Don’t send a generic resume — generate a resume and cover letter tailored to this exact role.
Goodfit is seeking a Security Analyst to support the agency’s cybersecurity and data protection program, focusing on DLP, insider risk management, and DSPM for AI. The role involves auditing, incident escalation, and collaboration with technical and business teams to strengthen governance and protect sensitive information.
The position is hybrid (3 days in office, 2 days remote) with the candidate required to be a South Carolina resident, do not relocate.
Interview Process: 1 round, Virtual/Online
Duration of the Contract: 12 months
Possibility for Extension: Yes
Work Location: Hybrid (3 days in office, 2 days remote).
Candidate Location: Candidate MUST be a SC resident. No relocation allowed.
This position supports the agency’s cybersecurity and data protection operations, with a focus on DLP, Insider Risk Management, Copilot/AI data security, auditing, vendor security reviews, and device patching. The analyst will review and triage security alerts, investigate access and movement of sensitive information, perform system and vendor audits, document findings, assist with incident escalation, and work with technical and business teams to strengthen the agency’s overall security and data governance posture.
The candidate must have 3 years experience supporting enterprise cybersecurity operations, including threat monitoring, incident response, and risk analysis. The candidate must have 3 years hands‑on experience working with data protection technologies such as data loss prevention (DLP), insider risk management tools, and data security posture management for AI (DSPM for AI). The candidate must have 3 years experience reviewing and triaging data related security alerts, analyzing access and movement of sensitive information, documenting findings, and escalating incidents according to established procedures. The candidate must also have 3 years of collaborating with technical and non‑technical teams to resolve security issues and supporting continuous improvement in the agency’s data security posture.
Experience working with AI driven security tools, Cortex, particularly DSPM platforms designed to manage sensitive data used by AI systems, is preferred. Experience finetuning DLP policies, refining insider risk alerts, or supporting data governance programs is beneficial. Familiarity with Azure security, identity‑based access controls, conditional access, and security automation or scripting is also preferred.
A bachelor’s degree in cybersecurity, information technology, computer science, or a related field is required; equivalent experience may be considered. A foundational security certification such as CompTIA Security+ or GIAC Security Essentials (GSEC) is required. Preferred certifications include Microsoft SC100, SC200, CEH, or an Associate level CISSP.
The purpose of this position is to support the agency’s cybersecurity and data protection program by helping protect sensitive information, monitor security risks, and strengthen controls around AI, Copilot, DLP, Insider Risk, auditing, and vendor security.