





Specialized security role but remote and well-funded startup increases mid-level applicant competition.
Role requires niche data-protection and incident-response expertise, limiting cross-industry transferability.
Explicit 2–5 year range and mandatory DLP/EDR/SIEM, cloud, SQL, scripting requirements raise strictness.
Login to See Your Match Score
Create a free account or log in to unlock your CV match score across:
Perform technical analysis and forensic investigation of data security incidents to identify insider threats and endpoint risks.
Analyze and improve data loss prevention (DLP) policies and event data using Cyberhaven's Data Detection and Response (DDR) platform.
Prepare reports and manage incident response documentation and project tasks to support customer data risk strategies.
2-5 years experience with data protection or related security tools (EDR, SIEM, SOAR).
2+ years experience specifically in Insider Threat or Information Security.
Strong experience with DLP, Insider Threat, CASB, and handling sensitive data controls.
Familiarity with macOS, Linux, Windows, cloud platforms (AWS, GCP, Azure), SQL, scripting, APIs, and XML-based DLP rule editing.
Experienced in endpoint protection best practices and incident mitigation workflows across multiple OS and cloud environments.
Able to eliminate noise and false positives to enhance detection accuracy and refine security policies.
Comfortable working in a collaborative global team and presenting findings to internal stakeholders with strong communication skills.