Enterprise Data Loss Prevention (DLP) Analyst
$60,000–$80,000 year
HybridLutz, Florida, United States
Job Summary
Monitor enterprise DLP solutions for potential data loss incidents and investigate alerts involving email, endpoints, cloud applications, web uploads, USB devices, and file transfers. Administer Microsoft Purview DLP policies, tune controls, manage exceptions, and reduce false positives while partnering with Cybersecurity, Legal, Compliance, and business teams to support incident response and regulatory initiatives. Create reports on policy effectiveness and risk metrics, document findings for audits, and recommend improvements to monitoring processes. This role supports NERC CIP, SOX, PCI-DSS, and HIPAA compliance within a Microsoft security environment.
Required Qualifications
- 2+ years of Cybersecurity, Information Security, IT Security, Security Operations, or DLP experience
- Working knowledge of Data Loss Prevention concepts and technologies
- Experience supporting or administering Microsoft Purview DLP
- Experience supporting or administering Microsoft Defender
- Experience supporting or administering Symantec DLP
- Experience supporting or administering Forcepoint DLP
- Experience supporting or administering Proofpoint
- Experience supporting or administering Digital Guardian
- Understanding of Data Classification
- Understanding of Sensitivity Labels
- Understanding of Information Protection
- Understanding of Encryption
- Experience investigating security alerts and data loss incidents
- Familiarity with Microsoft 365
- Familiarity with Windows
- Familiarity with Active Directory
- Familiarity with Microsoft Entra ID (Azure AD)
- Familiarity with Exchange Online
- Familiarity with SharePoint Online
- Familiarity with OneDrive
- Basic networking knowledge including HTTP/HTTPS
- Basic networking knowledge including SMTP
- Basic networking knowledge including DNS
- Basic networking knowledge including VPN
- Basic networking knowledge including File Transfers
- Experience analyzing logs from Endpoints
- Experience analyzing logs from Email systems
- Experience analyzing logs from Cloud platforms
- Experience analyzing logs from Security tools
- Familiarity with SIEM platforms such as Microsoft Sentinel
- Familiarity with SIEM platforms such as Splunk
- Familiarity with SIEM platforms such as QRadar
- Strong analytical skills
- Strong troubleshooting skills
- Strong communication skills
- Strong documentation skills
- Bachelor's degree in Cybersecurity, Computer Science, Information Systems, or related field
- Associate degree with relevant experience
- Equivalent combination of education and experience
- Internship, co-op, or entry-level cybersecurity experience
- Must be a U.S. Citizen or Green Card Holder
- Must be available for weekend shifts
- Must be able to lift 50 lbs
Desired Qualifications
- Microsoft Purview Information Protection
- Microsoft Defender for Endpoint
- Microsoft Defender for Cloud Apps
- Insider Risk Management
- Zero Trust Security
- PowerShell
- Microsoft security certifications including SC-900
- Microsoft security certifications including SC-400
- Microsoft security certifications including AZ-900
- Microsoft security certifications including Security+
- Proofpoint
- Forcepoint DLP
- Symantec DLP
Hiring someone like this?
Get your role in front of qualified candidates on Sorce.