At Zelis, we Get Stuff Done. So, let's get to it!
A Little About Us Zelis is modernizing the healthcare financial experience across payers, providers, and healthcare consumers. We serve more than 750 payers, including the top five national health plans, regional health plans, TPAs and millions of healthcare providers and consumers across our platform of solutions. Zelis sees across the system to identify, optimize, and solve problems holistically with technology built by healthcare experts - driving real, measurable results for clients.
At Zelis, AI is woven into the fabric of how we work. Every associate is expected - and empowered - to partner with AI to challenge the status quo, accelerate innovation, and amplify their impact. This is a place for builders with a growth mindset who act with agility, embrace change, and use modern technology to shape smarter solutions, exceptional experiences, and the future of our industry for our clients, customers, and our culture.
A Little About You You bring a unique blend of personality and professional expertise to your work, inspiring others with your passion and dedication. Your career is a testament to your diverse experiences, community involvement, and the valuable lessons you've learned along the way. You are more than just your resume; you are a reflection of your achievements, the knowledge you've gained, and the personal interests that shape who you are.
Position OverviewManages security operations tasks independently and contributes to the design and implementation of security controls.
Your Team & Role:As a
Senior Data Loss Prevention (DLP) Analyst, you'll take the lead on protecting the organization's sensitive data through DLP, insider risk, and security operations initiatives. You'll investigate DLP and insider risk events, analyze security incidents involving sensitive information, and help strengthen our overall data protection capabilities. In this role, you'll handle hands-on technical work including DLP policy tuning, incident analysis, and process development, while also supporting broader cybersecurity operations through incident response, digital forensics, and threat investigations. You'll also help mentor teammates, improve processes, and shape how we detect and respond to data protection and cybersecurity events.
Key Responsibilities:- DLP & Insider Risk: Lead investigations, escalations, remediation, and communications into DLP and insider risk alerts and incidents. Analysis of user activity involving sensitive data, tune DLP policies, and help mature DLP processes and procedures.
- Security Operations Incident Analysis & Handling: Triage alerts, investigate suspicious activity, lead incident response steps, and coordinate containment and recovery efforts.
- Data Collection & Normalization: Make sure logs and security data are gathered correctly, cleaned up, and organized so the team can analyze them effectively.
- Digital Forensics: Examine systems, files, logs, and network data to understand what happened during DLP and cybersecurity incidents.
- Mentoring & Training: Help newer analysts grow by sharing your experience, offering guidance, and running training sessions when needed.
- Technical / Process Guidance: Assist team members with technical questions, tool usage, investigation methods, and established response workflows.
- Shift Leadership: Act as the point person during your shift: manage workload, oversee investigations, ensure smooth handoffs, and support teammates. Participate in a rotating on-call schedule as required.
- Innovation: Look for opportunities to improve processes, recommend new tools or automations, and help refine how the team operates.
Here is What You Can Expect on a Typical Day:- Reviewing DLP alerts, user activity, and security logs to identify potential data loss, insider risk, or suspicious behavior.
- Leading investigations involving sensitive data movement while assisting with broader cybersecurity incidents as needed.
- Tuning DLP policies and detection logic to reduce false positives while improving visibility into risky behavior.
- Running forensic analysis on hosts, cloud workloads, or network artifacts to uncover root causes and timelines.
- Collaborating with IT, cloud, engineering, or other security teams to gather data or take action on investigations.
- Sharing insights with teammates, helping them troubleshoot difficult cases, or walking them through an investigation technique.
- Updating documentation, writing reports, or summarizing incident findings.
- Teaching something new to the team-whether it's a DLP capability, a tool trick, a technique, or a better approach to analysis.
- Handling shift responsibilities like queue management, monitoring ongoing investigations, and tracking priorities.
- Identifying process gaps or tools that could be improved and proposing better ways to do things.
- Perform other tasks required by management as needed
Qualifications:- Bachelor of Computer Science, Engineering, Information Security, Information Technology, or 4+ years of equivalent experience.
- 3+ years of enterprise experience in Data Loss Prevention (DLP), Insider Risk, Security Operations, Incident Response, or a related cybersecurity discipline.
- Ability to partner with enterprise teams within a cybersecurity context, leveraging diverse ideas, experiences, thoughts, and perspectives to improve the organization.
- Effective oral and written communication skills with experience in cybersecurity technical process documentation.
- Demonstrated passion for information security and data protection, including a commitment to maintaining technical proficiency.
- Proven record of thought leadership via innovation and non-traditional solutions
- Fundamental understanding of IT & data security practices/programs/tooling, with demonstrated examples of driving initiatives forwards.
Preferred qualifications:- Experience administering or supporting enterprise DLP solutions such as Microsoft Purview
- Experience with Insider Risk Management programs or user activity monitoring.
- Advanced cybersecurity certifications (e.g., GCFA, GCIA, GNFA, GCTI, GREM, GCIH, GCFA, GPEN, OSCP, etc.)
- Cloud (AWS, Azure, Google Cloud Platform, etc.) certifications
- Proficiency in scripting and high-level programming languages (Python, PowerShell, bash, etc.)
- Functional knowledge of SIEM, SOAR, DLP platforms, malware sandboxing solutions and related tools
Please note at this time we are unable to proceed with candidates who require visa sponsorship now or in the future.Location and Workplace FlexibilityZelis is headquartered in the U.S., with multiple locations across the country and in Hyderabad, India. Check out our locations to learn more about our offices. All employee work locations are based on the needs of the position and are determined by the Leadership team. In-office work and activities vary based on work and team objectives in accordance with Company policies.
While location expectations vary by role, candidates within approximately 50 miles of a U.S. office are generally preferred to support collaboration when needed. Our hybrid approach is flexible, and in-office presence is guided by team and business needs rather than a fixed weekly schedule.
Base Salary Range$105,000.00 - $133,000.00
At Zelis we are committed to providing fair and equitable compensation packages. The base salary range allows us to make an offer that considers multiple individualized factors, including experience, education, qualifications, as well as job-related and industry-related knowledge and skills, etc. Base pay is just one part of our Total Rewards package, which may also include discretionary bonus plans, commissions, or other incentives depending on the role.
Zelis' full-time associates are eligible for a highly competitive benefits package as well, which demonstrates our commitment to our employees' health, well-being, and financial protection. The US-based benefits include a 401k plan with employer match, flexible paid time off, holidays, parental leaves, life and disability insurance, and health benefits including medical, dental, vision, and prescription drug coverage.
Equal Employment Opportunity Zelis is proud to be an equal opportunity employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, age, sex, national origin, disability status, genetics, protected veteran status, sexual orientation, gender identity or expression, or any other characteristic protected by federal, state or local laws.
We welcome applicants from all backgrounds and encourage you to apply even if you don't meet 100% of the qualifications for the role. We believe in the value of diverse perspectives and experiences and are committed to building an inclusive workplace for all.
Accessibility Support We are dedicated to ensuring our application process is accessible to all candidates. If you are a qualified individual with a disability or a disabled veteran and require a reasonable accommodation with any part of the application and/or interview process, please email
Disclaimer The above statements are intended to describe the general nature and level of work being performed by people assigned to this classification. They are not to be construed as an exhaustive list of all responsibilities, duties, and skills required of personnel so classified. All personnel may be required to perform duties outside of their normal responsibilities, duties, and skills from time to time.