Security Engineer

Posted 2 days ago

phoenix groupNew York (NY)

SENIORITY

Lead

Apply

About the role

Overview: You will be the primary technical owner of our data loss prevention and data security posture programs, from policy design and tuning through alert investigation and ongoing improvement. Reporting to the head of Information Security, you will work closely with Legal, Compliance, and IT to lower the organization's exposure to data leakage.
Key Responsibilities: Data Loss Prevention & Posture Management Run Varonis DSPM to locate, classify, and evaluate sensitive data at rest, and lead cleanup of excessive access rights, outdated data, and configuration issues. Own the data classification framework and make sure posture findings flow into enterprise risk reporting and remediation tracking. Manage Crowd Strike Falcon Data Protection for Endpoint, including writing and refining detection and blocking rules, reviewing alerts, and cutting down noise while addressing true exfiltration risks. Oversee Falcon Data Protection for Cloud to discover, label, and monitor sensitive information in cloud storage and SaaS applications. Build and maintain DLP and retention policies in Slack and Google Workspace covering messages, channels, DMs, and shared files. Administer AI Detection & Response (AIDR) and Guardian DLP controls that govern sensitive data moving to and from generative AI tools, helping the business adopt AI safely. Support retention and eDiscovery efforts by setting retention schedules, applying legal holds, and helping Legal and Compliance preserve and collect data across Varonis, cloud, Slack, email, and other systems. Program Ownership & Collaboration Regularly review data protection coverage and propose new controls or adjustments where gaps exist. Deliver recurring metrics and reports to leadership on DLP events, policy performance, and overall data risk. Work with IT, Legal, Compliance, and business teams to keep data handling aligned with internal policy and regulatory requirements. Write and maintain policies, SOPs, and response playbooks for the data protection stack. Keep up with developments in DLP, DSPM, AI governance, and related threats.
What We're Looking For: Experience working in enterprise data loss prevention within a regulated security environment (PCI, HIPAA/PHI, ITAR, IP, or PII).Direct experience with DLP tools such as Crowd Strike Falcon Data Protection, Varonis, or comparable platforms, including policy configuration, alert investigation, and tuning. Working knowledge of DSPM concepts and tooling. Experience securing SaaS and collaboration platforms (Slack, Microsoft 365, Google Workspace) and managing their DLP and retention settings. Solid understanding of records retention, legal hold, and eDiscovery and how they connect to technical controls. Exposure to AI governance or protecting data shared with generative AI tools is highly valued. Certifications such as CIPP, CISSP, or other privacy credentials are nice to have, not required.

Before you apply

Applying takes about a minute. These four things decide how fast it moves after that.

Your profile is current

It's what we read first. Occupations, seniority and locations matter more than a long history.

Two examples you can talk through

Not a portfolio — just two pieces of work where you can explain the decisions and what you'd change.

A number in mind

What you're on now and what would make you move. We negotiate better when we know both.

Your notice period

Employers plan around it, and it's the question that stalls offers most often.

Once you apply, someone reads it and calls you before anything reaches the employer — usually within two working days.

More like this