Technology Risk Analyst-Data Loss Prevention Focus
Data Loss Prevention Analyst
6+ Month Contract to Hire
Enterprise Cyber Security is a central Information Security organization within company serving the Enterprise as a whole. Enterprise IT Security Engineering provides consulting, new product review and selection, certification and detailed control design services to the Enterprise Cyber Security organization and the IT Enterprise of company.
ECS Internal Threat is seeking an experienced security analyst with operational experience responding to security incidents in a production environment with a focus on Data Loss Prevention (DLP. The successful candidate must be able to capture/document and review complex DLP requirements, implement system alerts against these requirements and performing in-depth forensics upon alert review to identify data exfiltration violations, behaviors and patterns. This role will involve working closely with security engineering, architecture and incident management teams to help mitigate risk across our companys computing environment.
Participate in Insider Threat triage and escalation oversight bringing Insider Threat incidents to complete mitigation and closure
Responsible for high quality architecture, implementation and analysis of Insider Threat detection, response and remediation technologies unifying and standardizing Cybersecurity Insider Threat policies and practices across the enterprise
Be instrumental in technology and policy implementation, tuning and oversight of Insider Threat processes across all insider threat technologies executed in the firm, particularly in cutting edge analytics space
Engage investigative computer forensics where required, continuously enhancing companys DLP and Insider Threat detection capabilities
Document and maintain insider threat alerts, procedures, analysis and investigations accurately
Education and Experience
Degree or equivalent experience in Computer Science, Engineering or related discipline
3-5+ years operational experience responding to security incidents in a production environment
Required Technical Skills and Knowledge
Expert skills and knowledge of cyber security threats and attacks, incident response, network and host based control technologies.
Experience administering at least one enterprise endpoint or infrastructure DLP solution.
Knowledge and experience with systems administration and automation with modern scripting languages and environments such as Python, Perl, PowerShell and others.
Knowledge of Data Repository Architecture (EDMS, SharePoint, O365, OneDrive, etc)
Knowledge of the security threat landscape, especially network and server threats
Strong knowledge of TCP/IP
Strong knowledge of the Windows and / or Linux operating systems
Log & data analysis and reporting
Knowledge of Active Directory Security and Group Policy Design
Please send all resumes to [Click Here to Email Your Resumé]
Experis is an Equal Opportunity Employer (EOE/AA)