CSAA Insurance Group, a AAA Insurer · 3 hours ago
IT Security Engineer - DLP Engineering - Remote
CSAA Insurance Group (CSAA IG), a AAA insurer, is one of the leading personal lines property and casualty insurance groups in the United States. They are seeking an experienced IT Security Engineer to lead advanced DLP events analysis, engineering, and strategy development, collaborating with various teams to enhance data security controls and mitigate risks.
AssociationAuto InsuranceCommunitiesHealth CareInsuranceNon ProfitTravel Agency
Responsibilities
Perform advanced analysis of DLP and CASB events across Microsoft Purview, Netskope, MDCA, and related tools
Identify patterns, trends, mis-configurations, and gaps in controls; recommend or implement tuning and policy improvements
Develop and refine DLP rules, classifiers, exceptions, and high‑fidelity detections to reduce false positives and strengthen data‑loss prevention coverage
Partner closely with SOC, Cyber Defense, and Security Engineering to align on priorities, establish best‑practice playbooks, and improve DLP/incident response workflows
Work with IT, Cloud, and Business partners to design scalable, efficient, and compliant processes for protecting internal and external data flows
Educate and influence interested parties on DLP findings, risk areas, and recommended mitigations
Apply a risk‑based approach to analyze, prioritize, and remediate data protection risks across the enterprise
Ensure alignment with regulatory requirements (GDPR, CCPA, PCI, HIPAA where applicable) and corporate security standards
Contribute to governance activities, including policy development, standards, and control architecture
Stay current on emerging data‑protection threats, cloud‑security trends, and DLP/CASB industry capabilities
Recommend modernization opportunities in DLP technologies, automation, and process streamlining
Support and/or lead security awareness and training efforts related to data protection
Define, measure, and improve KPIs and KRIs related to data security and DLP
Produce executive‑level reporting and insights to support leadership decisions and program direction
Proactively identify trends and present recommendations for improvements to leadership and business teams
Qualification
Required
Bachelor's or equivalent experience in Computer Science, Information Systems, or other related field
6+ years of experience in security engineering, DLP operations, incident response, or cloud security, with significant focus on DLP and CASB technologies
Hands‑on experience with Microsoft Purview DLP, Microsoft Defender for Cloud Apps (MDCA), and Netskope DLP/CASB is required
Experience tuning DLP policies, creating SITs/classifiers, analyzing complex incidents, and working in multi-cloud or hybrid environments
Microsoft Purview Information Protection & DLP
Netskope DLP and CASB
Cloud app visibility and access control
SIEM tools (Splunk preferred): building queries, dashboards, alerts
Incident response processes and threat analysis
Regulatory and compliance requirements (GDPR, CCPA, etc.)
Preferred
CISSP, CISM, CEH, or related professional certifications
Vendor certifications (Microsoft Security, Netskope, etc.) are a plus
Actively shapes our company culture (e.g., participating in employee resource groups, volunteering, etc.)
Lives into cultural norms (e.g., willing to have cameras when it matters: helping onboard new team members, building relationships, etc.)
Travels as needed for role, including divisional / team meetings and other in-person meetings
Fulfills business needs, which may include investing extra time, helping other teams, etc
Benefits
Annual bonus eligibility for most roles
401(k) with a company match
Company
CSAA Insurance Group, a AAA Insurer
Why we're forever forward -- At CSAA IG, one thing will always endure: our commitment to excellence in everything we do for our members, employees and communities.
Funding
Current Stage
Late StageRecent News
Digital Insurance
2025-10-23
2025-10-04
Company data provided by crunchbase