Senior Data Protection Analyst

Cyberhaven
United States, Mexico
Workplace: RemoteFull timeFunction: Solutions Engineering & Sales EngineeringSkills: ["Problem-solving","Communication","Collaboration","Customer-centric"]

Investigate endpoint forensic incidents and insider threat activity by analyzing Cyberhaven DDR event data to refine DLP analytics, policies, and alerts. Eliminate noise and false positives, conduct forensic analysis across people/groups and egress destinations, and help mature customers’ data risk strategy. Prepare internal summaries and reports while collaborating globally and using tools, dashboards, SQL analysis, XML-based DLP rule editing, and APIs across macOS, Linux, Windows, and cloud platforms.

Loading

Loading job details...

Preparing the role view and application actions.

FursaFursa
Cyberhaven
Cyberhaven
19 hours ago

Senior Data Protection Analyst

✓ Verified Job

Canonical indexed version, validated from employer's careers page.

Source: Company careers pageValidated by: Fursa AI
Last checked: 14 hours agoStatus: Live

Job Summary

Investigate endpoint forensic incidents and insider threat activity by analyzing Cyberhaven DDR event data to refine DLP analytics, policies, and alerts. Eliminate noise and false positives, conduct forensic analysis across people/groups and egress destinations, and help mature customers’ data risk strategy. Prepare internal summaries and reports while collaborating globally and using tools, dashboards, SQL analysis, XML-based DLP rule editing, and APIs across macOS, Linux, Windows, and cloud platforms.
Location: United States, Mexico
Workplace: Remote
Employment Type: Full time
Job Function: Solutions Engineering & Sales Engineering
Seniority: Mid level

Key Responsibilities

  • •Provide insight into DLP analytics and related issues.
  • •Analyze Cyberhaven DDR platform event data to improve policies, incidents, and alerts.
  • •Refine and manage datasets and policies as customers’ data risk strategy matures.
  • •Prepare and present summaries and reports to internal team members.
  • •Conduct forensic analysis on people, groups, and non-sanctioned egress destinations as requested.

Key Requirements

  • •5+ years with data protection or adjacent security tools (EDR, SIEM, SOAR) and 2+ years in Insider Threat/InfoSec.
  • •Strong grasp of endpoint protection best practices and incident mitigation workflows.
  • •Experience with DLP, Insider Threat, CASB, and controls for handling sensitive data.
  • •Comfortable across macOS, Linux, Windows, and cloud platforms (AWS, GCP, Azure).
  • •Use SQL for analysis; build/maintain dashboards; edit XML-based DLP rules; script and use APIs.
Experience:Data protectionInsider threatEndpoint securityCloud securityDLPIncident response
Skills:Problem-solvingCommunicationCollaborationCustomer-centric
Tech Stack:SQLDLPInsider ThreatCASBEDRSIEMSOARDDR platformDashboardsXMLAPIsMacOSLinuxWindowsAWSGCPAzure

Company Brief

Cyberhaven
Cyberhaven provides AI-powered data security (Data Detection & Response) that traces data lineage to detect, prevent, and investigate data loss, insider risk, and AI-related data exposures across cloud, endpoints, and SaaS applications.
Industry: Cybersecurity
Company Size: Large (251 to 1,000 employees)
Growth: Scaleup
Valuation: Unicorn (USD 1B+)
Funding: Series D
Headquarters: Palo Alto, United States
Founded: 2016
Glassdoor
Glassdoor: 3.7
WebsiteLinkedInGlassdoor