FREE ACCESS
5,000–10,000 jobs/day
See all jobs on Scoutfield
Search thousands of fresh jobs every day.
Discover
- Fresh listings
- Fast filters
- No subscription required
Create a free account and start exploring right away.

Core Competencies
Role fitCore Competencies
Use this summary to align your resume positioning with the role.
Demonstrates expertise in Data Loss Prevention (DLP) analytics, incident response, and forensic analysis, with a strong focus on endpoint protection and data security best practices. Proficient in utilizing security tools and platforms to enhance detection accuracy and mitigate risks associated with sensitive data.
Highest-signal resume keywords
Data Loss Prevention (DLP)Insider Threat AnalysisEndpoint Protection Best PracticesSQL ExperienceScripting and API Experience
ATS Keywords
Tailor your resumeApplicant Tracking System Keywords
Tip: use these terms in your resume and cover letter to boost ATS matches.
Hard Skills
Data Protection ToolsIncident Mitigation WorkflowsForensic AnalysisTechnical Analysis of Data Security IncidentsDashboard BuildingXML-based DLP Rules Editing
Soft Skills
Problem-SolvingCommunicationCustomer-Centric Approach
Tools & Technologies
EDRSIEMSOARMacOSLinuxWindowsAWSGCPAzure
Industry Keywords
Data Detection and Response (DDR)Insider ThreatCASBSensitive Data Controls
Tech Stack
Tools & technologiesAWSAzureCloudGoogle Cloud PlatformLinuxMacOSSQL
About the role
Key responsibilities & impact- Provide insight into DLP analytics and related issues
- Analyze Cyberhaven’s Data Detection and Response (DDR) platform event data to improve policies and incidents/alerts
- Identify areas where data loss risk may exist
- Refine datasets and policies as customers’ data risk strategy and business needs evolve
- Prepare and present summaries and reports to internal team members
- Eliminate noise and false-positive information from analytic results to enhance detection accuracy
- Conduct forensic analysis on people, groups, and non-sanctioned egress destinations as requested
- Perform technical analysis of data security incidents
- Investigate endpoint forensic incidents and potential insider threats
- Handle documentation and project management aspects of incident response
- Perform analysis of events and incidents
- Contribute to Cyberhaven’s Professional Services and Managed Services functions
Requirements
What you’ll need- 5+ years with data protection or adjacent security tools (EDR, SIEM, SOAR)
- 2+ years in Insider Threat/InfoSec
- Strong grasp of endpoint protection best practices and incident mitigation workflows
- Experience with DLP, Insider Threat, CASB, and controls for handling sensitive data
- Comfortable across macOS, Linux, Windows, and cloud platforms (AWS, GCP, Azure)
- SQL experience for analysis
- Ability to build and maintain dashboards
- Ability to edit XML-based DLP rules
- Scripting and API experience
- Excellent problem-solving and communication skills
- Customer-centric approach and interest in cloud security and emerging technology
- For US candidates, legal authorization to work in the United States without current or future sponsorship
Benefits
Comp & perks- Equal opportunity employer committed to a diverse environment
- AI-assisted interview note-taking may be opted out of when used
- Voluntary diversity survey; refusal does not affect the job application