Industry/Sector
Not Applicable
Specialism
Managed Services
Management Level
Associate
Job Description & Summary
At PwC our people in cybersecurity focus on protecting organisations from cyber threats through advanced technologies and strategies. They work to identify vulnerabilities develop secure systems and provide proactive solutions to safeguard sensitive data.
In cybersecurity incident management at PwC you will focus on effectively responding to and mitigating cyber threats maintaining the security of client systems and data. You will be responsible for identifying analysing and resolving security incidents to minimise potential damage and protect against future attacks.
Driven by curiosity you are a reliable contributing member of a our fast-paced environment you are expected to adapt to working with a variety of clients and team members each presenting varying challenges and scope. Every experience is an opportunity to learn and grow. You are expected to take ownership and consistently deliver quality work that drives value for our clients and success as a team. As you navigate through the Firm you build a brand for yourself opening doors to more opportunities.
Examples of the skills knowledge and experiences you need to lead and deliver value at this level include but are not limited to:
- Apply a learning mindset and take ownership for your own development.
- Appreciate diverse perspectives needs and feelings of others.
- Adopt habits to sustain high performance and develop your potential.
- Actively listen ask questions to check understanding and clearly express ideas.
- Seek reflect act on and give feedback.
- Gather information from a range of sources to analyse facts and discern patterns.
- Commit to understanding how the business works and building commercial awareness.
- Learn and apply professional and technical standards (e.g. refer to specific PwC tax and audit guidance) uphold the Firms code of conduct and independence requirements.
Job Summary:
We are seeking a skilled Data Loss Prevention (DLP) Analyst to join our cybersecurity team. The ideal candidate will have hands-on experience in managing implementing and maintaining Data Loss Prevention tools such as Microsoft Purview Varonis Proofpoint or McAfee DLP. This role will focus on protecting sensitive data monitoring data movement preventing data leakage and ensuring compliance with organizational and regulatory security standards.
Minimum Degree Required:
Bachelors Degree
Minimum Year(s) of Experience:
- 2 to 4 years of relevant experience for experienced associate in data Loss Prevention (DLP) or Information Security roles.
Certification(s) Nice to Have:
- CompTIA Security or Microsoft SC-400 (Information Protection Administrator)
Key Responsibilities:
DLP Administration & Operations
- Manage and maintain enterprise DLP solutions (Microsoft Purview / Varonis / Proofpoint / McAfee).
- Create configure and fine-tune DLP policies rules and classifiers to detect and prevent data leakage across endpoints emails and cloud applications.
- Monitor and analyze DLP incidents alerts and reports to identify patterns of potential data exfiltration.
- Collaborate with security and business teams to remediate and close incidents effectively.
- Conduct regular policy testing and validation to ensure DLP rules are functioning as intended.
Data Security & Risk Management
- Identify and protect sensitive data such as PII PHI PCI and other regulated information.
- Implement DLP controls for data-in-motion data-at-rest and data-in-use across various channels (email endpoint network and cloud).
- Work closely with compliance privacy and legal teams to align DLP policies with data governance frameworks.
- Support data classification initiatives and ensure integration between DLP and data discovery tools.
- Provide recommendations for data handling best practices and minimize insider threat risks.
Incident Response & Investigation
- Respond to DLP alerts and conduct forensic investigations to determine root cause and scope of incidents.
- Coordinate with SOC and Incident Response teams for escalation and reporting of confirmed incidents.
- Document and report findings remediation actions and lessons learned for continuous improvement.
Governance Reporting & Continuous Improvement
- Maintain metrics dashboards and reports on DLP performance policy violations and resolution timelines.
- Conduct periodic reviews to optimize DLP configurations and improve detection accuracy while reducing false positives.
- Stay up to date with emerging data protection technologies and regulatory trends.
- Support audits and compliance assessments related to data protection and privacy.
Education and Experience:
- Bachelors degree in computer science Information Security or a related field (or equivalent experience).
- Hands-on experience with at least one DLP platform:
- Microsoft Purview (M365 Compliance Center / Endpoint DLP)
- Varonis Data Security Platform
- Proofpoint Information Protection / Email DLP
- McAfee Total Protection for DLP
- Strong understanding of data security principles data classification and regulatory compliance (GDPR HIPAA PCI-DSS).
- Experience in incident management root cause analysis and reporting of DLP events.
- Good analytical and problem-solving skills with strong attention to detail.
- Excellent written and verbal communication skills for engaging with cross-functional teams.
- Experience integrating DLP tools with SIEM CASB or UEBA solutions (e.g. Splunk Azure Sentinel).
Travel Requirements
Not Specified
Job Posting End Date