Senior Data Loss Prevention (DLP) - Hybrid, San Jose, CA

ArcherSan Jose, CA
9d$152,000 - $180,000Hybrid

About The Position

Archer is an aerospace company based in San Jose, California building an all-electric vertical takeoff and landing aircraft with a mission to advance the benefits of sustainable air mobility. We are designing, manufacturing, and operating an all-electric aircraft that can carry four passengers while producing minimal noise. Our sights are set high and our problems are hard, and we believe that diversity in the workplace is what makes us smarter, drives better insights, and will ultimately lift us all to success. We are dedicated to cultivating an equitable and inclusive environment that embraces our differences, and supports and celebrates all of our team members. Role Overview The Senior Data Loss Prevention (DLP) Analyst is a subject matter expert responsible for designing, implementing, and managing DLP solutions to protect sensitive data across the organization. This hands-on role focuses on developing and maintaining DLP policies, monitoring and investigating potential data loss incidents, collaborating with cross-functional teams, and ensuring compliance with regulatory and contractual requirements. The Senior DLP Analyst plays a critical role in managing insider threat, data discovery and classification, and the overall data protection strategy.

Requirements

  • Bachelor’s degree in Cybersecurity, Information Security, Computer Science, or related fields.
  • 3+ years of experience in cybersecurity, with a focus on data loss prevention, insider threat, or data protection.
  • Deep technical expertise in DLP solutions (e.g., Microsoft Purview, Cyberhaven, Digital Guardian, Netskope).
  • Experience with data discovery, classification, and protection technologies.
  • Strong analytical, investigative, and incident response skills.
  • Familiarity with SIEM tools and user behavior analytics (UBA).
  • Excellent written and verbal communication skills; ability to convey technical concepts to non-technical stakeholders.
  • Ability to work collaboratively in cross-functional teams and manage multiple priorities.

Nice To Haves

  • Industry certifications (e.g., CISSP, CISM, CEH, Security+, Insider Threat Program Manager).
  • Experience with cloud security, endpoint protection, or CASB solutions.
  • Knowledge of regulatory and compliance frameworks relevant to data protection (e.g., GDPR, PCI, NIST 800-53, PCI, FedRAMP).

Responsibilities

  • Design, implement, and maintain enterprise DLP technology solutions across endpoints, servers, cloud, and network environments.
  • Act as a subject matter expert for DLP tools (Cyberhaven, Digital Guardian, Case Management).
  • Develop and refine DLP policies and technical architecture diagrams to support data protection objectives.
  • Oversee DLP endpoint agent deployment, configuration, and maintenance.
  • Lead data discovery and classification efforts using DLP and information protection tools (Microsoft Information Protection, Azure Information Protection, WIZ, Tenex).
  • Collaborate with privacy, engineering, and cybersecurity teams to ensure data is classified and protected in line with regulatory and business requirements.
  • Monitor and analyze DLP alerts to detect and respond to potential data loss or exfiltration incidents.
  • Investigate and resolve incidents involving the theft or loss of sensitive, consumer, employee, or intellectual property data.
  • Manage insider risk using dedicated tools (e.g., Microsoft Insider Risk Management).
  • Tune DLP policies and rules to reduce false positives and enhance detection accuracy.
  • Identify opportunities to automate enforcement and response actions.
  • Stay current with industry trends, emerging threats, and best practices in DLP and insider risk management.
  • Interface with stakeholders across cyber, privacy, engineering, and data protection functions to align DLP with organizational goals.
  • Communicate risks, incidents, and recommendations to management and executive stakeholders.
  • Create and maintain technical documentation, incident reports, and dashboards for management review.
  • Ensure the DLP program aligns with regulatory requirements (GDPR, PCI, NIST CSF) and contractual obligations.
  • Support audits and assessments related to data protection and DLP controls.
© 2024 Teal Labs, Inc
Privacy PolicyTerms of Service