Security Engineer
phoenix groupNew York, NY
2 days ago
Occupations
Information Security EngineersInformation Security AnalystsComputer Systems Engineers/ArchitectsIndustries
Computer Systems Design ServicesOther Computer Related ServicesCustom Computer Programming ServicesAbout the role
Overview:
You will be the primary technical owner of our data loss prevention and data security posture programs, from policy design and tuning through alert investigation and ongoing improvement. Reporting to the head of Information Security, you will work closely with Legal, Compliance, and IT to lower the organization's exposure to data leakage.
Key Responsibilities:
Data Loss Prevention & Posture Management Run Varonis DSPM to locate, classify, and evaluate sensitive data at rest, and lead cleanup of excessive access rights, outdated data, and configuration issues. Own the data classification framework and make sure posture findings flow into enterprise risk reporting and remediation tracking. Manage Crowd Strike Falcon Data Protection for Endpoint, including writing and refining detection and blocking rules, reviewing alerts, and cutting down noise while addressing true exfiltration risks. Oversee Falcon Data Protection for Cloud to discover, label, and monitor sensitive information in cloud storage and SaaS applications. Build and maintain DLP and retention policies in Slack and Google Workspace covering messages, channels, DMs, and shared files. Administer AI Detection & Response (AIDR) and Guardian DLP controls that govern sensitive data moving to and from generative AI tools, helping the business adopt AI safely. Support retention and eDiscovery efforts by setting retention schedules, applying legal holds, and helping Legal and Compliance preserve and collect data across Varonis, cloud, Slack, email, and other systems. Program Ownership & Collaboration Regularly review data protection coverage and propose new controls or adjustments where gaps exist. Deliver recurring metrics and reports to leadership on DLP events, policy performance, and overall data risk. Work with IT, Legal, Compliance, and business teams to keep data handling aligned with internal policy and regulatory requirements. Write and maintain policies, SOPs, and response playbooks for the data protection stack. Keep up with developments in DLP, DSPM, AI governance, and related threats.
What We're Looking For:
Experience working in enterprise data loss prevention within a regulated security environment (PCI, HIPAA/PHI, ITAR, IP, or PII).Direct experience with DLP tools such as Crowd Strike Falcon Data Protection, Varonis, or comparable platforms, including policy configuration, alert investigation, and tuning. Working knowledge of DSPM concepts and tooling. Experience securing SaaS and collaboration platforms (Slack, Microsoft 365, Google Workspace) and managing their DLP and retention settings. Solid understanding of records retention, legal hold, and eDiscovery and how they connect to technical controls. Exposure to AI governance or protecting data shared with generative AI tools is highly valued. Certifications such as CIPP, CISSP, or other privacy credentials are nice to have, not required.
Matching similar jobs
JOB OVERVIEW
Experience level
Lead
Location
New York, NY
Occupation
Information Security Engineers
Industry
Computer Systems Design Services
Posted
2 days ago
Tired of running searches?
Rank the roles you'd take once, and matches like these arrive on their own.
CREATE PROFILE