1 день назад
Lead Security Analyst (DLP/DSPM)
94 000 - 134 000$
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
Текст:
TL;DR
Lead Security Analyst (DLP/DSPM) (Human Cyber Risk): Protecting sensitive data and systems by assessing human-centric cyber risks, managing DLP and DSPM controls, and investigating insider-risk incidents with an accent on data security telemetry, employee risk analysis, and cross-functional response. Focus on designing risk-based controls, analyzing complex security alerts, presenting findings to leadership, and improving security awareness programs.
Location: Hybrid work environment in Irving, Texas, United States
Salary: USD 94,000–134,000 per year, plus applicable bonus or incentive compensation
Company
provides business and technology research, analysis, and advisory insights to enterprise leaders worldwide.
What you will do
- Assess human-centric cyber risks, including phishing, social engineering, insider threats, and other attack vectors.
- Design, implement, monitor, and optimize Data Loss Prevention (DLP) and Data Security Posture Management (DSPM) controls.
- Investigate DLP alerts, insider-risk indicators, data security incidents, and complex employee risk profiles; perform root-cause analysis and recommend remediation.
- Develop insider-risk detection and mitigation programs and collaborate with HR, Legal, IT Operations, and security teams during incident response.
- Produce risk posture and control-effectiveness reports, maintain security documentation, and present findings to leadership.
- Contribute to security awareness training and mentor junior analysts.
Requirements
- Bachelor’s degree in Computer Science, Information Security, or a related field; relevant experience may substitute for the degree.
- 5–7 years of hands-on information security experience focused on human cyber risk, DLP, and insider threat.
- Hands-on experience with DLP and DSPM platforms for governing unstructured data and preventing exfiltration.
- Experience with email security, endpoint protection, device control, USB policy enforcement, local storage monitoring, and cloud telemetry such as M365 Purview, Google Workspace, OneDrive, or SharePoint.
- Knowledge of NIST, ISO 27001, regulatory requirements, insider-risk methodologies, Acceptable Use Policies, and risk-based exception workflows.
- Strong analytical, written, verbal, communication, collaboration, and critical-thinking skills, including the ability to explain risk to technical and non-technical leadership.
Nice to have
- Security certifications such as CISSP, CISM, GSEC, Security+, or SSAP.
Culture & Benefits
- Hybrid work environment combining virtual work with collaboration in office locations.
- 20+ PTO days, holidays, and floating holidays during the first year.
- Medical, dental, vision, wellness allowance programs, parental leave, and an Employee Assistance Program.
- 401(k) with corporate match and immediate vesting, employee stock purchase plan, and tuition reimbursement.
- Mentorship, leadership development, technical courses, certification opportunities, and ongoing learning programs.
- Inclusive, collaborative culture with opportunities to contribute to ’s security and technology strategy.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →
Похожие вакансии
19 часов назад
Security Engineer (Insider Threat)
144 400 - 258 000$
3 дня назад
Detection and Response Lead (Cybersecurity)
160 000 - 200 000$
2 дня назад
Senior Security Analyst, Detection & Response (Cybersecurity)
100 000 - 130 000$
5 дней назад
Cybersecurity Analyst II
55 000 - 74 000$
3 дня назад
Security Lead (Cybersecurity)
145 000 - 155 000$
3 дня назад