Job Description
Policy Management:
- Create, modify, and maintain DLP policies for email, web, and endpoint systems based on cluster/agency requirements.
- Regularly review policies with DPOs and update configurations as needed.
Incident Handling & Troubleshooting:
- Investigate and resolve operational issues, including false positives and user-reported blocks.
- Provide forensic data extraction and analysis support for security investigations.
Reporting & Documentation:
- Generate weekly and ad-hoc reports for stakeholders.
- Maintain accurate records of approvals, policy changes, and incident logs in SharePoint.
Collaboration:
- Work closely with DPOs, CSIRT, and IT/network teams to ensure smooth integration and compliance.
- Support audits, vulnerability management, and infrastructure upgrades.
Continuous Improvement:
- Identify process gaps and recommend improvements for operational efficiency.