Job Closed

This listing is no longer active.

RGA - Reinsurance Group of America

Reinsurance Group of America (RGA), founded in 1973 and headquartered in Chesterfield, Missouri, is a global provider of health and life insurance. RGA has prov

Staff Data Security Engineer

Location

United States

Posted

15 days ago

Salary

$126.7K - $188.8K / year

Seniority

Lead

Job Description

Staff Data Security Engineer

RGA - Reinsurance Group of America

Role Description The Staff Data Security Engineer will drive the design and implementation of enterprise data protection capabilities across Microsoft 365, endpoints, and cloud platforms. This position will play a key role in protecting sensitive data across its full lifecycle, discovering, classifying, and securing data while reducing enterprise risk. You will work across multiple technologies and teams to ensure data security controls are scalable, actionable, and aligned to business and regulatory requirements. The Staff Data Security Engineer will work cross-functionally with IT, Legal, Compliance, and business stakeholders to ensure sensitive data is identified, classified, and protected across all endpoints, cloud workloads, and collaboration platforms. Principal Duties - Design, deploy, and tune DLP policies across Microsoft Purview DLP, covering Exchange Online, SharePoint, Teams, OneDrive, and endpoint devices. - Configure and manage labeling policies, trainable classifiers, and exact data match (EDM) for sensitive data types. - Integrate DLP capabilities with the Defender suite. Configure and manage Microsoft Defender for Endpoint and its Endpoint DLP component to monitor and control data on client devices. - Leverage Microsoft Defender for Cloud Apps (MDCAS) for cloud-based DLP and real-time monitoring of SaaS applications. - Configure data connectors and analytic rules in Sentinel for DLP alerts and email security events. - Monitor DLP incidents, conduct root-cause analysis, and drive policy refinement to reduce false positives while maintaining coverage. - Extend DLP coverage beyond Microsoft 365 to third-party SaaS platforms, on-premises systems, and network egress points to reduce unauthorized data access and exfiltration. - Collaborate with stakeholders to develop data handling standards and acceptable use policies and establish consistent policy frameworks, enforcement models, and automation for data protection. - Create and maintain technical documentation, runbooks, and Standard Operating Procedures (SOPs) for the Data Security program. - Build automation and scalable processes to reduce manual effort. Data Security Posture Management (DSPM) - Deploy and manage DSPM tooling to provide continuous visibility into sensitive data discovery, risk exposure, and access patterns. - Leverage Varonis for data access governance, entitlement reviews, and detection of abnormal data access behaviors across file shares, SharePoint, and cloud storage. - Conduct regular data risk assessments, identify overexposed sensitive data, and drive remediation with data owners. - Integrate DSPM findings into broader risk reporting and security metrics dashboards. - Produce regular reporting on policy effectiveness, data risk posture, and key security metrics for leadership. - Partner with data owners across business units to ensure proper classification of structured and unstructured data assets. Qualifications - Bachelor’s Degree in Arts/Sciences (BA/BS) or equivalent experience - Required - Master’s degree in Arts/Sciences (MA/MS) or professional industry certification - Preferred Requirements - 6+ years of experience in information security, with at least 4 years focused on data security, DLP, or DSPM. - Hands-on expertise with Microsoft Purview DLP, including policy creation, scoped deployments, adaptive protection, and incident management - Required - Strong proficiency with Microsoft Defender XDR suite: Defender for Endpoint, Defender for Cloud Apps, Defender for Identity, and Defender for Office 365 - Required - Demonstrated experience with Microsoft Sentinel, including custom analytic rules, KQL query development, workbooks, and SOAR playbooks - Required - Experience with Varonis Data Security Platform for data access governance, risk prioritization, and threat detection - Required - Familiarity with DSPM concepts and tooling, including sensitive data discovery and cloud data risk management - Required - Solid understanding of data classification frameworks and Microsoft Purview Information Protection (sensitivity labels, auto-labeling, trainable classifiers) - Required - Experience implementing DLP across multiple vectors: email, endpoint, cloud applications, and network - Required - Demonstrated capability to analyze, operationalize, and continuously improve security controls and business processes - Required - Knowledge of relevant compliance frameworks and regulations: ISO 27001/27701, SOC 2 and NIST-aligned compliance and security frameworks, particularly as they relate to data protection and DLP - Required - Proven experience with email authentication standards (DMARC, SPF, DKIM) and their implementation in Microsoft 365. - Excellent analytical and problem-solving skills with a security-first mindset - Required - Microsoft certifications: SC-400 (Information Protection Administrator), SC-200 (Security Operations Analyst), SC-100 (Cybersecurity Architect), or AZ-500 - Preferred - Experience with additional DLP or CASB platforms (e.g., Symantec DLP, Forcepoint, Zscaler) - Preferred - Familiarity with cloud security posture management (CSPM) in Azure, AWS, or GCP environments - Preferred Benefits - Gain valuable knowledge from and experience with diverse, caring colleagues around the world. - Enjoy a respectful, welcoming environment that fosters individuality and encourages pioneering thought. - Join the bright and creative minds of RGA, and experience vast, endless career potential. Compensation Range $126,710.00 - $188,840.00 Annual. Base pay varies depending on job-related knowledge, skills, experience and market location. In addition, RGA provides an annual bonus plan that includes all roles and some positions are eligible for participation in our long-term equity incentive plan. RGA also maintains a full range of health, retirement, and other employee benefits. RGA is an equal opportunity employer. Qualified applicants will be considered without regard to race, color, age, gender identity or expression, sex, disability, veteran status, religion, national origin, or any other characteristic protected by applicable equal employment opportunity laws.

Related Categories

Related Job Pages

More Security Engineer Jobs

Keppri logo

Ingeniero de Ciberseguridad – Banca

Keppri

Especialistas en el end to end de activos digitales, staffing y Servicios Tecnológicos. Hazlo fácil con KEPPRI !!!

Full TimeRemoteTeam 51-200Since 2022H1B No Sponsor

• Serás responsable de liderar la definición funcional y la evolución de productos digitales para un cliente del sector bancario. • Actuarás como puente entre negocio y tecnología, asegurando que el equipo entregue valor continuo mediante una gestión clara del backlog, criterios de aceptación bien definidos y una visión alineada con objetivos del negocio, cumplimiento y experiencia del cliente. • Levantar y traducir necesidades del negocio en épicas, features y user stories claras y accionables. • Priorizar el backlog con foco en valor, riesgo, dependencias y cumplimiento normativo. • Definir objetivos, roadmap y alcance por releases junto a stakeholders. • Elaborar requerimientos funcionales (flujos, reglas de negocio, excepciones) y criterios de aceptación. • Asegurar consistencia del producto: journeys, casos borde, reglas transaccionales, mensajes al usuario. • Validar entregables con negocio (UAT), asegurar trazabilidad y apoyar al equipo QA. • Facilitar workshops con áreas bancarias (canales, operaciones, riesgo, cumplimiento, tecnología). • Gestionar expectativas, dependencias y decisiones, comunicando avances y riesgos de forma oportuna. • Participar activamente en ceremonias ágiles (refinamiento, planning, daily, review, retrospectiva).

Colombia
ePlus Technology Solutions logo

Senior Solutions Director – Security

ePlus Technology Solutions

Có tâm, đủ tầm, phát triển, vươn xa, ...

Full TimeRemoteTeam 51-200Since 2015H1B No Sponsor

• Responsible for setting the strategy and go-to-market plans for current and emerging Security solutions • Maintain and evolve a Security strategy that aligns with business goals • Develop and maintain a competitive edge and deliver innovative solutions to clients • Collaborate with national delivery teams to refine, simplify, and differentiate solutions • Build go-to-market plans for introduction of new technology solutions • Develop packaged solutions that deliver profitability and sustainable growth for services

United States
$175K - $275K / year

Cyber Security

Btree Systems

Kindly check our website ( https://www.btreesystems.com/ ) to check the current training we are providing. If you are already doing any of this training, feel free to join us.

Role Description We have an exciting opportunity for you if you are doing freelance IT training. We are currently hiring for freelancer technical (IT & Software) trainers. It would be the best opportunity for you to make a handful of side hustles. What we expect from you: - Technical trainers should have more than 5 years of experience in the respective field. - Ability to make students do individual toy projects on the respective skill. Qualifications - Any Degree - Experience: 2-10 Years Benefits - Flexible Timings, Spend only 1-2 hours daily - Online & Offline are both available - Work on Weekdays or Weekends as per your schedule - On-time payments & Dedicated Support Company Description Kindly check our website ( https://www.btreesystems.com/ ) to check the current training we are providing. If you are already doing any of this training, feel free to join us.

India
₹15K - ₹25K / month
Job Closed
Mosaic Health logo

Director of Corporate Security

Mosaic Health

To support the dynamic needs of Mosaic Health, its business units, and strategic partner, this job description is provided as an overview. It is not an all-inclusive presentation of the role, as other duties should be expected as organizational needs arise.

Full TimeRemoteTeam 1,001-5,000

Role Description The Director of Corporate Security is a high-impact leadership role responsible for the safety and security of patients, providers, and employees across Mosaic’s national healthcare footprint. This role requires a strategic leader who can balance the clinical necessity of an open, welcoming environment with the rigorous security protocols required to mitigate risks in a modern healthcare setting. The role will oversee security operations for a diverse portfolio, including outpatient clinics and corporate administrative offices. The mission is to foster a culture of safety that allows Mosaic’s medical professionals to focus on patient care without fear of harm. Qualifications - Bachelor’s degree in Criminal Justice, Healthcare Administration, Emergency Management, or a related field. A Master’s degree (MBA or MS) is preferred. - 10+ years of progressive leadership experience in corporate security or law enforcement. - 5 years of experience specifically managing security in a large-scale healthcare system or hospital environment preferable. - Board certification in security management, such as CPP (Certified Professional) or CHPA (Certified Healthcare Protection Administrator) is highly desired. - Understanding of the unique psychological and emotional state of patients and families in a hospital setting. - Experience managing security for a “large footprint” (multi-state or 50+ locations). - Ability to use crime mapping and incident data to justify resource allocation and headcount. - Exceptional public speaking skills for training staff and addressing the media during crisis events. Requirements - Develop and execute a multi-year national security strategy aligned with the company’s growth and clinical goals. - Establish enterprise-wide security policies, standard operating procedures (SOPs), and physical security standards. - Provide regular risk-assessment briefings to Executive Leadership, Board of Directors, and other stakeholders regarding emerging threats to the healthcare industry. - Lead the enterprise-wide Workplace Violence Prevention committee (to be developed). - Implement data-driven strategies to reduce incidents of aggression against clinical staff. - Oversee the rollout of de-escalation training (e.g., CPI, MOAB, or AVADE) for frontline employees. - Partner with Real Estate and IT Information Security to manage security technology including IP-based CCTV, integrated access control, visitor management, and other protection systems (e.g., Hugs/Halo). - Provide guidance on security specifications and design for new facility construction and renovations. - Manage a budget, including the selection and performance management of third-party security guard vendors. - Ensure all facilities maintain continuous “survey readiness” for The Joint Commission (TJC), CMS, and state health department inspections. - Coordinate with Clinical Leadership to ensure security protocols do not interfere with HIPAA privacy regulations or patient rights. - Oversee the security aspects of the Environment of Care (EOC) plans. - Act as a key leader during emergencies. - Maintain primary relationships with local, state, and federal law enforcement for intelligence sharing. - Direct internal investigations into high stakes matters, including drug diversion, theft, or threats against personnel. Benefits - Compensation: $150,864.00 to $238,207.00 - Ability to travel up to 50% to various regional sites across the United States.

United States
$150.9K - $238.2K / year