waypointjobs

Kentro

Senior Data Security Engineer (USSOCOM-Zero Trust, Azure Security & DLP)

tampa, FL

Check who can apply and the requirements below before continuing.

Availability awaiting confirmation

We are waiting for a fresh update from the source. This page preserves the last received job details; current availability is not confirmed.

Job description

Overview

Thank you for considering IT Concepts dba Kentro, where innovation drives opportunity and collaboration leads to success. Our dynamic community of experts is fully committed to advancing our customers' missions, fostering professional growth, and making a positive impact on our communities.

By joining our supportive community, you will find that Kentro is dedicated to your personal and professional development. Together, we can drive meaningful change, spark innovation, and achieve extraordinary milestones.

Kentro is hiring for Senior Data Security Engineer to support USSOCOM EDAT Zero Trust .

Before data can be protected under a Zero Trust architecture, it must be understood and precisely controlled. You will be responsible for securing the Command's complex information environment, ranging from hyperscale cloud data lakes on NIPR to legacy file shares and isolated storage arrays on the SIPR and Top-Secret networks.

As a Senior Data Security Engineer, you will architect, deploy, and manage advanced data rights management, DLP policies, and security monitoring solutions. You will serve as the premier subject matter expert for Microsoft Azure security, with a heavy focus on Microsoft Purview and Microsoft Defender XDR.

Furthermore, you will lead the implementation of Trellix Full Data Loss Prevention (DLP) and the Microsoft Defender suite to enforce continuous compliance, prevent unauthorized data exfiltration, and establish secure access boundaries for USSOCOM's critical intelligence.

Location: Hybrid in Tampa, Florida

Responsibilities

Azure Security & XDR: Architect and manage comprehensive Azure security solutions, serving as the primary lead for deploying and tuning Microsoft Purview and Microsoft Defender XDR across hybrid and classified environments.

Defender & Access Policy: Design and configure precise security policies within the Microsoft Defender suite, specifically leveraging Microsoft Purview, Microsoft Defender for Cloud Apps (MCAS), Entra ID, and Microsoft Conditional Access to control resource access based on identity, device compliance, and risk.

Trellix DLP Enforcement: Design, deploy, and enforce Trellix Full Data Loss Prevention (DLP) policies across endpoints and networks to stop unauthorized exfiltration of CUI and classified data without impacting mission performance.

Data Rights Management: Manage Active Directory Rights Management (AD-RMS) and Azure RMS as the primary DRM engines to enforce persistent, encryption-based protection of files and emails across USSOCOM networks.

Catalog & DLP Integration: Drive data catalog integration and metadata synchronization with enterprise platforms including Palantir, Microsoft Unified Catalog, Purview Audit, and Activity Explorer. Specifically, lead the integration of Palantir catalog solutions with DLP tools to ensure seamless, end-to-end data security and monitoring.

Classification Tuning: Collaborate with mission owners to train classifiers and DLP rules to recognize unique USSOCOM data types (e.g., mission names, operational codes) and drastically reduce false positive rates in security alerts.

Qualifications

Education: Master's degree (MA/MS) in Computer Science, Cybersecurity, Information Technology, or a related technical discipline.

Experience: 10+ years of relevant experience in enterprise systems engineering, data security, or cybersecurity operations.

Technical Skills: Azure Security Expert: Expert-level proficiency in Microsoft Azure security architecture, with a dedicated focus on implementing and managing Microsoft Purview and Microsoft Defender XDR.

Microsoft Security Stack: Deep, hands‑on expertise in the broader Microsoft Defender suite, specifically: Microsoft Purview (Sensitivity Labeling, DLP, Information Barrier policies).

Microsoft Defender for Cloud Apps (Cloud Access Security Broker – CASB policies).

Microsoft Entra ID (Identity and Access Management).

Microsoft Conditional Access (Context‑aware, zero‑trust security policies).

Trellix & Palantir DLP Expertise: Proven experience designing, tuning, and enforcing Trellix Full Data Loss Prevention (DLP) policies at an enterprise scale. Must have specific expertise in the integration of Palantir catalog solutions with Data Loss Prevention tools.

Data Rights Management: Strong experience implementing and administering AD-RMS and Azure RMS in complex, multi‑domain, or hybrid cloud environments.

Data Catalog Integration: Proven experience integrating and managing metadata across enterprise catalogs such as Palantir, Microsoft Unified Catalog, and utilizing Purview Audit and Activity Explorer.

Storage & Database Knowledge: Strong understanding of storage protocols (NFS, SMB/CIFS, S3) and database structures (SQL, NoSQL) to troubleshoot security scanning access.

Required Certifications: Must possess one of the following DoD 8570/8140 IAT Level III certifications: CISSP

CASP+

CCSP

CISM

Preferred Technical Skills (A-Plus): Advanced knowledge of Kusto Query Language (KQL) for writing sophisticated detection rules, hunting queries, and diagnostic analysis within Microsoft Sentinel/Defender XDR.

Strong proficiency in Splunk Processing Language (SPL) for building advanced dashboards, alerts, and performing forensic analysis.

Clearance Requirement: TS/SCI

Must be a US Citizen

Benefits

We offer a competitive benefits package including paid time off, healthcare benefits, supplemental benefits, 401k with an employer match, discount perks, rewards, and more. We invest in our employees – every employee is eligible for education reimbursement for certifications, degrees, or professional development. Reimbursement amounts may fluctuate due to IRS limitations. We want you to grow as an expert and a leader and offer flexibility for you to take a course, complete a certification, or other professional growth and networking opportunities. We are committed to supporting your curiosity and sustaining a culture that prioritizes continuous professional development.

We work hard; we play hard. Kentro is committed to incorporating fun into every day. We dedicate funds for activities – virtual and in‑person – such as happy hours, holiday events, fitness & wellness events, and annual celebrations. In alignment with our commitment to our communities, we also host and attend charity galas/events. We believe in appreciating your commitment and building a positive workspace for you to be creative, innovative, and happy.

Commitment Equal Opportunity Employment & VEVRAA

Kentro is an equal opportunity employer. All qualified applicants will receive consideration for employment without regard to disability, status as a protected veteran or any other status protected by applicable federal, state, or local law.

Kentro is strongly committed to compliance with VEVRAA and other applicable federal, state, and local laws governing equal employment opportunity. We have developed comprehensive policies and procedures to ensure our hiring practices align with these requirements.

As part of our VEVRAA compliance efforts, Kentro has established an equal opportunity plan outlining our commitment to recruiting, hiring, and advancing protected veterans. This plan is regularly reviewed and updated to ensure its effectiveness.

We encourage protected veterans to self‑identify during the application process. This information is strictly confidential and will only be used for reporting and compliance purposes as required by law. Providing this information is voluntary and will not impact your employment eligibility.

Our commitment to equal employment opportunity extends beyond legal compliance. We are dedicated to fostering an inclusive workplace where all employees, including protected veterans, are treated with dignity, respect, and fairness.

#J-18808-Ljbffr

Worksite address

tampa, FL, 33646, US

Who can apply

Review the original listing for work authorization, qualifications and employer requirements.

Explore related searches

Current related jobs

GE Vernova

WhatJobs

Lead Application Engineer

boston, MA

See pay details in description

Job Description Summary The Lead Application Engineer is an established leader in their respective engineering team. They will drive business …

Listing review due 2026-10-08View job

Kohler

WhatJobs

Engineer, New Product Integration

kohler, WI

Salary not specified

Engineer, New Product Integration Work Mode: Onsite Location: Onsite, four days per week - Kohler, WI Opportunity This is mo…

Listing review due 2026-10-08View job

GE Vernova

WhatJobs

Principal Engineer - AI Engineering

niskayuna, NY

See pay details in description

Job Description Summary GE Vernova is embracing cutting-edge technologies to streamline operations, improve customer experiences, and drive gr…

Listing review due 2026-10-08View job

GE Vernova

WhatJobs

Lead Product Safety and Compliance Engineer

rochester, NY

See pay details in description

Job Description Summary The Product Safety & Compliance Engineer works directly within the engineering development team to ensure our products…

Listing review due 2026-10-08View job

Hobbs Brook Real Estate

WhatJobs

Commercial Facilities Engineer

waltham, MA

$30.88 to $38.61 per hour

Job Description: Hobbs Brook Real Estate LLC is an innovative commercial real estate leader with a portfolio of forward-thinking, sustainable pr…

Listing review due 2026-10-08View job

Avantor

WhatJobs

Process Engineer

carpinteria, CA

See pay details in description

The Opportunity: NuSil (apart of Avantor) is seeking a Process Engineer to be responsible for all phases of silicone products manufacturing …

Listing review due 2026-10-08View job