Please scroll down, To apply

Cybersecurity/Data Loss Prevention Specialist with Security Clearance

hiring now
New job

The Informatics Applications Group

2024-09-21 14:36:25

Job location Bethesda, Maryland, United States

Job type: fulltime

Job industry: I.T. & Communications

Job description

TIAG is currently hiring a Cybersecurity/Data Loss Prevention (DLP) Specialist to support the Uniformed Services University Cybersecurity Department. This position requires a Secret clearance to be considered, as a result candidates must be US or Naturalized Citizens. Responsibilities: Leverage cloud-native Data Loss Prevention (DLP) tooling to categorize, audit, respond to, and intervene in actual or would-be data loss events. Collaborate with security architects, engineers, and users to design DLP implementations that align with the University's cybersecurity posture while allowing for the legitimate interchange of information. This involves selecting appropriate DLP tools, defining data type detection and labeling policies, applying appropriate rule-based loss prevention policies, and establishing data flow monitoring strategies. Serve as a subject matter expert on DLP tools across heterogeneous data types, compute platforms, sharing needs, and operational environments. Tailor DLP policies and rules to identify sensitive data based on content, context, and user behavior. Implement comprehensive data monitoring mechanisms to track data movement within each environment. Utilize all available tooling to identify potential data exfiltration attempts or unauthorized data access and proactively identify gaps in the same tools Lead investigations into DLP incidents, meticulously analyzing data logs, network traffic, and user activities. Contain data breaches, identify affected systems and data, and implement remediation measures to prevent future incidents. Regularly review and update DLP policies and procedures to adapt to evolving threats, technologies, and regulatory requirements. Conduct periodic risk assessments to identify potential vulnerabilities and weaknesses in the DLP framework. Maintain up-to-date knowledge of DoD cybersecurity policies, regulations, and standards. Collaborate with other security teams, such as vulnerability management, incident response, and security operations, to integrate DLP with existing security tools and technologies, fostering a cohesive security ecosystem. Participate in security audits and assessments conducted by internal and external entities. Provide evidence of DLP effectiveness and remediate any identified shortcomings. Proactively identify opportunities to enhance data protection measures within the IMIT environment. Recommend and implement new technologies, processes, or training programs to bolster the DoD's security posture. Develop and maintain comprehensive incident response plans tailored to DLP incidents. Define roles and responsibilities, communication protocols, and escalation procedures to ensure a swift and coordinated response. Actively participate in incident response activities, including data breach investigations, containment, and recovery. Collaborate with other security professionals, legal teams, and public affairs to manage the incident's impact and communicate effectively with stakeholders. Conduct thorough post-incident analysis to identify the root cause of DLP incidents. Implement corrective actions to address vulnerabilities and prevent similar incidents in the future. Develop and deliver security awareness training programs to educate DoD personnel about data security best practices, DLP policies, and the importance of safeguarding sensitive information. Foster a culture of security awareness across the organization. Required Experience: 6+ years of IT Security experience, including a minimum of two (2) years of support to Federal or Defense RMF implementation experience may be substituted if a B.S. degree is not held Minimum of four (4) year's hands-on compliance experience Demonstrated mastery of DLP concepts, processes, and practical procedures. Familiarity with Google Workspace / Cloud is desirable but not required. Secret clearance IAM Level II certification required - (CAP, CASP+ CE, CISM, CISSP (or Associate), GSLC, CCISO, HCISPP, CISSP, CISM, Security+, CAP) Additional technical certification desired - (CCNA, VCP, MCSE) TIAG is an equal opportunity and affirmative action employer that does not discriminate on the basis of race, national origin, religion, age, color, sex, sexual orientation, gender identity, disability, or protected veteran status, or any other characteristic protected by local, state, or federal laws, rules, or regulations. TIAG's policy applies to all terms and conditions of employment. To achieve our goal of equal opportunity, TIAG maintains an affirmative action plan through which it makes good faith efforts to recruit, hire, and advance in employment qualified minorities, women, individuals with disabilities, and protected veterans.

Inform a friend!

<!– job description page –>
Top