Jostens

Cybersecurity Analyst – Data Security

Jostens Santiago, Santiago, Dominican Republic

Manufacturing · 1,001-5,000 employees

4 h ago
Remote security Mid (2-5 yrs) Full-time Dominican Republic
Create a free account to apply — email only, no card. You can also save this posting or score it against your profile with AI.

About the role

The Cybersecurity Analyst monitors, triages, and investigates data security threats and incidents across the enterprise environment. They also manage data security platforms, tune detections, and coordinate remediation efforts with various technical and business stakeholders.

What they look for

Cybersecurity Data security Incident response Microsoft Purview Varonis Data loss prevention Data classification Identity and access management Security monitoring Threat investigation Risk assessment Compliance Microsoft 365 PowerShell Reporting Communication

Requirements

Candidates must have at least 2 years of hands-on experience in data security, security operations, or incident response. Proficiency with enterprise data protection platforms like Microsoft Purview or Varonis and strong communication skills are required.

Full description

JOB TITLE: Cybersecurity Analyst – Data Security

LOCATION: Santiago DR

MODALITY: Remote in Dominican Republic

SCHEDULE: Mon - Fri 08:00 AM - 05:30 PM

 

GENERAL DESCRIPTION OR PURPOSE OF JOB:

 

The Cybersecurity Analyst – Data Security is a mid-level role responsible for monitor, triage, investigate, and respond to data security threats, alerts, and risks across the enterprise environment. The role also supports day-to-day operation and improvement of enterprise data security platforms to strengthen detections, reduce data exposure, and improve Jostens’ overall data security posture.

 

The analyst collaborates closely with Cybersecurity Operations, Identity and Access Management, Governance, Risk, and Compliance, Infrastructure, Microsoft 365 administrators, Legal, managed detection providers, and business, application, and data owners.

 

RESPONSIBILITIES / ESSENTIAL FUNCTIONS: 

 

Item

Responsibility/Function

% Time

1

Data Security Monitoring, Triage, and Investigations

  • Monitor and triage alerts, findings, and data security events generated by enterprise data security platforms, distinguishing suspicious activity from legitimate business activity.
  • Investigate potential data loss or exfiltration, suspicious external sharing, abnormal user behavior, identity anomalies, account compromise, privileged account misuse, and ransomware-like activity affecting enterprise data.
  • Correlate findings across relevant data security, identity, endpoint, email, and security monitoring sources to determine severity, business impact, and appropriate disposition.
  • Coordinate containment, escalation, and response actions with Cybersecurity Operations, Identity and Access Management, Infrastructure, managed detection providers, Legal when appropriate, and other partners.
  • Track escalations through resolution and support formally declared incidents as directed by Cybersecurity Operations leadership.

40%

 

 

 

 

 

2

 

 

 

 

 

 

 

 

 

 

 

Data Security Platform Ownership, Exposure Management, and Continuous Improvement

  • Support day-to-day operations of enterprise data security platforms, including Microsoft Purview, Varonis, and related technologies, with responsibility for platform health, findings, work queues, configurations, and planned enhancements.
  • Tune detections, reduce false positives, establish normal business behavior, and work with managed detection and response analysts to support well-validated response decisions.
  • Use platform findings to discover and classify sensitive data and analyze access, permissions, permission drift, external sharing, and other high-risk exposure patterns across our enterprise environment.
  • Validate findings with business, application, and data owners and prioritize remediation based on data sensitivity, business impact, and threat indicators.
  • Coordinate remediation with IT administrators, Infrastructure, Identity and Access Management, and business, application, and data owners; create and track Jira tickets through closure.
  • Recommend and implement detection, configuration, process, and control improvements; maintain platform procedures and runbooks; and provide technical input for remediation roadmaps, classification requirements, and recurring evidence needs without owning policy or final risk decisions.

 

50%

3

Reporting, Documentation, and Metrics

  • Maintain accurate investigation records, event dispositions, escalation tracking, remediation status, and follow-up documentation.
  • Produce recurring operational metrics that distinguish events reviewed, true positives requiring action, formally declared incidents, and remediation progress.
  • Communicate findings, impact, severity, and recommendations in language usable by leaders and business owners, and provide evidence for audit and compliance activities such as SOC 2 and PCI DSS

10%

 

 

SUPERVISION OF OTHERS:

 

Number of people DIRECTLY supervised

Title(s) of direct report(s)

NA

Individual Contributor

 

 

 

JOB REQUIREMENTS/SPECIFICATIONS:  Note that (i) computer literacy and working-level skill with the basic MS Office suite (Word, Excel, Outlook, Explorer), (ii) good verbal and written communication skills, (iii) good interpersonal skills, and (iv) the ability to work well both individually and in a team, environment are default requirements for all Jostens exempt and salaried nonexempt employees.

 

Required:

 

  • 2+ years of hands-on experience in data security, security operations, security monitoring, or incident response within an enterprise environment
  • Hands-on experience operating one or more enterprise data security or data protection platforms, such as Microsoft Purview, Varonis, or comparable DLP, DSPM, data classification, or data access governance solutions, including platform health, detection tuning, and operational improvements
  • Experience triaging and investigating data security alerts and findings, including potential data loss or exfiltration, suspicious sharing, identity anomalies, account compromise, excessive access, and insider risk indicators
  • Working knowledge of data loss prevention (DLP), data security posture management (DSPM), data access governance, data classification, insider risk, user and entity behavior analytics (UEBA), and related data protection practices and technologies
  • Working knowledge of Microsoft 365 data security and identity concepts across SharePoint, OneDrive, Exchange, and Teams, including permissions, external sharing, data loss prevention, multifactor authentication, conditional access, privileged access, and guest access
  • Experience analyzing access, permissions, permission drift, external sharing, and other data exposure risks; applying risk-based prioritization; and coordinating remediation with technical teams and business or data owners through closure
  • Professional English proficiency and strong written and verbal communication skills, including the ability to collaborate remotely and explain technical findings, business impact, severity, and recommendations to technical and non-technical stakeholders

 

 

Preferred:

 

  • Role-relevant certifications
  • Bachelor’s degree in information security, cybersecurity, information systems, computer science, or a related field, or equivalent professional experience
  • Experience supporting compliance, privacy, or audit activities within frameworks or programs such as PCI DSS, SOC 2, CIS Controls, or applicable privacy requirements
  • Experience using PowerShell, APIs, reporting tools, or workflow automation to support platform administration, investigations, reporting, or remediation tracking

 

 

Typical/expected % of overnight travel:    < 5%

Similar roles