Data Loss Prevention & Detection Specialist

open

Data Loss Prevention & Detection Specialist

  • English
  • IT

Key Responsibilities

  • Architect and engineer Data Loss Prevention security solutions, covering Broadcom DLP Endpoint and Discovery. 
  • Provide advice, training and support on DLP policy development. 
  • Support the architecture, design, deployment and integration of DLP solutions. 
  • Create engineering solutions for back-end management server infrastructure and databases. 
  • Develop and maintain detection rules and use cases across security monitoring platforms, such as SIEM, EDR, NDR and cloud security tools. 
  • Analyze emerging threats and translate them into actionable detection logic. 
  • Continuously improve detection coverage based on threat intelligence, incident trends and vulnerability exposure. 
  • Monitor security alerts and identify suspicious activities that may indicate malicious behavior. 
  • Investigate anomalous events and determine whether they represent real security threats. 
  • Work closely with SOC analysts and incident responders to ensure detections support effective investigations. 
  • Reduce false positives by tuning detection rules and correlation logic. 
  • Apply system, user and application changes as needed. 
  • Track and troubleshoot user issues, tasks and incidents. 
  • Create, review, maintain and update documentation, including documenting and publishing fixes in the central knowledge base. 
  • Work with global teams to provide consistent processes and solutions. 

Tools & Technologies

Security Information and Event Management — SIEM

  • Microsoft Sentinel 
  • Splunk Enterprise Security 

Endpoint Detection and Response — EDR/XDR

  • Microsoft Defender XDR 
  • CrowdStrike Falcon 

Network and Infrastructure Detection

  • Network Detection and Response — NDR platforms 
  • Intrusion Detection / Intrusion Prevention Systems — IDS/IPS 
  • Firewall, proxy, VPN and network telemetry solutions 

Cloud and Identity Security Monitoring

  • Microsoft Entra / Azure AD logs 
  • Microsoft 365 security telemetry 

Threat Intelligence and Detection Engineering

  • Threat intelligence platforms and indicator feeds 
  • MITRE ATT&CK mapping and detection use case libraries 
  • IOC/IOA-based detection content 

Experience and Skills Required

  • Bachelor’s degree in Information Technology, Computer Science or a related discipline. 
  • 5+ years of experience in data leakage analysis or data loss prevention for an enterprise network, cybersecurity monitoring, detection engineering or SOC operations. 
  • Strong background in architecting, engineering and automating security solutions for a global environment, with a focus on Data Leakage / Data Loss Prevention solutions. 
  • Experience with log analysis and event correlation. 
  • Experience in detection rule development. 
  • Advanced knowledge of security monitoring tools, such as SIEM, EDR/XDR and NDR. 
  • Good scripting knowledge, such as Python, PowerShell or similar. 
  • Knowledge of common attack techniques and tactics. 
  • Understanding of network protocols and system behavior. 
  • Knowledge of Symantec, Broadcom and O365. 
  • Understanding of SIEM integrations. 
  • General knowledge of infrastructure, such as LDAP, Group Policy, Kerberos and Active Directory. 
  • General networking knowledge, such as routing, firewalls, OSI model, packet tracing and analysis. 

Deutsche Telekom Services Europe (DTSE) was founded by Deutsche Telekom AG and delivers support services, with focus on HR, for the European footprint of DT Group.
Join us in this international environment and you’ll be exposed to many different competencies, cultures and languages.
If you want to join this innovative team and take the opportunity to be part of a growing company, apply now!

DTSE-RO is committed to the principle of equal employment opportunity for all employees and to providing employees with a work environment free of discrimination and harassment. All employment decision at DTSE-RO are based on business needs, job requirements and individual qualifications, with no regard to race, color, religion or belief, national, social or ethnic origin, sex, age, physical, mental or sensory disability, sexual orientation and gender identity.

DTSE-RO will not tolerate discrimination or harassment based on any of these characteristics.

By applying for this job you accept the DT privacy statement:

To process your online application we collect, process and use your personal data. We will treat your data as strictly confidential in accordance statutory provisions.

By submitting your application, you consent to your data being processed electronically, including by third parties. Data is only passed on to HR service providers that have been carefully selected by Deutsche Telekom AG.

For detailed information read the local data protection when applying for a job position at Deutsche Telekom Group.

Get things done

Send us your résumé and let’s make things happen!

We've received your application.
Thank you for applying to DTSE Romania!
Unable to send your application, please try again later.

    #WeMakeItHappen for you

    Do what you love, we’ve got everything else covered

    Be part of our magenta team

    Let’s keep in touch: send us your résumé for future openings.

    Imagine yourself working here

    Take a virtual tour of our office by selecting a city. Enjoy!

    Imagine yourself working here