Cyberhaven
Data Security
DataProtectionAnalyst
Neural analysis suggests this role is
optimal for Mid candidates.
“Data Protection Analyst at Cyberhaven. Skills: Data Protection, Insider Threat Analysis, Incident Response, DLP Analytics, Forensic Analysis. Providing continuous value for our customers. Advancing the mission of identifying potential insider threats and investigating endpoint forensic incidents”
What You'll Achieve.
Advance the mission of identifying potential insider threats and investigating endpoint forensic incidents; Find and expose risk in a customers environment; Improve policies and incidents/alerts; Bring focus to areas where data loss risk may exist; Enhance detection accuracy
Industry & Context.
Excellent problem-solving
What They're Looking For.
Must Have
2–5 years with data protection or adjacent security tools (EDR, SIEM, SOAR), 2+ years in Insider Threat/InfoSec, grasp of endpoint protection best practices and incident mitigation workflows, Experience with DLP, Insider Threat, CASB and controls for handling sensitive data, Comfortable across macOS, Linux, Windows and cloud platforms (AWS, GCP, Azure), SQL for build/maintain edit XML-based DLP script and use APIs
What You'll Do.
Providing continuous value for our customers
Advancing the mission of identifying potential insider threats and investigating endpoint forensic incidents
Performing technical analysis of data security incidents
Finding and exposing risk in a customers environment
Handling documentation and project management aspects of incident response
Performing analysis of events and incidents
Provide insight into DLP analytics and related issues
Analyze Cyberhaven’s Data Detection and Response (DDR) platform event data to improve policies and incidents/alerts and bring focus to areas where data loss risk may exist
Refine datasets and policies and manage them as customers’ data risk strategy matures and business needs evolve
Prepare and present summaries and reports to internal team members
Eliminate noise and false-positive information from analytic results to enhance detection accuracy
Conduct forensic analysis on people
and non sanctioned egress destinations as requested
How You'll Work.
Team & Collaboration
Collaborative on a global customer-centric basis
Communication Scope
Excellent communication
Process & Methodology
Project management aspects of incident response
Full Job Description
About the role This is an ideal opportunity for a highly motivated individual to get in on the ground floor as we build out our Professional Services and Managed Services functions at Cyberhaven. The Data Protection Analyst holds a key position in providing continuous value for our customers and is responsible for advancing the mission of identifying potential insider threats and investigating endpoint forensic incidents. You will be responsible for performing technical analysis of data security incidents, finding and exposing risk in a customers environment as well as handling documentation and project management aspects of incident response. You will also perform analysis of events and incidents. What you’ll do - Provide insight into DLP analytics and related issues. - Analyze Cyberhaven’s Data Detection and Response (DDR) platform event data to improve policies and incidents/alerts and bring focus to areas where data loss risk may exist. - Refine datasets and policies and manage them as customers’ data risk strategy matures and business needs evolve. - Prepare and present summaries and reports to internal team members. - Eliminate noise and false-positive information from analytic results to enhance detection accuracy. - Conduct forensic analysis on people, groups, and non sanctioned egress destinations as requested. Who you are - 2–5 years with data protection or adjacent security tools (EDR, SIEM, SOAR) and 2+ years in Insider Threat/InfoSec. - Strong grasp of endpoint protection best practices and incident mitigation workflows. - Experience with DLP, Insider Threat, CASB and controls for handling sensitive data. - Comfortable across macOS, Linux, Windows and cloud platforms (AWS, GCP, Azure). - Data & automation: SQL for analysis; build/maintain dashboards; edit XML-based DLP rules; script and use APIs. - Excellent problem-solving and communication skills; collaborative on a global team; customer-centric with a passion for cloud security and emerging tech. Joi
Applying for this Data Protection Analyst role?
Most applicants get filtered before a human reads their resume. See if yours makes the cut.
How to Apply on Ashby
- Ashby is a fast modern ATS — most applications take under 3 minutes.
- The resume parser is strong; verify parsed experience dates and job titles.
- Custom screening questions are often scored algorithmically — answer completely.
- Location field affects geo-based screening; use your actual metro area.
ANONYMOUS · UNFILTERED
What do employees actually say about Cyberhaven?
Real rants from real employees. Read before you apply.