Who We Are
At Kyndryl, we run and reimagine the mission-critical technology systems that drive advantage for the world’s leading businesses. We are at the heart of progress; with proven expertise and a continuous flow of AI-powered insight, enabling smarter decisions, faster innovation, and a lasting competitive edge. For our people—Kyndryls—that means doing purposeful work that powers human progress. Join us and experience a versatile, supportive workplace where your well-being is prioritized and your potential can thrive.
The Role
Key Responsibilities
1. Incident Review & Investigation
• Review, analyze, and validate DLP and CASB alerts escalated by L1 analysts, ensuring accurate triage and risk classification.
• Investigate potential cases of data exfiltration, misuse, or policy violations across multiple channels:• Email (O365, Exchange Online Protection, Gmail)
• Endpoint (Device Agents, Removable Media)
• Web/Cloud Applications (Box, OneDrive, SharePoint, Google Drive, Salesforce, etc.)
• Correlate events across systems (DLP, CASB, SIEM, and EDR)
to identify multi-vector data leakage attempts.
• Escalate confirmed incidents with detailed context, evidence, and recommended containment actions to L3 SMEs or Incident Response teams.
• Participate in Root Cause Analysis (RCA) for confirmed data leakage incidents and propose preventive actions.
2. Policy Management & Tuning
• Collaborate with DLP/CASB SMEs to fine-tune detection rules, thresholds, and patterns to reduce false positives while maintaining high detection fidelity.
• Implement rule and policy changes based on evolving business and regulatory requirements (typically 10–50 changes per month for CASB).
• Manage policy lifecycle processes, including testing, deployment, rollback, and documentation.
• Contribute to the development of custom detection patterns, data classifiers, and policy templates aligned with organizational data categories (PII, PCI, IP, etc.).
• Maintain synchronization and policy co
📌 Data Loss Prevention (Noida)
🏢 Kyndryl
📍 Noida