Position Concept
The Enterprise Data & Platform Security Analyst protects sensitive data across endpoints, networks, cloud services, and enterprise platforms by designing, implementing, and operating data protection controls.
This role partners with Security, Infrastructure, Application, Legal, Privacy, and business teams to reduce the risk of data loss, improve governance, support regulatory compliance, and strengthen the organization's overall security posture.
The role is also responsible for building and scaling security engineering capabilities across cloud infrastructure, identity systems, data services, Kubernetes and container platforms, CI/CD pipelines, secrets management, and platform observability.
Primary Duties & Responsibilities
1. Enterprise Data Protection (30%)
- Design and lead enterprise-scale data protection strategies across on-premises, cloud, SaaS, and hybrid environments.
- Define policy architecture, control objectives, and implementation patterns for:
- Data classification
- Encryption
- Retention
- Tokenization
- Data exfiltration prevention
- Drive roadmap planning, vendor evaluations, and continuous improvement initiatives for data protection platforms.
2. Secure Platform Architecture (25%)
- Define secure architecture patterns and engineering guardrails for:
- Kubernetes
- Containers
- Virtual infrastructure
- Storage platforms
- Managed cloud services
- APIs
- Infrastructure-as-Code (IaC) pipelines
3. Incident Response & Investigations (10%)
- Lead complex incident investigations involving:
- Sensitive data exposure
- Insider risk
- Control breakdowns
- Coordinate remediation strategies and security architecture improvements across infrastructure, cloud, application, and data teams.
- Drive incident response activities including forensic coordination, containment recommendations, lessons learned, and control enhancements.
4. Security Assessments (10%)
- Lead security assessments, threat analysis, and control design reviews for:
- Enterprise platforms
- Cloud environments
- Databases
- Middleware
- Business-critical applications
- Own vulnerability and misconfiguration investigations, prioritizing based on exploitability, business risk, and compensating controls.
5. Governance & Risk Communication (10%)
- Translate business, legal, privacy, and regulatory requirements into practical technical and operational controls.
- Provide concise risk communication, metrics, and executive-ready summaries to leadership and governance stakeholders.
6. Standards & Continuous Improvement (10%)
- Develop and improve standards, baselines, playbooks, and security procedures for enterprise services and data platforms.
- Develop dashboards, metrics, and trend analysis to measure policy effectiveness and risk reduction.
7. Technical Leadership (5%)
- Provide technical leadership, mentoring, and quality oversight for analysts and specialists at earlier career stages.
Knowledge, Skills & Abilities
Required
- Deep understanding of cybersecurity principles including:
- Confidentiality
- Integrity
- Availability
- Least privilege
- Defense in depth
- Strong knowledge of:
- Data protection
- Networking
- Operating systems
- Cloud fundamentals
- Enterprise threat vectors
- Deep familiarity with enterprise environments, ticketing systems, and documentation practices.
- Experience with SIEM, DLP, or endpoint monitoring tools.
- Ability to review and interpret logs from:
- Active Directory
- VPN
- Endpoint security platforms
- Cloud environments
- Ability to independently investigate complex security incidents, build timelines, gather evidence, and document findings.
- Ability to communicate technical findings to executive leadership through risk summaries and recommendations.
- Ability to manage multiple priorities in a fast-paced environment.
- Experience mentoring junior analysts and collaborating with HR, Legal, IT, Compliance, and business teams.
- Excellent analytical, organizational, written, and verbal communication skills.
Experience
- Minimum 5 years of Cybersecurity, Information Security, or related IT experience.
- Hands-on technical experience may include networking, telecommunications, communications systems, hardware, software, or related technologies.
Education Substitutions
The following may substitute for experience:
- Associate degree in Computer Science, Information Systems, or related IT field with 3 years of experience.
- Bachelor's degree in Computer Science, Information Systems, or related IT field with 1 year of experience.
- Up to one year of formal internship or co-op IT experience may count toward the experience requirement.