- Location
- IND - KA - Bangalore - Outer Ring Road, India
- Workplace
- Hybrid
- Type
- Full-time
- Department
- Engineering
- Source
- Workday
Description
FC Global Services India LLP (First Citizens India), a part of First Citizens BancShares, Inc., a top 20 U.S. financial institution, is a global capability center (GCC) based in Bengaluru. Our India-based teams benefit from the company’s over 125-year legacy of strength and stability. First Citizens India is responsible for delivering value and managing risks for our lines of business. We are particularly proud of our strong, relationship-driven culture and our long-term approach, which are deeply ingrained in our talented workforce. This is evident across all key areas of our operations, including Technology, Enterprise Operations, Finance, Cybersecurity, Risk Management, and Credit Administration. We are seeking talented individuals to join us in our mission of providing solutions fit for our clients’ greatest ambitions.
Job Description:
Value Proposition
Join a dynamic Cybersecurity Operations team focused on safeguarding the organization's sensitive information and intellectual property. This role provides an opportunity to monitor, investigate, and respond to data protection risks while supporting the organization's data security strategy. As a DLP Monitoring Analyst, you will play a key role in preventing data leakage, protecting critical business information, and strengthening the organization's overall security and compliance posture.
Job Details
Position Title: Information Security Engineer – Cyber Ops
Career Level: P2
Job Category: Senior Associate
Role Type: Hybrid
Job Location: Bangalore
About the Team
The Data Protection and Insider Risk Monitoring team is responsible for monitoring, detecting, investigating, and responding to potential data loss and insider threat activities across the enterprise. The team leverages industry-leading DLP technologies, user activity monitoring tools, cloud security solutions, and advanced analytics to protect sensitive data across endpoints, email, cloud applications, collaboration platforms, and networks.
Working closely with Security Operations, Insider Risk, Compliance, Legal, Human Resources, and Technology teams, the function ensures the confidentiality, integrity, and protection of organizational data assets.
Impact
This role contributes directly to protecting critical business information from accidental, negligent, or malicious disclosure. The DLP Monitoring Analyst will investigate data loss events, assess risks, support remediation efforts, and enhance monitoring effectiveness. Through proactive monitoring and analysis, the role helps reduce data exposure, improve regulatory compliance, and strengthen enterprise-wide data protection capabilities.
Key Deliverables (Duties and Responsibilities)
- Monitor DLP alerts and incidents across endpoints, email, cloud applications, collaboration platforms, removable media, and network channels.
- Review, triage, investigate, and validate DLP policy violations to determine business impact, intent, and risk level.
- Analyze user activities and data movement patterns to identify potential unauthorized disclosure, exfiltration, or misuse of sensitive information.
- Investigate insider risk events, suspicious user behavior, and potential policy violations in accordance with established procedures.
- Collaborate with business units, HR, Legal, Compliance, and Information Security teams during DLP investigations and remediation efforts.
- Escalate high-risk or confirmed data security incidents to relevant stakeholders and incident response teams.
- Support containment and remediation activities for confirmed data leakage incidents.
- Perform root cause analysis of recurring DLP incidents and recommend control improvements to reduce future risk.
- Assist with DLP policy tuning and optimization to improve detection accuracy and reduce false positives.
- Support monitoring and protection of sensitive data, including customer information, financial data, intellectual property, and regulated content.
- Generate investigation reports, case documentation, and incident summaries for management review and compliance purposes.
- Participate in data classification, labeling, and protection initiatives to improve monitoring effectiveness.
- Work with technology teams to onboard new data sources and improve visibility of sensitive data activities.
- Identify trends and emerging risks based on DLP incidents and monitoring activities.
- Maintain investigation records, evidence, and audit documentation in accordance with governance requirements.
- Contribute to awareness initiatives by providing insights into recurring policy violations and user risk patterns.
- Follow established operating procedures, escalation processes, and security controls related to data protection monitoring.
- Support continuous improvements in DLP monitoring capabilities, processes, and operational effectiveness.
Skills and Qualifications
Functional Skills
- Strong analytical and investigative skills with the ability to assess data security risks and policy violations.
- Ability to evaluate alerts and distinguish between legitimate business activity and potential data protection risks.
- Strong attention to detail and ability to document findings accurately.
- Effective communication and stakeholder engagement skills.
- Ability to manage multiple investigations and prioritize workload effectively.
- Strong problem-solving skills and a risk-based approach to decision-making.
- Understanding of confidentiality, privacy, and regulatory compliance requirements.
Technical / Business Skills
5_ years of experience in Cybersecurity, Security Operations, DLP Monitoring, Insider Risk, Compliance, or Data Protection functions. Experience working with DLP technologies such as Symantec DLP, Microsoft Purview DLP, , Forcepoint DLP, Trellix DLP, Digital Guardian, or equivalent solutions.
Understanding of data protection concepts including data classification, information lifecycle management, and sensitive data handling.
Knowledge of Microsoft 365 security technologies, including Exchange Online, SharePoint, OneDrive, Teams, and Purview compliance solutions.
Familiarity with Insider Risk Management programs and monitoring concepts. Experience analyzing endpoints, email activity, file transfers, cloud application usage, and user behaviors.
Basic understanding of security investigations, incident management, and case handling processes. Knowledge of regulatory and compliance frameworks such as GDPR, PCI-DSS, SOX, HIPAA, ISO 27001, or similar standards.
Familiarity with SIEM platforms such as Microsoft Sentinel, Splunk, QRadar, or Elastic is preferred. Experience preparing investigation reports and supporting audit requirements. Basic scripting or querying skills (KQL, SQL, PowerShell, or similar) are an advantage.
Leadership Qualities
Demonstrates accountability and ownership in handling data protection investigations and monitoring activities. Maintains professionalism and confidentiality when dealing with sensitive information. Proactively identifies opportunities to improve data monitoring and protection processes. Collaborates effectively across teams to support business and security objectives. Shows initiative in developing expertise in data protection, insider risk, and cybersecurity domains. Promotes a culture of security awareness and data protection across the organization.
Relationships & Collaboration
Collaborates closely with Security Operations, Insider Risk, Incident Response, and Governance teams. Works with Compliance, Legal, Privacy, Human Resources, and Audit teams during investigations and remediation activities. Partners with Business Units and Technology teams to resolve data protection risks and policy violations. Supports Data Governance and Data Classification initiatives across the enterprise. Coordinates with DLP technology administrators to improve policy effectiveness and monitoring coverage. Builds strong working relationships with stakeholders to enhance the organization's data protection posture.
Accessibility Needs
We are committed to providing an inclusive and accessible hiring process. If you require accommodations at any stage (application, interviews, assessments, or onboarding), we will work with you to ensure a seamless and equitable experience
Equal Employment Opportunity
FC Global Services India LLP (First Citizens India) is an Equal Employment Opportunity Employer. We are committed to fostering an inclusive and accessible environment and prohibit all forms of discrimination on the basis of gender, religion, caste, disability, sexual orientation, economic status or any other characteristics protected by the law. We strive to foster a safe and respectful environment in which all individuals are treated with respect and dignity. Our EEO policy ensures fairness throughout the employee life cycle.