What you will be responsible for
As Data Loss Prevention Technical Investigator you will
Review data loss prevention, insider threat, and other cyber events to ascertain policy violations
Determine data classification of sensitive documents flagged by the Data Loss Prevention tools
Build and maintain operating procedures for data loss events and cyber security events
Perform forensic analysis of endpoints as required
Conduct analysis of endpoint logs, network logs, cloud platform logs, and other relevant information in order to investigate suspected policy violations
Provide training, informational and educational materials to impacted employees
Conduct root cause and contributing factor analysis in order to understand why an incident occurred
Document interviews, write investigative reports, and handle evidence in accordance with organizational processes and procedures
Identify gaps in technical controls and develop strategies to remediate the gaps
Ensure that security plans, controls, processes, standards, policies and procedures are aligned with overall information security standards
Identify security risks and exposures, determine the causes of standard security violations and implement changes to halt future incidents and improve security.
Monitor and analyze system access logs to ensure ability to provide audit trails and incident investigation
What we value
These skills will help you succeed in this role
Strong understanding of endpoint, network, and system logs
Strong understanding of cloud forensic tools and technologies
Strong understanding of SIEM tools and how to use them to retrive and analyze data
Exceptional problem solving and analytical skills
Exceptional report writing skills
Knowledge of Endpoint Detection and Response and Anti Virus tools
Knowlegde of Data Loss Prevention tools
Knowledge and understanding of data organizing or structuring complex data across varied data sources
Strong organizational, multi-tasking, and prioritizing skills
Education & Preferred Qualifications
5+ years of experience performing computer and network forensics demonstrated through work, military, or education
5+ years of experience in production supporting, including problem identification, ticket documentation, and customer/vendor relations, demonstrated through work, military, or education
5+ years of experience using ticket tracking tools for change management, problem and incident management, and availability management, demonstrated through work, military, or education
Certified Computer Forensic Examiner
Certified Computer Examiner
GIAC Network Forensic Analyst
Salary Range:
$110,000 - $185,000 Annual
The range quoted above applies to the role in the primary location specified. If the candidate would ultimately work outside of the primary location above, the applicable range could differ.
Employees are eligible to participate in State Street’s comprehensive benefits program, which includes: our retirement savings plan (401K) with company match; insurance coverage including basic life, medical, dental, vision, long-term disability, and other optional additional coverages; paid-time off including vacation, sick leave, short term disability, and family care responsibilities; access to our Employee Assistance Program; incentive compensation including eligibility for annual performance-based awards (excluding certain sales roles subject to sales incentive plans); and, eligibility for certain tax advantaged savings plans.
For a full overview, visit .