DLP & Cyber Engineer
- Discuss this with your agent
- Open in Claude
- Open in ChatGPT
Prepare application
- Draft this with your agent
- Open in Claude
- Open in ChatGPT
Role details
Tech stack
+7 more
Job description
The Data Protection & Cybersecurity Engineer will serve as the primary owner of the clients data protection capabilities while also providing hands-on cybersecurity engineering support across cloud, infrastructure, and application security domains. This is a practitioner role. The position partners with IT, I&O, and Legal teams to design and operate IT controls that protect student, employee, and operational data across cloud and on-premises environments. The role defines what must be protected and how, coordinates with I&O and Data teams to ensure controls are implemented correctly and builds validation and reporting of outcomes.
This role is a direct replacement for a departing senior team member who owned both data protection and cybersecurity engineering. Candidates must be comfortable holding both domains simultaneously and ramping quickly into an active program.
Identify and assess
-
Own enterprise data protection risk assessments, classification standards, and control effectiveness evaluations.
-
Identify data exposure risk across cloud, SaaS, and on-premises environments.
-
Contribute to vulnerability assessments and architecture reviews within the Cybersecurity function.
Securely build and protect
-
Design and define data protection control requirements and standards for DLP, encryption, key management, and data governance across cloud and on-premises environments.
-
Work with I&O and Data teams to ensure controls are implemented to Cybersecurity specifications; validate implementation outcomes.
-
Provide cybersecurity engineering expertise across cloud infrastructure and endpoint domains.
Monitor, hunt, and detect
-
Monitor for data misuse, exfiltration, and policy violations.
-
Integrate DLP detection capabilities with incident response workflows.
-
Support SIEM log source expansion and alert quality improvements.
Respond, recover, and sustain
Lead Cybersecurity response activities for data exposure incidents, including investigation direction, containment guidance to I&O, remediation oversight, and lessons learned.
Govern and manage risk
-
Develop and maintain data protection policies aligned with FERPA, CCPA, Canadian provincial privacy laws, and enterprise risk objectives.
-
Own the data protection policy and framework and drive operationalization across key data stores and workflows.
-
Contribute to management reporting, cyber risk acceptance documentation, and work tracking.
Lead and coordinate
-
Provide technical oversight and peer review of cybersecurity work product.
-
Mentor cybersecurity analysts and junior engineers on cloud cybersecurity and secure design; support individual growth plans in coordination with the Senior Director.
-
Lead data protection projects end to end, including planning, effort estimation, resource coordination, and delivery.
-
Liaise with cybersecurity vendors and managed service providers for issue resolution
We are a company committed to creating diverse and inclusive environments where people can bring their full, authentic selves to work every day. We are an equal opportunity/affirmative action employer that believes everyone matters. Qualified candidates will receive consideration for employment regardless of their race, color, ethnicity, religion, sex (including pregnancy), sexual orientation, gender identity and expression, marital status, national origin, ancestry, genetic factors, age, disability, protected veteran status, military or uniformed service member status, or any other status or characteristic protected by applicable laws, regulations, and ordinances. If you need assistance and/or a reasonable accommodation due to a disability during the application or recruiting process, please send a request to HR@insightglobal.com.To learn more about how we collect, keep, and process your private information, please review Insight Global’s Workforce Privacy Policy: https://insightglobal.com/workforce-privacy-policy/.
Requirements
7+ years of cybersecurity experience with at least 4 years in data protection, cloud security, or cybersecurity engineering.
-
Hands-on experience configuring and operating DLP platforms (M365 Purview strongly preferred; CrowdStrike Falcon Data Protection preferred; equivalent experience acceptable).
-
Experience implementing data classification frameworks in enterprise environments with regulated data (FERPA, COPPA, CCPA, or Canadian privacy law familiarity preferred).
-
Strong understanding of AWS security services and cloud-native data protection controls (S3 bucket policies, KMS, Macie, CloudTrail).
-
Security engineering experience: familiarity with SIEM log sources, endpoint security platforms (CrowdStrike Falcon preferred), and vulnerability management tooling (Rapid7 preferred).
-
Proficiency with Python or PowerShell for automation, reporting, and control validation.
-
Familiarity with NIST CSF, CIS Controls, and how to translate regulatory requirements into technical controls.
-
Experience working across organizational boundaries, such as defining requirements for teams that own implementation and validating outcomes without direct execution authority.
-
Prior experience providing technical oversight or mentorship to others. - Industry certifications such as SANS/GIAC (for example, GDSA, GDAT, or equivalent), CISSP, CISM preferred.
Apply for this position
This job is hosted externally. Click below to view the full posting and apply.
Prepare application
- Draft this with your agent
- Open in Claude
- Open in ChatGPT
Good distractions
Talks and stories from around this role — technically off-topic, practically not.
Moments
Explore playlistsVideos
See allRelated articles
See all
9 Ways to Make Money Hacking
Data Engineer Salary UK
The Most Popular IT Jobs on the Market
What Are The Top Skills Required For Azure Developers?