Position Title: Data Protection Analyst – DLP Monitoring & Alert Response
Job Type: Full-Time
Location: India (Availability between 1 PM IST – 10 PM IST, with a minimum 3-hour overlap with US Eastern Time)
Reports To: ZICC Data Protection Lead
Department: Data Protection / Information Security
Position Responsibilities
(100% allocation across the following areas)
Monitoring & Alert Handling
- Monitor data protection dashboards and alert queues for policy violations or anomalous activity.
- Conduct preliminary analysis on triggered alerts and apply standard operating procedures to determine severity.
Incident Triage & Escalation
- Validate alerts, gather relevant logs or evidence, and escalate incidents when necessary.
- Document incident details clearly in ticketing or incident management systems.
Collaboration & Reporting
- Work closely with team members to address inquiries or provide updates on active alerts.
- Generate basic daily and weekly reports on DLP alerts and incidents.
Policy Awareness
- Maintain understanding of basic data protection policies and procedures.
- Provide initial feedback on policy effectiveness based on recurring alerts.
Organizational Relationships
- Reports to ZICC Data Protection Lead
- Collaborates with:
- Peer ZICC Data Protection Analysts
- Data Protection Service Lead (US)
- Sr. Data Protection Analyst Team (US)
- Insider Threat Investigations Manager (US)
Education and Experience
Education
- University Degree in Computer Science or Information Systems is required.
- MS or advanced identity/security courses or applicable certifications are desirable, including:
- Certified Information Systems Security Professional (CISSP)
Experience
- A minimum of 4+ years of relevant experience in Information Security, preferably with a focus on Data Loss Protection (DLP) technologies or in a Security Operations Center (SOC) workplace.
- Expertise in Netskope CASB and Symantec DLP is desirable.
- Experience working with global teams across multiple time zones.
- Demonstrated ability to work within diverse technical teams.
Technical Skills Requirements
- Proficiency in data protection tools (e.g., Netskope, Symantec, Microsoft).
- Solid understanding of Windows, macOS, and/or Linux environments.
- Familiarity with SIEM products, ticketing systems, and incident response workflows.
- Ability to identify Indicators of Compromise (IOCs) and detect malicious behavior.
- Capable of driving root cause analysis and coordinating remediation.
- Experience in pharmaceutical or other regulated industries is desirable.
- Must be fluent in written and spoken English, with the ability to communicate effectively across technical and non-technical audiences.
Physical Position Requirements
- Availability: Required to work between 1 PM IST to 10 PM IST, with at least 3 hours of daily overlap with US Eastern Time Zone.
- Travel: Not specified; assumed minimal.