Senior Security Engineer, Data Loss Prevention
Job in
San Jose, Santa Clara County, California, 95199, USA
Listed on 2026-08-09
Listing for:
Fragomen
Full Time
position Listed on 2026-08-09
Job specializations:
-
IT/Tech
Cybersecurity, Information Security & Data Protection
Job Description & How to Apply Below
US-Corporate Remote time type:
Full time posted on:
Posted Todayjob requisition :
REQ-026981
** Job Description
**** About the Role
** Fragomen, an AmLaw 100 Firm and the leading global immigration services provider, is seeking a Cyber Security Engineer with strong experience in Data Loss Prevention (DLP), sensitive data governance, SaaS and cloud data protection, and security control engineering to join our Information Security & Cyber Security team.
Our industry-leading, immigration-specific technology and infrastructure is undergoing significant transformation, and protecting sensitive client, employee, and firm data is critical to its success. We are seeking a professional who is passionate about reducing data exposure risk, engineering practical DLP controls, and partnering across Legal, Compliance, Privacy, Risk, IT, and business teams to mature enterprise data protection capabilities.
You will join a team of security engineers who make security a differentiator in our technology offerings. The successful candidate will play a key role in designing, implementing, tuning, and operating DLP controls across email, endpoint, cloud, SaaS, and collaboration platforms while helping strengthen Fragomen’s overall security posture.
** How Will You Make a Difference at Fragomen?
** As a Security Engineer focused on Data Loss Prevention, you will:
* Design, implement, and tune enterprise DLP policies across Microsoft 365, endpoint, email, SaaS, cloud, and collaboration platforms.
* Identify, classify, and protect sensitive information using data classification, sensitivity labels, policy conditions, and appropriate enforcement actions.
* Monitor and investigate DLP alerts involving potential data exposure, improper sharing, data exfiltration indicators, or policy violations.
* Partner with Legal, Compliance, Privacy, Risk, Records, and business stakeholders to align DLP controls with regulatory, legal, client, and operational requirements.
* Develop and maintain DLP standards, operating procedures, runbooks, exception processes, and escalation workflows.
* Evaluate and improve controls for collaboration platforms and file-sharing tools, including One Drive, SharePoint, Box, Google Drive, Dropbox, Share File, Net Documents, and similar services.
* Support CASB and SaaS governance efforts by helping identify unsanctioned data movement, risky sharing behavior, excessive permissions, and opportunities for policy enforcement.
* Conduct root cause analysis on recurring alerts, control gaps, and data handling issues to improve policy quality and reduce false positives.
* Collaborate with security operations, identity, messaging, endpoint, network, and application teams to integrate DLP telemetry into SIEM, SOAR, monitoring, and response processes.
* Prepare clear, business-appropriate communications for end users, technical teams, stakeholders, and leadership regarding DLP findings, policy changes, and recommended corrective actions.
* Provide technical guidance and mentorship to junior analysts and security team members on DLP investigations, data handling risk, and control operations.
** Leverage Your Skills and Experience
**** Required Qualifications
*** 5+ years of experience in cybersecurity, data protection, security operations, governance, risk, compliance, or related technology roles, or equivalent combination of education and experience.
* Working knowledge of DLP concepts, sensitive data handling, information protection, data classification, and policy-based enforcement.
* Hands-on experience supporting or operating security controls in enterprise environments, especially within Microsoft 365, email, endpoint, cloud, or SaaS platforms.
* Ability to analyze DLP alerts, user activity, sharing patterns, policy matches, and event logs to determine business impact and appropriate response.
* Working knowledge of identity and access concepts, authentication mechanisms, file permissions, collaboration tooling, and data sharing workflows.
* Strong written and verbal communication skills, including the ability to explain technical findings in clear, practical, and…
Position Requirements
10+ Years
work experience
To View & Apply for jobs on this site that accept applications from your location or country, tap the button below to make a Search.
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).
Search for further Jobs Here:
×