Barings-posted 2 months ago
Mid Level
Charlotte, NC
1,001-5,000 employees
Securities, Commodity Contracts, and Other Financial Investments and Related Activities

The Senior Data Privacy and Protection Analyst utilizes business knowledge in combination with technical skills to monitor, detect, identify, analyze, evaluate, report and assist in the response of data privacy and protection related security events. The Data Privacy and Protection (DPP) team operates in partnership with the Cyber Security, Governance and Operations teams to drive a security-first IT organization. This role will work closely with all areas of IT, business units, strategic partners and vendors to ensure proper privacy and protection controls are implemented in an effort to reduce risk to the global firm. This role requires expertise in problem solving and a solid understanding of common security controls and data privacy.

  • Daily monitoring and evaluation of data events.
  • Assistance with internal monitoring, alerting, incident management and other 'business as usual' privacy & protection tasks.
  • Operation of Data Security IT controls (for example: Palo Alto, Purview and Proofpoint).
  • Production of comprehensive documentation and reporting.
  • Maintain a sufficient level of knowledge of the prevalent technical and privacy risks to Barings to assist in the prioritization of response plans and mitigating controls.
  • Bachelor's degree in Information Systems, Computer Science, Information Security, Cybersecurity, Information Assurance (IT related) or equivalent experience, preferred.
  • 2+ years of technical and hands on experience in information security - though not necessarily in a corporate environment if such experience is demonstrable.
  • Strong problem solving skills and thinking outside the box.
  • Strong analytical skills required.
  • Excellent verbal and written communication skills and the ability to interact professionally with a diverse group including; executives, managers, IT personnel, and subject matter experts.
  • Ability to communicate clearly and effectively within various levels of the organization.
  • Technical, security vendor or cyber-risk certifications such as CISSP, CompTIA Security+, GSEC, GCIH, CCSP, Microsoft SC-200/400, CISSP, CTIA, OSCP.
  • Proven experience with security technologies such as SIEM platforms, Endpoint Detection & Response, DLP, WAF, CASB, SASE and Privilege Access Management.
  • Familiarity with secure architecture principles, zero trust and cloud security principles and settings.
  • Good understanding of Security frameworks NIST CSF, ISO 27001, CIS controls, MITRE ATT&CK.
  • Event Monitoring and Incident Response.
  • Understanding of encryption mechanisms (data at rest and transit).
  • (Basic) scripting and coding i.e. regex, specifically to be able to write and understand data parsing expressions.
  • General understanding of Risk Management Frameworks.
  • Represent Data Security at appropriate risk oversight committees and boards.
  • Contribute to the development, implementation, delivery and support of the IT Security strategy.
  • Ability to collect, describe and display technical information in a way to help decision making.
  • Strong troubleshooting and problem solving skills.
  • Promote a culture of secure by design.
  • Ability to work independently.
© 2024 Teal Labs, Inc
Privacy PolicyTerms of Service