Exceed the expectations of our residential mortgage borrowers & business partners through superior service, simple processes, and effective communications.
We deliver on this mission by empowering our employees by encouraging and recognizing superior performance and innovative solutions, by promoting teamwork and divisional cooperation.
We are seeking a highly skilled and experienced Senior Data Protection Analyst to lead and support our Data Loss Prevention (DLP) Cloud Access Security Broker (CASB) initiatives within the broader Data Protection program such as Encryption and Data Masking to ensure compliance with regulations like GLBA and NYDFS. This role will be instrumental in designing, implementing, and optimizing Data Protection strategies using Microsoft Purview and other enterprise-grade tools to safeguard sensitive data across the organization.
Essential Functions, Duties, and Responsibilities
- DLP & CASB Strategy Execution
- Design and deploy DLP and CASB policies across endpoints, email, cloud, and on-prem environments.
- Collaborate with stakeholders to implement data protection requirements and translate them into actionable use cases.
- Execute controls validation processes to ensure effectiveness of implemented data protection measures.
- Oversight, guidance, and escalation support for complex DLP investigations, ensuring regulatory alignment (e.g., GLBA, NYDFS), refining triage workflows, and coordinating cross-functional responses to insider threats and sensitive data incidents.
- Microsoft Purview Expertise
- Configure and manage Microsoft Purview solutions including Data Loss Prevention, Information Protection, Insider Risk Management, Data Security Posture Management and Compliance Manager.
- Monitor and tune policies to reduce false positives and improve detection accuracy.
- Lead cross-functional data protection projects to completion.
- Coordinate with IT, Legal, Compliance, and Business Units to ensure alignment with regulatory and business needs.
- Risk Assessment & Reporting
- Conduct gap analyses related to data protection, DLP, CASB, and encryption.
- Develop dashboards and reports to communicate metrics, incidents, and trends to leadership.
- Policy Development & Governance
- Ensure compliance with global and industry-specific data privacy regulations (e.g., GLBA, NYDFS).
- Contribute to user awareness and training efforts by identifying common risky behaviors.
- Maintain accurate and up-to-date documentation on policy configurations, and investigation procedures.
- Ability to effectively and accurately convey information to others.
- Performs related duties as assigned by management.
Qualifications and Education Requirements
- Bachelor’s or master’s degree in information security, Computer Science, or related field.
- 5+ years of experience in cybersecurity or data protection, with at least 3 years focused on DLP and CASB.
- Hands-on experience with Microsoft Purview and other DLP/CASB platforms (Example: Symantec, Forcepoint, McAfee).
- Strong understanding of data classification, encryption, data masking, and insider threat detection.
- Proven track record of leading complex data protection projects.
- Excellent communication, analytical, and problem-solving skills.
- Relevant certifications (Example: CISSP, Microsoft Certified: Security, Compliance, and Identity Fundamentals) are a plus.
Skills, Abilities, and Knowledge
- Experience with cloud platforms (Azure, M365, AWS) and hybrid environments.
- Familiarity with regulatory frameworks and compliance standards including GLBA and NYDFS.
- Ability to work independently and influence across teams.
Work Environment and Physical Requirements
- Working on-site at assigned office location.
- Regular and punctual attendance adhering to schedule established by leadership.
- Flexibility to work occasional adjusted work schedules, overtime, and evening and/or weekend hours to meet deadlines or as business needs demand.
- Working in a cubicle hub, maintaining focus on phone calls in a noisy environment within earshot of multiple other conversations.
- Sedentary work in a stationary position at a cubicle for prolonged periods of time.
- Constant repetitive motions required for operating a computer, such as typing and managing phone calls.
- Constantly communicating effectively verbally in English, including accurately exchanging information with others following identification of correct procedures.
Additional Information:
While this description is intended to be an accurate reflection of the position’s requirements, it in no way implies/states that these are the only job responsibilities. Management reserves the right to modify, add or remove duties and request other duties, as necessary.
All employees are required to have smart phones that meet Company security standards with the ability to install apps such as Okta Verify and Microsoft Authenticator. Employment will be contingent on this requirement.
Company Benefits:
Newrez is a great place to work but we are only as strong as our greatest asset, our employees, so we believe in rewarding them!
Medical, dental, and vision insurance
Health Savings Account with employer contribution
401(k) Retirement plan with employer match
Paid Maternity Leave/Parental Bonding Leave
Pet insurance
Adoption Assistance
Tuition reimbursement
Employee Loan Program
The Newrez Employee Emergency and Disaster Fund is a new program to support our team members
Newrez NOW:
Our Corporate Social Responsibility program, Newrez NOW, empowers employees to become leaders in their communities through a robust program that includes volunteering, philanthropy, nonprofit grants, and more
1 Volunteer Time Off (VTO) day, company-paid volunteer day where all eligible employees may participate in a volunteer event with a nonprofit of their choice
Employee Matching Gifts Program: We will match monetary employee donations to eligible non-profit organizations, dollar-for-dollar, up to $1,000 per employee
Newrez Grants Program: Newrez hosts a giving portal where we provide employees an abundance of resources to search for an opportunity to donate their time or monetary contributions
Equal Employment Opportunity
We're proud to be an equal opportunity employer- and celebrate our employees' differences, including race, color, religion, sex, sexual orientation, gender identity, national origin, age, disability, and Veteran status. Different makes us better.
CA Privacy Policy
CA Notice at Collection