Job Location: - The office for this position is located at the Harry S. Truman State Office Building, 301 W High Street, Jefferson City, MO. 65101.
Why you’ll love this position:
This position will play a prominent role in defending against the unauthorized access and disclosure of Missouri's most sensitive data. You will design and implement the State of Missouri's data loss prevention strategy across endpoints, network, and cloud environments. This position includes policy development, security engineering and management, and incident analysis.
- Authorization to work in the United States is a prerequisite of employment. The Office of Administration, Information Technology Services Division (ITSD) will not sponsor applicants for work visas.
- The salary indicated represents a base pay rate. If the individual selected or the position is eligible for a pay differential (e.g., shift, security, or years of service), it will be added to the total compensation in your paycheck. A pay differential does not raise your base pay.
This position is with the Office of Administration, Information Technology Services Division (OA-ITSD) supporting the Office of Cybersecurity (OCS).
ITSD Core Values - We Innovate and Partner with Passion, Respect, and Integrity United as #OneTeam.
- Administer, maintain, and tune the enterprise Data Loss Prevention (DLP) platform across all channels and platforms.
- Assist in the development, refinement, and implementation of comprehensive data classification policies, standards, and procedures in alignment with state and federal laws (e.g., HIPAA, FERPA, CJIS) and industry best practices (e.g., NIST, ISO 27001).
- Collaborate with various state agencies and IT teams to identify, inventory, and assess data assets across diverse systems and platforms (on-premises, cloud, etc.).
- Apply established classification levels (e.g., Public, Internal, Restricted) and appropriate labels to state data based on its sensitivity, criticality, and regulatory requirements, utilizing both manual and automated methods.
- Work closely with data owners, legal counsel, IT security, compliance officers, and other stakeholders to understand data usage, define classification criteria, and ensure consistent application of policies.
- Deploy, configure, and maintain Endpoint DLP solutions across the organization's endpoint devices (laptops, desktops, servers).
- Implement, manage, and optimize CASB solutions to secure data in cloud applications (SaaS, IaaS).
- Develop and refine DLP policies and rules based on business requirements, regulatory compliance, and industry best practices.
- Configure and manage CASB policies for data governance, threat protection, and access control in cloud environments.
- Evaluate, recommend, implement, and manage data classification and labeling tools and technologies to streamline processes and enhance efficiency.
- Monitor DLP and CASB alerts and events, investigate potential data exfiltration attempts, policy violations, and anomalous activities.
- Perform root cause analysis for DLP and CASB incidents, identify security gaps, and recommend remediation strategies.
- Work closely with incident response teams to contain, eradicate, and recover from security incidents related to data loss.
- Generate detailed incident reports and provide recommendations for process improvements.
- Conduct regular audits of classified data and DLP/CASB performance to ensure adherence to policies and identify any discrepancies or areas for improvement.
- Assist in preparing for and responding to internal and external compliance audits.
- Contribute to data risk assessments by identifying and documenting potential risks associated with data handling and recommending appropriate controls.
- Maintain accurate and up-to-date documentation of data classification schemes, DLP/CASB policies, procedures, and reports on compliance status.
- Develop and deliver training programs and awareness campaigns for state employees on data classification policies, proper data handling, and the importance of data security and secure cloud usage.
- Stay informed about emerging data classification best practices, regulatory changes, and technological advancements to continually enhance the state's data governance framework and data loss prevention capabilities.
- Ensure the health, performance, and availability of DLP and CASB infrastructure, performing routine maintenance, patching, and upgrades.
Troubleshoot and resolve technical issues related to DLP and CASB agents, servers, and integrations.
- Experience implementing and administering an enterprise DLP solution.
- Knowledge of data classification methods.
- Experience implementing security frameworks like NIST CSF.
- Knowledge of structured and unstructured data formats and how to define polices for each.
- Understanding of data flow and endpoint agents as related to data monitoring.
- Familiarity with regular expressions (RegEx) for advanced pattern matching and content discovery.
- Excellent analytical and investigative skills for conducting incident reviews.
- Other duties as assigned.
- Successful background check results are required for employment in this position. This may include background checks involving a candidate’s name and/or fingerprints and other screenings as needed for the specific position.
Lack of post-secondary education will not be used as the sole basis denying consideration to any applicant. Knowledge of IT forensic concepts, domain structures, user authentication, and digital signatures. Knowledge of intrusion detection methods and techniques, and internet architecture. Ability to think methodically and critically. Ability to recognize security intrusions and take appropriate action. Ability to research and identify causes of security breaches.
The classification for this position is Cybersecurity Analyst ; click for more information.
The State of Missouri offers an excellent benefits package that includes a defined pension plan, generous amounts of leave and holiday time, and eligibility for health insurance coverage. Your total compensation is more than the dollars you receive in your paycheck. To help demonstrate the value of working for the State of Missouri, we have created an interactive Total Compensation Calculator. This tool provides a comprehensive view of benefits and more that are offered to prospective employees. The Total Compensation Calculator and other applicant resources can be found here .
If you have questions please contact: ITSDRecruiting@oa.mo.gov