IT Security Engineer - DLP Engineering - Remote

CSAA Insurance Group, a AAA Insurer
1dRemote

About The Position

CSAA Insurance Group (CSAA IG), a AAA insurer, is one of the leading personal lines property and casualty insurance groups in the United States. Here, every employee shapes our mission. We build innovative, human-centered solutions that help AAA members prevent, prepare for, and recover from life's uncertainties. You will join a collaborative, inclusive culture where your strengths have room to grow and your ideas can drive real impact. Step into a role where you can contribute to our shared success through meaningful work. We are actively hiring for an IT Security Engineer - DLP Engineering - Remote Your Role: We are seeking an experienced and highly skilled Security Engineer with deep expertise in Microsoft DLP (Purview), Netskope DLP/CASB, and cloud data protection technologies. This senior role will lead advanced DLP events analysis, engineering, tuning, and strategy development. The ideal candidate is a seasoned professional who can partner across cyber, IT, and business teams to enhance controls, establish best practices, and drive proactive mitigation strategies that strengthen the enterprise data security posture.

Requirements

  • Bachelor's or equivalent experience in Computer Science, Information Systems, or other related field.
  • 6+ years of experience in security engineering, DLP operations, incident response, or cloud security, with significant focus on DLP and CASB technologies.
  • Hands‑on experience with Microsoft Purview DLP, Microsoft Defender for Cloud Apps (MDCA), and Netskope DLP/CASB is required.
  • Experience tuning DLP policies, creating SITs/classifiers, analyzing complex incidents, and working in multi-cloud or hybrid environments.
  • Microsoft Purview Information Protection & DLP
  • Netskope DLP and CASB
  • Cloud app visibility and access control
  • SIEM tools (Splunk preferred): building queries, dashboards, alerts
  • Incident response processes and threat analysis
  • Regulatory and compliance requirements (GDPR, CCPA, etc.)

Nice To Haves

  • CISSP, CISM, CEH, or related professional certifications.
  • Vendor certifications (Microsoft Security, Netskope, etc.) are a plus.
  • Actively shapes our company culture (e.g., participating in employee resource groups, volunteering, etc.)
  • Lives into cultural norms (e.g., willing to have cameras when it matters: helping onboard new team members, building relationships, etc.)
  • Travels as needed for role, including divisional / team meetings and other in-person meetings
  • Fulfills business needs, which may include investing extra time, helping other teams, etc

Responsibilities

  • DLP Events Analysis & Engineering Perform advanced analysis of DLP and CASB events across Microsoft Purview, Netskope, MDCA, and related tools. Identify patterns, trends, mis-configurations, and gaps in controls; recommend or implement tuning and policy improvements. Develop and refine DLP rules, classifiers, exceptions, and high‑fidelity detections to reduce false positives and strengthen data‑loss prevention coverage.
  • Cross‑Functional Collaboration Partner closely with SOC, Cyber Defense, and Security Engineering to align on priorities, establish best‑practice playbooks, and improve DLP/incident response workflows. Work with IT, Cloud, and Business partners to design scalable, efficient, and compliant processes for protecting internal and external data flows. Educate and influence interested parties on DLP findings, risk areas, and recommended mitigations.
  • Risk‑Based Strategy & Governance Apply a risk‑based approach to analyze, prioritize, and remediate data protection risks across the enterprise. Ensure alignment with regulatory requirements (GDPR, CCPA, PCI, HIPAA where applicable) and corporate security standards. Contribute to governance activities, including policy development, standards, and control architecture.
  • Continuous Improvement & Innovation Stay current on emerging data‑protection threats, cloud‑security trends, and DLP/CASB industry capabilities. Recommend modernization opportunities in DLP technologies, automation, and process streamlining. Support and/or lead security awareness and training efforts related to data protection.
  • Metrics, Reporting & Analytics Define, measure, and improve KPIs and KRIs related to data security and DLP. Produce executive‑level reporting and insights to support leadership decisions and program direction. Proactively identify trends and present recommendations for improvements to leadership and business teams.

Benefits

  • Recognition: We offer a total compensation package, annual bonus eligibility for most roles, 401(k) with a company match, and so much more!
  • Career Growth: We believe in growth for everyone. Here at CSAA IG, leaders and mentors partner with employees to align interests, unlock development opportunities, and support long‑term success.
  • Flexible Workplace: We embrace a remote-first culture through our Flexible Workplace. Most employees hold Home-Flex roles, working primarily from home, often with the flexibility to work from various locations including CSAA offices. Our flexible workplace empowers you to balance remote work with intentional in‑person moments that deepen connection and collaboration.
  • Inclusion and Belonging: An inclusive and welcoming workplace is the cornerstone of our success. By fostering an environment where people feel valued and heard, we deepen our ability to understand and meet the unique needs of our members. This strengthens innovation and enhances our products and services, giving us a competitive edge in the market.
  • Sustainability: As climate change leads to more frequent and severe weather events, we are taking bold action to build more resilient communities and reduce our environmental impact.
© 2024 Teal Labs, Inc
Privacy PolicyTerms of Service