Republic Services, Inc. is a leader in the environmental services industry, dedicated to protecting information through cybersecurity. The Senior Data Protection Engineer will design and implement enterprise security solutions, mentor analysts, and collaborate with senior leaders to safeguard sensitive data.
Responsibilities:
- Designs and implements enterprise security solutions
- Functions as the Data Protection Technical Lead / SME for enterprise security
- Mentors DLP analysts on data protection controls, technologies, best practices, and techniques
- Collaborates with the Senior Manager of Data Protection to define and implement processes and technologies to enable delivery of the roadmap initiatives
- Leads the development of processes and tool alignment for data at rest initiatives
- Aids in educating data subject matter experts and key business technology and application leaders on data identification, secure handling, storage, and transfer of sensitive data
- Manages DLP policies and configuration of technical tools per process requirements
- Drafts configuration manuals, operating procedures, reports, and system hardening guidelines
- Performs Level 3 / Level 4 incident response/support to triage security events/incidents, identify root cause, determine next steps, and drive incident resolution
- Provides guidance in the application and reporting of data protection technology performance metrics
- Performs other job-related duties as assigned or apparent
Requirements:
- Minimum 5 years of experience in Data Loss Prevention or Security Engineer roles
- Prior experience implementing and operating at least three of the following: DLP (e.g., endpoint, network), CASB, Data Classification, Data Encryption
- Advanced level of knowledge with Data Protection technologies (CASB, proxy, network DLP, endpoint DLP, data discovery, key management, tokenization, encryption, etc.); seen as the 'go to' to person for the toughest technical or leadership challenges
- Demonstrated Information Security understanding and specifically industry best practices for the development of a Data Protection program
- Ability to communicate effectively with senior leaders (i.e., CISO), technical team members and non-technical stakeholders
- Excellent written and verbal communication skills
- Proven expertise in developing and implementing strategic initiatives, complemented by a strong capability for tactical execution and problem-solving
- Proven track record of fostering trust, transparency, and flexibility within a team environment
- 7-10+ years of related industry experience such as in Cybersecurity and/or Information Technology
- Relevant certifications such as CISSP, CISM, GSEC, Security+ or similar are highly desirable
- Familiarity with NIST Cybersecurity Framework (v2.0), Payment Card Industry Data Security Standard, California Consumer Privacy Act, and other pertinent data protection regulations and standards