discovery and Inventory Management: Use data discovery tools to locate unstructured data and catalog sensitive data across on-premises and cloud environments.
Engineering design: architect and implement highly available and resilient solutions.
Policy and Rule Configuration: Design, implement, and fine-tune DLP policies and detection rules to minimize false positives and optimize incident management.
User and Entity Behavior Analytics (UEBA): Integrate user and entity behavior analytics with DLP tools to detect abnormal data access or potential insider threats, developing models to monitor deviations in sensitive data handling.
Cloud and SaaS Data Protection: Develop DLP strategies for cloud services and SaaS applications to extend data visibility and control in cloud environments.
Automation & Scripting: Leverage scripting languages (e.g., Python, PowerShell) to automate DLP processes, enhance security monitoring, and support the integration of DLP controls within existing systems. Security Controls Optimization: Identify and implement automation opportunities to improve the DLP program’s efficiency in detecting and responding to security incidents.
Educational Requirements
Work Experience
Physical Requirements
Career Level
8IC