Data Protection Lead
full-time
lead
Posted 2 weeks ago
About this role
Why work at Nebius Nebius is leading a new era in cloud computing to serve the global AI economy. We create the tools and resources our customers need to solve real-world challenges and transform industries, without massive infrastructure costs or the need to build large in-house AI/ML teams. Our employees work at the cutting edge of AI cloud infrastructure alongside some of the most experienced and innovative leaders and engineers in the field.
Where we work Headquartered in Amsterdam and listed on Nasdaq, Nebius has a global footprint with R&D hubs across Europe, North America, and Israel. The team of over 1400 employees includes more than 400 highly skilled engineers with deep expertise across hardware and software engineering, as well as an in-house AI R&D team.
The Role
We are seeking an experienced Data Protection Lead to join the Cyber Security organization, reporting to the Head of Security Engineering under the CISO. This role is responsible for leading the organization’s data protection domain, with a focus on data discovery, classification, and data loss prevention (DLP) across corporate and cloud environments. You will define and drive data protection strategy, implement controls to protect sensitive data across its lifecycle, and ensure visibility into where data resides and how it is used. The role requires close collaboration with Security, IT, Engineering, Product, and GRC teams to reduce data exposure risks and enforce strong data governance practices.
Key Responsibilities
Lead and own the organization’s data protection domain, including strategy, standards, and implementation
Drive data discovery initiatives to identify sensitive data across databases, SaaS applications, endpoints, and cloud environments
Define and implement data classification frameworks, labeling standards, and data handling policies
Design and implement data loss prevention (DLP) controls across endpoints, email, SaaS, network, and cloud platforms
Ensure protection of sensitive data across its lifecycle, including storage, processing, and transfer
Lead implementation and optimization of data security technologies (e.g., DLP, DSPM, CASB/SSE, data classification tools)
Define and enforce data access governance, including least privilege and monitoring of sensitive data access and usage
Monitor and investigate data-related risks, exposures, and policy violations in collaboration with SOC and Security teams
Conduct risk assessments and identify gaps in data protection controls across systems and business processes
Support compliance and regulatory requirements (e.g., GDPR, ISO 27001, SOC 2) related to data security and privacy
Collaborate with Engineering, IT, Product, and GRC teams to embed data security controls into systems and workflows
Maintain documentation, standards, and guidelines for data security practices
Required Skills & Experience
6+ years of experience in cyber security, with a focus on data security, data protection, or information security
Hands-on experience with data discovery, classification, and DLP solutions
Strong understanding of data lifecycle management and data security principles
Experience securing data across cloud environments and SaaS platforms
Experience implementing and managing data classification and labeling frameworks
Strong understanding of identity and access management and data access controls
Experience working with data security tools (e.g., Microsoft Purview, Netskope, Symantec DLP, etc.)
Experience working cross-functionally with Security, IT, Engineering, Product, and GRC teams
Strong analytical and problem-solving skills
Excellent written and verbal communication skills in Hebrew and English
Strong analytical and problem-solving mindset
Ability to communicate data security risks clearly to technical and non-technical stakeholders
Proactive, detail-oriented, and ownership-driven
Comfortable working in cross-functional teams in a dynamic environment
Nice to Have
Experience leading or building data security or DLP programs in a growing organization
Familiarity with DSPM (Data Security Posture Management) tools
Experience with CASB / SSE platforms (e.g., Netskope, Zscaler)
Knowledge of privacy and regulatory frameworks (GDPR, ISO 27001, SOC 2, etc.)
Relevant certifications such as CISSP, CISM, or CDLP
BSc in Computer Science, Information Security, or a related field
What we offer
Competitive salary and comprehensive benefits package.
Opportunities for professional growth within Nebius.
Flexible working arrangements.
A dynamic and collaborative work environment that values initiative and innovation.
We’re growing and expanding our products every day. If you’re up to the challenge and are excited about AI and ML as much as we are, join us!
Similar Jobs
Related searches: