Security Engineer (DLP)

Benesch LawColumbus, OH
Hybrid

About The Position

At Benesch, we pride ourselves on exceeding expectations and building trust with both clients and employees, considering our employees as our #1 asset. We are committed to providing the highest level of legal service and fostering a positive work environment, which has led to our consistent placement on Chicago and Cleveland's Top Workplaces list and Cleveland's NorthCoast 99 Top Workplaces rankings. We are also advancing on the AmLaw 150 list, positioning us among the top 150 law firms in the country. Benesch is recognized for attracting and retaining top talent, offering a hybrid schedule, career development and growth, transparent leadership, and a celebration of diversity, equity, and inclusion. We are one of the fastest-growing firms in the nation with offices in Chicago, Columbus, San Francisco, New York City, and Wilmington, and we value the talent across all our locations. We are seeking a Security Engineer (DLP) for our Columbus office, a hybrid position with work-from-home flexibility. This role is for an individual passionate about security engineering, enhancing cybersecurity postures with a strong emphasis on endpoint security, security engineering support, and project participation. The ideal candidate will build secure, resilient systems, configure security tools, and have solid experience with Netskope DLP, playing a crucial role in Benesch's security initiatives by bringing technical expertise, risk-based prioritization, strategic thinking, and a collaborative spirit to drive security innovation and resilience.

Requirements

  • Bachelor's degree in Computer Science, Cybersecurity, or related field.
  • 5+ years of experience in security engineering across multiple disciplines including incident response, red, purple and blue team activities, endpoint controls.
  • Hands-on experience with DLP, CASB, and cloud-native security tools including Netskope DLP.
  • Solid understanding of cloud platforms (AWS, Azure, GCP) and associated security services.
  • Understanding and practical experience with incident response activities.
  • Familiarity with frameworks such as NIST CSF, MITRE ATT&CK, ISO 27001 and CIS Benchmarks and aligning the security program with the framework.

Nice To Haves

  • Master's preferred
  • Relevant certifications (e.g., CISSP, CCSP, AWS Security Specialty, GIAC) are a plus.
  • Experience with EDR, SIEM integration and DLP.
  • Strong analytical, communication, and project management skills.
  • Ability to mentor junior analysts and support cross-functional initiatives.

Responsibilities

  • Support end-to-end execution of diverse security projects including: Endpoint Detection & Response (EDR) deployments.
  • Support ongoing vulnerability assessment and penetration testing activities.
  • Support security automation and orchestration initiatives.
  • Support hardening and baseline creation, implementation and auditing.
  • Support Identity & Access Management (IAM) enhancements.
  • Recommend, evaluate and implement new security technologies and tools.
  • Monitor and analyze security events using SIEM and other detection platforms.
  • Lead investigations and coordinate response efforts for security incidents.
  • Develop and maintain incident response runbooks and tabletop exercises.
  • Recommend, implement, and support SIEM and threat intelligence enhancements.
  • Lead deployment and tuning of DLP and CASB solutions to safeguard sensitive data across endpoints, cloud services, and email platforms.
  • Monitor and respond to data exfiltration attempts and policy violations.
  • Conduct regular reviews of data access and usage patterns to identify anomalies.
  • Assist with implementing and supporting secure cloud architectures across AWS, Azure, and/or GCP, identify risks and provide recommendations.
  • Enforce and audit cloud security policies, standards, and best practices.
  • Evaluating existing posture and providing risk-based recommendations for improvement.
  • Support internal and external audits, risk assessments, and compliance initiatives (e.g., NIST, ISO 27001, SOC 2).
  • Maintain documentation and key metrics for security controls and processes.
  • Collaborate with governance and risk teams to align technical controls with policy requirements.
© 2024 Teal Labs, Inc
Privacy PolicyTerms of Service