Data Protection Analyst

Cyberhaven
Bengaluru, Mexico
Workplace: HybridFull timeFunction: Communications, PR & CommunityExperience: 2-5 yearsSkills: ["Problem-solving","Communication","Collaboration","Customer-centric"]

Build and evolve Cyberhaven’s data protection capabilities by analyzing DLP and DDR platform event data to improve policies, incidents, and detection accuracy. Lead investigation of endpoint forensic incidents and insider threat-related activity, refine datasets and XML-based DLP rules, and reduce noise/false positives. Prepare clear summaries and reports for internal teams while working across macOS, Linux, Windows, and cloud environments to identify and mitigate data loss risk.

Loading

Loading job details...

Preparing the role view and application actions.

FursaFursa
Cyberhaven
Cyberhaven
1 day ago

Data Protection Analyst

✓ Verified Job

Canonical indexed version, validated from employer's careers page.

Source: Company careers pageValidated by: Fursa AI
Last checked: 13 hours agoStatus: Live

Job Summary

Build and evolve Cyberhaven’s data protection capabilities by analyzing DLP and DDR platform event data to improve policies, incidents, and detection accuracy. Lead investigation of endpoint forensic incidents and insider threat-related activity, refine datasets and XML-based DLP rules, and reduce noise/false positives. Prepare clear summaries and reports for internal teams while working across macOS, Linux, Windows, and cloud environments to identify and mitigate data loss risk.
Location: Bengaluru, Mexico
Workplace: Hybrid
Employment Type: Full time
Job Function: Communications, PR & Community
Seniority: Mid level

Key Responsibilities

  • •Provide insight into DLP analytics and related issues.
  • •Analyze Cyberhaven DDR platform event data to improve policies, incidents, and alerts.
  • •Refine datasets and policies and manage them as customers’ data risk strategies evolve.
  • •Prepare and present summaries and reports on incident findings to internal team members.
  • •Conduct forensic analysis related to people, groups, and non-sanctioned egress destinations as requested.

Key Requirements

  • •2–5 years with data protection or adjacent security tools (EDR, SIEM, SOAR) and 2+ years in insider threat/InfoSec.
  • •Strong grasp of endpoint protection best practices and incident mitigation workflows.
  • •Experience with DLP, insider threat, CASB, and controls for handling sensitive data.
  • •Comfortable working across macOS, Linux, Windows and cloud platforms (AWS, GCP, Azure).
  • •Proficiency with SQL for analysis, plus ability to build/maintain dashboards and edit XML-based DLP rules; scripting and API usage experience.
Experience:2-5 yearsInsider threatInfoSecDLPEndpoint forensics
Skills:Problem-solvingCommunicationCollaborationCustomer-centric
Tech Stack:DLPEDRSIEMSOARInsider ThreatCASBEndpoint forensicsMacOSLinuxWindowsAWSGCPAzureSQLXMLAPIsDashboards

Company Brief

Cyberhaven
Cyberhaven provides AI-powered data security (Data Detection & Response) that traces data lineage to detect, prevent, and investigate data loss, insider risk, and AI-related data exposures across cloud, endpoints, and SaaS applications.
Industry: Cybersecurity
Company Size: Large (251 to 1,000 employees)
Growth: Scaleup
Valuation: Unicorn (USD 1B+)
Funding: Series D
Headquarters: Palo Alto, United States
Founded: 2016
Glassdoor
Glassdoor: 3.7
WebsiteLinkedInGlassdoor