Data Loss Prevention (DLP) Architect [Remote] Job at Armavel, LLC in Phoenix
Armavel, LLC, Phoenix, AZ, US
Job Description
Position Summary:
The DLP Architect assists in the implementation of multiple DLP solutions and provides subject matter expertise and thought leadership as a primary contact for DLP design, best practices, system performance, issue troubleshooting, and incident handling for DLP operations. The DLP Architect should be able to analyze an environment and propose appropriate solutions to meet given needs. The DLP Architect must be an excellent communicator, as they will be called on to interact with many different types of constituents as a thought leader and expert on DLP. The DLP Architect must be willing to own the development of solutions and problem solving.
Required Experience & Education:
5 years of experience and a Bachelor’s Degree or higher in a business or technical discipline. 8 years of additional relevant experience may be substituted for education.
Responsibilities:
- Play a key role in developing and maintaining a comprehensive Data Loss Prevention (DLP) program to cover four main cyber protection areas of: Storage, Endpoint, Network, and Cloud.
- Support DLP functional and use case requirements to ensure VA compliance with the HIPAA Privacy and Security Rule, Health Information Technology for Economic and Clinical Health (HITECH) Act, Privacy Act, National Institute of Standards and Technology (NIST) guidelines, Federal Information Security Management Act (FISMA), Federal Acquisition Regulation (FAR) and other laws and regulations pertaining to the protection of sensitive VA data.
- Act as technical Subject Matter Expert on data security standards, operations, and technologies by performing ongoing research on industry trends, best practices, and new technologies on the market.
- Aid in the management and administration of vulnerability scanning infrastructure (hardware and software)
- Stabilize and optimize DLP system performance, including rules and reports.
- Assist with DLP component upgrades, installs, testing and configuration.
- Proactively communicate relevant technical information and alerts on known issues, hot fixes, new releases, etc.
- Provide regular status reports for critical incidents, projects and proactive services.
- Communicate professionally and effectively at all organizational levels.
- Very minimal travel may be required.
Minimum Qualifications:
- Experience with cloud DLP technologies and/or CASB
- Experience implementing DLP policies for Cloud/Endpoint/Exchange/Teams, etc.
- Excellent verbal communication skills
- Strong problem solving and critical thinking skills
- Strong attention to detail
- Ability to prioritize and multitask
- Resilience, positivity, integrity, humility, and drive
Preferred Qualifications:
- Knowledge of Certificates, Keys, Tokens associated with system connections (e.g., API, Client Access).
- Experience reviewing audit or activity logs to evaluate accuracy or escalate to response process
- Able to perform event analysis to determine root cause of false positives and recommend approaches to reduce false positive results.
- Working knowledge of HIPAA Privacy and Security Rule, HITECH Act, Privacy Act, NIST guidelines, FISMA, Federal Acquisition Regulation (FAR) and other laws and regulations pertaining to the protection of sensitive PHI/PII data.
- Experience with SEIM and SOAR, preferably in a DLP context