- Company Name
- Highspring
- Job Title
- DevSecops - Data Loss Prevention
- Job Description
-
**Job Title**
DevSecOps – Data Loss Prevention (DLP)
**Role Summary**
Hands‑on consultant responsible for implementing, configuring, and operating Netskope DLP solutions in cloud environments (primarily AWS) and software delivery pipelines. Drives automation, incident response, and operational excellence for data protection across enterprise applications and services.
**Expectations**
- At least 3‑5 years of DevSecOps or cloud security experience.
- Proven hands‑on skill with a DLP platform, preferably Netskope; equivalent experience acceptable.
- Strong grasp of data classification, policy creation, and detection mechanisms.
- Ability to build, test, and maintain automated test/environments (Terraform, CI/CD).
- Experience in incident management and on‑call rotation.
- Bilingual fluency in French and English.
- Aptitude for independent, accountable work and rapid risk‑mitigation action.
**Key Responsibilities**
- Configure, integrate, and run Netskope for DLP detection and prevention across web, cloud, and public exposure flows.
- Design, implement, and fine‑tune Netskope DLP policies based on use‑cases, data categories, and monitored traffic.
- Develop and maintain AWS test environments (Terraform Cloud, CI/CD) to validate DLP controls.
- Automate deployment of test stacks and integration pipelines (GitHub, GitHub Actions, Jenkins).
- Integrate DLP coverage with application and cloud ecosystems, ensuring consistent policy enforcement.
- Operate DLP alerting: qualification, escalation, response, and noise reduction.
- Participate in on‑call rotation for DLP incidents; manage incident lifecycle.
- Create, update, and distribute runbooks, SOPs, and documentation for Netskope usage.
- Identify, report, and remediate risks, limitations, and unexpected behaviors in DLP operations.
**Required Skills**
- DLP: Netskope policies, detection, prevention, alerting.
- Cloud: AWS (web flows, cloud access, public exposure) testing.
- DevSecOps tools: GitHub, GitHub Actions, Jenkins.
- IaC: Terraform Cloud.
- Incident management, runbook development, automated alert response.
- Data classification, sensitive data handling.
- Bilingual communication (French & English).
**Required Education & Certifications**
- Bachelor’s degree in Computer Science, Information Security, or related field.
- Certifications:
- *Netskope Certified Professional* (preferred).
- *AWS Certified Security – Specialty* or equivalent.
- *Certified Information Systems Security Professional (CISSP)* or *Certified Ethical Hacker (CEH)* optional.
---