This list contains only the countries for which job offers have been published in the selected language (e.g., in the French version, only job offers written in French are displayed, and in the English version, only those in English).
The GPC Data Protection Manager leads the enterprise strategy to detect, investigate, and mitigate risks originating from within the organization. This individual drives the governance of the Data Loss Prevention platforms and manages a cross-functional program that balances security with operational agility, focusing on protecting sensitive intellectual property (IP), financial data, and regulatory assets.
Job Responsibility:
Program Governance: Define and drive the multi-year technical roadmap for insider risk, aligning it with business needs and global privacy laws (e.g., GDPR, CCPA, DORA)
Behavioral Detection: Oversee User and Entity Behavior Analytics (UEBA) to establish behavioral baselines and detect anomalies, such as unusual data movement or unauthorized use of generative AI tools
Data Protection Management: Lead the selection, deployment, and optimization of the Data Protection stack (e.g., Microsoft Purview and Cyera) to identify and block risky data exfiltration
Incident Investigation: Participate with Global Incident Response team on deep-dive investigations into high-risk alerts, collaborating with Legal and HR to ensure ethical and defensible evidence collection
AI Guardrails: Implement specific controls to monitor and prevent sensitive data leaks into external Large Language Models (LLMs) and manage 'prompt injection' risks
Metrics & Reporting: Develop real-time dashboards to quantify risk posture and program effectiveness for executive leadership and the board of directors
Talent Cultivation: Prioritize hiring adaptable specialists who can navigate hybrid security environments and AI-driven threats
Mentorship & Coaching: Move from traditional surveillance-heavy oversight to a coaching-based model, providing 'real-time nudges' that educate employees on secure data handling rather than just penalizing mistakes
Requirements:
Management: Experience in managing at least 10 employees
Typically requires 5–10 years in cybersecurity or risk management, with a focused background in insider threat analysis or data protection
Extensive experience with data discovery/cataloging and insider risk tools
Proficiency in querying large datasets using SQL or Python to identify emerging threat patterns and fraud indicators
Strong cross-functional collaboration skills, with the ability to influence without direct authority and translate technical risks into business impact
Preferred credentials include CISSP (Security), or CISM (Management)
What we offer:
We offer comprehensive benefit plans and programs designed to support your health and wellness, provide income protection and build financial security for your retirement