Posted 2d ago

Senior Data Protection Analyst (DLP)

@ One Park Financial
Miami, Florida, United States
OnsiteFull Time
Responsibilities:lead monitoring, design policies, investigate incidents
Requirements Summary:5–8+ years in infrastructure security, digital forensics, or DLP; advanced tools: Purview, Okta, Mimecast, Exchange Admin Center; security investigations; Python or KQL; identity governance; bilingual Spanish/English; in-office in Miami; Monday–Friday.
Technical Tools Mentioned:Microsoft Purview, Okta Identity Governance, Mimecast, Exchange Admin Center, Python, Kusto Query Language, Salesforce
Save
Mark Applied
Hide Job
Report & Hide
Job Description

One Park Financial (OPF) is a fast-growing FinTech company headquartered in Miami, Florida. We provide flexible financing solutions to small businesses across the United States. We are seeking a Senior Data Protection Analyst (DLP) to lead our Data Egress & Collaboration Security program. This role focuses on preventing unauthorized data exfiltration, monitoring outbound communications, and ensuring compliance with internal data protection policies. 
 
The Senior Data Protection Analyst will serve as a key technical authority responsible for protecting sensitive customer and company data through advanced monitoring, investigation, and enforcement of Data Loss Prevention policies. 

Duties and Responsibilities 

  • Perform manual and automated inspection of outbound email attachments sent to external domains. 
  • Design and enforce Data Loss Prevention (DLP) policies within Microsoft Purview and Mimecast. 
  • Monitor quarantine queues and review outbound communications containing attachments. 
  • Conduct forensic investigations into potential PII exfiltration incidents. 
  • Review Spanish-language communications to identify contextual indicators of sensitive data exposure. 
  • Implement governance rules for outbound messaging platforms including Salesforce SMS. 
  • Audit identity and administrative activity logs across Okta and Microsoft 365. 
  • Investigate unauthorized configuration changes or security policy bypass attempts. 
  • Collaborate with HR and Legal to preserve digital evidence and maintain chain-of-custody documentation.