Position Summary

The Data Loss Prevention (DLP) Specialist is responsible for implementing, managing, and monitoring data protection policies to prevent unauthorized access, leakage, or exfiltration of sensitive information. Operating within a Managed Security Services (MSS) environment, the DLP Specialist ensures that organizational data is secure across endpoints, networks, cloud services, and applications, aligning with regulatory requirements and corporate policies.

Key Responsibilities

DLP Implementation & Configuration

  • Deploy, configure, and maintain DLP solutions (e.g., Symantec DLP, Forcepoint, Microsoft Purview, Digital Guardian).
  • Define and enforce policies to detect, prevent, and respond to unauthorized data access or transmission.
  • Integrate DLP tools with email systems, endpoints, cloud platforms, and network devices.

Monitoring & Analysis

  • Monitor DLP alerts, incidents, and anomalies to detect potential data breaches or policy violations.
  • Conduct investigations to determine the severity and scope of potential data loss events.
  • Collaborate with SOC Analysts and security teams to escalate and remediate incidents.

Policy & Compliance Enforcement

  • Assist in the creation and enforcement of data protection policies and procedures.
  • Ensure DLP practices comply with regulatory requirements (e.g., HIPAA, GDPR, SOC 2, PCI-DSS).
  • Conduct periodic audits, reporting, and access reviews related to sensitive data handling.

Incident Response Support

  • Participate in incident response activities related to data loss or exfiltration events.
  • Document incidents, remediation actions, and lessons learned.
  • Provide guidance to business units on preventing accidental or intentional data leakage.

Continuous Improvement & Reporting

  • Tune DLP rules and policies to reduce false positives while improving detection accuracy.
  • Generate reports on DLP incidents, policy compliance, and data protection metrics for management.
  • Stay up to date on emerging threats, attack techniques, and DLP technologies.
  • Recommend improvements to security awareness, user training, and technical controls.

Qualifications

Required

  • 2–5+ years of experience in DLP, information security, or data protection roles.
  • Experience with DLP solutions such as Symantec, Forcepoint, Microsoft Purview, Digital Guardian.
  • Understanding of data classification, sensitive data types, and regulatory requirements.
  • Strong analytical, investigative, and problem-solving skills.
  • Knowledge of network, endpoint, and cloud security principles.

Preferred

  • Security certifications such as CISSP, CISM, or vendor-specific DLP certifications.
  • Experience in a Managed Security Services or SOC environment.
  • Familiarity with email, cloud, and endpoint security integrations.
  • Knowledge of scripting or automation for monitoring, reporting, and remediation.

Apply for this position

Allowed Type(s): .pdf, .doc, .docx, .rtf