Senior Cyber Security Analyst
Tempe, AZ, US
Requisition ID: 19860
Join us in building a better future for Arizona!
SRP is one of the largest public power and water utilities in the U.S. providing electricity to approximately one million customers in the greater metropolitan Phoenix area. Since its founding in 1903, SRP has fostered a culture of stewardship and customer service consistently ranking as an industry leader in customer service according to J.D. Power and named one of Arizona's best employers by Forbes. SRP continues to adapt to its changing business environment by seeking innovative ways to reimagine utility service and the provision of critical resources essential to the life and economy of Arizona.
Why Work at SRP
At SRP, we foster an inclusive work environment and believe everyone should have a fair chance to work, regardless of who they are. That’s why we value teams with diverse perspectives, experiences, and backgrounds to help SRP deliver on its mission of providing reliable, affordable and sustainable water and power.
SRP's success is rooted in our employees' happiness, health, and safety. That's why we offer a comprehensive benefits package to meet the needs of our employees and enhance their well-being. In addition to competitive pay and performance incentives, eligible employees can take advantage of the following benefits:
- Pension Plan (at no cost to the employee)
- 401(k) plan with employer matching
- Available your first day: Medical, vision, dental, and life insurance
- Over 200+ hours of PTO (includes vacation days, holidays, floating holidays, and sick leave)
- Parental leave (up to 4 weeks) and adoption assistance
- Wellness programs (including access to a recreation and fitness facility)
- Short and long-term disability plans
- Tuition assistance for both undergraduate and graduate programs
- 10 Employee Resource Groups for career development, community service, and networking
Summary
We are seeking an experienced Cyber Security Data Loss Prevention Analyst to strengthen our data protection capabilities and help mature our enterprise DLP program. This role is ideal for someone who has hands on experience with modern DLP technologies-especially Microsoft Security Platform and Varonis-and who is comfortable tuning policies, reducing false positives, and collaborating across the organization to ensure sensitive information is handled and protected appropriately.
This position plays a critical part in safeguarding company data, preventing data exposure, and educating employees on proper data handling practices.
What You'll Do
- Develop, tune, and maintain DLP policies, rules, and alerting mechanisms in Microsoft Security Platform and Varonis.
- Continuously refine controls to reduce false positives while ensuring sensitive data is properly protected.
- Monitor, investigate, and triage DLP alerts, escalating issues appropriately.
- Review incidents involving improper data handling (data in motion, at rest, or in use).
- Communicate with employees to provide education, guidance, and corrective actions to prevent repeated violations.
- Work collaboratively with HR, Legal, Information Governance, Service Owners and other business units on DLP related investigations or remediation steps.
- Provide expert input into data protection policies, classification models, and control requirements.
- Bring external best practices and industry trends to help mature and evolve the DLP program.
- Evaluate, test, deploy, and validate DLP solutions, configurations, and enhancements.
- Partner with engineering teams to ensure DLP tools are integrated effectively across endpoints, cloud platforms, and collaboration services.
- Serve as the DLP subject matter expert on broader security and business initiatives.
- Support projects involving sensitive data, such as AI enablement and data classification improvements.
Education
Experience
• For a Level 1 (Associate), a minimum of no previous years of experience to two years related experience is required (if no degree, four-six years of relevant experience or equivalent combination of education and related experience totaling four-six years).
• For a Level 2 (Journey), a minimum of two years of experience to four years related experience is required (if no degree, six-eight years of relevant experience or equivalent combination of education and related experience totaling six-eight years).
• For a Level 3 (Senior), a minimum of five years of related experience is required (if no degree, nine years of relevant experience or equivalent combination of education and related experience totaling nine years).
- 5+ years of relevant experience, with at least 3 years focused on DLP, data protection, or information security operations.
- Hands on experience with Microsoft security products (Defender, Purview, Endpoint DLP) and/or Varonis.
- Strong understanding of data classification, data handling standards, and regulatory requirements.
- Experience tuning policies to reduce false positives while maintaining detection accuracy.
- Excellent communication skills, with the ability to coach employees and work with HR, Legal, and other stakeholders.
- Ability to investigate data incidents with discretion, professionalism, and sound judgment.
Additional Requirements and Qualifications
- Experience contributing to DLP program maturity or building new DLP capabilities.
- Familiarity with insider risk management concepts and tools.
- Understanding of AI related data risks and modern data governance practices.
- Relevant certifications (e.g., CISSP, GIAC, Microsoft SC 400) are a plus but not required.
Hybrid Workplace
SRP currently offers a hybrid workplace, which allows employees whose jobs can be performed remotely, and who have sufficient technical capability, to telework up to three days per week. Although teleworking is available, all employees must live and work in Arizona.
Drug/Alcohol Policy Statement
To promote the safety and well-being of our employees, customers, and the communities we serve, SRP is committed to maintaining a drug/alcohol free work environment. Although marijuana may now be legal in Arizona, except as otherwise specified under Arizona law, SRP considers it to be an illegal drug for the purpose of our drug/alcohol policy because marijuana remains illegal at the federal level. Any candidate found to be impaired during the hiring process or who has the presence of an illegal drug or unauthorized substance in their system during the pre-employment drug/alcohol test may be disqualified from further consideration in the hiring process.
Equal Opportunity Employer Statement
Salt River Project (SRP) is committed to equal employment opportunity regardless of race, color, religion, sex (including pregnancy), gender identity, sexual orientation, national origin, age, disability, genetic information, military status, or any other protected status under applicable federal, state or local law.
Work Authorization
All candidates must be legally authorized to work in the United States.
Currently, SRP does not sponsor H1B visas, OPT, or other employment-related visa's.
Nearest Major Market: Phoenix