Dexcom

Sr. Manager, Data Protection and Insider Risk

Dexcom$181K — $301K *
Information Technology
8 - 10 years of experience
Job Overview by Ladders

Qualifications

  • BS/MS in Computer Science, Cybersecurity, IT, Engineering, Risk Management, or equivalent experience.
  • 10+ years in cybersecurity, data security, risk management, or related fields; 5+ years in data protection, DLP, or insider risk.
  • Proven success in building and scaling data protection or insider risk programs in complex global settings.
  • Strong understanding of enterprise DLP controls and their lifecycle management.
  • Experience with platforms like Netskope, Microsoft Purview, and relevant telemetry.
  • Demonstrated experience leading sensitive investigations with cross-functional teams.
  • Strong knowledge of legal and regulatory considerations in data protection and insider risk.

Responsibilities

  • Define and execute Data Protection and Insider Risk strategy aligned with business and security priorities.
  • Build and lead a global high-performing team responsible for program delivery and investigations.
  • Manage enterprise DLP control lifecycle across multiple channels including endpoints and cloud.
  • Mature the Insider Risk Program, including governance and incident response workflows.
  • Collaborate with data owners to identify sensitive information and enforce protection requirements.
  • Lead investigations on data misuse and insider threats effectively.
  • Integrate and optimize technologies for data protection and insider risk.
  • Drive automation and analytics to enhance control effectiveness and response.

Benefits

  • Comprehensive benefits package including medical, dental, and vision coverage.
  • Flexible work arrangements and unlimited paid time off.
  • Access to training, development programs, and career mentorship.
  • Opportunity to attend security conferences for professional growth.
  • Inclusive, diverse workplace that emphasizes teamwork and improvement.
  • Participation in a purpose-driven mission that positively impacts lives.
Full Job Description
Meet The Team:

The Dexcom Information Security team is building a dedicated Data Protection and Insider Risk function to protect sensitive information, including trade secrets, from unauthorized access, movement, disclosure, or misuse. The function brings together Data Loss Prevention (DLP), insider risk detection and response, business data owner collaboration, investigations, and continuous control improvement.

This role will lead a global team maturing data protection controls and insider risk capabilities across endpoint, email, web, cloud, SaaS, and collaboration environments. The team will partner closely with peer Information Security functions, Privacy, Legal, HR, IT, Global Security, and business data owners to protect intellectual property, regulated data, and other high-value information.

Where You Come In:
  • You will define and execute the Data Protection and Insider Risk strategy, operating model, and roadmap aligned to Dexcom's business risk, regulatory obligations, and Information Security priorities.
  • You will build and lead a high-performing global team across employees, contractors, and service providers, with clear accountability for program delivery, investigations, and control effectiveness.
  • You will own the enterprise DLP control lifecycle, including rule design, testing, tuning, deployment, approved exceptions, enforcement, and retirement across endpoint, email, web, cloud, SaaS, and collaboration channels.
  • You will establish and mature the Insider Risk Program, including governance, risk scenarios, indicators, detection use cases, triage and investigation workflows, escalation paths, and response playbooks.
  • You partner with business data owners to identify high-value information, define protection requirements, validate control intent, implement approved exceptions, and drive remediation and control adoption.
  • You lead sensitive insider risk and data protection investigations, including suspected data misuse, exfiltration, control violations, and high-risk departures.
  • You oversee the integration and optimization of data protection and insider risk technologies, telemetry, and analytics, including DLP, user activity monitoring, behavioral analytics, and supporting security platforms.
  • You will drive automation, analytics, and AI-assisted capabilities to improve alert quality, prioritization, investigation efficiency, control tuning, and response with appropriate human oversight.
  • You define and report KPIs and KRIs for control coverage and effectiveness, violation and exception trends, investigation outcomes, alert quality, program maturity, and risk reduction.
  • You maintain program governance, operating procedures, and defensible investigative practices that support proportionate monitoring, evidence handling, privacy requirements, and consistent decision-making.


What Makes You Successful:
  • You have a BS/MS in Computer Science, Cybersecurity, Information Technology, Engineering, Risk Management, or a related field, or equivalent work experience.
  • You have 10+ years of experience in cybersecurity, data security, risk, investigations, or related disciplines; 5+ years focused on data protection, DLP, or insider risk.
  • You have proven success building, transforming, or scaling enterprise Data Protection, DLP, or Insider Risk programs in complex global environments.
  • You have a strong understanding of enterprise DLP controls across endpoint, email, web, cloud, SaaS, and collaboration environments, including rule lifecycle management, tuning, approved exceptions, and control effectiveness.
  • You have experience with enterprise DLP and insider risk platforms, including Netskope, Microsoft Purview, or similar technologies, and with user activity, behavioral, identity, endpoint, and other relevant telemetry.
  • You have demonstrated experience leading sensitive investigations and partnering with HR, Legal, Privacy, GRC, Global Security, business leaders, and technical teams on risk-based response and remediation.
  • You have strong knowledge of privacy, legal, regulatory, and ethical considerations for employee monitoring, sensitive data handling, and insider risk programs in global enterprises.
  • You have experience using automation, analytics, or AI to improve data protection and insider risk operations and translate technical findings into business risk and executive-level insights.
  • You may also bring preferred certifications such as CISSP, CISM, CIPP, GIAC, CERT Insider Threat credentials, or other relevant data protection, privacy, or insider risk certifications.

What You'll Get:
  • A front-row seat to groundbreaking technology that impacts lives around the world.
  • A full and comprehensive benefits program, including medical, dental, and vision coverage, and wellness programs.
  • Competitive compensation with performance incentives and opportunities for advancement within a growing, innovative company.
  • Work-life balance support through flexible work arrangements and unlimited paid time off.
  • Access to in-house training, development programs, career mentorship, and opportunities to attend security conferences to support your professional growth.
  • The chance to work in an inclusive, diverse environment that values teamwork, collaboration, and continuous improvement.
  • The opportunity to connect with the #dexcomwarriors community and contribute to a purpose-driven mission that makes a difference.


Travel Required:
  • 5-15%


Experience and Education Requirements:
  • Typically requires a Bachelor's degree in a technical discipline with 13+ years of industry experience
  • 5-8 years of previous people management experience


Remote Workplace:
  • Your location will be a home office; you are not required to live within commuting distance of your assigned Dexcom site (typically 75 miles/120km). If you reside within commuting distance of a Dexcom site (typically 75 miles/120km) a hybrid working environment may be available. Ask about our Flex workplace option.


Please note: The information contained herein is not intended to be an all-inclusive list of the duties and responsibilities of the job, nor are they intended to be an all-inclusive list of the skills and abilities required to do the job. Management may, at its discretion, assign or reassign duties and responsibilities to this job at any time. The duties and responsibilities in this job description may be subject to change at any time due to reasonable accommodation or other reasons. Reasonable accommodations may be made to enable individuals with disabilities to perform essential functions.

Salary:
$181,000.00 - $301,600.00

#DexcomUS

About Dexcom

Dexcom is a medical device company that specializes in continuous glucose monitoring (CGM) systems for people with diabetes. The company was founded in 1999 and is headquartered in San Diego, California. Dexcom's CGM systems provide real-time glucose readings, allowing people with diabetes to better manage their blood sugar levels. The company's products include the Dexcom G6, G5, and G4 systems, as well as the Dexcom Share remote monitoring system. Dexcom has partnerships with several other companies, including Insulet and Tandem Diabetes Care. In 2020, Dexcom was named one of the world's most innovative companies by Fast Company.
Learn more about Dexcom
Size
6,300 employees
Market Cap
$43.2 billion
Industry
Net Income
$493.6 million
Founded
1999
5 Year Trend
+33.7%
Revenue
$1.9 billion
NASDAQ

Similar Jobs

More Jobs at Dexcom

More Information Technology Jobs

Find similar Sr. Manager, Data Protection and Insider Risk jobs: