SlipstreamJobs tracks this role from the company's public career site. Apply directly on the employer's site.
Join Cyberhaven's Professional & Managed Services team as a Data Protection Analyst, investigating insider-threat signals and endpoint forensics to analyze data-security incidents and surface risk across customer environments. You will become an expert in Cyberhaven's Data Detection & Response platform, helping customers operationalize it to reduce data loss and manage incident-response documentation.
Key responsibilities include:
- Serve as a subject matter expert on data protection security issues and external DLP market trends, illustrating realized value for customers
- Analyze Cyberhaven's Data Detection and Response platform event data to improve policies, incidents, and alerts, identifying areas where data loss risk exists
- Partner with clients to develop incident response workflows aligned with their security objectives and policies
- Refine datasets and policies as customers' data risk strategy matures and business needs evolve
- Identify trends and drive requirements to improve data detection and response policies
- Prepare and present formal summaries to technical and non-technical audiences
- Collaborate with Product and Development teams to develop innovative strategies for monitoring and preventing data loss
- Eliminate noise and false-positive information from analytic results
- Provide forensic analysis on people, groups, and non-sanctioned egress destinations as requested by clients
You will report to the Head of Global Service and work in a fast-paced, high-growth environment alongside security and operations teams. Cyberhaven is backed by $250M from leading investors including Khosla and Redpoint, with a team that includes leaders from CrowdStrike, Palo Alto Networks, Meta, and Google.
Requirements:
- 3+ years working with data protection products, with knowledge of endpoint protection best practices and incident mitigation workflows
- Experience advising on security issues affecting data protection and insider risk (both accidental and malicious)
- Expertise with DLP, Insider Threat, and CASB solutions; familiarity with SIEM/SOAR integrations
- Strong understanding of macOS, Linux, and Windows environments
- Knowledge of security controls for handling sensitive data types
- Experience performing technical analysis and managing documentation/project management aspects of incident response for data security issues
- Familiarity with cloud apps and services; passion for cloud technologies
- Excellent problem-solving and analytical abilities; both creative and logical thinking
- Customer-centric, highly motivated, with strong empathy and focus
- Excellent written and verbal communication skills; able to create management-level presentations and analysis on incident investigations
- Effective collaborator in a global, cross-functional team