The DLP Engineer T2 is responsible for implementing, administering, and maintaining Data Loss Prevention (DLP) solutions across endpoints, networks, and cloud platforms that enable effective enterprise data protection and compliance operations. This role works closely with the Security Engineering teams, GRC teams, SOC analysts, enterprise IT teams, and client organizations to ensure the reliability, scalability, and operational effectiveness of DLP and CASB security capabilities. The DLP Engineer supports the deployment and optimization of DLP technologies, assists with policy implementation and tuning, contributes to operational improvements, and provides technical support for enterprise and client environments.
Responsibilities- DLP Solution Implementation: Implement, configure, and maintain DLP solutions across endpoints, networks, and cloud platforms while assisting with the translation of Governance, Risk, and Compliance (GRC) requirements into technical controls.
- Client Support: Support a portfolio of enterprise clients by maintaining DLP security capabilities, assisting with onboarding activities, and providing operational support for data protection technologies.
- Multi-Platform Administration: Configure, maintain, and troubleshoot multi-vendor DLP and CASB platforms including Trellix DLP, Microsoft Purview, Zscaler DLP, Netskope, Skyhigh, and CrowdStrike AIDR/Device Control/Data Protection solutions.
- Policy & Rules Engineering: Implement, maintain, and tune DLP rules, policies, and workflows to improve detection accuracy, reduce false positives, and support business requirements.
- Operational Automation: Assist with developing and maintaining automation for policy deployment, alert routing, reporting, and routine administrative tasks to improve operational efficiency.
- Project Support: Support implementation activities for new client deployments, platform enhancements, and short-term engineering projects.
- Tier-2 Incident Support: Provide Tier-2 technical support during cybersecurity incidents, assisting with DLP investigations, troubleshooting, policy updates, and remediation activities.
- Platform Administration: Perform system administration tasks including upgrades, patching, health monitoring, agent deployment, and routine maintenance to ensure reliable operation of DLP and CASB platforms.
- Documentation & Continuous Improvement: Maintain engineering documentation, standard operating procedures, and technical runbooks while recommending operational improvements and staying current on evolving DLP technologies.
Salary Range: $80,000 - $140,000
General Description of Benefits
- Bachelor's degree in computer science, information security, or a related field. Will consider experience in lieu of a degree.
- Experience: Minimum of 2-5 years of cybersecurity or security engineering experience supporting enterprise DLP and data protection environments.
- Must be a US citizen.
- Operating Systems Proficiency: Experience with common operating systems including Windows and MacOS in enterprise environments.
- DLP Platform Experience: Hands-on configuration, tuning, and operation of multiple cybersecurity tools from vendors such as Microsoft Defender/Purview, Trellix ePO/DLP (SaaS or on-premises), Zscaler DLP, Skyhigh Security CASB/WebGateway, Netskope, DSPM solutions and related data protection platforms.
- Agent & Extension Deployment: Experience in deploying, upgrading agents and extensions across enterprise endpoints.
- Data Protection Knowledge: Understanding of data classification, data protection principles, encryption, and DLP concepts.
- Analytical & Communication Skills: Excellent analytical, problem-solving, and communication skills with the ability to explain complex technical concepts to both technical and non-technical stakeholders.
- Project Management Abilities: Ability to work independently, prioritize tasks, and manage multiple projects simultaneously across diverse client environments.
Other Requirements of the position include:- Able and willing to obtain a US Security Clearance.
- On-Call Support: Participates in on-call support to assist with security incident response, operational issues, and investigation activities to maintain continuous SOC coverage and response capabilities.