Job Description – Data Loss Prevention (DLP) Project Manager
Position Summary
The DLP Project Manager is responsible for planning, executing, and delivering enterprise Data Loss Prevention (DLP) initiatives to protect sensitive, confidential, and regulated data across the organization. This role ensures DLP programs are delivered on time, within scope, and in alignment with cybersecurity standards, regulatory requirements, and business priorities.
The Project Manager works closely with Cybersecurity, IT Infrastructure, Network, Legal, Compliance, Privacy, and Business Data Owners to drive successful DLP outcomes.
Key Responsibilities
Project & Program Management
- Lead end‑to‑end delivery of DLP initiatives including planning, execution, tracking, and closure.
- Develop and manage project plans, milestones, dependencies, risks, and communication plans.
- Establish project governance artifacts including RAID logs, RACI, and status dashboards.
- Provide regular status updates to senior leadership and cybersecurity stakeholders.
DLP‑Specific Responsibilities
- Manage implementation and rollout of DLP capabilities across endpoints, email, cloud/SaaS, databases, and data platforms.
- Coordinate DLP policy deployment, exception handling, remediation tracking, and recertification efforts.
- Partner with security engineering and architecture teams to translate DLP requirements into executable project tasks.
- Support DLP initiatives tied to audit readiness, regulatory remediation, and data protection posture improvements.
Stakeholder & Vendor Management
- Act as the primary point of coordination between Cybersecurity, Legal, Compliance, Privacy, IT Infrastructure, and Business Units.
- Facilitate working sessions, governance reviews, and decision forums.
- Manage vendor and system‑integrator deliverables, timelines, and SLAs where applicable.
Required Qualifications
- 8+ years of experience in IT or Cybersecurity Project / Program Management.
- Demonstrated experience managing DLP, data protection, or security platform implementations.
- Strong understanding of data protection concepts, data classification, and information security fundamentals.
- Experience operating in regulated environments (e.g., SOX, PCI, HIPAA, GDPR).
- Proven ability to manage cross‑functional technical and business stakeholders.
- Strong executive communication, documentation, and reporting skills.
Preferred Qualifications
- Experience with enterprise DLP or data security platforms (e.g., Cyera, Microsoft Purview, Symantec, McAfee, Snowflake‑native controls).
- Exposure to DLP recertification, policy exception management, DSPM, or eDiscovery processes.
- Familiarity with security frameworks such as NIST, ISO 27001, or CIS.
- PMP, PgMP, CISSP, or equivalent certification preferred.