Discovery is at the heart of everything we do. Wherever you find us around the world, if you can think of a product, you can probably find it in our stores, which include TJ Maxx, Marshalls, HomeGoods, Sierra, Winners, Homesense, and TK Maxx. With variety comes plenty of happy surprises-our environment is ever-changing, and that's just how we like it. Every day is an opportunity to discover something new about our business, our partnerships and even something exciting about yourself. Ready to Discover Different?
What you'll do
A Data Loss Prevention (DLP) Engineer on the Data Security team will focus on maintaining, improving and optimizing our DLP tools. You will act as a subject matter expert to identify/recommend/implement process & technology improvements. We seek creative, security-minded professionals to provide hands-on talent and social expertise to protect TJX and its assets. You'll work with engineers, business programs, and other security professionals to adapt and improve our security posture in applications, infrastructure, and cloud modernization efforts through well-designed and broadly applied data security controls.
What you'll do
As a Data Loss Prevention Engineer, you will demonstrate deep knowledge and experience in designing and implementing business functionality in your assigned Platform(s)/Product(s) area. You will own the technology aspect for your assigned area, leading the technical direction, partnering with architecture and security consultants, and presenting team progress alongside the Scrum Master and Product Manager. Engineers at this level can lead & deliver on assigned Epics in their area of support.
You will act as the Primary DLP expert to operate host & network data loss prevention technologies. You will focus on design, architecture, implementation, and the operation of data loss prevention and data protection technologies in all areas of the environment including network, endpoints, applications, and cloud. This will be done in parallel to daily triage off DLP alerts and escalation of data loss incidents to the investigations team. You will also look to conduct analysis, troubleshooting, and trending of incidents/events detected from Endpoint Security solutions, DLP and other security applications.
Successful candidates will have
7+ years' experience with data loss prevention technologies, along with data discovery and classification processes.
- Please note: DLP toolset exposure must include Microsoft DLP tools (Purview, Defender, Azure Cloud, and Information Protection). Exposure to other DLP tools such as Proofpoint DLP, Palo DLP, Zscaler DLP, or others.
- Extensive experience with data analysis, data discovery, and data classification systems.
- A thorough understanding of how to design, test, deploy, tune, and maintain DLP alert policies by leveraging automation.
- Experience with developing regular expressions (RegEx) and machine learning algorithms which can be used to accurately match numbers, terms, and other alphanumeric expressions.
- Experience analyzing, reviewing, and investigating alerts from deployed technologies to provide key data points to other Cybersecurity programs and key executive stakeholders.
- The ability to discern, communicate, and drive policy recommendations across multiple functional groups to minimize organizational risk.
- The technical capabilities required to support business and cybersecurity risk assessments for data discovery, data classification, and data loss prevention systems
- Experience with deploying and maintaining DLP software and platform upgrades on Windows, iOS, and MacOS endpoints
- The interpersonal skills necessary to establish strong relationships with your peers, TJX vendors, and associated third parties to derive well-designed security value.
- Education Level: Bachelor's degree in relevant fields or equivalent technical experience is expected
Preferred Qualifications
- Preferred experience with the automation of DLP processes and DLP reporting/analytics using PowerShell, Power BI, or Python.
- Exposure to DLP techniques and scenarios involving prompts for AI services such as Chat GPT and Copilot or the training of Large Language Models.
- Experience with mentoring, training, and upskilling junior associates
- Experience with developing and maintaining Cybersecurity plans for incident response and recovery
- Experience with risk identification techniques and data analysis across large datasets
This position has a starting salary range of $110,500 - 143,700. per year.
Actual starting pay is determined by a number of factors, including relevant skills, qualifications, and experience.
This position is eligible for an annual incentive as well as long-term incentives.
#LI-DNI
Come Discover Different at TJX. From opportunity and teamwork to growth, we think you'll find that it's so much more than a job. When you're a part of our global TJX family, you have the full support of a diverse, close-knit group of people dedicated to finding great deals and fantastic style. Best of all? They have a lot of fun doing it.
We care about our culture, but we also prioritize the tangible stuff (Competitive salaries: check. Solid benefits: check. Plenty of room for advancement: of course). It's our way of empowering you to make your career here.
We consider all applicants for employment without regard to race, color, religion, gender, sexual orientation, national origin, age, disability, gender identity and expression, marital or military status. We also provide reasonable accommodations to qualified individuals with disabilities in accordance with the Americans with Disabilities Act and applicable state and local law.