Staff Data Security Engineer

Posted 2 Days Ago
Hiring Remotely in Missouri, USA
Remote
127K-189K Annually
Senior level
Insurance
The Role
Designs, deploys, and optimizes enterprise data protection across Microsoft 365, endpoints, cloud applications, SaaS platforms, and network egress points. Manages DLP, data classification, Microsoft Defender, Sentinel, Varonis, and DSPM capabilities; investigates incidents, reduces false positives, assesses data exposure, and drives remediation. Develops data handling standards, automation, documentation, reporting, and security metrics while partnering with IT, Legal, Compliance, and business data owners.
Summary Generated by Built In

You desire impactful work.
 

You’re RGA ready

RGA is a purpose-driven organization working to solve today’s challenges through innovation and collaboration. A Fortune 200 Company and listed among its World’s Most Admired Companies, we’re the only global reinsurance company to focus primarily on life- and health-related solutions. Join our multinational team of intelligent, motivated, and collaborative people, and help us make financial protection accessible to all.

The Staff Data Security Engineer will drive the design and implementation of enterprise data protection capabilities across Microsoft 365, endpoints, and cloud platforms. 

This position will play a key role in protecting sensitive data across its full lifecycle, discovering, classifying, and securing data while reducing enterprise risk. You will work across multiple technologies and teams to ensure data security controls are scalable, actionable, and aligned to business and regulatory requirements.  It also will work cross-functionally with IT, Legal, Compliance, and business stakeholders to ensure sensitive data is identified, classified, and protected across all endpoints, cloud workloads, and collaboration platforms. 

Principle Duties 

  • Design, deploy, and tune DLP policies across Microsoft Purview DLP, covering Exchange Online, SharePoint, Teams, OneDrive, and endpoint devices  

  • Configure and manage labeling policies, trainable classifiers, and exact data match (EDM) for sensitive data types  

  • Integrate DLP capabilities with the Defender suite. Configure and manage Microsoft Defender for Endpoint and its Endpoint DLP component to monitor and control data on client devices. Leverage Microsoft Defender for Cloud Apps (MDCAS) for cloud-based DLP and real-time monitoring of SaaS applications. 

  • Configure data connectors and analytic rules in Sentinel for DLP alerts and email security events.  

  • Monitor DLP incidents, conduct root-cause analysis, and drive policy refinement to reduce false positives while maintaining coverage  

  • Extend DLP coverage beyond Microsoft 365 to third-party SaaS platforms, on-premises systems, and network egress points to reduce unauthorized data access and exfiltration 

  • Collaborate with stakeholders to develop data handling standards and acceptable use policies and establish consistent policy frameworks, enforcement models, and automation for data protection 

  • Create and maintain technical documentation, runbooks, and Standard Operating Procedures (SOPs) for the Data Security program. 

  • Build automation and scalable processes to reduce manual effort Data Security Posture Management (DSPM)  

  • Deploy and manage DSPM tooling to provide continuous visibility into sensitive data discovery, risk exposure, and access patterns  

  • Leverage Varonis for data access governance, entitlement reviews, and detection of abnormal data access behaviors across file shares, SharePoint, and cloud storage  

  • Conduct regular data risk assessments, identify overexposed sensitive data, and drive remediation with data owners  

  • Integrate DSPM findings into broader risk reporting and security metrics dashboards  

  • Produce regular reporting on policy effectiveness, data risk posture, and key security metrics for leadership  

  • Partner with data owners across business units to ensure proper classification of structured and unstructured data assets  

Education  

  • Bachelor’s degree in arts/sciences (BA/BS) or equivalent experience - Required

Required Work Experience

  • 6+ years of experience in information security, with at least 4 years focused on data security, DLP or DSPM.  

Required Skills and Abilities

  • Hands-on expertise with Microsoft Purview DLP, including policy creation, scoped deployments, adaptive protection, and incident management  

  • Strong proficiency with Microsoft Defender XDR suite: Defender for Endpoint, Defender for Cloud Apps, Defender for Identity, and Defender for Office 365  

  • Demonstrated experience with Microsoft Sentinel, including custom analytic rules, KQL query development, workbooks, and SOAR playbooks  

  • Experience with Varonis Data Security Platform for data access governance, risk prioritization, and threat detection  

  • Familiarity with DSPM concepts and tooling, including sensitive data discovery and cloud data risk management  

  • Solid understanding of data classification frameworks and Microsoft Purview Information Protection (sensitivity labels, auto-labeling, trainable classifiers)  

  • Experience implementing DLP across multiple vectors: email, endpoint, cloud applications, and network 

  • Demonstrated capability to analyze, operationalize, and continuously improve security controls and business processes  

  • Knowledge of relevant compliance frameworks and regulations: ISO 27001/27701, SOC 2 and NIST‑aligned compliance and security frameworks, particularly as they relate to data protection and DLP

  • Proven experience with email authentication standards (DMARC, SPF, DKIM) and their implementation in Microsoft 365. 

  • Excellent analytical and problem-solving skills with a security-first mindset  

Preferred Qualifications:  

  • Microsoft certifications: SC-400 (Information Protection Administrator), SC-200 (Security Operations Analyst), SC-100 (Cybersecurity Architect), or AZ-500  

  • Experience with additional DLP or CASB platforms (e.g., Symantec DLP, Forcepoint, Zscaler)  

  • Familiarity with cloud security posture management (CSPM) in Azure, AWS, or GCP environments  

#LI-CW1

#LI-Remote

What you can expect from RGA:

  • Gain valuable knowledge from and experience with diverse, caring colleagues around the world.

  • Enjoy a respectful, welcoming environment that fosters individuality and encourages pioneering thought.

  • Join the bright and creative minds of RGA, and experience vast, endless career potential.

We’re excited to get to know you and connect your unique skills with our global opportunities. To create a modern and seamless experience, we use artificial intelligence (AI) in parts of our preliminary screening process. This technology helps us personalize job recommendations, automate interview scheduling, evaluate candidates based solely on experience—without considering name, gender, or other personal details—and provide real-time answers through our chatbot. AI is used only during early screening and never makes hiring decisions. Your RGA recruiter will work closely with you every step of the way to ensure the process feels personal, thoughtful, and focused on you.

Compensation Range:

$126,710.00 - $188,840.00 Annual

Base pay varies depending on job-related knowledge, skills, experience and market location. In addition, RGA provides an annual bonus plan that includes all roles and some positions are eligible for participation in our long-term equity incentive plan. RGA also maintains a full range of health, retirement, and other employee benefits.

RGA is an equal opportunity employer. Qualified applicants will be considered without regard to race, color, age, gender identity or expression, sex, disability, veteran status, religion, national origin, or any other characteristic protected by applicable equal employment opportunity laws.

Skills Required

  • Bachelor’s degree in arts or sciences, or equivalent experience
  • 6+ years of information security experience, including at least 4 years focused on data security, DLP, or DSPM
  • Hands-on expertise with Microsoft Purview DLP, including policy creation, scoped deployments, adaptive protection, and incident management
  • Strong proficiency with Microsoft Defender XDR, including Defender for Endpoint, Defender for Cloud Apps, Defender for Identity, and Defender for Office 365
  • Experience with Microsoft Sentinel, custom analytic rules, KQL queries, workbooks, and SOAR playbooks
  • Experience with Varonis Data Security Platform for data access governance, risk prioritization, and threat detection
  • Familiarity with DSPM concepts and tooling, sensitive data discovery, and cloud data risk management
  • Experience implementing DLP across email, endpoint, cloud application, and network vectors
  • Experience analyzing, operationalizing, and continuously improving security controls and business processes
  • Knowledge of ISO 27001/27701, SOC 2, and NIST-aligned compliance and security frameworks as they relate to data protection and DLP
  • Experience implementing DMARC, SPF, and DKIM in Microsoft 365
  • Excellent analytical and problem-solving skills with a security-first mindset
  • Microsoft SC-400, SC-200, SC-100, or AZ-500 certification
  • Experience with Symantec DLP, Forcepoint, Zscaler, or other DLP/CASB platforms
  • Familiarity with CSPM in Azure, AWS, or GCP environments
Am I A Good Fit?
beta
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.

The Company
HQ: Chesterfield, MO
3,164 Employees
Year Founded: 1973

What We Do

Reinsurance Group of America, Incorporated (RGA), a Fortune 500 company, is among the leading global providers of life reinsurance and financial solutions, with approximately $3.5 trillion of life reinsurance in force and assets of $92.2 billion as of December 31, 2021. Founded in 1973, RGA today is recognized for its deep technical expertise in risk and capital management, innovative solutions, and commitment to serving its clients. With headquarters in St. Louis, Missouri, and operations around the world, RGA delivers expert solutions in individual life reinsurance, individual living benefits reinsurance, group reinsurance, health reinsurance, facultative underwriting, product development, and financial solutions. To learn more about RGA and its businesses, visit our website at www.rgare.com.

Similar Jobs

Cox Enterprises Logo Cox Enterprises

Sales Strategy & Enablement Director

Artificial Intelligence • Automotive • Greentech • Information Technology • Machine Learning • Software • Cybersecurity
Remote or Hybrid
United States
30000 Employees
135K-225K Annually

Pfizer Logo Pfizer

HSS-Health and Science Specialist - Southern Maryland, MD

Artificial Intelligence • Healthtech • Machine Learning • Natural Language Processing • Biotech • Pharmaceutical
In-Office or Remote
3 Locations
121990 Employees
94K-165K Annually

Liberty Mutual Insurance Logo Liberty Mutual Insurance

Inside Sales Representative

Artificial Intelligence • Fintech • Insurance • Marketing Tech • Software • Analytics
Remote or Hybrid
10 Locations
40000 Employees
45K-85K Annually

DraftKings Logo DraftKings

Associate, Regulation

Digital Media • Gaming • Information Technology • Software • Sports • Esports • Big Data Analytics
Remote or Hybrid
United States
6400 Employees
56K-70K Annually

Similar Companies Hiring

Globe Life Thumbnail
Insurance • Financial Services
McKinney, TX
3000 Employees
MassMutual India Thumbnail
Big Data • Fintech • Information Technology • Insurance • Financial Services
Hyderabad, Telangana
Granted Thumbnail
Artificial Intelligence • Healthtech • Insurance • Mobile • Financial Services
New York, New York
23 Employees

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account