About the job
The Data Protection & DLP Engineer plays a crucial role in designing, implementing, and maintaining the organization's data classification, data protection, and Data Loss Prevention (DLP) capabilities. As a key member of the Cyber Security team and directly reporting to the Chief Information Security Officer (CISO), this position is tasked with ensuring sensitive data is accurately identified, labeled, monitored, and safeguarded throughout the organization.
Key Responsibilities:
- Analyze business requirements, regulatory constraints, and operational workflows to identify data classification and protection needs.
- Develop and maintain a robust data classification framework that is in line with the organization's risk appetite and industry best practices.
- Collaborate with business owners to ensure precise mapping of data types to appropriate classification levels.
- Design and implement data labeling and protection policies, ensuring alignment with business objectives and established security standards.
- Create, refine, and maintain automated policies for data discovery, labeling, encryption, and access control.
- Configure DLP tools to enforce data classification standards across various channels including web, email, cloud, and endpoints.
- Oversee the continuous tuning and optimization of DLP systems to minimize false positives and enhance effective detection.
- Manage daily DLP alerts and cases, ensuring timely investigation, triage, documentation, and resolution.
- Provide metrics, reporting, and insights to the CISO and leadership team regarding DLP activities, trends, and potential risk areas.
- Conduct regular training and awareness sessions for employees to promote best practices in data handling and leakage prevention.

