Job Information
T-Mobile USA, Inc Senior Engineer, DLP in Bellevue, Washington
At T-Mobile, we invest in YOU! Our Total Rewards Package ensures that employees get the same big love we give our customers. All team members receive a competitive base salary and compensation package - this is Total Rewards. Employees enjoy multiple wealth-building opportunities through our annual stock grant, employee stock purchase plan, 401(k), and access to free, year-round money coaches. That's how we're UNSTOPPABLE for our employees! The Data Loss Prevention (DLP) Senior Engineer will help ensure that our software, systems and infrastructure are monitored and protected to the highest security standards. Creates policies, performs technical reviews, and vulnerability testing to highlight risk and remediate associated findings while helping T-Mobile teams and partners improve security. Works closely with other T-Mobile Engineers to design and build proactive methods to enhance our security posture. This position is responsible for overseeing auditing, analyzing, coordinating, and implementing security measures enhance security posture within enterprise line of business applications, cloud, big data, and core and carrier network technologies as well as other business units as needed. Collaborate with Engineering & Operations Teams to address security vulnerabilities found via DLP data and network tooling. Job Responsibilities Implement and configiure T-Mobile enterprise level DLP policies to monitor, audit, or block content based on organizational requirements. Improve and tune DLP policies to enhance overall protection. Recommend strategies to prevent potential data exfiltration or events. Conduct analytical and critical thinking; identify problem set, review facts, make accurate observations and judgements, and provide recommendations and reporting. Respond to and analyze DLP alerts using specialized monitoring tools. Works with groups such as application support, engineering ops, finance, privacy, risk management, etc. Collaborates with partner teams to enhance DLP policies and their capabilities to meet the needs of each business unit. Build and implement processes and technologies to detect high-risk activities that can be mitigated using DLP technologies. Mentors peers and junior team members in security technologies, enterprise solution design and facilitation and effective interactions. Validate network alerts by coordinating with enterprise-wide cyber defense staff. Analyze security incidents for trends and patterns to identify gaps and propose risk mitigation solutions. The threat model depicts trust boundary, threat agent(s), threat vector(s), and safeguard(s) necessary to protect person, asset, data, and T-Mobile brand. Education Bachelor's Degree Computer Science or Information Technology or equivalent work experience Work Experience 4-7 years experience in info security technology or related field Experience with incident handling for Security breaches. Expert in security subject areas 2-4 years Technical Project Management Experience with high level design architecture, security technologies, Networking, web services and SOA. Understanding of encryption, obfuscation, tokenization technologies Knowledge, Skills and Abilities Medium to advance knowledge of Scripting tools (Python/Perl/Shell/HTML/PHP) Knowledge of federal & compliance regulations e.g. SOX, PCI & CPNI Familiarity with load balancers (ex - A10, F5), firewalls (ex - CheckPoint), Venafi, MDM (ex - Mobile Iron), Cloud (ex - AWS, Azure), Malware Protection (ex -FireEye), Advanced Persistent Threats (ex - Damballa), Privileged Accounts (ex - CyberArk), SIEM (ex - ArcSight), Log & Event (ex - Splunk), Intrusion IDS/IPS (ex - Symantec) , Cloud Platform (ex - PCF, Docker), Scanning (ex - Qualys), AppSec (ex - Veracode) () Solid understanding of T