Skip to main content

Palantir

Information Security Engineer - DLP

New York, NYfull-timemidAdded 1 month ago

About this role

Palantir seeks an experienced Information Security Engineer to lead data loss prevention efforts, protecting sensitive data across the organization through advanced threat detection and policy enforcement. You'll design and maintain sophisticated DLP systems while investigating security incidents in a 24/7 operations environment facing advanced threats.

What you'll do

  • Develop and tune content inspection pipelines and classification policies
  • Own the global data protection program and DLP strategy
  • Monitor and detect data security events across the enterprise
  • Investigate data exfiltration incidents and insider threats
  • Design controls to prevent and mitigate data loss scenarios
  • Collaborate with security teams on 24/7 incident response

What they're looking for

  • Data loss prevention (DLP) systems and tools
  • Content inspection and classification technologies
  • Adversarial/threat modeling thinking
  • Insider threat investigation
  • Security policy design and enforcement
  • Incident detection and response
  • Knowledge of data exfiltration methods
  • Enterprise security architecture
Apply with Autofill

Opens the application — the Jobs AI extension fills it for you. Set up autofill

Opens the official application on the employer’s site. No login required.

Palantir

Palantir builds data platforms and software solutions that help government and enterprise customers tackle complex operational challenges, with a focus on responsible AI governance and privacy. The company is hiring software engineers and interns for forward-deployed customer roles, infrastructure and platform teams, and specialized privacy and civil liberties engineering positions.

View all jobs at Palantir

Likely interview questions

  • Can you describe a time when you identified or reverse-engineered an exfiltration technique that bypassed existing DLP controls? How did you detect it and what did you implement to prevent similar attacks?
  • Walk us through how you would design a content inspection pipeline for detecting sensitive data exfiltration across multiple channels (email, cloud storage, USB, etc.).