Principal Security Architect
Cybersecurity at Providence is responsible for appropriately protecting all information relating to its caregivers and affiliates, as well as protecting its confidential business information (including information relating to its caregivers, affiliates, and patients)
What will you be responsible for?
- Leading/playing a key role in the design, implementation, and deployment of data protection/security technologies, processes, and procedures.
- Acting as an SME on Data Security in the industry for On-Prem or Cloud data platforms.
- Researching, evaluating, designing, configuring, and managing data protection/security solutions.
- Collaborate with IT and cybersecurity teams to seamlessly integrate security solutions into data systems and processes.
- Manage and optimize data security tools and platforms, ensuring their effectiveness and configuration.
- Provide expertise and guidance on best practices and strategic improvements in data security technologies.
- Investigate policy violations, data breaches, and insider risks , escalating cases as per defined playbooks and incident response paths.
- Lead DLP policy lifecycle management, including policy scoping, testing, deployment, and tuning based on incident trends and user behaviour.
What would your work week look like?
- Develop and enforce data security policies, procedures, and standards to ensure consistent protection of data assets.
- Lead incident response efforts, analyzing data breaches and implementing corrective actions.
- Conduct regular security audits and assessments to continuously improve data integrity and security posture.
- Review output and alerts from Data Protection systems for evidence of insider threats, misuse, or compromise
- Review the SOPs & technical runbooks & also create new SOP documents/runbooks for technologies/process.
- Configure and maintain sensitive information types, data classification labels, and protection rules in alignment with business and regulatory requirements.
- Monitor and tune data loss prevention (DLP) policies for effectiveness, coverage, and false positives.
- Analyze events and logs for suspicious activity and opportunities to improve posture, processes, procedures, and protections.
- Implement data classification schemes and sensitivity labels, ensuring proper tagging and protection of sensitive data.
Who are we looking for?
- Bachelor s degree in related filed, to include computer science, or equivalent combination of education and experience.
- At least 8 plus years of experience in Data Loss Prevention (DLP) and Data Discovery.
- Experienced with deployment, maintenance, and operations of one or more DLP solutions on endpoint, web, and email.
- Deep understanding of data security technologies and protocols, such as encryption, access controls, and data loss prevention.
- Strong Technical Knowledge and Experience in Data Loss Prevention, Data Classification Tool