About the role
We are seeking a Data Protection & DLP Design Expert to protect organizational data from leakage and ensure that backups and data protection mechanisms are securely designed and governed. The role focuses on translating data classification requirements into practical, enforceable controls and reviewing existing data protection measures against industry best practices and NCA ECC standards.
Key Responsibilities:
- Translate data classification into practical controls — defining what data is sensitive and how it must be protected.
- Design DLP (Data Loss Prevention) coverage across endpoints, email, web, and cloud, as applicable.
- Ensure DLP integration with key tools, including Email Gateway, MDM, endpoint agents, and proxy/CASB solutions where used.
- Review current DLP and backup/data protection setups against best practices and NCA ECC; recommend improvements.
- Define secure baselines, including policy settings, exception handling, tuning, encryption alignment, and retention policies.
- Define SOC/SIEM monitoring and response use-cases, such as suspected data exfiltration and policy violations.
- Deliver evidence artifacts for audits, along with runbooks, SOPs, and training/knowledge transfer materials.
Requirements
- Arabic Speakers
- 6 years of relevant experience in data protection, DLP design, and governance.
- Strong understanding of data classification frameworks and how to operationalize them into technical controls.
- Experience reviewing and improving DLP and backup/data protection architectures against compliance standards, particularly NCA ECC.
- Ability to define secure configuration baselines and exception-handling processes.
- Experience collaborating with SOC/SIEM teams to define monitoring and incident response use-cases.
- Strong documentation skills for audit evidence, runbooks, and SOPs.
- Strong communication skills to deliver training and knowledge transfer to internal teams.